Ccie DC Lab 2 Questions
Ccie DC Lab 2 Questions
In DC2, you must configure resources for the VDC's. Use resource templates to perform this task.
Create and apply VDC resource templates as shown in this table:
Template Name VDC Name Resource Minimum Maximum
otv-template DC2-N7K-1 VRF 8 16
VLAN 16 32
Port-Channel 0 32
switch-template DC2-N7K-3 & VRF 16 32
DC2-N7K-4 VLAN 64 128
Port-Channel 32 64
In DC2, make sure that these high-availability policies are applied to the VDC's:
DC2-N7K-1 and DC2-N7K-3 are connected using a Layer2 link and a Layer 3 link. Configure the Layer 2
link between these switches as a trunk port.
(1 Point)
1.4 - DC2: Configure Fabric Path
In DC2, enable fabric-path isis routing between DC2-N7K-3, DC2-N7K-4, DC2-N5K-1, and DC2-N5K-2
Perform these tasks:
Assure that all of the switches that are listed use the FabricPath network for Layer 2
switching between them.
The port channel between DC2-N7K-3 and DC2-N7K-4 will not participate in FabricPath.
Create a port channel between DC2-N5K-1 and DC2-N5K-2, and enable FabricPath on
the port channel. Use any number for the port channel.
Configure switch ID 30, 40, 50, and 60 on DC2-N7K-3, DC2-N7K-4, DC2-N5K-1, and DC2-
N5K-2 respectively.
Allow 20 seconds to detect any switch ID conflicts in the FabricPath domain.
Make sure that only two equal cost paths are selected in the FabricPath domain.
Make sure that DC2-N7K-3 and DC2-N7K-4 use DC2-N5K1 and DC2-N5K-2 as equal cost
paths.
(3 points)
(3 Points)
1.6 - DC2: Configure FEX
In Data Center 2 (DC2), configure active/active connections from DC2-N5K-1 and DC2-N5K-2 to the FEX.
Use FEX 103 and 104 as indicated in this figure. Make sure both FEX instances skip any bootup tests.
(2 Points)
WAN interfaces connect the Cisco Nexus 7000 switch to the WAN switch. The WAN switch is
preconfigured. No configuration is necessary on your part.
Configure the WAN IP addresses as shown in this table:
Device Name Interface IP Address Subnet Mask
DC2-N7K-3 Ethernet 4/23 10.4.1.9 30
DC2-N7K-4 Ethernet 4/31 10.4.1.13 30
Make sure that the jumbo frame size of 9100 bytes is allowed on the WAN.
DC2-N7K-1 and DC2-N7K-3 are connected with a Layer 2 link and Layer 3 link. Configure the Layer 3 link
between these switches.
Use any key chain name. Make sure that HSRP waits 3 seconds before detecting a neighbor down
instance. Also make sure that DC2-N7K-3 is always the active router for VLAN 4001 and VLAN 4002.
(2 Points)
1.9 - DC2: Implement Cisco NX-OS Layer 3 Routing
In DC2, set up EIGRP. Enable EIGRP within DC2 devices and on the connectivity to the WAN. Make sure
that fast failure detection is enabled. The core WAN router is preconfigured with EIGRP.
Perform these tasks on DC2-N7K-1:
Configure EIGRP with AS number 1.
Use the loopback 0 address as the router ID.
Configure interfaces E4/5 in EIGRP.
You are not permitted to use static routes.
(4 Points)
1.11 - DC2: Configure syslog and NTP
In DC2, make sure that DC2-N7K-3 receives the time from the NTP server 20.0.0.1.
There is a syslog server on a remote sire that is accessible from the WAN network. Configure DC2-N7K-3
to send logs to syslog.
The IP address of the syslog server is 10.0.0.1.
(1 Point)
Configure Multiple Spanning Tree for VLAN 4001 and VLAN 4002.
Make sure that DC2-N7K-3 is the root for VLAN 4001 and VLAN 4002.
Use this information to configure MST:
o MST region = 1
o Name = ccie
o MST revision number = 5
Enable Bridge Assurance on the appropriate ports.
(2 Points)
You must configure VLANs in Data Center 1. These VLANs will be used later in the exam. Assign the
correct name and type as outlined here.
Configure these VLANs on DC1-N7K-1, DC1-N7K-2, DC1-N7K-3, and DC1-N7K-4:
Device Name Vlan ID VLAN Name VLAN Mode
DC1-N7K-1 90 dci-site Classic Ethernet
DC1-N7K-2 4001 dci-data1 Classic Ethernet
DC1-N7K-3 4002 dci-data2 Classic Ethernet
DC1-N7K-4
(2 Points)
DC1-N7K-1 and DC1-N7K-3 are connected using a Layer 2 link and a Layer 3 link. In this task, you will
configure the Layer 2 link between these switches as a trunk port. Use this information to complete this
task:
Allow only VLANs 90, 4001, and 4002.
Use VLAN 90 as the native VLAN.
Device Name Trunk Port Mode
DC1-N7K-1 Ethernet 4/12 Layer 2
DC1-N7K-3 Ethernet 4/20 Layer 2
DC1-N7K-2 and DC1-N7K-4 are connected using a Layer 2 and a Layer 3 link. In this task, you will
configure the Layer 2 link between these switches as a trunk port. Use this information to complete this
task:
Allow only VLANs 90, 4001, and 4002.
Use VLAN 90 as the native VLAN.
Make sure that the jumbo frame size of 9100 bytes is allowed on the WAN.
DC1-N7K-1 and DC1-N7K-3 are connected with a Layer 2 link and Layer 3 link. Configure the Layer 3 link
between these switches.
In DC1, configure the Layer 3 link between DC1-N7K-1 and DC1-N7K-3:
Device Name Interface IP Address Subnet Mask
DC1-N7K-1 Ethernet 4/5 10.4.1.17 30
DC1-N7K-3 Ethernet 4/24 10.4.1.18 30
DC1-N7K-2 and DC1-N7K-4 are connected with a Layer 2 link and Layer 3 link. Configure the Layer 3 link
between these switches.
In DC1, configure the Layer 3 link between DC1-N7K-2 and DC1-N7K-4:
Device Name Interface IP Address Subnet Mask
DC1-N7K-2 Ethernet 4/9 10.4.1.26 30
DC1-N7K-4 Ethernet 4/25 10.4.1.25 30
On the Layer 2 trunk port between DC2-N7K-1 and DC2-N7K-3. Only allow VLANs that must be
extended.
Use VLAN 90 as the site VLAN.
After completing these infrastructure tasks, configure the necessary DCI tasks as specified in the
question. Then verify that DCI was successful by pinging SVIs 4001 and 4002 from DC1-N7K-3 and DC2-
N7K-3.
Make sure that HSRP is localized within each data center.
(3 Points)
Password : cisco
Mgmt IP : 10.1.1.27
Mgmt Netmask : 255.255.255.0
Mgmt Gateway : 10.1.1.254
Telnet : Enabled
Configure a FCoE NPV-NPIV F-Port trunking and port-channeling link between the DC2-N7K-2 and DC2-
N5K-1 switches. Create VSAN 100
and allow only this VSAN across this link. This link should be configured to use LACP. Make sure that
SID/DID/OXID load-balancing is used
across this link. Use port channel ID 11.
(4 points)
2.4 - Troubleshoot multihop FCoE
The customer reports that the FCoE VE Port channel between the DC2-N7K-2 and DC2-N5K-2 switches is
no working. You have been asked to resolve the issue and get the FCoE VE Port channel working. Once it
is up, it should transport VSAN 200 only. The link should be formed with LACP and use port channel ID
12. Traffic form the N5K to the N7K must load-balance with SID/DID. The resolution must not impact
port channel 11.
(3 points)
(2 points)
Note: The port numbers on the topology diagram are the physical port numbers.
Note: If object names are not explicitly provided, you can use your own naming convention. If policies or
settings are not explicitly provided, use the default values.
UCS Pools / Resources Pool Name Starting Value Qty (if applicable)
UUID suffix ccie-dc-uuid 1111-000000000001 10
WWPN (Fabric A) ccie-dc-wwpn-a 20:00:00:25:B5:10:10:01 4
WWPN (Fabric B) ccie-dc-wwpn-b 20:00:00:25:B5:10:10:0A 4
WWNN ccie-dc-wwnn 20:00:00:25:B5:11:10:01 4
MACs ccie-dc-mac 00:25:B5:00:00:01 32
Managements IPs 10.1.1.53/24 7
(KVM)
Management Gateway 10.1.1.254