Category Archives: CCIE Security

CCIE Security v4 Lab Training – Day 1

Journal writing and note taking are key to my mastery of new subject matter. Here I will be sharing my note-taking as I master CCIE Security. I hope you enjoy the content (especially if you are also studying for CCIE Security) and perhaps it will inspire your note-taking efforts.

Videos: ACIT.in Class Video 1 – Basic ASA – record date 3/5/2015

Notes:

  • There are sections of the lab exam that are independent – for example VPN, WSA
  • DO NOT REMOVE ANY INITIALS, MODIFY THEM – for example, existing access lists
  • In the first hour of the lab exam – be sure to verify access to all devices
  • Trust diagrams and the exam paper – DO NOT trust initial configs – intentionally introduced errors abound
  • ASAs do not do CDP or ISL
  • Remember, nameif is case sensitive, follow the exact case in the question
  • Reliability tracking:
sla monitor 1
...
sla monitor schedule 1 ...
track 10 rtr 1 reachability
route outside 0 0 47.0.0.2 track 10
  • Subinterface config:
int gi0/0
no shut
int gi0/0.220
vlan 220
ip address ...
nameif ... 
security-level ...
  • 8.2 vs 8.6 – 8.6 does NAT first then access-list, so addresses referenced are private

Practice Labs:

  • Task 1: VLANs and IP Addressing
  • Task 2: Configuring RIPv2
  • Task 3: Configuring OSPF
  • Task 4: EIGRP
  • Task 5: Advanced Routing

Cisco-ASA-5510-fb

Layer 2 and the ASAv Arrive in Cisco VIRL!

The Cisco VIRL team has announced the much anticipated April upgrade yesterday (4/21/2015) that includes a true Layer 2 IOS and the ASAv functionality.

Remember, the Layer 2 IOS will count against the 15 device limit, so if you want other switches in the topology that you are not needing to configure, use the Unmanaged Switch option there.

There is a Quick and Full upgrade option available for those of running VIRL currently. For those of you needing a complete OVA install, the OVA will be made available soon.

Here is the complete information:

http://community.dev-innovate.com/t/virl-april-release-upgrade-instructions-and-release-notes/3144

Here is a list of the latest images in this product:

NEW IOSv – 15.5(2)T image

NEW IOSvL2 – 15.2.411 DSGS image

IOSXRv – 5.3.0 CCO image

CSR1000v – 3.14 XE-based image

NEW NX-OSv 7.2.0 (ZD 120)

NEW ASA1000v 9.3.2

NEW Ubuntu 14.4.2 Cloud-init

I look forward to creating many videos for you on this new version here at ajsnetworking.com.

0vZK6nnG_400x400