Shared by


Semester 4 Class: CNA Instructor: Le The Quyen Date: Examiner: Total time: 150 mins

Group No: Student 1: Student 2: Student 3: Student 4: Student 5: Student 6:

Login ID

Device Site1 Site2, SW3 Site3 Link1 Link2 FRSW, SW1, SW2


Section 1: Network Diagram, major IP address =

Section 2: IP subnetting (20 points, for all team)
Each Ethernet network requires 150 IPs (except VLAN default on SW3 take only 8 IPs for NAT inside global address) Use VLSM so that IPs are provided only as much as required.

Section 3: IP configuration (25 points, for all team)
a) Standard Configuration: Create standard configuration on all routers (hostname, cisco password, meaningful banner and description, full host table…)
page 1 of 3

SW2. Test ACL: define an ACL to allow all subnet to telnet to this router except VLAN VL2 va VLAN red (this is for testing only.168.Shared by b) Routing protocol: Use EIGRP 3000 routing protocol for the network sections as described in the topology.9 port 4. require other to sent username=pppmulti.5. b) Supply IP addresses for VLAN red. VLAN and port assignment as in the following. you can configure ACL on this router. Do not allow traffic between VLAN red and VLAN default. Only VLAN red is not allow to telnet to router Student6: a) VLAN & VTP: Assign names. IPs and passwords for SW3. DNS address is 172.0. required to sent username=pppmulti. password=authen to connect to other router. DNS address is 172. but it is not applicable while it functions as a switch) page 2 of 3 .ccna4u.168. for each student) Student1: a) Configure Inter-VLAN routing b) Configure PAT for VLAN default on SW3 with the local inside address of 10. IPs and passwords for SW1.0. Student4: a) PPP multilink. PAP authentication on physical interfaces.0/16. SW3. Section 4: Individual configurations (20 points.2. Assign names.0. Create point-to-point frame-relay subinterface connections b) Only allow hosts in VLAN VL2 to telnet to this router. encapsulation IETF.6 ‘blue’ port 4.5. excluding router address. b) Supply IP addresses for VLAN blue.6 port 1. Other networks can not access VLANs on SW1&SW2 by ftp. Vlan SW3 ‘VL2’ port 1->6 Default and trunk all other ports Student3: a) Configure Inter-VLAN routing b) Create point-to-point frame-relay subinterface connection.1. Only VLAN blue is not allow to access this router by web Student5: a) PPP multilink.0.1. DNS address is quocvuong. excluding router Create point-to-point frame-relay subinterface connection Student2: a) Supply IP addresses for VLAN VL2. domain name = ‘color’. Make SW1 be the server and SW2 be the client. excluding router address.3 Default and trunk all other ports all other ports b) Frame-relay switch: assign ‘fr_sw’ enable frame-relay switching function. lmi-type ANSI. password=authen. create PVCs as shown in network diagram. apply port security for all ports belong to VLANs default: vlan SW1 SW2 ‘red’ port 7. PAP authentication on physical interfaces.

info read carefully before you answer.Shared by Section 5: Practical theory (35 points. for each student) Each student will receive a paper sheet with questions.ccna4u. – END – page 3 of 3 .