上个月考完NA 之后就想着考NP了,结果一个月考完,一个星期一门,路由961,交换979,排错1000。路由交换题库就不说了,看看论坛精品贴里的视频多敲几次加以 理解都没问题,说说排错吧,最容易挂却也是最简单的一门,但在我看来是最难的一门,也许是压轴的关系,准备起来是比较有压力的,话不多说,进入正题,以下 是我汇总论坛帖子所总结出来的经验: 排错选择题6道, case 题题库中4大道,考试中是2大道。EIGRP AS,DHCP, 以及HSRP这三道题不考。两个常用命令,一个是show run,还有一个就是ping。考前把13个错误点以及对应的设备写好. 先要用ipconfig查看默认网关再用client 1ping server,通,IPV6出了问题;没通,ipv4的问题。pc 上ipconfig 看到的IP是 169.x.x.x 但是考试的时候在pc上ipconfig 看到的都是10.2.1.3这个ip。再之后分为通网关和不通网关 Ipv4: 不通服务器 不通网关: x4 DSW1: vlan filter--àVLAN ACL/Port ACL DSW1: x1 vlan access-map test1 10 action drop match ip address 10 vlan access-map test1 20 action drop matich ip address 20 vlan access-map test1 30 action forward match ip address 30 vlan access-map test1 40 action forward (no)vlan filter test1 vlan-list10 vlan filter test 1 vlan-list 对应vlan filter (第2个选择题的选项记得下拉,否则看不到正确选项) ASW1: x3 1. port-security--àPort Security ASW1: Interface FastEthernet1/0/1 … (no)switchportport-securitymac-address 0000.0000.0001 Interface FastEthernet1/0/2 … (no)switchportport-securitymac-address 0000.0000.0002 Fa1/0,2/0多了switchport port-security mac-addressxxxx 对应port-security) 2. switchport vlan--àAccess vlan ASW1: Interface FastEthernet1/0/1 switchport mode access (switchport access vlan 10) Interface FastEthernet1/0/2 switchport mode access (switchport access vlan 10) 没有出现switchport access vlan 10,是switchport vlan这题 Fa1/0,2/0下少了switchport access vlan 10 对应着 switchportvlan 3. swtichport trunk--àSwitch to SwitchConnectivity ASW1: Interface PortChannel23 switchport mode trunk switchport trunk allowed vlan 20 200(10,200) port-channel 13,23下面缺少switchport trunk allowed vlan 10,200 对应着switchport trunk,在13 23下看到switchport trunk allowed vlan 20,200 。但是当你选择选项时,还要按照题库中给的选择,即把switchport trunk allowe none 换成switchporttrunk allowed vlan 10 ,200 通网关 x6 不通R4上串口 R4: x2 1. EIGRP interface passive--àIpv4 EIGRP Routing R4: router eigrp 10 passive-interface default(Remove it in Interface f0/1 andf0/0) redistribute ospf 1 route-map OSPF->EIGRP network 10.1.4.4 0.0.0.3 router eigrp 10下面多passive interface default对应eigrppassive interface 2. EIGRP redistribute--àIpv4 Route Redistribution R4: router eigrp 10 redistribute ospf 1 metric 100 10 255 11500 route-map EIGRP_to_OSPF(OSPF -> EIGRP) router ospf 1 network 10.1.1.8 0.0.0.0 area 34 redistribute eigrp 10 subnets route-map EIGRP->OSPF route map 有两个,一个OSPF->EIGRP,一个EIGRP->ospf,考OSPF->EIGRP, R1: ping不通10.1.1.1 、通10.1.1.2 1. ospf authentication--àipv4ospf routing 通R2不通R1 pingR2上串口通,ping R1下口不通 则对应的问题是ospfanthentication. 看仔细是在接口下ospf的认证少一条命令,不是在ospf 1下面。R2上 show ip ospf nei有邻居, R1上show ip ospf nei没有邻居即为此 ping通10.1.1.1 2. BGP neighbour--àBGP R1: router bgp 65001 neighbor 209.56(65).200.226remote-as 65002 BGP的neighbor的ip 写成209.56.200.226则对应的是 BGPneighbor的问题 3. NAT ACL--àIPNAT R1: ip access-list standardNat_Traffic permit 10.1.0.00.0.255.255 (Permit10.2.0.0 0.0.255.255) access-list 30 permit209.65.200.2240.0.0.3 access-list 30 permit host209.65.200.241 缺少了10.2.0.0 0.0.255.255,其它题目R1通过show run 的结果的是: ip access-list standardNat_Traffic permit 10.1.0.00.0.255.255 permit 10.2.0.00.0.255.255 R1的acl,如果缺少permit 10.2.0.0 0.0.255.255 对应 NAT ACL的问题 4. R1 ACL--àIpv4layer 3 security R1: ... ip access-list edge_security deny ip127.0.0.00.255.255.255 any ip access-list edge_security permit ip host209.65.200.241 any (ip access-list edge_securitypermit ip host 209.65.200.224 0.0.0.3 any) 没有ip access-list edge_security permit 209.65.200.224 0.0.0.3 ,其它题目中的R1都没有在结尾出现这么多any的 R1在ip access-list edge securit下缺少permit 209.65.200.224 0.0.0.3 (有很多any那里)则对应R1 ACL IPV6: x3 通web服务器: 先去R2 - show ipv6 ospf neighbor, 只有一个邻居 - R2问题,ospf通告。R2如果没问题,去R3 - showipv6 ospf neighbor, 只有一个邻居,R3问题,GRE模式错误。最后就是R4 IPV6重分布问题。 R2: ipv6 ospf--à IPv6 OSPF Routing (R2与R3相比,R2的interface s0/0/0/0.23缺少ipv6 ospf 6 area 0) R2: ipv6 unicast-routing!ipv6 router ospf 6 router-id 2.2.2.2! interface s0/0/0/0.23 ipv6 address 2026::1:1/122 R3: ipv6 unicast-routing ! ipv6 router ospf 6 router-id 3.3.3.3 ! interface s0/0/0/0.23 ipv6 address 2026::1:2/122 ipv6 ospf 6 area 0 R2--- 在interface 0/0/0.23下面,缺少ipv6 ospfarea 0 对应的问题是ipv6 ospf R3: ipv6 tunnel--àIPV4 and IPV6 Interoperability (R3与R4 Interface Tunnel 34相比R3多出Tunnel mode ipv6) R3: interface Tunnel34 ipv6 address 2026::34:1/122 ipv6 ospf 6 area 34 Tunnel source loopback3 Tunnel destination 4.4.4.4 Tunnle mode ipv6 R4: (R4 Ipv6 router ospf 6缺少redistribute ripRIP_ZONE include-connected) interface Tunnel34 ipv6 address 2026::34:2/122 ipv6 ospf 6 area 34 Tunnel source loopback4 Tunnel destination 3.3.3.3 R3----在tunnel 34 下面多了一条tunnel modeipv6 对应的问题是ipv6 tunnel (R3与R4 Interface Tunnel 34相比R3多出Tunnel mode ipv6) R4: ipv6 redistribute--à IPv6 OSPF Routing R4----在ipv6 router ospf 6下,缺少了redistributeRIP_ZONE 与redistributeconnected对应的 ipv6 redistribute (R4 Ipv6 router ospf 6缺少redistribute rip RIP_ZONEinclude-connected) 以上是复习文档,还有常用的1个以附件形式发出 还有解题万金油? 嗯,我这有两张图片,出自论坛,接着就是发一下考试在檫写板上该写的东西,再申请一下勋章,最后再说一句,虽然证书很重要,但是技术是真正衡量一个人水平的真正水准,终究还是要靠技术吃饭,接下来该巩固一下所学的东西了...大家加油,就这样~
* [% {! k7 _5 n2 ?9 K2 i+ j
" ?+ C4 T2 h9 C& r# g2 }7 H |