| 
| Welcome, Guest |  
| You have to register before you can post on our site. 
 
 |  
 
 
| Latest Threads |  
| Packet Tracer Labs Forum: Site News & Issues
 Last Post: help_desk
 10-29-2025, 05:17 AM
 » Replies: 7
 » Views: 10,968
 |  
| Can't open CCNP Encor sim... Forum: General Discussion
 Last Post: help_desk
 10-29-2025, 05:12 AM
 » Replies: 1
 » Views: 133
 |  
| 3rd times the charm! PASS... Forum: CCNP ENCOR 350-401 Forum
 Last Post: sgtwardo
 10-20-2025, 06:20 PM
 » Replies: 2
 » Views: 3,904
 |  
| QID:AN1000 Forum: Answer this question
 Last Post: help_desk
 10-17-2025, 10:47 AM
 » Replies: 1
 » Views: 412
 |  
| QID:AND84 Forum: Answer this question
 Last Post: help_desk
 10-16-2025, 09:38 AM
 » Replies: 1
 » Views: 431
 |  
| CML YAML Files - Not work... Forum: CCNP ENCOR 350-401 Forum
 Last Post: help_desk
 10-11-2025, 12:15 PM
 » Replies: 1
 » Views: 533
 |  
| Passed ENSARI - My Recomm... Forum: CCNP ENARSI 300-410 Forum
 Last Post: chewosaurus
 10-06-2025, 02:26 PM
 » Replies: 1
 » Views: 1,310
 |  
| How2Pass 200-201 CBROPS C... Forum: Cybersecurity Associate - CBROPS 200-201 Forum
 Last Post: forumsupport
 10-05-2025, 06:32 PM
 » Replies: 0
 » Views: 315
 |  
| CCNP 300-101 Questions Forum: General Discussion
 Last Post: ncc16ncc
 10-03-2025, 10:31 AM
 » Replies: 6
 » Views: 22,614
 |  
| Missing pka file 802.1Q T... Forum: Answer this question
 Last Post: help_desk
 09-29-2025, 11:36 AM
 » Replies: 1
 » Views: 825
 |  
 |  | 
| Experiencing problems with Sim-VRF R2 |  
| Posted by: greaterzen1  - 07-25-2025, 06:12 PM - Forum: CCNP ENARSI 300-410 Forum 
- Replies (1) |  
| 
	
		
|  | 
				Hello,
 I've experienced a problem with the sim-VRF. On R2 after enabling ip cef and placing the vrf (cu-red / cu-green) on the appreciate interfaces with the ip addresses nothing shows up in the respected routing tables. To my knowledge all that is needed for vrf to work:
 
 
 enable ip cef
create the vrf with either ip vrf <vrf name> or vrf definition <vrf name>
 add the vrf to an interface
 Although, I redownloaded the file the problem on R2 still persist. I've recreated this lab in eve-ng and it works. Could you please help?
 
 P.S per the solution ip cef should be turned off for R1 and R2. However, i noticed in the sim-vrf file it is only turned off for R2 and not R1.
 |  
		|   |  |  
 
| QID:AR541 |  
| Posted by: chewosaurus  - 07-25-2025, 03:43 PM - Forum: CCNP ENARSI 300-410 Forum 
- Replies (1) |  
| 
	
		
|  | 
				Answer is incorrect, it is not the choice with the route-map config. It is even stated in the explanation section that the route-map and ACL are a trick as they aren't being used as part of redistribution in the output, therefore any changes to the route-map or ACL don't have an effect at all.
 Correct answer is the answer which states "default metric 10000 100 255 100 1500" because it adds a default-metric under EIGRP, which is required to redistribute RIP routes. This ensures RIP-learned networks (like 192.168.2.0/24) are properly advertised into EIGRP and reach R2 and R4.
 
 Thanks
 |  
		|   |  |  
 
| DMVPN Configuration Sim Help |  
| Posted by: GreaterZen  - 07-21-2025, 11:54 PM - Forum: CCNP ENARSI 300-410 Forum 
- Replies (2) |  
| 
	
		
|  | 
				HI,
 I'm working on the DMVPN SIM using the GNS3 Lab and I am running into trouble here. I followed the configuration solutions, which is as follows:
 
 BR1
 interface tunnel 0
 ip address 192.168.1.1 255.255.255.0
 tunnel source e0/1
 tunnel mode gre multipoint
 tunnel key 100
 ip nhrp network-id 100
 ip nhrp authentication ccnp123
 ip nhrp map 192.168.1.254 10.10.255.254
 ip nhrp map multicast 10.10.255.254
 ip nhrp holdtime 300
 ip nhrp nhs 192.168.1.254
 
 BR2
 interface tunnel 0
 ip address 192.168.1.2 255.255.255.0
 tunnel source e0/1
 tunnel mode gre multipoint
 tunnel key 100
 ip nhrp network-id 100
 ip nhrp authentication ccnp123
 ip nhrp map 192.168.1.254 10.10.255.254
 ip nhrp map multicast 10.10.255.254
 ip nhrp holdtime 300
 ip nhrp nhs 192.168.1.254
 
 with the crypto ipsec fragmentation before-encryption on both routers as well as ip mtu 1400 and ip tcp adjust-mss 1360. As well as applying the ipsec_profile. However, when I do the traceroute i get this:
 
 tracing the route to 172.16.1.254
 1 192.168.1.254 2 msec 1 msec 1msec
 2 * * *
 3* * *
 
 %DMVPN-6-NHRP_RESOLUTION_REPLY: TUNNEL0: Host with (Tunnel: 192.168.1.1 NBMA: 10.10.255.1) Received Resolution Reply from (Tunnel: 172.16.2.254 NBMA: 10.10.255.254)
 
 Some help or assistance to why the solution does not work would greatly be appreciated
 
 Thanks
 |  
		|   |  |  
 
 
| Cisco 350-401 Exam Experience |  
| Posted by: networman  - 07-05-2025, 07:04 PM - Forum: CCNP ENCOR 350-401 Forum 
- Replies (5) |  
| 
	
		
|  | 
				Thanks to how2pass for the study material. I received a Pass today on the exam. For those interested - you start off with 6 labs. All of the labs on this site are spot on. Be extremely careful with what devices you are configuring. I actually configured the wrong CoPP Router today. By the time I realized it, it was too late. It appears after a certain amount of time the system locks the devices down. 
 Then onto 60 questions with drag and drop and multiple choice. Gonna say 95% was from 1.1 and the rest from 1.0. I didn't do as well as I would of liked too, but still received the Pass.
 
 Good luck to all.
 |  
		|   |  |  
 
 
| Netflow & IP SLA Sim |  
| Posted by: networman  - 07-03-2025, 02:39 PM - Forum: CCNP ENCOR 350-401 Forum 
- Replies (5) |  
| 
	
		
|  | 
				Hi - not sure if its me, but I can't ping 10.12.1.2 from R1, thus obtaining the output.
 R1#sh ip sla summary
 IPSLAs Latest Operation Summary
 Codes: * active, ^ inactive, ~ pending
 All Stats are in milliseconds. Stats with u are in microseconds
 
 ID          Type        Destination      Stats      Return      Last
 Code        Run
 -----------------------------------------------------------------------
 *1          icmp-echo  10.12.1.2        -          Timeout    18 seconds ag
 o
 and
 
 not
 
 R1# show ip sla summary
 IPSLAs Latest Operation Summary
 Codes: * active, ^ inactive, ~ pending
 ID        Type        Destination    Stats    Return        Last
 (ms)      Code        Run
 -----------------------------------------------------------------------
 *1        icmp-echo  10.12.1.2      RTT=2        OK        4 seconds ago
 
 as indicated via the notes for this lab.
 
 Something appears to be missing here.
 |  
		|   |  |  
 
 
| QID:EC902 |  
| Posted by: chewosaurus  - 06-19-2025, 01:09 PM - Forum: CCNP ENCOR 350-401 Forum 
- Replies (3) |  
| 
	
		
|  | 
				Hi,
 Not really a subject I'm strong on however I believe the answer should be B and E (not B and D)
 
 Why D is wrong:
 
 The WLC does not need to know or list the portal FQDN under its virtual interface because it’s not hosting that FQDN or the certificate. Essentially, what I'm seeing is that D is only applicable when the WLC itself hosts the login portal or when you want the WLC to present a specific FQDN and certificate for HTTPS.  But in ISE deployments, particularly with CWA or guest portals, this does not apply.
 
 Why E is correct:
 
 A new CSR is needed so that the certificate installed on ISE includes the new static FQDN in its SAN or CN field. Without this, browsers will show certificate errors when redirected to the guest portal.
 
 
 If I am missing something let me know, thanks!
 |  
		|   |  |  
 
| QID:EC972 |  
| Posted by: chewosaurus  - 06-18-2025, 05:42 PM - Forum: CCNP ENCOR 350-401 Forum 
- No Replies |  
| 
	
		
|  | 
				Hi,
 I notice there was already a post about this and it was "incorrectly" corrected.
 
 Answer should be the one that starts with
 "Access-list 100 deny tcp host 10.0.0.5 any eq 22"
 
 Because CoPP will continue to forward traffic it does not match on, and it does not match on deny statements.
 
 The question that is currently correct will match on the ip 10.0.0.5 (via permit) then the action is drop, which goes against the what the question is asking.
 
 Thanks
 |  
		|   |  |  
 |