Section 9: Security (8 Points)

  • The users on VLAN_33 belong to a development department and they are under strict supervision. They are not permitted to access e-mail (where the server is outside VLAN_33) between 08:00 AM to 08:00 PM, Monday through Friday. Configure an access list to accomplish this.

  • Configure R2 fa0/0 to prioritize security options on packets coming to this interface. Leave the level and authority as the default values.

  • Configure Sw1-fa0/17 to allow only the host MAC address 0010.DE48.2223 to access the switch through this interface. If a security violation occurs, make the interface go to “shutdown” mode.

Get CCIE Routing and Switching Practice Labs now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.