• Some users have recently had their accounts hijacked. It seems that the now defunct EVGA forums might have compromised your password there and seems many are using the same PW here. We would suggest you UPDATE YOUR PASSWORD and TURN ON 2FA for your account here to further secure it. None of the compromised accounts had 2FA turned on.
    Once you have enabled 2FA, your account will be updated soon to show a badge, letting other members know that you use 2FA to protect your account. This should be beneficial for everyone that uses FSFT.

CCENT/CCNA [H] study group

Just been playing with actual Cisco hardware here now and I have my main router setup and working great with NAT and whatnot, but how do I make a default route when my WAN IP is dynamic? It can completely change from a 71.x.x.x subnet to a 217.x.x.x subnet so I can't use 71.x.x.254 for example. It'll work when the WAN ip is in that range, but if it switches over to the 217, then it won't work. This might be something stupid easy but I'm not having much luck.

NVM, figured it out here. It wasn't working at first, but I got it to.
 
Last edited:
Just been playing with actual Cisco hardware here now and I have my main router setup and working great with NAT and whatnot, but how do I make a default route when my WAN IP is dynamic? It can completely change from a 71.x.x.x subnet to a 217.x.x.x subnet so I can't use 71.x.x.254 for example. It'll work when the WAN ip is in that range, but if it switches over to the 217, then it won't work. This might be something stupid easy but I'm not having much luck.

NVM, figured it out here. It wasn't working at first, but I got it to.

If you figured out how to solve your problem, you should post here what you did to solve it. This is a learning/teaching thread.
 
If you figured out how to solve your problem, you should post here what you did to solve it. This is a learning/teaching thread.

Sorry. Configuring NAT on the interfaces seemed to auto create the default route. I tested it with changing the WAN and the default route change automatically for me. I believe it auto creates a route when it pulls the WAN IP from the ISP dhcp. You just have to make sure you delete any static default routes if you had any.
 
Sorry. Configuring NAT on the interfaces seemed to auto create the default route. I tested it with changing the WAN and the default route change automatically for me. I believe it auto creates a route when it pulls the WAN IP from the ISP dhcp. You just have to make sure you delete any static default routes if you had any.

Thanks! Also, wouldn't it be possible in your case just to set the default route to the interface instead of an ip? Like this:

Code:
Router(config)#ip route 0.0.0.0 0.0.0.0 fastEthernet 0/0
 
Thanks! Also, wouldn't it be possible in your case just to set the default route to the interface instead of an ip? Like this:

Code:
Router(config)#ip route 0.0.0.0 0.0.0.0 fastEthernet 0/0

I tried that but it didn't work. I thought it should've but it just wouldn't work for me.. maybe I'll start from scratch on a different router and try that.
 
I tried that but it didn't work. I thought it should've but it just wouldn't work for me.. maybe I'll start from scratch on a different router and try that.

Interesting. I'm not sure why the auto-created routes would interfere with this particular static route. Anyone with more experience than me care to chime in?
 
It's not an "auto-created" route, it's just the default gateway DHCP option which is part of the address lease
 
Why are you trying to remove it?

If you enable an interface as a DHCP client the router imports the options such as default gateway, dns servers, etc from the DHCP server. This is working as intended.

If you want a different "default route" you could always add another static with a lower administrative distance but that's not exactly typically needed.
 
Well I did have a default route when it had a static IP on the WAN interface, but then I switched over to DHCP on it and had to delete that route. It was looking like there was still a default route on there and I tried to remove it and got that error. I wasn't expecting it to auto do that. First time doing it on actual hardware instead of just packet tracer. I much prefer hardware instead of trying to emulate an internet connection in Packet Tracer.
 
Just posting my routing table since I also receive a DHCP IP from my ISP, you can see the candidate default is a static route.

Code:
Gateway of last resort is xxx.10.56.1 to network 0.0.0.0

     xxx.0.0.0/21 is subnetted, 1 subnets
C       xxx.10.56.0 is directly connected, FastEthernet0/1
     10.0.0.0/8 is variably subnetted, 4 subnets, 3 masks
D       10.10.10.2/32 [90/156160] via 10.0.0.33, 1d03h, FastEthernet0/0
D       10.0.0.0/27 [90/28416] via 10.0.0.33, 05:49:10, FastEthernet0/0
C       10.10.10.1/32 is directly connected, Loopback0
C       10.0.0.32/30 is directly connected, FastEthernet0/0
     xxx.55.0.0/32 is subnetted, 1 subnets
S       xxx.55.0.134 [254/0] via xxx.10.56.1, FastEthernet0/1
S*   0.0.0.0/0 [254/0] via xxx.10.56.1

However, there are no manually configured static routes in my config

Code:
XXXX_WANRTR#show run | beg ip route
XXXX_WANRTR#
 
^ Yeah, that's what I was talking about.

EDIT: Just decided to move my CCENT test date up to March 15 instead of April 23rd. I'm feeling more prepared for it. 2 weeks away also forces me to study more :p.
 
Last edited:
Thanks guys, yea it was nerve wracking definitely... and I'll be treating myself to plenty of physical beers tomorrow night, don't worry, haha. I'm hoping to knock out tshoot in the next 2 weeks and be done with my CCNP "journey".
 
I sat ICND1 way back in July and failed with a 712. Life came about, especially with a 4 year old and 2.5 year old. I just sat the exam again today and passed with an 850. On to ICND2, but plan on taking a week or so off.
 
I was able to get signed up for some MCITP classes by my work so I will be taking a short break from ICND2. I feel really good about the material right now though so it shouldn't be to hard to jump back into. I'm going to focus primarily on MS stuff but still study ICND2 in the evenings.
 
Coworker passed Tshoot yesterday. Said it was easier than route/switch.

Yea, I'd imagine... I'm not even going to really study too much for it. I troubleshoot route/switch issues for a living, I feel like I should be able to pass this test, haha.
 
I sat ICND1 way back in July and failed with a 712. Life came about, especially with a 4 year old and 2.5 year old. I just sat the exam again today and passed with an 850. On to ICND2, but plan on taking a week or so off.

Congrats bud, keep learning everything you can.
 
Congrats bud, keep learning everything you can.

Thanks man, I appreciate that. I have another question that maybe yourself, or someone else could help me out with. I am trying to log into the Cisco Certification Tracking site. I do have a cisco.com login however when I enter that in to link the two together, it won't accept it. Am I supposed to wait for some special email from Cisco before I can login? Also, is this the location where I can get the CCENT watermark for say...an email signature?

Thanks
 
Are you using this link?

https://i7lp.integral7.com/durango/do/login?ownername=cisco&channel=cisco&basechannel=integral7

I remember having trouble linking my accounts when I first registered as well. I'd give it a couple days, probably midway through next week. It always takes a few days for the tracking site to update with your new certs, so even if you get into the site, you won't show that you passed your test yet.

And yes, you'll see a "Get Logos" link on the left side once you log in where you can download logos in multiple sizes and file formats.
 
Are you using this link?

https://i7lp.integral7.com/durango/do/login?ownername=cisco&channel=cisco&basechannel=integral7

I remember having trouble linking my accounts when I first registered as well. I'd give it a couple days, probably midway through next week. It always takes a few days for the tracking site to update with your new certs, so even if you get into the site, you won't show that you passed your test yet.

And yes, you'll see a "Get Logos" link on the left side once you log in where you can download logos in multiple sizes and file formats.

Yes, that is the link I am trying to use. I figured it was too early to attempt to login. Thanks again for the info. I will try again mid week.
 
Having some issues getting a 2611 to respond to pings over the internet. I have just a barebones NAT setup and I tried setting up an ACL for it and applying it to the WAN interface in.

access-lists 100 permit icmp any any

I still can't get it to respond to ping requests and Google is being of no help to me today. Any tips?
 
Without breaking NDA, how would I check to see what I did wrong during a sim? I can recreate the thing, even in Packet Tracer, and I can do it 100%. I read the chapters of what it was about, and I'm doing it perfectly. I cannot see what I did wrong. I tried verifying via ping on the sim, and it didn't work (was supposed to). I can redo the whole thing in Packer Tracer or my home lab, and it works just as advertised. I double checked all the IP's, subnets, and other information on the sim (can't give any more detail, as I'd be giving the question away). I got 805 out of 820. :(

Again this Friday, and I'll pass. Just not sure why or how I missed this one.
 
Hey all, i'm currently in the IT consulting side of things,servers/workstations were what got me into IT. Now i'm going down the cisco track and have learnt ASA's/AP's/UC320/UC540's at my office and deploy them pretty much weekly. I've been thinking its pretty much time for me to get into the routing and switching side of things more so and have been looking at getting some lab equipment. My work is a Cisco partner and we get a fairly good discount off lab only equipment. I'm just looking for suggestions/recommendations for a lab setup.

Looking for 3 routers and 3 switches. Been looking at the 8 port 3560 layer 3 switch and possibly some 18xx routers or maybe 21xx routers. For a lab setup would 8 ports for the switches be enough? or would i be better off getting a switch with more ports. I've also been looking at www.certificationkits.com and some of their bundles, not to sure if that's the right route to go or how the company is, has anyone got their lab setup from them before? budget is around 2k... hopefully around 1k so i can get a lab uc540 for home soon as well.

any help would be awesome.... thanks in advance :) and good luck with your studies
 
Last edited:
Really you should get 3560 24 port switches if you want to blow big bucks (or a mix of 3560s and 3550 if you are on a budget). Those are the most versatile, have the modern QoS, and will be useful all the way up to CCIE R&S labs. Plus they can do IPv6 properly unlike the 3550s.

For routers 1841s are really good but even some older models like 3725s are just as useful. Again if you want to drop big bucks you can go with a mix of 1841 and 3825 to match the IE labs. You want to stick with routers that can at least run 12.4T(15). Mainline IOS works a lot of the time too but there are differences that will make you want to kick a baby when it rears its ugly head.

Bundles suck, pick and choose your equipment and make sure it has enough flash/memory to run what you need it to. Don't forget you can use GNS3 to sim a lot of the router topologies but for switches you really need the real deal.
 
Thanks matt, i've been using gns3 off and on and i'm definitely a hands on learner and would prefer the physical equipment.

so basically look for some 3550's atleast, what about the 2610xm or 2611xm's, would they still be suitable for a lab environment?
 
I don't think 2600s run anything close to modern... I'd just jump up to 3725s. Those can be had for ~$150ea and run an IOS that you can do everything they test you on with. 2600s are good for backbone routers (route injectors) but you really don't need stuff like that until you get to advanced labs.

BTW, don't get hung up on real equipment. Even the TS section of CCIE is all virtual now. There's some stuff that just doesn't work well on sims but when you're first getting started most of that won't come into play.
 
Here is my latest lab. Mocked up a multicast topology using pim sparse and an RP. The multicast source is a linux qemu host sending a pixar short film. I am sending an igmp join from an MS loopback ip address to pull the movie to my desktop.

I got it up and running using pure pim sparse mode with spt switchover, then implemented multicast over a GRE tunnel from R5 to R4 to represent a change that I am doing this weekend on a production enviroment from the US to Panama.

vhSpq.jpg
 
Would the 881’s suffice or should I look at some 1800’s? As for switches should I look at getting 3 layer 3 switches, or 1 L3 and 2 layer 2’s? I was looking at the 3560’s and 2960’s with 8 ports, 8 should be fine for a lab setup would it not?
 
Would the 881’s suffice or should I look at some 1800’s? As for switches should I look at getting 3 layer 3 switches, or 1 L3 and 2 layer 2’s? I was looking at the 3560’s and 2960’s with 8 ports, 8 should be fine for a lab setup would it not?

The 881's have bridged stuff built in don't they? For a lab honestly I would look closely into the 2600xm series routers and if you want something newer then go with 1841's or something. You may be able to snag some 1841's for a good price
I have two layer 2 2950's and then a 3550 for layer 3 stuff in my home lab.

I do use 3750's at work for labbing though so I kinda cheat there

Edit: Oh ya I forgot to mention the 3825's that were posted before, those are great for labs too. I personally wouldn't use an 881 for a testing lab
 
Last edited:
ya i've been running through the comparison between the 261x vs the 881 and the 1841, the 881 doesnt have a dual wan port fo that may limit me on some labs.i may try to track down some 1841's with some expansion ports...

have i mentioned i love this forum lol thanks all
 
Change went in without a hitch on Saturday night. Doing pim sparse multicast over GRE tunnel from Panama to Nebraska. GNS3 helped quite a bit.
 
Add another one to the CCENT club. Passed this morning with a 894. Took me 45 mins. Now on to CCNA.
 
Back
Top