Welcome, Guest
You have to register before you can post on our site.

Username
  

Password
  





Search Forums

(Advanced Search)

Latest Threads
QID:AND84
Forum: Answer this question
Last Post: help_desk
4 hours ago
» Replies: 1
» Views: 24
CML YAML Files - Not work...
Forum: CCNP ENCOR 350-401 Forum
Last Post: help_desk
10-11-2025, 12:15 PM
» Replies: 1
» Views: 180
Passed ENSARI - My Recomm...
Forum: CCNP ENARSI 300-410 Forum
Last Post: chewosaurus
10-06-2025, 02:26 PM
» Replies: 1
» Views: 963
How2Pass 200-201 CBROPS C...
Forum: Cybersecurity Associate - CBROPS 200-201 Forum
Last Post: forumsupport
10-05-2025, 06:32 PM
» Replies: 0
» Views: 153
CCNP 300-101 Questions
Forum: General Discussion
Last Post: ncc16ncc
10-03-2025, 10:31 AM
» Replies: 6
» Views: 21,878
Missing pka file 802.1Q T...
Forum: Answer this question
Last Post: help_desk
09-29-2025, 11:36 AM
» Replies: 1
» Views: 605
IPv4 and IPv6 Assignment ...
Forum: Answer this question
Last Post: help_desk
09-29-2025, 11:21 AM
» Replies: 1
» Views: 603
PBR and Redistribution Si...
Forum: CCNP ENARSI 300-410 Forum
Last Post: greaterzen1
09-24-2025, 04:47 PM
» Replies: 0
» Views: 959
QID:AND69
Forum: Answer this question
Last Post: help_desk
09-24-2025, 11:18 AM
» Replies: 1
» Views: 1,317
QID:AND38
Forum: Answer this question
Last Post: help_desk
09-24-2025, 11:12 AM
» Replies: 2
» Views: 1,523

 
  DMVPN Configuration Sim Help
Posted by: GreaterZen - 07-21-2025, 11:54 PM - Forum: CCNP ENARSI 300-410 Forum - Replies (2)

HI,

I'm working on the DMVPN SIM using the GNS3 Lab and I am running into trouble here. I followed the configuration solutions, which is as follows:

BR1
interface tunnel 0
ip address 192.168.1.1 255.255.255.0
tunnel source e0/1
tunnel mode gre multipoint
tunnel key 100
ip nhrp network-id 100
ip nhrp authentication ccnp123
ip nhrp map 192.168.1.254 10.10.255.254
ip nhrp map multicast 10.10.255.254
ip nhrp holdtime 300
ip nhrp nhs 192.168.1.254


BR2
interface tunnel 0
ip address 192.168.1.2 255.255.255.0
tunnel source e0/1
tunnel mode gre multipoint
tunnel key 100
ip nhrp network-id 100
ip nhrp authentication ccnp123
ip nhrp map 192.168.1.254 10.10.255.254
ip nhrp map multicast 10.10.255.254
ip nhrp holdtime 300
ip nhrp nhs 192.168.1.254


with the crypto ipsec fragmentation before-encryption on both routers as well as ip mtu 1400 and ip tcp adjust-mss 1360. As well as applying the ipsec_profile. However, when I do the traceroute i get this:

tracing the route to 172.16.1.254
1 192.168.1.254 2 msec 1 msec 1msec
2 * * *
3* * *

%DMVPN-6-NHRP_RESOLUTION_REPLY: TUNNEL0: Host with (Tunnel: 192.168.1.1 NBMA: 10.10.255.1) Received Resolution Reply from (Tunnel: 172.16.2.254 NBMA: 10.10.255.254)

Some help or assistance to why the solution does not work would greatly be appreciated

Thanks 

Print this item

  How does labs work on this site
Posted by: GreaterZen - 07-16-2025, 03:49 PM - Forum: CCNP ENARSI 300-410 Forum - Replies (2)

Hi,

I am new and need help. I am interested in buying the 300-410 question set on this site. However, how does the labs work? Is it done on the same test question set or is it separate?

Print this item

  Cisco 350-401 Exam Experience
Posted by: networman - 07-05-2025, 07:04 PM - Forum: CCNP ENCOR 350-401 Forum - Replies (5)

Thanks to how2pass for the study material. I received a Pass today on the exam. For those interested - you start off with 6 labs. All of the labs on this site are spot on. Be extremely careful with what devices you are configuring. I actually configured the wrong CoPP Router today. By the time I realized it, it was too late. It appears after a certain amount of time the system locks the devices down. 

Then onto 60 questions with drag and drop and multiple choice. Gonna say 95% was from 1.1 and the rest from 1.0. I didn't do as well as I would of liked too, but still received the Pass. 

Good luck to all.

Print this item

  EC902
Posted by: sgtwardo - 07-04-2025, 12:08 AM - Forum: CCNP ENCOR 350-401 Forum - Replies (3)

The question under the Network Assurance section asks to pick 2 but highlights 3 answers.

Print this item

  Netflow & IP SLA Sim
Posted by: networman - 07-03-2025, 02:39 PM - Forum: CCNP ENCOR 350-401 Forum - Replies (5)

Hi - not sure if its me, but I can't ping 10.12.1.2 from R1, thus obtaining the output.

R1#sh ip sla summary
IPSLAs Latest Operation Summary
Codes: * active, ^ inactive, ~ pending
All Stats are in milliseconds. Stats with u are in microseconds

ID          Type        Destination      Stats      Return      Last
                                                      Code        Run
-----------------------------------------------------------------------
*1          icmp-echo  10.12.1.2        -          Timeout    18 seconds ag
                                                                  o       
and

not 

R1# show ip sla summary
IPSLAs Latest Operation Summary
Codes: * active, ^ inactive, ~ pending
ID        Type        Destination    Stats    Return        Last
                                      (ms)      Code        Run
-----------------------------------------------------------------------
*1        icmp-echo  10.12.1.2      RTT=2        OK        4 seconds ago


as indicated via the notes for this lab.

Something appears to be missing here.

Print this item

  Cisco Command Line - Short cuts
Posted by: networman - 06-25-2025, 02:01 PM - Forum: CCNP ENCOR 350-401 Forum - Replies (1)

Hi - can you let me know if the Command Line shortcuts are available during the exam - ? and up arrow, etc.
They are available on the CML Sim as well as real world, so I am curious.

Thanks so much.

Print this item

  QID:EC902
Posted by: chewosaurus - 06-19-2025, 01:09 PM - Forum: CCNP ENCOR 350-401 Forum - Replies (3)

Hi,

Not really a subject I'm strong on however I believe the answer should be B and E (not B and D)

Why D is wrong:

The WLC does not need to know or list the portal FQDN under its virtual interface because it’s not hosting that FQDN or the certificate. Essentially, what I'm seeing is that D is only applicable when the WLC itself hosts the login portal or when you want the WLC to present a specific FQDN and certificate for HTTPS.  But in ISE deployments, particularly with CWA or guest portals, this does not apply.

Why E is correct: 

A new CSR is needed so that the certificate installed on ISE includes the new static FQDN in its SAN or CN field. Without this, browsers will show certificate errors when redirected to the guest portal.


If I am missing something let me know, thanks!

Print this item

  QID:EC972
Posted by: chewosaurus - 06-18-2025, 05:42 PM - Forum: CCNP ENCOR 350-401 Forum - No Replies

Hi,

I notice there was already a post about this and it was "incorrectly" corrected.

Answer should be the one that starts with 
"Access-list 100 deny tcp host 10.0.0.5 any eq 22"

Because CoPP will continue to forward traffic it does not match on, and it does not match on deny statements.

The question that is currently correct will match on the ip 10.0.0.5 (via permit) then the action is drop, which goes against the what the question is asking.

Thanks

Print this item

  VRF Configuration Sim #2
Posted by: chewosaurus - 06-18-2025, 01:11 PM - Forum: CCNP ENCOR 350-401 Forum - Replies (1)

Hi,

Sim is broken, BGP isn't converged so I cannot reach the tunnel destination from R22 (209.165.200.230) therefore cannot establish tunnel 10 connectivity.

Also, VRF config is not present on R22. No "VRF definition / address family" config existing.

Thanks

Print this item

  QID:EC1223
Posted by: chewosaurus - 06-13-2025, 01:39 PM - Forum: CCNP ENCOR 350-401 Forum - Replies (1)

Hello me again Big Grin 

The green answer is wrong because the actual code does:
u2.append(u101)

Which appends the entire list of fields [Device-ID, Local-Intf, Hold-time, Capability, Port-ID]
for each LLDP neighbor—not just the first element (hostname).

To make the script produce only the hostname I believe you would change that line to:
u2.append(u101[0])

u101[0] is the first element of that list—the Device ID or hostname.


I'm still quite new to this subject so if I'm wrong, forgive me but I think the logic I mentioned has some truth to it.

Thanks

Print this item