|
I failed the exam the other day
7 X; g4 w: I8 T* `
/ g# O7 U; |- y0 C8 y6 [The fail was down to the config as I was not up to speed on the A3-4 variation and had forgot the flows etc and it was just too difficult in the short time to do it all. I lost a lot of memory also but that is life.
. |( R; h0 c6 Z: }( f1 d
+ r x- Y/ Q$ V" N- {3 ZTshoot - Old - Pass
/ h, A3 Y- I) A* l- V1 - Add vlan 12 between SW 1 and 2. \ c% z) |9 ?! V' p# L
2 - ppp missing on R17. removed chap callout, no ppp route acceptance% t Z% N) G j/ a+ k
3 - Cost on R22 & wrong ospf PID on one of the routers
5 x5 @3 ^( u- L( Z0 H, k \4 - had to add metric 1 1 1 1 1 1 and remove delay on R13. R13 also had passive facing R11
, Y' U& C! b! j5 [, a- h: C5 - everything worked past R2 and no matter what I tried I couldn't get the Probe 2 trace to start at R5's link. Very disappointed I couldn't solve that anyone know this one?
, j+ U% C( p* Z' [3 u' e( b0 }2 B6 - Wrong Ipv6 config on R22 aswel as wrong next hop.
. r) d# y# x3 N7 - SO many! eigrp summary - split horizon, wrong maps on R18 and R19, maybe more but I solved it. YOu need one of the 2 four pointers or you likely will fail TS.
6 f( D, f! Z& J1 C* `8 - Just couldn't get my head around this. AS-Path attribute map Was not my strongest ticket going into the exam.
W z; i. b+ [$ [; Z3 g9 - Cannot remember - I think the issue was on R7 - Maybe missing map dynamic
, G, c4 }+ L' Q10 - MAC configured under NAS interface - removed and set correct identifier under the dhcp router. - O. G! {2 B. Y3 z5 C$ ^
4 N1 l+ A, M$ W$ d4 [Diag - New DHCP and Hacker - Pass) g! M8 B5 C# K# O
- ?6 l& `* _8 f; f: E3 DProblem device - SW1 relay switch- Q( x$ j& C( b+ X# p
IP dhcp relay info trusted was empty
& G1 {7 V; E$ z' `filtered by bootp and picked the first packet where you see the mac of the server in the header. Mine was 1136 Z s1 X8 m% l
9 e# \3 u6 L( C1 [: N7 x
Hacker
) j% P# r9 g% |! R) p0 Y* ?& T0 VI took an age doing this. Its tricky the way they word it. I went through the full unscrambled script in the packets also
4 ^+ E& {. v/ }0 k+ C
! Z0 \# Q- l; w" a7 e2 N' JWhat is happening.
) t0 u' H9 [. [- c9 B& Otcp connection from router to 10.1.2.1
' k$ e' y4 K& K) c9 U4 j1 U4 Jdownload of tch script via http9 W8 D' d' S4 y5 d
session from remote host to 10.1.1.1 over port 1337' R. X8 V8 U7 I ~% M t. t% a9 D
ransomware installed via the backdoor. , y J/ M/ A" T" R6 c1 G7 `3 t
! c& l% b" I, o. otclsh copy flash via http
$ U3 J$ T" }2 C2 J& k# r2 [8 ~3 n7 Z% u- q5 |( R
Which will bring the system down. C: R+ ^. V" T$ }8 h) k
sudo poweroff2 |6 m/ Z/ l' i8 R0 Y8 S
9 d( t! X# e# z E% v6 L5 }2 fA3-4 - Fail
9 ]. E4 w9 N& E; HVRF version3 A) P3 N+ G* m8 M% R4 B1 v
# x- M3 @ k+ S+ ^* g. ^
Asked for only 3 stp instances so used MST - Layer 1 was simple I passed it all.
+ g' I" S' P. D: q& Q n0 |+ V2 N" b
As I said I don't know much about these vars. Bad bad mistake I am very mad with myself.
3 j* ]0 o1 [! K( TI got a lot of the basic igp stuff going, all the mpls, DMVPN but because I hadn't fixed a lot of other routing steps (BGP mainly) I got 0 in the respective sections. 5 s7 p1 R; d7 X9 \: h: ~
, _5 J7 E! T) X U0 @; d% {% V
s H/ j8 S; ]+ r3 BOne note to take away is another candidate got B12 and said every single ticket was different to that on the forums. They got Non vrf A3 and passed config and diag and failed due to all the new faults in B12.
0 D7 W9 M3 ?: }: K1 p
7 S, t7 W* k9 a0 O' ?only god knows what I will get next time. I put all my hopes into getting the A5 variation done and I regret this. ; c7 S8 v1 J( s9 N1 s( R% i' [
2 Z/ d. j1 ~& u# \
Anyway. It was a great experience and I will be back stronger. . f( r6 H/ \' P. f1 S/ G0 b
! s9 x1 ^$ ]& [( k0 \
Lesson learned. : {9 s# H* W2 V+ i* u
|
|