Sei sulla pagina 1di 1

LM-WIN2012-DC1 LM-FMC1

(Domain Controller
(Cisco Firepower MC 6.1)
DNS/CA)

VLAN32 .40 .107


172.16.32.0/24

Transparent FW (BVI .249)


.250 Loopback101
172.16.14.1/24 Loopback100
Loopback0
1.1.0.1/24
192.168.0.1
mgmt OSPF Area 14 Loopback101
Loopback0 LM-GATEWAY 1.1.1.1/24
LM-HQ-FW2 172.16.0.3 Loopback102
1.1.2.1/24
VLAN332 LM-HQ-R2 Loopback100
BGP AS 200
.2 Gi0/0 172.16.13.1/24 .1
172.16.12.0/24
VLAN10 VLAN192
OSPF Area 12
.1 Gi1/4 192.168.10.0/24
.1 172.16.10.0/24
Loopback0 .1 OSPF Area 0 .2 Gi1/1 .251 BGP AS 100
SW1 Internet
172.16.0.1 Gi1/2 Gi1/3
mgmt .250

LM-HQ-FW1 Routed FW

SW1
OSPF Scenarios
1. Create OSPF adjacencies to SW1 and HQ-R2
2. Replace static redistribution to BGP for inside routes with OSPF redistribution
3. Create Virtual Link to connect Area 14 to Backbone, test, then remove
4. Summarize DMZ subnets to 172.16.12.0/23 LM-HQ-R1
5. Redistribute BGP routes within 1.1.0.0/23 to OSPF with Metric 100 Type 1
6. Prevent HQ-R2 from seeing 172.16.10.0/24 inter-area route
7.1 Prevent HQ-FW1 from having routes to 172.16.48.0/20 subnets
7.2 Prevent HQ-FW1 from advertising 1.1.1.0/24 route to OSPF
8. Summarize the remaining 1.1.x.x routes into 1.1.0.0/23
9. Enable MD5 authentication on Area 0 with password cisco

Potrebbero piacerti anche