Highlights
Complete the following tables by indicating the 1st and last usable IP addresses in each subnet
Addressing Table
Configure VLANs and Trunking
Configure VLANs 10, 20, 30 and 40, and 100 on S1, S2 and S3
Configure VLANs 50 and 60 on S4
Configure the appropriate ports on S1 and S4 as a trunk to support inter-VLAN routing
Configure the connections to WLC and LWAP1 as trunks with a native vlan of 100
NOTE: other trunks will be configured as part the link aggregation configuration
Configure Host Connections
Assign VLANs to the appropriate ports on access switches
Configure access ports connected to a single device to immediately transition to the spanning-tree forwarding state
Configure switchports configured in the previous step to guard against received BPDUs by entering the errdisable state if a BPDU is received on the port
Disable all unused switchports
Configure Port Security
Maximum 1 learned MAC address
Configure the setting necessary to enter the learned MAC addresses into the running configuration
Configure the violation mode that causes packets from incorrect MAC addresses to be dropped and generate a syslog message.
Etherchannel, STP and Trunking
Po1: PagP
Po2: LACP
Po3: static
All etherchannel logical interfaces should be trunks that allow all vlans.
Create other trunks as required to support inter-vlan routing in Area 1 of the diagram
Verify that all portchannels are operational before making any spanning tree changes.
Identify which switch was elected as the root bridge and indicate it below:
Configure Static IP Addressing
Using the Addressing Table, configure the IP addressing for appropriate interfaces on R1 and R2 (Provider is already configured)
Assign static addressing for devices in VLANs 30, 40, 50, and 60 (PCs 3, 4, 5, and 6)
Configure DHCPv4
The hosts on VLAN10 and VLAN 20 (PC1 and PC2) should receive their addresses from DHCP
Configure DHCP on R1 with the following settings:
Use the pool name of LAN10 for the VLAN 10 subnet
Use the pool name of LAN 20 for the VLAN 20 subnet
Use 10.10.10.10 as the DNS server address
Exclude the first 10 usable IP addresses in each subnet from being assigned via DHCP
Set the default gateway to the IP address of the appropriate subinterface for each vlan
Verify the PCs obtained their IP addresses from DHCP
Static Routing
Configure Static Routing on R1 and R2
Configure R1 with a default route with a next hop of IP address of Provider’s serial interface
NOTE: NO configuration is necessary or needed on Provider
Configure static routes necessary for all VLANs on “Company NET” to communicate with one another.
WLAN Configuration
i . Using the Admin PC, open the management page of the WLC using the management IP address from the addressing table
ii. Login using a username of admin and a password of Cisco123
iii. Create a VLAN interface and name it WLAN20.
The interface should use a “VLAN Identifier” of 20
Assign the IP address for this interface using information from the addressing table
Use “1” for the “Port Number” setting
Make sure the settings are applied
iv. Create a new WLAN. Name it WLAN20 and configure the SSID as SSID20
Make sure that
The WLAN is enabled,
The WLAN is set to the WLAN20 interface
Is set to broadcast the SSID
Configure security settings
Use WPA2 PSK
Use a PSK value of Cisco123
Configure Advanced settings
Enable both FlexConnect Local Switching and FlexConnect Local Auth for this WLAN
Make sure the settings are applied
Create a DHCP scope for the management network
Name the scope AdminScope
Ensure that the pool IP addresses and the “Network” setting are set appropriately for the VLAN 100 Subnet (PT 13.5.1 is a good reference for this)
Make sure the settings are applied
v. Go to the “Monitor” page of the WLC management web page and verify that there is an active AP in the “Access Point Summary” page
Note: if the LWAP1 device does not show up, you can try resetting it with the following steps
Click the device
Go to the “Physical” tab
Click the small red “reset” button.
vi. Go to the desktop of “Laptop” and click the PC Wireless tile
Search for and connect to the SSID 20 network you created on the WLC, using the appropriate security settings.
Verify the IP address
Management
Configure CDP
Configure CDP so that information about R1 is not shared with Provider
Connectivity Tests
This Network Security Assignment Help has been solved by our Network Security Experts at My Uni Paper. Our Assignment Writing Experts are efficient to provide a fresh solution to this question. We are serving more than 10000+ Students in Australia, UK & US by helping them to score HD in their academics. Our Experts are well trained to follow all marking rubrics & referencing style.
© Copyright 2026 My Uni Papers – Student Hustle Made Hassle Free. All rights reserved.