Home > AAAdot1x Lab Sim

AAAdot1x Lab Sim

May 17th, 2014 in Lab Sim, LabSim Go to comments

Question

Answer and Explanation

 

1) Configure ASW1

Enable AAA on the switch:
ASW1(config)#
aaa new-model

The new-model keyword refers to the use of method lists, by which authentication methods and sources can be grouped or organized.

Define the server along with its secret shared password:
ASW1(config)#radius-server host 172.120.39.46 key rad123

ASW1(config)#aaa authentication dot1x default group radius
This command causes the RADIUS server defined on the switch to be used for 802.1x authentication.

Globally enable port-based authentication (802.1x) on a switch:
ASW1(config)#dot1x system-auth-control

Configure Fa0/1 to use 802.1x:

ASW1(config)#interface fastEthernet 0/1
ASW1(config-if)#dot1x port-control auto
Notice that the word “auto” will force connected PC to authenticate through the 802.1x exchange.

2) Configure DSW1:

Define an access-list:
DSW1(config)#ip access-list standard 10 (syntax: ip access-list {standard | extended} acl-name)
DSW1(config-std-nacl)#permit 172.120.40.0 0.0.0.255
DSW1(config-std-nacl)#exit

Define an access-map which uses the access-list above:
DSW1(config)#vlan access-map MYACCMAP 10 (syntax: vlan access-map map_name [0-65535] )
DSW1(config-access-map)#match ip address 10 (syntax: match ip address {acl_number | acl_name})
DSW1(config-access-map)#action forward
DSW1(config-access-map)#exit

DSW1(config)#vlan access-map MYACCMAP 20
DSW1(config-access-map)#action drop (drop other networks)
DSW1(config-access-map)#exit

Apply a vlan-map into a vlan:
DSW1(config)#vlan filter MYACCMAP vlan-list 20 (syntax: vlan filter mapname vlan-list list)

DSW1#copy running-config startup-config

(Notice: Many reports said the copy running-config startup-config didn’t work but they still got the full mark)

Other lab-sims in this site:

LACP with STP Sim
MLS and EIGRP Sim
VTP Lab 2
VTP Lab
Spanning Tree Lab Sim

Comments
Comment pages
1 34 35 36 41
  1. Rafael Ricucci
    March 18th, 2017
  2. Steffi
    March 18th, 2017

    Amen and pass the Cone Bread Church Lady.. but what about…1: That 60’s musical group “The Monkeys”? inspired by…2: The Beatles…who had a little ditty called “Everyones got something to hide except me and my Monkey”3: “Planet of the Apes” with NRA member Charlton Heston no less,4: Peter Gabriel’s hit “Shock the Monkey”5: Daryl Dawkin’s “Go-Rilla Dunks”6: Cartoon Character “Magilla Gol’lra”?Yiall got some work to do

  3. Tess
    March 18th, 2017

    I love this post! It makes me want kids to cook with:) And I have to say PJ is seriously adb!role!a! He is so big too. I can’t believe how fast the time goes. Wish we lived closer to you guys! You do the funnest things, and I just love to read about them.

  4. Noah Swayzer
    March 19th, 2017

    excellent issues altogether, you just won a new reader. What could you recommend about your submit that you simply made some days in the past? Any certain?

    http://www.RNXjAvnzt9.com/RNXjAvnzt9

  5. CCIE-Dean
    March 20th, 2017

    100%, guaranteed passing material get Download package, (AllinONE) that you need to clear exam.
    All 5 Tickets in Packet Tracer
    191+13 new Qs in VCE Player and PDF.

    GET Dumps Exams questions at below link: copy to your address bar
    migre.me/w3hPS

  6. Anonymous
    March 21st, 2017

    CCIE-DEAN is this authentic ?

  7. budweiser
    March 23rd, 2017

    Hello people,

    About this AAA lab, how do i confirm if my configuration is working or not?

    When i read the lab question, i dont see any confirmation method. Normally every lab has a confirm step as you know. Can someone give me information about this?

    In the exam we just write these configuration and do what??

  8. CCNP student
    March 23rd, 2017

    Hello everybody , some know where can I get this IOS for GNS3 ??

    L2-IPBASEK9-M-15.1-20121123.bin

    i86bi-linux-l2-adventerprisek9-15-2d.bin

  9. Anonymous
    March 25th, 2017

    @skinny phat joe… I see the answers you got on the 5 questions are different from Waleeds answers

  10. Lara
    March 25th, 2017

    Guys please confirm the new questions answers, I used Waleeds ones and I failed on the 22nd and now I’m taking the exam again on Friday

  11. RON
    March 26th, 2017

    Hello Lara,

    Once you are done with the test on Friday,
    Share your experience for that and also let s know which questions are still valid ?

  12. Need Help
    March 27th, 2017

    Anyone there to help me ????

    Please help me which new 15 mcqs added in ccnp switch.
    Having paper after 3 days

    If anyone help will be thankful .. It will only take 2 mins for helping me
    Mail me or share the link
    hottin_2hot @ hotmail . com

  13. Passed
    March 27th, 2017

    Pass today….
    191 + 14 question valid lab HSRP, AAA, LACP good luck ..

    Remove “%” signs FROM BELOW LINK
    ccnp-switch300-115.blogsp%ot.co%m

  14. Lara
    March 28th, 2017

    Passed today, thanks to Waleed. Dumps 100% valid.

  15. Anonymous
    March 29th, 2017

    can I see Waleed’s answers for the new questions please?

  16. Anonymous
    March 29th, 2017

    Lara, please can you post the new questions and answers here??

Comment pages
1 34 35 36 41
  1. No trackbacks yet.