Section 10 Access Control 16 Minutes

For this lab section, refer to Figure 26-4 on page 918 of the book. Current configuration 1719 bytes service timestamps debug datetime msec localtime service timestamps log datetime msec localtime enable secret 5 1 1xxK LWh42sY9aO17mvAuehLPM. interface Loopback1 description OSPF Loopback ip ospf network point-to-point ip address 1.1.1.1 255.255.255.255 interface Loopback10 description BGP Loopback ip address 1.1.1.11 2 55.255.255.255 interface SerialO ip address 150.100.31.1 2 55.255.255.240...

R6config t

Enter configuration commands, one per line. End with CNTL Z. 06 52 77309411327 DIALER-6-BIND Interface BR0 0 1 bound to profile Di0 Mar 15 0 8 19 18.409 OSPF-5-ADJCHG Process 123, Nbr 8.8.8.8 on Tunnel0 from FULL to DOWN, Neighbor Down Interface down or detached Mar 15 0 8 19 18.409 BGP-5-ADJCHANGE neighbor 192.168.2.1 Down Interface flap Mar 15 0 8 19 18.945 BR0 0 DDR rotor dialout priority Mar 15 0 8 19 18.945 BR0 0 DDR Dialing cause ip (s 172.22.85.2,

R1sho ip route 1721911

Known via ospf 123, distance 110, metric 20, type extern 2, forward metric 128 Last update from 150.100.31.3 on SerialO, 00 33 44 ago Routing Descriptor Blocks * 150.100.31.3, from 2.2.2.2, 00 33 44 ago, via Serial0 Route metric is 20, traffic share count is 1 interface FastEthernet0 0 ip address 130.100.26.6 2 55.255.255.224 ip access-group time_acl in ip rip authentication mode md5 ip rip authentication key-chain ccie ip inspect ccie in

R8sho debugging

AAA Authentication debugging is on AAA Authorization debugging is on Dial on demand Dial on demand events debugging is on PPP PPP authentication debugging is on PPP protocol negotiation debugging is on PPP packet display debugging is on Callback AAA AUTHOR LCP Authorization succeeds Waiting for Peer to authenticate first 14 02 35 BR0 0 1 CHAP I RESPONSE id 225 len 23 from R6 14 02 35 BR0 0 1 PPP Phase is FORWARDING, Attempting Forward 14 02 35 BR0 0 1 PPP Phase is AUTHENTICATING,...

Section 15 Authentication Proxy with Tacacs 18 Minutes

Access-list outside_access_in permit tcp any host 130.100.26.7 eq tacacs static (inside,outside) 130.100.26.7 192.168.1.7 netmask 255.255.255.255 0 0 R6(config) aaa authentication login default group tacacs+ R6(config) aaa authentication login no_login enable local line none R6(config) aaa authentication enable default group tacacs+ R6(config R6(config R6(config R6(config R6(config R6(config R6(config R6(config R6(config R6(config R6(config aaa authorization auth-proxy default group tacacs+ aaa...

Info

Line con 0 exec-timeout 0 0 privilege level 15 transport input none line aux 0 line vty 0 4 privilege level 15 nameif ethernetO outside securityO nameif ethernetl inside securitylOO enable password 8Ry2YjIyt7RRXU24 encrypted passwd 2KFQnbNIdI.2KYOU encrypted hostname PIX1 names access-list bgpin permit tcp host 130.100.1.3 host 10.1.1.9 eq bgp access-list bgpin permit icmp any any access-list bgpin permit tcp host 130.100.1.3 host 10.1.1.9 eq telnet access-list bgpin permit udp any any gt 33000...

R5sho crypto ca certificates

Certificate Serial Number 610FD716000000000007 CN CA Server OU AES IP Core O Cisco Systems Inc EA ccie44 60 hotmail.com Subject Name Contains Name R5.cisco.com Serial Number 06904020 CRL Distribution Point 0Server.crl Validity Date start date 22 37 58 PST Apr 1 2003 end date 22 47 58 PST Apr 1 2004 Associated Identity caserver RA Signature Certificate Status Available Certificate Serial Number 6115CEE9000000000002 CN CA Server OU AES IP Core O Cisco Systems Inc 0Server. start date 15 46 53 PST...

Section 12 Catalyst Security 6 Minutes

Switchport port-security mac-address 10 0 0.2000.3000 switchport port-security violation protect switchport port-security aging time 600 switchport port-security aging static no ip address For this lab section, refer to Figure 26-5 on page 922 of the book. Section 13 AAA Using RADIUS (17 Minutes) username userl privilege 7 password 7 121A0C041104 aaa authentication login default group radius local aaa authentication login no_login local none aaa authorization exec default local aaa accounting...

Section 11 IP Services 18 Minutes R6sho run

Current configuration 3778 bytes No configuration change since last restart service timestamps debug datetime msec service timestamps log datetime msec aaa authentication login default local aaa authentication login no_login none aaa authentication ppp default local ip dhcp excluded-address 130.100.26.6 ip dhcp excluded-address 130.100.26.2 network 130.100.26.0 255.255.255.224 default-router 130.100.26.6 lease infinite key chain ccie key 1 key-string ccie interface Loopback6 description OSPF...

R7sho ip bgp su

BGP router identifier 7.7.7.7, local AS number 1560 BGP table version is 76, main routing table version 76 28 network entries and 29 paths using 3760 bytes of memory 6 BGP path attribute entries using 360 bytes of memory 3 BGP AS-PATH entries using 72 bytes of memory 0 BGP route-map cache entries using 0 bytes of memory 0 BGP filter-list cache entries using 0 bytes of memory BGP activity 459 2554 prefixes, 665 636 paths, scan interval 60 Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ...

Section 8 Redistributing Protocols 5 Minutes

Ip address 140.100.47.4 2 55.255.255.192 ip rip authentication key-chain ccie area 0 authentication message-digest area 45 authentication message-digest area 45 virtual-link 5.5.5.5 authentication area 45 virtual-link 5.5.5.5 message-digest redistribute rip subnets route-map red rip network 140.100.45.0 0.0.0.63 area 45