Jump to content
Sadikhov IT Certification forums

ninja911

Members
  • Content Count

    100
  • Joined

  • Last visited

Community Reputation

0 Neutral

About ninja911

  • Rank
    Member
  1. ninja911

    CCIE RnS Study Partner

    I am interested as well
  2. ninja911

    CCIE RS Study Groups - Need a Partner?

    I am interested as well. add me to the group michoco911@yahoo.com
  3. ninja911

    IPsec VPN

    what do you mean by quick mode negotiation? i configured several VPNs and this is the first time i hear about it
  4. ninja911

    IPSec Over GRE with HSRP HA

    you mean one Tunnel from the branch site to the Virtual IP of the HO routers, right?
  5. ninja911

    IPSec Over GRE with HSRP HA

    The link shared is for an IPSec over GRE tunnel between one router and a VPN concentrator. my setup contains two devices in the HO and not one, running HSRP for redundancy. should we create one tunnel on the branch pointing to the WAN HSRP virtual IP address? or we should create two tunnels, each one pointing to the physical real IP address of each WAN interface of the HO routers? In addition, shall we apply the crypto map on the tunnel interface only or the physical interface as well?
  6. Hello, Is it possible to configure IPSec over GRE, between a branch router and HO Routers (Primary/Backup)running HSRP on both inside and outside interfaces? I have tested it with IPSec alone, and the below configuration is working. Can we convert the same configuration/setup, but with IPSec over GRE tunnel, instead of IPSec alone?? Branch Site Router hostname Remote_Branch crypto isakmp policy 1 hash md5 authentication pre-share exit crypto isakmp key cisco123 address 172.16.1.1 crypto isakmp keepalive 10 crypto ipsec transform-set myset esp-des esp-md5-hmac exit crypto map vpn 10 ipsec-isakmp set peer 172.16.1.1 set transform-set myset match address 101 exit interface Loopback0 ip address 20.20.20.20 255.255.255.0 exit interface ethernet1/0 description WAN Interface with HO ip address 172.16.1.100 255.255.255.0 no shutdown crypto map vpn exit ip route 192.168.1.0 255.255.255.0 172.16.1.1 ip route 99.99.99.99 255.255.255.0 172.16.1.1 access-list 101 permit ip 20.20.20.0 0.0.0.255 host 99.99.99.99 HO Primary Router hostname HO_Primary_Router crypto isakmp policy 1 hash md5 authentication pre-share exit crypto isakmp key cisco123 address 172.16.1.100 crypto isakmp keepalive 10 crypto ipsec transform-set myset esp-des esp-md5-hmac exit crypto map vpn 10 ipsec-isakmp set peer 172.16.1.100 set transform-set myset match address 101 exit interface ethernet1/0 description WAN Interface with Branch Site ip address 172.16.1.2 255.255.255.0 no shutdown standby 1 ip 172.16.1.1 standby 1 priority 200 standby 1 preempt standby 1 name VPNHA standby 1 track ethernet1/1 150 crypto map vpn redundancy VPNHA exit interface ethernet1/1 description LAN Interface ip address 192.168.1.2 255.255.255.0 no shutdown standby 2 ip 192.168.1.1 standby 2 priority 200 standby 2 preempt standby 2 track ethernet1/0 150 exit ip route 20.20.20.0 255.255.255.0 172.16.1.100 ip route 99.99.99.0 255.255.255.0 192.168.1.100 access-list 101 permit ip host 99.99.99.99 20.20.20.0 0.0.0.255 HO Backup Router hostname HO_Backup_Router crypto isakmp policy 1 hash md5 authentication pre-share exit crypto isakmp key cisco123 address 172.16.1.100 crypto isakmp keepalive 10 crypto ipsec transform-set myset esp-des esp-md5-hmac exit crypto map vpn 10 ipsec-isakmp set peer 172.16.1.100 set transform-set myset match address 101 exit interface ethernet1/0 description WAN Interface with Branch Site ip address 172.16.1.3 255.255.255.0 standby 1 ip 172.16.1.1 standby 1 priority 100 standby 1 preempt standby 1 name VPNHA standby 1 track ethernet1/0 crypto map vpn redundancy VPNHA exit interface ethernet1/1 description LAN Interface ip address 192.168.1.3 255.255.255.0 standby 2 ip 192.168.1.1 standby 2 priority 100 standby 2 preempt standby 2 track ethernet1/1 exit ip route 20.20.20.0 255.255.255.0 172.16.1.100 ip route 99.99.99.0 255.255.255.0 192.168.1.100 access-list 101 permit ip host 99.99.99.99 20.20.20.0 0.0.0.255 HO Internal LAN Router hostname Internal_HO_LAN interface ethernet1/0 desription LAN Interface ip address 192.168.1.100 255.255.255.0 no shutdown exit interface lo0 ip address 99.99.99.99 255.255.255.0 exit ip route 0.0.0.0 0.0.0.0 192.168.1.1
  7. ninja911

    CCIE Lab Schedule Link Not Working

    Hi All, I am trying to access the Cisco CCIE Lab link for scheduling and payments, however each time i enter my username/password i am redirected again to the main Cisco.com website page. https://tools.cisco.com/CCIE/Schedule_Lab/CCIEOnline/CCIEOnline Any clue about that? Thanks in advance, Regards,
  8. ninja911

    MPLS In CCIE Routing and Switching

    Hi Enigma, Just one question about 360 program Labs. Can anybody just purchase them through NMC website with a credit card? or they should be a special procedure for that? Because i am interested in purchasing their workbook and the video lessons on troubleshooting and MPLS. Regards,
  9. ninja911

    MPLS In CCIE Routing and Switching

    To what extent should we master the MPLS in the new R&S Labs? are all topics covered or only part of them? Is it limited to frame-mode MPLS or we should also know Cell-Mode MPLS? Thanks in advance for the clarification.
  10. ninja911

    ccie& mpls

    If it is the case, they would have updated the Lab blueprint or at least posted it in the CCIE news and announcements page. So it suppose it is still with frame relay for the moment.
  11. ninja911

    Got my number Today!

    Congratulations man. Finally you received the results of your long studies. Awaiting your full story of success.
  12. ninja911

    my "success story" to CCIE R&S

    Congratulations for your new number.
  13. Dear Tuner X, are you using the v4.1 or v5 topology? if i need to practice workbook II of IEWB, will i need all these 17 ethernet interfaces?? i would appreciate if you can provide me with the optimal setup needed (HW and ethernet connections) along with the inet configuration file for that. Thanks in advance.
  14. Hi Wizard. Ca you give me your config that you are using? How many PCs and how many network cards in each do you need? Do you have a config for V4.1? Your help is appreciated.
  15. Hi All, i am planning to start my labs practice with the IEWB Workbook V4.1 I have 4 real Catalyst 3560 switches and 2 Cisco 2811 routers and plan to use Dynamips for the rest. Kindly advice whether it will be possible to fully practice and test the workbook labs with these material without the need of rack rental. What will i need to make dynamics run correctly with these HW and can anybody advice about a configuration file for that. Thanks in advance.
×