KB Mega Lab

The Mega Lab has been crafted by Khawar to teach real world applications of various Networking & Security Technologies as experienced by Network Engineers in real world professional situations. The Course will focus on a hands-on demonstration and explanation of the Mega Lab. The technologies that are covered in the Mega Lab: Core Routing (OSPF, IS-IS, EIGRP, BGP); Switching; MPLS VPN (Intra-AS & Inter-AS); Firewalls (ASA & FTD); SD-WAN; ISE; and VPNs. Khawar will teach how these technologies are integrated in a real life environment.

What’s included

  • Five classes on April 12-April 16 at 1700 UTC / 1 pm New York / 9 pm Dubai time

  • The detailed online Live classes will last 4-5 hours each

  • The Course includes a detailed Workbook covering all technologies included in the Mega Lab

  • 20 lab practice hours included in the purchase price

  • Each session will focus on teaching technologies via lab demonstration

  • One-year access to class recordings and future Mega Lab Live classes included in the purchase

$1500
$750

Subscribers sign-in for $500

Outcome

Upon course completion, students will be able to:

  • Know and understand Core Routing (OSPF, IS-IS, EIGRP, BGP)
  • Know and understand Switching
  • Know and understand MPLS VPN (Intra-AS & Inter-AS)
  • Know and understand Firewalls (ASA & FTD)
  • Know and understand SD-WAN
  • Know and understand ISE
  • Know and understand VPNs
  • Know and understand real life integration of all the technologies listed above

Prerequisites

Students attending this course should have a solid understanding of Enterpise Networking, Security & SP technologies

Class Outline

Modules

ISP & SP Configurations

  • Configuring IS-IS
  • Configuring MPLS Unicast Routing
  • Configuring iBGP with Route-Reflectors
  • Configuring Dynamic BGP Peers
  • Configuring eBGP relationships to connect ISPs
  • Configuring MP-iBGP
  • Configuring MP-eBGP
  • Configuring BGP Labeled Unicast
  • Configuring Inter-AS MPLS VPNs using Option - C
  • Configuring VRFs & PE-CE Routing

Campus Setup

  • VLANs
  • Trunking
  • Port-Channels
  • Logical - To - Physical Mappings

SD-WAN Configurations

  • Initialize Controllers from CLI
  • Initialize & Register Controllers from vManage
  • Initialize WAN Edges from CLI
  • Registering WAN Edges in vManage
  • Configuring Feature Templates
  • Configuring Device Templates
  • Applying Device Templates to implement a Service VPN

Configuring BGP

  • Configuring eBGP
  • Configuring iBGP
  • Configuring Route-Reflectors
  • Authentication
  • Attributes to control Traffic
  • BGP Multi-pathing
  • BGP Redistribute Internals

Configuring OSPF

  • Multi-Area/Multi-Domain OSPF Implementations
  • Authentication
  • Summarization
  • OSPF Area Types

Security Technologies - ASA Firewall

  • Initializing the ASA Firewall
  • Configuring ASA as a Relay Agent
  • Configuring NAT on a ASA Firewall
  • Configuring Routing on a ASA Firewall
  • Configuring Access Policies on the ASA Firewall

Security Technologies - FTD Firewall

  • Initializing the FTD Firewall
  • Integrating FTD within FMC
  • Configuring FTD in High Availability
  • Configuring NAT on a FTD Firewall
  • Configuring Routing on a FTD Firewall
  • Configuring Access Policies on the FTD Firewall
  • Configuring the IPS Feature on the FTD
  • Configuring AVC & File Policies

Security Technologies - VPNs

  • Configuring Dual-Hub DMVPN
  • Configuring IPSec Encrption on a DMVPN Tunnel
  • Configuring Flex VPN

Security Technologies - ISE

  • Initializing ISE and Adding Network Devices
  • Configuring Groups & Users in ISE
  • Configuring Dot1x Authentication with VLAN & DACL Assignment
  • Configuring HQ-SW1 for Dot1x Authentication & Verify using Windows
  • Integrating ISE with Microsoft Active Directory (AD)
  • Configuring Device Administration using ISE

Labs Section 1 - ISP-1-AS100 - IGP/BGP Setup

  • Lab 1 - Configuring IS-IS as the IGP
  • Lab 2 - Configure iBGP withing ISP – 1
  • Lab 3 - Configure LDP

Labs Section 2 - ISP-2-AS200 - IGP/BGP Setup

  • Lab 4 - Configuring IS-IS as the IGP
  • Lab 5 - Configure iBGP withing ISP – 2
  • Lab 6 - Configure LDP

Labs Section 3 - MPLS-SP1 – IGP/LDP/MP-BGP Setup

  • Lab 7 - Configuring IS-IS as the IGP
  • Lab 8 - Configure LDP
  • Lab 9 - Configure MP-iBGP withing SP – 1

Labs Section 4 - MPLS-SP2 – IGP/LDP/MP-BGP Setup

  • Lab 10 - Configuring IS-IS as the IGP
  • Lab 11 - Configure LDP
  • Lab 12 - Configure MP-iBGP withing SP – 2

Labs Section 5 - Configuring eBGP between ISP’s & SP’s

  • Lab 13 - Configuring eBGP between ISP-1 & ISP-2
  • Lab 14 - Configuring eBGP between SP-1 & ISP-2
  • Lab 15 - Configuring eBGP between SP-2 & ISP-2

Labs Section 6 - Configuring MP-eBGP between SP-1 & SP-2

  • Lab 16 - Configuring Labeled Unicast between AS-111, AS-112 & AS-200
  • Lab 17 - Configure MP-eBGP between the RR's

Labs Section 7 - Configure an Inter-AS MPLS VPN to connect HQ to Branches 1 - 3

  • Lab 18 - Configure Intra-AS MPLS VPN to connect HQ, BR-1 & BR-2
  • Lab 19 - Configure an Inter-AS MPLS VPN to connect KBITS BR-3 to other Sites

Labs Section 8 - Configuring the Switching setup of HQ

  • Lab 20 - Configuring Port-Channels, Trunks & VLANS – HQ
  • Lab 21 - Mapping Physical Topology to Logical Topology for HQ

Labs Section 9 - Configure HQ-ASA Firewall

  • Lab 22 - Configure HQ-ASA Interfaces & DHCP Relay
  • Lab 23 - Configure Routing on the HQ-ASA Firewall
  • Lab 24 - Configure Access Policies on HQ-ASA

Labs Section 10 - Configure HQ-FTD Firewalls

  • Lab 25 - Configure the relationship between FMC & FTD
  • Lab 26 - Configure Failover between FTD1 & FTD2
  • Lab 27 - Configure Interface IP’s & Routing
  • Lab 28 - Configure NAT
  • Lab 29 - Configure Access Control Policies – Basic
  • Lab 30 - Configure Access Control Policies – Advanced

Labs Section 11 - Configuring BGP

  • Lab 31 - Configuring BGP – HQ
  • Lab 32 - Configuring BGP – Branch-4
  • Lab 33 - Configuring BGP – Branch-5
  • Lab 34 - Configuring IGP – EIGRP
  • Lab 35 - Configuring Advanced BGP Features

Labs Section 12 - Configure SD-WAN

  • Lab 36 - Initialize and Register the Controllers
  • Lab 37 - Registering the vEdges on vManage
  • Lab 38 - Configuring the vEdges using Templates

Labs Section 13 - Configuring Branch-5 – OSPF & EIGRP

  • Lab 39 - Configuring OSPF – Basic
  • Lab 40 - Configuring EIGRP – Basic
  • Lab 41 - Configuring Route Redistribution
  • Lab 42 - Configuring Route Summarization
  • Lab 43 - Configuring OSPF Area Types

Labs Section 14 - Configuring VPNs – DMVPN & Flex VPN

  • Lab 44 - Configuring Dual-Hub DMVPN
  • Lab 45 - Configuring Redistribution
  • Lab 46 - Configure the Firewalls to allow reachability between the Branches
  • Lab 47 - Configure IPSec to Encrypt the DMVPN Tunnel
  • Lab 48 - Configure a FlexVPN Tunnel Using S-VTI

Labs Section 15 - Configuring ISE

  • Lab 49 - Initializing ISE and Adding Network Devices
  • Lab 50 - Configuring Groups & Users in ISE
  • Lab 51 - Configuring Dot1x Authentication with VLAN & DACL Assignment
  • Lab 52 - Configuring HQ-SW1 for Dot1x Authentication & Verify using Windows
  • Lab 53 - Integrating ISE with Microsoft Active Directory (AD)
  • Lab 54 - Authenticating Users using AD - Username/Password
  • Lab 55 - Configuring AAA on Routers/Switches
  • Lab 56 - Configuring Authentication & Authorization on ISE