PREVIOUS PROJECTS 12b. Secure Campus Area Network Implementation: kzbin.info/www/bejne/iInJi5Kplqaoo6ssi=HbVUQRXCCqdQ0SYk 12a. Secure Campus Area Network Design: kzbin.info/www/bejne/d2SpeXdqbNt8l8U 11. Secure Healthcare Network System: kzbin.info/www/bejne/pJ2upmxpfMdpfbM 10. Telecommunication Company Network System: kzbin.info/www/bejne/rWSnl5anj52rhassi=JEwsefmxMjjUN5Rg 9. Financial Company Network System: kzbin.info/www/bejne/pmKwnZWEZrybbtk 8. VoIP Telephony Service Project: kzbin.info/www/bejne/imGzfGx-eKyDacU 7. Hospital Network Design: kzbin.info/www/bejne/roXQlHSXaNlsi7M 6. Company Business Network Design: kzbin.info/www/bejne/m6KolWtqrsqFrsk 5c. Bank System Network Part 3: kzbin.info/www/bejne/hH2woqCXd9t3brM 5b. Bank System Network Part 2: kzbin.info/www/bejne/qKW6iqaviZySZ8U 5a. Bank System Network Part 1: kzbin.info/www/bejne/immpZnlvf9lrj80 4. Campus Network: kzbin.info/www/bejne/p3rFmZ6jiadrh5o 3. Hotel System Network: kzbin.info/www/bejne/iKipe4eAicpgha8 2. SOHO Network: kzbin.info/www/bejne/fJDHhKOXibKsq6M 1. Simple Networking Project: kzbin.info/www/bejne/immpZnlvf9lrj80
@moramoy18 ай бұрын
Sir: Thank you a lot for the video, it will help me a lot to accomplish a homework project. Can't wait to get it started & finish.
@geniuswithaG2 ай бұрын
Sir please help me through the subnetmasking part it’s very confusing
@essenceofmoment6 ай бұрын
Sir i love it when you say wow everytime the configuration actually works , it makes me so happy as well
@gurutechnetworks6 ай бұрын
Haha it's so interesting if you work hard and get the results
@essenceofmoment6 ай бұрын
@@gurutechnetworks Yes sir absolutely
@linux-u3g10 ай бұрын
Mr Bernard I love your videos it helping me alot since last year or so I came across this so I have started from first project and I have also started my ccna and ccnp class and I have gotten a lot of notes from ur videos thank you
@gurutechnetworks10 ай бұрын
Thanks for your feedback and I am glad your learning from my videos. Well, regarding this, I now let you know about the concept of Network automation
@rudyguillen-w3s9 ай бұрын
These network configurations are very good, you learn a lot. Great, keep it up. Peace and Good. Waiting for more
@gurutechnetworks9 ай бұрын
Thanks for your feedback
@Son--ofThunderАй бұрын
Great videos SIr, and I shared your page with a colleague from work. Your work is much appreciated.
@gurutechnetworksАй бұрын
Thank you so much for the positive feedback, I'm glad to hear from you
@williamgupton87709 ай бұрын
i had my doubts at first but iam glad to say thanks i subscribes and i will learn thank you much
@gurutechnetworks9 ай бұрын
Thanks for your feedback
@andrejesus.5 ай бұрын
Finally i was able to make it work. At first DHCP server wasn't reaching the branch. Because i forgot to advertise the interfaces on the routers. But the WiFI Access Points don't work on the branch side. I made sure to turn off the HQ wifi access points, to see if the devices would connect to the Branch side but they don't work at all. even after the syncronization (by allowing CAPWAP UDP ports ) on Firewall. All the 9 access points show up on the Cisco Lan Controller webpage. i wonder if is because they are on different vlan ??
@gurutechnetworks5 ай бұрын
Thanks for the feedback
@shivrajak28044 ай бұрын
i have tried 3 times from scratch still the branch network wont work properly they are not able to get the dhcp and the webpage is not loading in managment pc its shoeing server reset connection can you please share me the file i have crosschecked everything this is the 3rd time everytime i sit for 5 hours to complete it but never succeedd plxz help me
@Networking_with_Hikmath2 ай бұрын
@@shivrajak2804verify the ASA configuration
@ALRAWNAKSHAFIN25 күн бұрын
can you please share your pkt file?? my branch side is not working at all and I need asap for a project of mine
@ALRAWNAKSHAFIN25 күн бұрын
@andrejesus
@danielgx832 ай бұрын
Sir i am not able to use OUTSIDE in BRANCH-FWL it show's only 3 INSIDE options OUTSIDE not exist 2:47:28
@gurutechnetworks2 ай бұрын
Ensure you have configured an interface witha name OUTSIDE
@danielgx832 ай бұрын
how do you decide the address exacly , for example why start from 5 - 10 on the DMZ ? , is it random ? , would you do the same on production invironment when it comes to ip assignment ?, and also how exacly would it work with the ISP or should i work with several ISP's ?
@gurutechnetworks2 ай бұрын
We have prepared the IP address table beforehand
@andrejesus.5 ай бұрын
When setting ACL's aren't we suppose to use wildcard masks instead of subnet masks ? so class B is like 0.0.255.255 .
@gurutechnetworks5 ай бұрын
Sure, thanks for the feedback
@mhplays317Ай бұрын
Branch pc's are not able to connect with dhcp help me
@gurutechnetworksАй бұрын
You might have missed something, this is a very lab and it's not easy to pinpoint where you missed
@shivrajak28044 ай бұрын
i have cros checked everything my firewalls are able to ping each other but the pc's of those in main building are not even able to ping the outside interface of the firewall by this problem the branch pc's are not able to get the dhcp and they are not able to communicate will main building pc's i solved it access-list outside_access_in extended permit ip any any access-group outside_access_in in interface OUTSIDE i used this command on both firewalls and another was route OUTSIDE 0.0.0.0 0.0.0.0 than the gateway address
@gurutechnetworks4 ай бұрын
Review your firewall configuration
@kevinallamby97306 ай бұрын
I could not get the clients in the branch network to obtain an IP address with the NAT statements configured on firewall. I did a wireshark packet capture and notice the DHCP offers were not getting pass the branch firewall. I removed the NAT statements from my branch firewall and then the clients were able to get an IP. Also, with NAT statement on HQ-FW, pings from Branch to HQ failed but I could ping from HQ to Branch. I also removed the NAT statements from HQ and then pings in both direction was successful. Any ideas why? p.s. - I am using ASAv992 firewall so could this be the reason or did I miss something in video?
@gurutechnetworks5 ай бұрын
Did you allow the correct IP range on the nat statement?
@kevinallamby97305 ай бұрын
@@gurutechnetworks Yes, I followed the configuration steps in the video. object network INSIDE1-OUTSIDE subnet 172.17.0.0 255.255.0.0 nat (INSIDE1,OUTSIDE) dynamic interface object network INSIDE1A-OUTSIDE subnet 172.17.0.0 255.255.0.0 nat (INSIDE2,OUTSIDE) dynamic interface object network INSIDE2-OUTSIDE subnet 10.11.0.0 255.255.0.0 nat (INSIDE1,OUTSIDE) dynamic interface object network INSIDE2A-OUTSIDE subnet 10.11.0.0 255.255.0.0 nat (INSIDE2,OUTSIDE) dynamic interface
@kevinallamby97305 ай бұрын
@@gurutechnetworks Yes I did. DHCP only works when NAT statement is removed. I am using eve-ng simulator. I built same lab in packet tracer and it worked. I really wonder if it is the version of the FW I am using in the eve-ng lab.
@knowledgeispower90887 ай бұрын
Wireless devices in the branch also shows the same IP address range of 10.10.0.0/16 not 10.11.0.0/range. is it because of WLC?
@gurutechnetworks7 ай бұрын
It is connected to HQ APs, when it connect to branch AP it will be showing correct IP
@ajitpalsingh6066 ай бұрын
2:32:53 why in valn 10 standby is unknown? i have configured standby 10 ip 192.168.10.1 255.255.255.0 it showing duplicate address why?
@gurutechnetworks6 ай бұрын
Recheck what we did, it's a very long project and I may not know where you went wrong
@danielgx832 ай бұрын
getting 169.254 apipa address on branch side hosts, not sure what i missed
@gurutechnetworks2 ай бұрын
This is a huge lab that needs to be keen, try restarting the file
@danielgx832 ай бұрын
@@gurutechnetworks i tried restarting also taking ports to shut / no shut on mls, stick problem consist only on branch side :((((
@ManshaSingla-b8z3 ай бұрын
Sir, when you were adding udp 5246 and 5247 for connecting main branch and campus branch, can you please tell how to connect main branch other 2 branches as well
@gurutechnetworks3 ай бұрын
You just do the same thing
@vlados90538 ай бұрын
Thank you for all your great projects. What is the minimal RAM and CPU requirement on our PC to work this big PT labs-projects?? Keep doing similar projects please.
@gurutechnetworks8 ай бұрын
Actually packet tracers don't consume a lot of resources, so don't worry about that.
@shreetiagrahari32655 ай бұрын
whenever I'm trying to ping MGT2 it displays "request timed out" HOW should i proceed?
@gurutechnetworks5 ай бұрын
You missed something, rewatch
@mallawaarachchigeranajauth26779 ай бұрын
This video is very help full can you mention if i connect AAA severer how that configuration has done . thank you
@gurutechnetworks8 ай бұрын
Sure you can connect and manage the central authentication
@bakotojobeАй бұрын
Hi, great video! could this network be used for company based in two countries?
@gurutechnetworksАй бұрын
Exactly, just change the names. Thanks
@Networking_with_Hikmath2 ай бұрын
Why did you place the DHCP server in the DMZ?
@gurutechnetworks2 ай бұрын
The dhcp server is not in the DMZ but inside network
@Networking_with_Hikmath2 ай бұрын
@@gurutechnetworks There are two DHCP servers in the DMZ.
@shivrajak28045 ай бұрын
branch2 pcs are not able to get the dhcp and also the branch1 pcs are not able to ping the branch 2 pcs i have checked the routers router tables ospf everything is fine plzzz help
@gurutechnetworks5 ай бұрын
You might have gone wrong somewhere, it's a big lab and I may not know
@Networking_with_Hikmath2 ай бұрын
Write the ACL rule on your firewall to allow the ICMP between Head office subnets and Branch office subnets
@thepuldarshana90566 ай бұрын
hi bro, does this tutorial includes TACACS (AAA) server configured ?
@gurutechnetworks6 ай бұрын
Not really
@AustinHypes5 ай бұрын
I finished this lab it was very nice
@gurutechnetworks5 ай бұрын
I'm glad you are able to complete it
@shivrajak28044 ай бұрын
i have tried 3 times from scratch still the branch network wont work properly they are not able to get the dhcp and the webpage is not loading in managment pc its shoeing server reset connection can you please share me the file i have crosschecked everything this is the 3rd time everytime i sit for 5 hours to complete it but never succeedd plxz help me
@AustinHypes4 ай бұрын
@@shivrajak2804 host a file with your config ill tell you what is wrong i cant help you without seeing the config of the devices just the network nodes
@AustinHypes4 ай бұрын
@@shivrajak2804 just a shot in dark maybe check the ip helpers u can put loopbacks on the router then use the dynamic routing protocol to advertise the loopbacks on the router with the dhcp pool then add ip helper-address to all of the SVI's on the Multi layers
@hassanabdullahiusman-l6gАй бұрын
please help me with your file
@ajitpalsingh6067 ай бұрын
AP are not getting ip from WLC ....how to troubleshoot?
@gurutechnetworks7 ай бұрын
Kindly check out the WLC configuration part, it's a big lab and I may not know where you went wrong without checking your lab
@homemadescience9179Ай бұрын
Virtual IP Vl10 10 100 Active local 192.168.10.2 192.168.10.1 Vl20 20 100 Active local 172.16.0.2 172.16.0.1 Vl50 50 100 Active local 10.10.0.2 its work properly but when set router ospf 15 its not set please help me!!
@gurutechnetworksАй бұрын
Ensure you do it properly as per the video
@homemadescience9179Ай бұрын
@@gurutechnetworks everything do same as video when I am command ospf its show ok no error...but when I check ospf by command do sh star where show no IP cef :)
@homemadescience9179Ай бұрын
@@gurutechnetworks HQ-MLSW1(config)#router ospf 15 HQ-MLSW1(config-router)#router-id 2.1.2.1 HQ-MLSW1(config-router)#network 10.20.20.32 0.0.0.3 area 0 HQ-MLSW1(config-router)#network 192.168.10.0 0.0.0.255 area 0 HQ-MLSW1(config-router)#network 172.16.0.0 0.0.255.255 area 0 HQ-MLSW1(config-router)#network 10.10.0.0 0.0.255.255 area 0 HQ-MLSW1(config-router)# HQ-MLSW1(config-router)#ex HQ-MLSW1(config)#do wr Building configuration... Compressed configuration from 7383 bytes to 3601 bytes[OK] [OK] HQ-MLSW1(config)#do sh star Using 3066 bytes ! version 16.3.2 no service timestamps log datetime msec no service timestamps debug datetime msec no service password-encryption ! hostname HQ-MLSW1 ! ! enable password cisco ! ! ! ! ! ! no ip cef ip routing ! no ipv6 cef ! show this massage
@GaganDeepkaur-cb9gw3 ай бұрын
Is it helpful if we have to implement qos
@gurutechnetworks3 ай бұрын
Sure, thanks for the positive feedback
@danielgx832 ай бұрын
personal opinion for me would be to give up on fast forward the configuration , because than i will be able to do so step by step configuring the other switche's slowly , when im watching your video i usally have enough time to do everything and i rather do it slow because im learning , when you fast forward i cant see which switches you didnt configure , and also it seems like you permit access on the same ip 192.168.10.0 which isn't exacly relate to the other switches so i got a little confused for example if you desided to skip google switch up on the corner than i would not know it when its fast forwarding 🙃🙂 thanks though you are great anyway !
@gurutechnetworks2 ай бұрын
Thanks for the positive feedback, it was a very long video
@MrMonteiron7 ай бұрын
hi, first of all i wanna say thank for your awsome videos 've learned a lot by watching you doing your projrcts and then re-creating them on my own. i have a question in real world you should not be able to ping from inside a network to inside another... you're able to do so because you use ospf through out all you network design... in reality no edge router or firewall shoud advertise the networks inside... am i wrong?
@gurutechnetworks7 ай бұрын
Sure you are right, you can use static route. Although will be tiresome but it's the best and secure method for edge devices.
@Secretsportlight6 ай бұрын
How did u subnet you have no video on subnet
@gurutechnetworks6 ай бұрын
You can learn how to do subnetting
@Secretsportlight6 ай бұрын
Please show us how u came out with the ip addresses
@gurutechnetworks6 ай бұрын
You can learn how to do subnetting
@essenceofmoment6 ай бұрын
Sir i have completed this project but I have decided not to add the ipsec vpn between firewalls because I still don't know anything about it and i will not be able to explain about its configuration if asked by interviewer or professor so i am going without that, i think this project is still top notch without that. And when i have completely learnt about the ipsec vpn then afterwards i will add it into my project. Sir ,what is your opinion on it ?
@gurutechnetworks6 ай бұрын
Wow I'm so excited to hear that you managed to complete the lab successfully
@abdurrazzaq50686 ай бұрын
Can you give me this project
@essenceofmoment6 ай бұрын
@@abdurrazzaq5068 sure
@shreetiagrahari32655 ай бұрын
@@essenceofmoment can you also send me the project??
@ompawar14723 ай бұрын
Which technology used sir ?
@gurutechnetworks3 ай бұрын
It's listed in the project details
@shivrajak28044 ай бұрын
thank you sooo much
@gurutechnetworks4 ай бұрын
Thanks for the feedback
@v-hypertopic77579 ай бұрын
can we access the IP PLAN
@gurutechnetworks9 ай бұрын
Kindly check out on our site gurutechnetworks.otombenard.com
@seth-kelvinamedonu4061Ай бұрын
I kinda have issue with your IP addressing. Why is the subnet for a faculty so large without dividing it? Using the Health and Science as an example, why don't you break the subnet into Data VLAN ( Wired-Client & Wireles-Client) and Voice VLAN. You ca even choose to have a separate VLAN for the APs (Department-based VLAN). Example: Health_Wired_Clients VLAN 200 Health_WiFi_Clients VLAN 210 Health_AP VLAN 220 Health_Voice VLAN 250 H/S_Data VLAN: • Wired_Clients = VLAN 200 IP = 10.10.32.0 /22 (1022 IPs) Subnet Mask = 255.255.252.0 IP Range = 10.10.32.1 - 10.10.35.254 Gateway = 10.10.32.1 • WiFi_Clients = VLAN 210 IP = 10.10.36.0 /21 (1022 Usable IPs) Subnet Mask = 255.255.252.0 IP Range = 10.10.36.1 - 10.10.39.254 Gateway = 10.10.36.1 H/S_AP_VLAN = VLAN 220 IP = 10.10.40.0/24 (254 IPs) Subnet Mask = 255.255.255.0 IP Range = 10.10.40.1 - 10.10.40.254 Gateway = 10.10.40.1 RESERVED IPs = 10.10.41.0/24 - 10.10.47.255 H/S_Voice_VLAN = VLAN 250 IP = 172.16.16.0 /21 (2046 Usable IPs) Subnet Mask = 255.255.248.0 IP Range = 172.16.16.1 - 172.16.23.254 Gateway = 172.16.16.1 Management_VLAN = 192.168.10.0/24
@gurutechnetworksАй бұрын
Wow, thanks for the positive feedback. You did a great job
@glenntembo269310 ай бұрын
Thanks man
@gurutechnetworks10 ай бұрын
I'm glad you learned something
@glenntembo269310 ай бұрын
@@gurutechnetworks always from you my brother, every other thing counts. We keep learning from those ahead
@tabulongjhericolariosa63218 ай бұрын
hi bro very helpful video. It is possible to implement QoS in this kind of network system design?
@gurutechnetworks8 ай бұрын
Yes, definitely
@GaganDeepkaur-cb9gw3 ай бұрын
Can you make a project based on qos
@gurutechnetworks3 ай бұрын
Noted with thanks
@sagarparajuli44105 ай бұрын
hey can i have the completed file
@gurutechnetworks5 ай бұрын
Sure, join the channel membership
@ashishkhatri98911 ай бұрын
Sir plzzz next video on the scenario i have provided plzz
@gurutechnetworks11 ай бұрын
Okay noted, please be patient a little bit, we still have engagements.
@arunvijay54277 ай бұрын
Plz do some videos using GNS 3
@gurutechnetworks7 ай бұрын
Thank you for your feedback
@sumantimalsina9230Ай бұрын
Hlo sir ,could you provide the file of this lab ?
@gurutechnetworksАй бұрын
Sure, check out here gurutechnetworks.com/projects
@maheshjalagam73106 ай бұрын
Hi sir, Can u share project with document
@gurutechnetworks6 ай бұрын
Please check gurutechnetworks.otombenard.com
@Content_hub_40829 ай бұрын
please can you make a design at this type and also think like physical You're the new network engineer at XYZ Company, and you need to improve the network. There's one switch causing problems, and security is weak because there's no router or firewall. Create a new network design with the right equipment, divide departments, control access, and set up Wi-Fi. Also, think about using simulation tools to test and fix issues, and write clear instructions for a successful setup. design a simple network by using 1 router, 2 firewall and two multilayer switch config all if possible then please make a video for me i have urgent tomorrow
@gurutechnetworks9 ай бұрын
This requirements match the projects that have been recorded try to check project 1-12
@denisich112311 ай бұрын
Please sand the finished task
@gurutechnetworks11 ай бұрын
Join the channel membership
@denisich112311 ай бұрын
you can send the finished task
@gurutechnetworks11 ай бұрын
Click on the join button
@denisich112311 ай бұрын
@@gurutechnetworkswhat is the join button?
@denisich112311 ай бұрын
?@@gurutechnetworks
@ajitpalsingh6067 ай бұрын
dhcp failing..?
@gurutechnetworks7 ай бұрын
Troubleshooting
@gurutechnetworks7 ай бұрын
If you lab replication works, please like this comment and comment below 👇. Love you all.
@ajitpalsingh6067 ай бұрын
@@gurutechnetworks lab is working all pc wireless devides are getting ip