From: Ramy Sisy (rsisy@ccbootcamp.com)
Date: Wed Dec 26 2007 - 18:55:57 ART
Hi S B,
It depends which technology you are trying to practice.
For example if you need to practice PIX / ASA technologies including security
Contexts and Failover technologies, you need 2 ASAs with multiple Contexts and
A/A failover license and 3 routers. However if you need to practice all
PIX/ASA technologies excluding security Contexts and Failover technologies,
you need only 1 ASA and 3 routers and you can get 3 or 4 remote labs sessions
to practice security Contexts and Failover technologies.
If you need to practice VPN technologies, you need at most 4 Routers, VPN
Conc. and Cisco VPN client S/W Ver. 4.x machine.
If you need to practice IPS technologies, you need 1 IPS, 3 routers and client
machine.
It means 4 routers, 1 switch, 2 ASAs, IPS, VPN Conc and a client machine will
let you practice all CCIE Security exam technology labs independently.
Also when you need to practice all CCIE Security technologies together, like
mock labs or super labs or 8H labs (same like real lab environment) you need
at least:
' 6 routers, 4 of them should have 2 Fast Ethernet/Ethernet interfaces and
WIC-2T or WIC-2A/S each (12.2(15)T Enterprise or higher IOS) "you can use
Routers with single Ethernet interface but you need to configure sub
interfaces for each of them to simulate multiple Ethernet interfaces"
' 2 backbone routers to inject Backbone routes, and you can configure one of
them to work as a FR switch by adding NM-8A/S network module or using Cisco
2522 router as an independent FR Switch. The other router can support Terminal
server by adding NM-16A network module or using Cisco 2511 router as an
independent terminal server (12.2(15)T Enterprise or higher IOS)
' 2 ASAs 5510 (7.2.2 OS)- Multiple Contexts and A/A Failover license
' 1 PIX 515E (7.2.2 OS)- restricted license
' 1 4215 IPS (5.x OS)
' 1 VPN Conc. 3005 (4.7 OS)
' 1 ACS, CA, Client machine
' 2 3550 Switches
' 5 DB60-SS Serial cables, 2 SS-SS Serial Cables, 30 UTP Ethernet cables, 4
UTP Cross over cables
Also you can use whatever Cisco Router model that can support 12.2(15)T
Enterprise or higher IOS features.
For example you can use Dynamips to build 8 virtual 7200 series routers or
36x0 routers and connect it to a switch with trunk port and support sub
interfaces, PIX emulator, IPS over VMWare, real VPN 3005 Conc and real 3550
Switch and you will be able to achieve almost all workbooks scenarios but you
need to change workbooks' startup configuration files to meet your physical
layer connections.
Also you can build your mini lab and practice different technologies as much
as you can then you can get something like 10 remote sessions to practice mock
labs.
--------------------------------------------------------
Thanks,
Ramy Sisy
CCIE#17321 (Security), CCSI#30417, CCNP, C|EH, C|HFI, ISS-CA, MCSE, MCT
CCIE Security Content Manager/
Technical Instructor
Network Learning Inc - A Cisco Sponsored Organization (SO) YES! We take Cisco
Learning credits!
rsisy@ccbootcamp.com
http://www.ccbootcamp.com
<https://exchange.ccbootcamp.com/exchweb/bin/redir.asp?URL=https://exchange.c
cbootcamp.com/exchweb/bin/redir.asp?URL=http://www.ccbootcamp.com> (Cisco
Training and Advanced Technology Rental Racks)
Toll Free: 877-654-2243
International: +1-702-968-5100
Sydney, Australia: +61 2 8080 2725
Toronto, Canada: +1-416-238-0441
Skype: CCBOOTCAMP
FAX: +1-702-446-8012
YES! We take Cisco Learning Credits!
Training And Remote Racks: http://www.ccbootcamp.com
<http://www.ccbootcamp.com/>
Register to win a free iPhone! http://www.ccbootcamp.com/iphone.html
<http://www.ccbootcamp.com/iphone.html>
-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Haloween Boy
Sent: Wednesday, December 19, 2007 2:50 AM
To: Cisco certification; Cisco certification
Subject: Home Labs
Hi All,
I am currently using online racks from different vendors and working towards
my ccie security.
Also, would like to know what all devices should be used to make a home lab
for practice?
As per the blue print, I understand the following would be required:-
- 9 routers running 12.2T Enterprise (IPSec/FW/IDS IOS) - 1xNM 4A/S,
1x NM 2E2W
- 2509 - 8 A/S ports for Terminal Server
- 2521 for FR switch.
- 4 x 3560 series switches - IOS 12.2SEE
- PIX 515 - 7.2
- 2 x ASA 5510 with 7.2
- IPS 4235 with 5.1 ( 4215 can be used ?)
- VPN 3005 with 4.7.2
- console cables
- straight & cross cat cables.
Please let me know if this is enough for following the IPExpert WB?
Thanks in advance for any suggestions.
Regards,
Cisco Boy / S B
This archive was generated by hypermail 2.1.4 : Tue Jan 01 2008 - 12:04:32 ARST