Tuesday, April 26, 2016

CCNAv2 Completed Packet Tracer

Greetings, and welcome to Seeseenayy.
Packet Tracer Details: Someone messed up the network and we need to diagnose, then correct, all issues within this network.

A contractor restored an old configuration to a new router running NAT. But, the network has changed and a new subnet was added after the old configuration was backed up. It is your job to get the network working again.

Below you will find a download of the completed packet tracer file. It is recommended that you read the tutorial or so. 


Alternatively, you may use the commands from the tutorial to complete this PT.
Tutorial / Walk-through

First, lets see our current configuration by utilizing the 'show run' command.

R2#show run

By a closer inspection of the following:
ip nat pool R2POOL netmask
ip nat inside source list 101 pool R2POOL
ip classless
ip route
ip route
ip flow-export version 9
access-list 101 permit ip any

It is able to be determined that:
1a. There is a missing statement for the second network.
1b. That missing statement needs to be translated.
1c. The address in question is the "" address.
    i. for later notice, the wildcard masks for both networks is which     covers both and

Upon further inspection of the config, we can observe this segment:
interface Serial0/0/0
ip address
ip nat inside
clock rate 2000000
interface Serial0/0/1
ip address
ip nat outside
clock rate 2000000


It is able to be determined that:
2. They switched outside and inside interface types.

Lets resolve this issue by editing the present access list within R2.
R2#conf t
Enter configuration commands, one per line. End with CNTL/Z.
R2(config)#no ip access-list extended 101
R2(config)#ip access-list extended 101

R2(config-ext-nacl)#permit ip any
R2(config)#int s0/0/0
R2(config-if)#ip nat outside
R2(config)#int s0/0/1
R2(config-if)#ip nat inside


So essentially what we did is we: modified the access list to correct an invalid IP address, and changed the direction of the serial NAT faces (outside and inside switched).
Both PCs should be able to ping the designated objects.

No comments:

Post a Comment

Feel free to comment if you have a question, commendation, or concern. We love to hear your feedback!

Please do not share links to external websites if it not relevant to discussion. We reserve our right to remove any content we deem advertising.