Home > AAAdot1x Lab Sim

AAAdot1x Lab Sim

March 3rd, 2017 in Lab Sim, LabSim Go to comments

Question

Answer and Explanation

 

1) Configure ASW1

Enable AAA on the switch:
ASW1(config)#
aaa new-model

The new-model keyword refers to the use of method lists, by which authentication methods and sources can be grouped or organized.

Define the server along with its secret shared password:
ASW1(config)#radius-server host 172.120.39.46 key rad123

ASW1(config)#aaa authentication dot1x default group radius
This command causes the RADIUS server defined on the switch to be used for 802.1x authentication.

Globally enable port-based authentication (802.1x) on a switch:
ASW1(config)#dot1x system-auth-control

Configure Fa0/1 to use 802.1x:

ASW1(config)#interface fastEthernet 0/1
ASW1(config-if)#dot1x port-control auto
Notice that the word “auto” will force connected PC to authenticate through the 802.1x exchange.

2) Configure DSW1:

Define an access-list:
DSW1(config)#ip access-list standard 10 (syntax: ip access-list {standard | extended} acl-name)
DSW1(config-std-nacl)#permit 172.120.40.0 0.0.0.255
DSW1(config-std-nacl)#exit

Define an access-map which uses the access-list above:
DSW1(config)#vlan access-map MYACCMAP 10 (syntax: vlan access-map map_name [0-65535] )
DSW1(config-access-map)#match ip address 10 (syntax: match ip address {acl_number | acl_name})
DSW1(config-access-map)#action forward
DSW1(config-access-map)#exit

DSW1(config)#vlan access-map MYACCMAP 20
DSW1(config-access-map)#action drop (drop other networks)
DSW1(config-access-map)#exit

Apply a vlan-map into a vlan:
DSW1(config)#vlan filter MYACCMAP vlan-list 20 (syntax: vlan filter mapname vlan-list list)

DSW1#copy running-config startup-config

(Notice: Many reports said the copy running-config startup-config didn’t work but they still got the full mark)

Note: If the requirement of this sim states that “not to use named ACLs” then you should configure number ACL instead:

DSW1(config)#access-list 10 permit 172.120.40.0 0.0.0.255

Other lab-sims in this site:

LACP with STP Sim
MLS and EIGRP Sim
VTP Lab 2
VTP Lab
Spanning Tree Lab Sim

Comments
Comment pages
1 35 36 37 41
  1. BEO
    April 10th, 2017

    Hello everybody,
    Could you please provide me the new ccnp switch questions exam ?

    bilalemreozgun%@% hotmail . com

  2. Soldier
    April 10th, 2017

    Does anyone have the latest dump??? Please link it in the forum

  3. Anonymous
    April 10th, 2017

    Hello, I am taking my exman in 2 days, any help would be appreciate, edgarlopez298 in msn com domain

  4. Banton
    April 10th, 2017

    Hello,

    I’ll pass m’y exam in 2 days.Could you send To me some information about the valides Dumps please.
    My email is {email not allowed}
    Thks,

  5. Kyaw Zin Oo
    April 11th, 2017

    HRSP lab is not same with this dump. Another lab is same AAA, LACP.

  6. Small Boy
    April 11th, 2017

    anyone just pass CCNP switch exam please help share the valid dump
    thanks

  7. chetana
    April 11th, 2017

    @kyaw Thanks for the info :) ..should we need to wait for the new dumps or is it like that questions will be likely to change always ..

  8. KKK
    April 14th, 2017

    Can anyone please update if the dumps are still Valid, I have my exam on Sunday

  9. CCNP student
    April 17th, 2017

    I don´t know Why in this example this line puted it

    radius-server host 172.120.39.46 key rad123

    if the server have the IP 172.120.40.46 ? it is Is this a mistake or am I wrong ??

  10. AAA
    April 18th, 2017

    I think 172.120.40.46 should be right, because it’s written in the question and it fits in the access-list

  11. fleshgod
    April 19th, 2017

    I believe many are confused. I have not seen one AAA lab configuration in which someone named the ACL. However, you do have to name the VLAN ACCESS-MAP. I think that is where the confusion lies.

    ip access-list standard 10
    permit x.x.x.x x.x.x.x

    the IP ACCESS-LIST STANDARD commands creates a standard access list. STANDARD is not the name of that ACL.

  12. alex
    April 19th, 2017

    if radius-server host: 172.120.39.46 witch is the second IP 172.120.40.0 ?

  13. alex
    April 19th, 2017

    I think that access-list 10 permit 172.120.40.0 0.0.0.255 is thats right?

  14. fleshgod
    April 19th, 2017

    In real life, you can name the access list and call That access list by its name instead of the number 10 like (the one used in the example).
    But, some guys here said they try it in the exam and it did NOT work so I think the safe way is to go with the number instead of the name.

  15. Anonymous
    April 19th, 2017

    Hello,
    Could you please provide me the new CCNP switch questions exam (.vce and pdf?) also how do You open them via bluestack, windows VCE software?
    matmak%@% inbox . lv

    Thank You in advance!

  16. alex
    April 19th, 2017

    Yes I named the access-list with name 10 > access-list 10 permit x.x.x.x x.x.x.x
    Do you know in the real exam how many questions have? I will going to my exam soon and I need more information about it.

  17. AAA
    April 20th, 2017

    failed yesterday (73,8%). Got 38 questions (incl. 3 labs, 3 Drag&Drop). I think about 15-18 new questions, labs are the same. For AAA lab: “named ACLs are not supportet”.

  18. alex
    April 20th, 2017

    3 Drag&Drops ? I know it have only one Drag&Drops. Please provide me information about the new questions and Drag&Drops.

  19. Evil-God
    April 22nd, 2017

    Link to Free download CCNP Switch 300-115 Dumps (28/03/2017)

    https://yadi.sk/i/Gllj0GVk3H8DfK

    Note!!! Site will go Down in 10hours!!!!

  20. Switchelp
    April 23rd, 2017

    @AAA 15-18 new questions , remember something ? ( the question are changed this month … )

  21. Evil-God
    April 23rd, 2017

    Link to Free download CCNP Switch 300-115 Dumps (28/03/2017)

    https://yadi.sk/i/Gllj0GVk3H8DfK

    Note!!! Site will go Down on Monday!!!!

  22. najam
    April 23rd, 2017

    how many questions now in valid dums??? cz i seen 3 drag n drop n different questions in exam so plz guide me

  23. Ether-Guy
    April 24th, 2017

    One of my students went to write on the 20th and she failed, below is the feedback:
    191+21 questions
    LABS:
    -AAA dot1x is still the same
    -STP-LACP still the same however the instructions specifies that “Trunk related commands has to be configured under the Physical interfaces, not the port-channel interface
    Drag and Drops
    -There are additional two drag and drops
    There is additional pool of questions introduced.
    Please assist with updated material.

  24. Anonymous
    April 25th, 2017

    hello friends,

    Can someone send me the latest 300-115 dumps to {email not allowed}

  25. paco_rodriguez79
    April 25th, 2017

    Hello Guys:
    Could someone share with me the new latest valid 300-115 dumps, please?
    My e-mail: paco_rodriguez79%@% hotmail . com
    Thank you.

  26. Paul
    April 26th, 2017

    Please can someone send new dumps to poulreis at gmx dot com exam on Sat, please…

  27. sam
    April 27th, 2017

    please can someone share the latest valid dump for 300-115
    ough@ hotmail .com

  28. Anonymous
    April 29th, 2017

    i got an 58% in the layer 2 tech, 92% security, and 88% services still failed this test is weighted heavy

  29. Anonymous
    April 29th, 2017

    please send the latest dump to utivo@yahoo dotcom

  30. Vichet
    May 2nd, 2017

    Please help, I got this error in AAAdot1x Lab Sim
    Switch(config)#aaa new-model
    Switch(config)#radius-server host 172.120.40.46 key rad123
    Warning: The CLI will be deprecated soon
    ‘radius-server host 172.120.40.46 key rad123’
    Please move to ‘radius server ‘ CLI.

  31. TJ08
    May 2nd, 2017

    Hi, can someone share the new dumps here? Tnx in advance.

  32. SAM
    May 3rd, 2017

    Anyone can confirm if 191q is still valid?

  33. Alex2
    May 3rd, 2017

    SAM, 191q is valid but there is missing around 30 new questions & 3 new drag and drop excercises.

    I am looking for the last 15 new qestions and the new 2 or 3 drag and drop exercises.

    Does anyone has the latest and coukd you please share?

  34. Alex2
    May 3rd, 2017

    Hi Anonymous,

    If you do the average of your score, it should be 793, you should have passed the exam. I noticed we should are ok on the 2 labs (AAA & STP-LACP), if one of them are bad I think even though all the questions are ok, the exam will be failed.

    Anyone has any comment or feedback about the score?

  35. Saqib
    May 3rd, 2017

    if you required latest and valid dumps, please contact: saqib.hussain@hotmail dotcom
    only £20 , paypal

  36. Sivaji
    May 3rd, 2017

    Sivaji May 3rd, 2017
    Can someone please share the labs for AAA dot1x and HSRP Ferris (Packet Tracer files), so I can do practice, Thanks

  37. Anonymous
    May 4th, 2017

    I had exam today, new 10 questions. I didnt pass :( . Labs are same.

  38. anonymous
    May 4th, 2017

    hello ; i want to pass switching exam but i want to know if we have posibility to use tabulation?

  39. anonymous
    May 6th, 2017

    Took the exam today… 3 new drag and drop… atleast 15 new questions… the test is too different now… Failed…

  40. SAM
    May 7th, 2017

    @CCNP student
    from where you got the L2-IPBASEK9-M-15.1-20121123.bin and i86bi-linux-l2-adventerprisek9-15-2d.bin for GNS3 – AAA Lap?

    if Anyone has it plz share

  41. Zahid
    May 11th, 2017

    Seems no one has the latest dump

  42. Anonymous
    May 17th, 2017

    Pass on 15th May with 842/1000. 47 questions in 180 mn.
    LABS LACP/do1x/Debug HSRP.
    New question about STP (port), port-security

  43. Anonymous
    May 20th, 2017

    can someone please share me new dumps phaniraj0808 @ gmail.com

  44. KienNT
    May 21st, 2017

    Hi Anonymous
    Please, send me dumps version May – you pass
    ngocthanhkien9200 @ gmail dot com
    Thanks .

  45. John
    May 22nd, 2017

    can anyone send me the latest dump and share the link for CCNP switching and tshoot, i will really appreciate or email me itmann at outlook dot com.

    Regards,
    John

  46. Nik
    May 23rd, 2017

    Hi ,
    can someone please send me the updated labs and sims for CCNP switch
    {email not allowed}
    Thanks :)

  47. Nik
    May 23rd, 2017

    Hi ,
    can someone please send me the updated labs and sims for CCNP switch
    dutta762269@ gmail dot com
    Thanks :)

  48. paco_rodriguez79
    May 23rd, 2017

    Could someone share with me the new latest valid 300-115 dumps, please?
    My e-mail: paco_rodriguez79%@% hotmail . com
    Thank you.

Comment pages
1 35 36 37 41
  1. No trackbacks yet.