Home > Ticket 14 – EIGRP Passive Interface

Ticket 14 – EIGRP Passive Interface

April 23rd, 2018 in TSHOOT v2 Go to comments

the neighborship between R4 and DSW1 wasn’t establised. Client 1 can’t ping R4
Configuration on R4:
router eigrp 10
  passive-interface default
  redistribute ospf 1 route-map OSPF->EIGRP
  network 10.1.4.4 0.0.0.3
  network 10.1.4.8 0.0.0.3
  network 10.1.21.128 0.0.0.3
  default-metric 10000 100 255 1 10000
  no auto-summary

Answer 1) R4
Answer 2) IPv4 EIGRP Routing
Answer 3)  enter no passive interface for interfaces connected to DSW1 under EIGRP process (or in Interface f0/1 and f0/0, something like this)

Note: There is a loopback interface on this device which has an IP address of 10.1.21.129 so we have to include the “network 10.1.21.128 0.0.0.3” command.

 

* Just for your information, in fact Clients 1 & 2 in this ticket CANNOT receive IP addresses from DHCP Server because DSW1 cannot reach 10.1.21.129 (an loopback interface on R4) because of the “passive-interface default” command. But in the exam you will see that Clients 1 & 2 can still get their IP addresses! It is a bug in the exam.

Comments (30) Comments
Comment pages
1 3 4 5 6 7 11 241
  1. pogi
    October 3rd, 2012

    failed with exam today got only 780 :( i messed up with 5tickets

  2. thi
    October 11th, 2012

    Just passed this afternoon. Everything is the same as in 9tut and the blogs people post.

    – the vlan access map is still messed up. You have to go to ASW1 to get the answer.
    – NO EIGRP AS questions

    M/C quesitons i got

    1. DD Question
    EEM , IPSLA ————— CLI based for Management and Monitoring
    SDM , CNA ———— provide a GUI for Administration
    TFTP, SCP ———— used for Backup and restore

    ) Two Cisco routers are connected to each other and are enabled CDP. Serial line is up,protocol is also up but cdp neighbor not working. What layer of the OSI model does the problem most likely exist?
    Answer:
    Data link layer.

  3. KB
    October 13th, 2012

    This is really bothering now.. For last 3 years, the TSHOOT exam has been same.. and now all of a sudden people are saying the questions are changed a bit.

    Can someone please confirm whether it’s changed or not… Have to give the exam in 3-4 days.

  4. femipunti
    October 15th, 2012

    Passed TSHOOT finally got 1000/1000 after failing 3 times

  5. harry
    October 17th, 2012

    can any one please confirm is the dumps changed planning to give exam on 27 .

  6. Subrun
    November 10th, 2012

    Hi All

    If I submit one ticket then will it be updated in next Ticket. I mean suppose problem is in HSRP authentication then after submitting HSRP ticket in next ticket will the answer will be updated ?

    Please reply.

  7. Sammy ghana
    December 8th, 2012

    hello please !! I’m dieing need of VISUAL CERTEXAM SUITE Version: 3.0.1 CRACK.
    I will be much grateful if any one can help me .

    sammyadjeii@yahoo.com

  8. thedude
    January 7th, 2013

    the test has changed. only three tickets from the dumps and here were on the test.

  9. Anonymous
    January 8th, 2013

    how did you do then ?

  10. Anonymous
    January 11th, 2013

    Passed today with 890. All layer 3 were from here, they added some layer 2 tickets. Can’t remember them now, just make sure you have your layer 2 down. Those seem to drain my time the most. I don’t know why the layer 3 ones just seem obvious to me and then I spend 20 minutes trying to navigate around the tests neutered cli to figure out the layer 2 ones.

  11. Hasan Ahmed
    January 15th, 2013

    i passed my CCNP composit Exam on 13-feb-2010 so i can give my tshoot exam and i will get ccnp certification right ?

  12. pdeji
    January 19th, 2013

    you have to remove passive default from int fa0/0 and fa0/. cross check with other ticket and make sure its gone from under eigrp configuration.

    passed today…..

  13. PM
    January 20th, 2013

    Hi everbody. There was a bug in my tshoot exam about vlan filter question. When I chose DSW1 , I couldn’t see neither access map nor VLAN ACL . So I had to choose ASW1. As I know it was wrong. It must have been DSW1.

    I got 930 points and now I am CCNP. There were 3 multiple choise questions and 1 drag&drop question. 13 tickets. Tickets are from Networktut. Wrong AS wasn’t in my exam.

    My strategy was , first I used ipconfig and noted the client ‘s ip and the ticket number. If it started with 169.xx.xx.xx , you can’t get IP from DHCP server so the problem is before R4. There were 4 situation and problems can be 3 ASW1 and 1 R4 device, if it starts with 169.xx.xx.xx

    They are
    1)Access VLAN (ASW1) 2)Switch to Switch Connectivity(Trunk)(ASW1) 3)Port Security (ASW1) 4)DHCP (R4)

    Which one which ? FOR theese 4 situations , I first searched which is R4 DHCP problem. Just show run at R4 and if you see ” ip dhcp exclude 10.2.1.1-10.2.1.253 ” it is DHCP problem and the device is R4.

    After that you do show run command at ASW1 device and choose what the problem is, depending on the show run result. (sh int fa1/0/1 will help you for port security ticket, you will see err-disbled when you run sh int fa1/0/1 if it is cos of port-security problem. )

    4 tickets are gone.

    When you do ipconfig , if it is 10.2.1.3 ; first ping 10.1.1.1. and 10.1.1.2 . If ping is ok for 10.1.1.2 and it is not ok for 10.1.1.1 , it is the only case ospf authentication and the device is R1. Do show run at both R1 and R2 to do compare.

    Then, ping 10.1.1.1 if it answers, There are 3 problems about R1.

    They are
    1)BGP (If you can ping 209.65.200.226 , it is BGP problem (56-65))
    2)NAT (If all devices can ping the server adres, but the clients can’t; it is NAT problem. To find just ping to server from R2 or R3)
    3)ACL (The last one)

    4 tickets are gone.

    In the IPv6 question, it is mentioned IPv6 addresses , you can understand it is about IPv6 and the device is R2. Just show run R2 .

    1 ticket is gone.

    In the HSRP question, it is mentioned HSRP , you can understand esaily it is cos of HSRP. Just show run on DSW1 and you can see.

    1 ticket is gone.

    The last 3 tickets are if the client’s ip address 10.2.1.3 and you can’t ping 10.1.1.1 , there are 3 situations (I elected HSRP and IPv6 )

    They are
    1) DSW1 — Vlan ACL(or Access Map) (Vlan filter) If you can’t ping DSW1, it is Vlan ACL ticket.
    2)R4 — Redistribution (Can’t ping 10.1.1.10 and you can ping 10.1.4.9
    3)R4 — EIGRP Passive Interface (Cant ping 10.1.4.5)

    My advice is , first list them and abort ; after you are sure which ticket is which, start to answer.

    Time is really enough so don’t worry about it.

    Thanks NetworkTut

  14. Dr. WHO
    January 30th, 2013

    How about this strategy

    If client ip is 169.x.x.x

    1) Check for DCHP exclude on R4 by “sh run”. (DHCP TICKET)
    2) Check for err-disable on ASW1 by “sh run”,”sh int f1/0/1″. (PORT SECURITY)
    3) Check for vlan-id/non on ASW1 by “sh run”. If no vlan or invalid vlan (1) define under interfaces then (VLAN-ACCESS)
    4) Check for “20,200” on ASW1 by “sh int trunk”. (Switch-to-Switch)

    If client ip 10.2.1.3

    Case 1-> Can ping 10.2.1.2 but can’t ping 10.2.1.1 from client 10.2.1.3
    Check OSPF AUth. on R1 by “sh run” and compare the configuration with R2 “sh run” command. (OSPF Authenticaiton)

    Case 2-> Can ping 10.2.1.1
    on R1 if “sh ip bgp summary” = up/up (NAT)
    on R1 if “sh ip bgp summary” = no output (BGP)
    on R1 if “sh ip bgp summary” = active (ACL / IPv4 Security)

    Case 3-> Can not ping 10.2.1.1
    First check if its the case 1 problem, if already solved or its not OSPF ticket then proceed….

    on DSW1 “sh run”, “sh access-list” You will see the action drop in “sh run” or “deny” statement (Vlan/port MAP)
    on R4 “sh run” and look for ‘Eigrp Passive’ under Eigrp (EIGRP Passive interface)
    on R4 “sh run” and look for redistribution “OSPF_TO_EIGRP”, correct is “OSPF->EIGRP” (Route Redistribution)

    *HSRP will be mentioned in the Ticket and can be confirmed by going DSW1 “sh run” and look for “track 1 statement”. (HSRP)

    *IPv6 will be mentioned in the Ticket too. (IPV6 OSPF)

    If stuck any where. try this:

    1) Ping from every device to 10.2.1.3. If can’t ping, then check for “passive Interface” on R4.
    2) Check DSW1 for HSRP by “sh run” (HSRP)
    3) Check EIGRP AS on R4 and compare with DSW1 and DSW2 by “sh run”. If AS is 1. then (EIGRP AS). Don’t know whether you get 169.x or 10.2.1.3 IP on client. Can someone guide me here.

    I will appreciate if anyone correct my method if I was wrong in any point. Also in “EIGRP AS” ticket, what will be the clients IP?

  15. Relax
    January 31st, 2013

    On the symptom above it said “Client 1 can’t ping R4”

    Correct me if I’m wrong but the client will able to ping 10.1.4.4.5 (R4) regardless EIGRP peering is establish or not

    10.1.4.4.5 is on the same subnet of 10.1.4.6 (DSW1) therefore DSW1 will have the route as “connected” anyway

    Any advice

  16. Cyborg
    February 6th, 2013

    Hi Guys

    I passed T-Shoot today, all tickets is valid. However struggled to get to the OSPF Authentication issue. The symptoms as per the strategy were not the same, happy to have passed.

  17. Dr. WHO
    February 8th, 2013

    @cyborg, can you please tell us what was the client IP in IP DHCP helper and EIGRP AS ticket?

  18. jhavan05
    February 13th, 2013

    Hi

    To verify, in this ticket (IPV4 passive interface) when you do a “Sh ip eigrp neigh” it will show the EIGRP passive interface…To validate this do “sh ip protocols”, is this the correct manner to check this ticket?

  19. sammy Ghana
    February 14th, 2013

    I have clear my Tshoot .
    A big Thank you to everyone who contribute towards my achievement to day.
    Keep the fire burning.

  20. DR WHO
    February 18th, 2013

    @jhavan95, you can also use show run which will show you the EIGRP configured with the process id, passive interface and redistribution.

  21. Amir Imtiaz
    February 27th, 2013

    Im planning to give Tshoot exam….bt i want to practice on labs…so can any1 send me link for tshoot labs

  22. DreamMerchant
    March 19th, 2013

    http://www.megafileupload.com/en/file/403490/tshoot-demo-v6-swf.html
    Cisco exam demo downloadable as .swf file. Open with Mozilla web browser.

  23. ehshas
    April 3rd, 2013

    Guys
    I passed today with 931
    Thans all who comments
    I mean to all thank u very much guys
    N
    No updates

  24. Ion Arion
    April 11th, 2013

    @DreamMerchant

    Why would you download it, when you have it on Cisco’s website?

    http://www.cisco.com/assets/cdc_content_elements/flash/training_events/tshoot_demo/tshoot_demo_v6_030410.swf

  25. Ahmed hady
    April 16th, 2013

    Thanks
    I passed yesterday

  26. anzoni
    April 29th, 2013

    many thanks DreamMerchant!!

  27. Pritum
    April 29th, 2013

    Every time I try to make a post to the ASP.net forums, the app just ceylcs between tow different pages in an endless loop. Maybe a bug from the upgrade???

  28. Hammam
    May 12th, 2013

    Hello Gentlemen’s,

    Please advice with the following :
    1. in Cisco website , they mentioned that the total # of questions are ( 35-40 ) but here its only 15 ! ?
    2. Does this exam requires any configuration ? or its only a multiple choice questions ?

  29. anonymous
    May 15th, 2013

    @hammam

    this exam does not require any configuration and u dont have even privilege to do that….u just can use show commands and some other basic commands…

  30. Panache
    May 20th, 2013

    @Hammam I think when Cisco says 35-40 they are counting each individual question, each scenario has 3 questions. So 15×3 = 45.

    Correct me if I’m wrong..

Comment pages
1 3 4 5 6 7 11 241