Sei sulla pagina 1di 29

Preparing for the Cisco CCIE Service Provider Lab Exam Part I of III

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

Disclaimer

This presentation is the first of a three-part introduction to the Cisco CCIE Service Provider lab exam. Although this presentation is not to be considered a course, it will give you some useful information and tips for preparing to take your lab exam.

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

Topics
PART I Session 1 Session 2 Session 3 PART II Session 4 Session 5 Session 6 PART III Session 7 Session 8 Session 9 Lab Overview Layer 2 Protocol IGP Protocol BGP Protocol MPLS, VPN, and TE SP Multicast QOS and Security Sample Questions Resources and Test-Taking Tips

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

Session 1
CCIE Service Provider Lab Overview

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

CCIE Service Provider Lab Exam: Locations


Hong Kong Beijing RTP Brussels

Sydney

San Jose

San Paulo

There are seven worldwide CCIE Service Provider lab locations.


Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

CCIE Service Provider Lab Exam: Equipment and Cisco IOS Version
The lab may test any feature that can be configured on the equipment and Cisco IOS versions that are listed below and that are on the CCIE website. More recent versions may be installed in the lab, but you will not be tested on them. Cisco 7200 series routers
Cisco IOS 12.2S (SERVICE PROVIDER/SECURE SHELL 3DES)

Cisco 3700 series routers


Cisco IOS 12.3T (ENTERPRISE PLUS/H323 MCM)

Cisco 3600 series routers


Cisco IOS 12.3T (ENTERPRISE PLUS/H323 MCM)

Cisco 2600 series routers


Cisco IOS 12.2T (ENTERPRISE PLUS/H323 MCM)

Catalyst 3550 series switches


Cisco IOS 12.2 (IP SERVICES)

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

Cisco Service Provider Lab Exam: Equipment in the Rack


The equipment on the rack assigned to you is physically cabled, and you should NOT tamper with it. Before starting the exam, confirm the working order of all devices in your rack. During the exam, if any device is locked or inaccessible for any reason, you must recover it. When finishing the exam, ensure that all devices are accessible for the grading proctor. Any devices that are not accessible for grading cannot be marked and may cause you to lose substantial points.

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

CCIE Service Provider Lab: Logical Layout


ATM/Eth BB

High-end routers form multiple AS SP core. Low-end routers and switches run as access routers. Backbone routers provide diverse information injection.

SP Core

Access Net

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

CCIE Service Provider Lab Exam: Rack Access


Candidate Workstation Candidate Rack

Ethernet Candidate PC Comm Server Corp Network Exam Routers

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

Session 2 CCIE Service Provider Lab Exam: Layer 2 Protocol

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

10

CCIE Service Provider Lab Exam: Preconfiguration


The CCIE Service Provider lab exam is preconfigured with basic Layer 2 protocol on the devices, giving the candidate more exam time to work on service provider-specific technologies. The routers and switches in your topology have these preconfigurations:
Basic IP addressing, hostname, and passwords Switching: trunk, VLAN Trunking Protocol (VTP), and VLANs Frame Relay: data-link connection identifier (DLCI) mapping (static and dynamic) All preconfigured passwords are 'cisco'

Do NOT change any preconfiguration on any device(s) unless explicitly stated in a question.
Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

11

CCIE Service Provider Lab Exam: Layer 2 Preconfiguration Verification


Candidate is responsible for making sure that the preconfiguration is working properly. Here are useful commands to verify pre-configuration:
show vtp domain show vtp status show vlans show interface trunk show frame-relay map show frame-relay pvc show interface (type) (s/p.x)

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

12

CCIE Service Provider Lab Exam: Frame Relay


Terms to know:
DLCI: data-link connection identifier LMI: Local Management Interface FECN: forward explicit congestion notification BECN: backward explicit congestion notification DE: discard eligible Bc: committed burst size Be: excess burst CIR: committed information rate MinCIR: minimum committed information rate Tc: committed rate measurement interval
Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

13

CCIE Service Provider Lab Exam: Frame Relay (Cont.)


Features to practice:
Traffic shaping Multilink Fragmentation

FR

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

14

CCIE Service Provider Lab Exam: PPP


Terms to know:
LCP: Link Control Protocol NCP: network control point PAP: Password Authentication Protocol CHAP: Challenge Handshake Authentication Protocol

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

15

CCIE Service Provider Lab Exam: PPP (Cont.)


Features to practice:
Authentication PPP multilink Fragmentation and interleaving Compression PPPoE

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

16

CCIE Service Provider Lab Exam: ATM


Terms to know:
PVC: permanent virtual circuit SVC: switched virtual circuit VPI: virtual path identifier VCI: virtual circuit identifier ILMI: Integrated Local Management Interface AAL: ATM adaptation layer

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

17

CCIE Service Provider Lab Exam: ATM (Cont.)


Features to practice:
PVC and SVC RFC 1577 PPP over ATM Traffic shaping and policing Frame Relay ATM Interworking

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

18

Session 3 CCIE Service Provider Lab Exam: IGP Protocol

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

19

CCIE Service Provider Lab Exam: IS-IS Addressing


IDP
AFI IDI Variable Length Area Address

DSP
High-Order DSP System ID 6 Bytes NSEL 1 Byte

Area address: Variable-length field composed of high-order octets of the NSAP, excluding the SystemID and NSEL fields. SystemID: Defines an ES or IS in an area; Cisco implements a fixed length of 6 octets for the SystemID. NSEL: Selector, also designated as N-selector; it is the last byte of the NSAP and identifies a network service user (transport entity or the IS network entity itself). Example:
49.0002.0000.0000.5555.00 Area = 49.0002, SysID = 0000.0000.5555, Nsel = 00
20

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

CCIE Service Provider Lab Exam: IS-IS Router Level


Intermediate System-to-Intermediate System (IS-IS) has a 2-layer hierarchy: Backbone and Area An intermediate system can be:
Level 1 router (intra-area routing) Level 2 router (inter-area routing) Level 1-2 router (intra and inter-area routing)

Level 1 router
Has neighbors only on the same area Has the Level 1 link-state database (LSDB) with all routing information for the area Use the closest Level 2 router to exit the area

Level 2 router
May have neighbors in other areas Has a Level 2 LSDB with all information about inter-area routing

Level 12 router
May have neighbors on any area Has two LSDBs: Level 1 and Level 2
Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

21

CCIE Service Provider Lab Exam: IS-IS Backbone


Backbone must be Layer 2 contiguous.
L1-Only L1L2 Area-2 L1L2 Area-1 L1L2 L1-Only L1-Only Area-4 L1L2 L1-Only L1L2 L2-Only Area-3

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

22

CCIE Service Provider Lab Exam: IS-IS Circuit Types


Circuit type
Level 1 only Level 2 only Level 12 (default)

Link type
Point-to-point LAN
Designated router or Designated Intermediate System (DIS) is elected based on interface priority, with the highest MAC address being the tie-breaker.

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

23

CCIE Service Provider Lab Exam: IS-IS Commands


Router commands
router isis (tag) net XX.XXXX. ... .XXX.XX is-type level (X) redistribute (routing protocol)

Interface commands
ip router isis (tag) frame-relay map clns (dlci) broadcast isis circuit-type level (x) isis priority (value)

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

24

CCIE Service Provider Lab Exam: IS-IS Commands (Cont.)


Verify and Troubleshooting Commands
show clns protocol show clns neighbor show clns interface show isis database detail show isis topology debug isis adj-packets debug isis spf-events debug isis authentication information

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

25

CCIE Service Provider Lab Exam: IS-IS Practice


Features to practice:
Multiple network entity titles (NETs) Metric adjustment Node or link level Fast hello Authentication Layer 2 to Layer 1 routes leaking Overload bit signalling

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

26

CCIE Service Provider Lab Exam: Open Shortest Path First (OSPF) Terminology
Link-state advertisement (LSA) Type: router LSA, network LSA, summary LSA, external LSA, and opaque LSA Area, backbone, Area Border Router (ABR), and Autonomous System Boundary Router (ASBR) Media type: point-to-point, broadcast, and nonbroadcast Cost and router ID Hello, flooding, and SPF calculation
Note: Advanced OSPF features such as stub, not-so-stubby area (NSSA), virtual link, and demand circuit are not tested in the CCIE Service Provider lab exam.
Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

27

CCIE Service Provider Lab Exam: OPSF Commands


Router commands
router ospf (process ID) network x.x.x.x area y.y.y.y neighbor x.x.x.x

Interface commands
ip ospf network ip ospf priority ip ospf hello-interval

Show commands
show ip ospf interface show ip ospf neighbor show ip ospf database
Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

28

This presentation will be continued in Part II

Preparing for the Cisco CCIE Security Provider Lab Exam

Posted to the Cisco Learning Network www.cisco.com/go/learningnetwork

2008 Cisco Systems, Inc. All rights reserved.

29

Potrebbero piacerti anche