Capstone: Full v2.0 Final Project

CCNA 200-301 v2.0 · Live Feb 3, 2027 (v1.1 valid through Feb 2, 2027) Cisco Packet Tracer

مقصدObjectiveObjective

یہ final project ہے — CCNA v2.0 کے پانچوں domains کا استعمال ایک ہی network میں۔ اسے بنا کر تم exam کے practical حصے کے لیے تیار ہو جاؤ گے۔Ye final project hai — CCNA v2.0 ke paanchon domains ka istemal ek hi network mein. Ise bana kar tum exam ke practical hisse ke liye tayyar ho jaoge.This is the final project — applying all five CCNA v2.0 domains in one network. Build it and you'll be ready for the exam's practical part.

آسان مثالSimple AnalogySimple Analogy

یہ آپ کا final امتحان ہے — جیسے driving test سے پہلے پوری تیاری۔ اس project میں CCNA v2.0 کے پانچوں domains کا استعمال ہے: infrastructure (IPs), switching (VLAN/STP), routing (OSPF), security (ACL/DHCP snooping/SSH) اور AI (troubleshooting میں AI assistant کا استعمال)۔ جو یہ بنا لے، وہ exam کے لیے تیار ہے۔Ye aapka final imtihan hai — jaise driving test se pehle poori tayyari. Is project mein CCNA v2.0 ke paanchon domains ka istemal hai: infrastructure (IPs), switching (VLAN/STP), routing (OSPF), security (ACL/DHCP snooping/SSH) aur AI (troubleshooting mein AI assistant ka istemal). Jo ye bana le, wo exam ke liye tayyar hai.This is your final exam — like full preparation before a driving test. This project uses all five CCNA v2.0 domains: infrastructure (IPs), switching (VLAN/STP), routing (OSPF), security (ACL/DHCP snooping/SSH), and AI (using an AI assistant in troubleshooting). Whoever builds this is ready for the exam.

سیٹ اپLab SetupLab Setup

2 routers (OSPF + HSRP)، 2 switches (VLANs + STP + EtherChannel)، 3 VLANs، internet سرور۔ پورا design اوپر steps میں ہے۔ Devices: 2x Router 2911, 2x Switch 2960, 9x PC, 1x Server۔ Staff/Finance/Guests PCs کو صحیح VLAN IPs دو۔ Guests کا گیٹ وے same، لیکن ACL سے انہیں سرورز تک جانے سے روکو۔2 routers (OSPF + HSRP), 2 switches (VLANs + STP + EtherChannel), 3 VLANs, internet server. Poora design upar steps mein hai. Devices: 2x Router 2911, 2x Switch 2960, 9x PC, 1x Server Staff/Finance/Guests PCs ko sahi VLAN IPs do. Guests ka gateway same, lekin ACL se unhein servers tak jane se roko.2 routers (OSPF + HSRP), 2 switches (VLANs + STP + EtherChannel), 3 VLANs, internet server. The full design is in the steps above. Devices: 2x Router 2911, 2x Switch 2960, 9x PC, 1x Server. Give Staff/Finance/Guests PCs the correct VLAN IPs. Guests use the same gateway, but block them from the servers with an ACL.

اقداماتStepsSteps

Step 1

Phase 1 — Switching (steps 1-4): بنیادی setup (hostname, passwords, SSH)، پھر VLANs 10/20/30 + trunk + native VLAN 99، Rapid PVST+ (SW1 کو VLAN 10,20 کا root بناؤ)، اور PCs والے ports پر PortFast + BPDU Guard۔ جلدی مت کرو — step by step آگے بڑھو۔Phase 1 — Switching (steps 1-4): bunyadi setup (hostname, passwords, SSH), phir VLANs 10/20/30 + trunk + native VLAN 99, Rapid PVST+ (SW1 ko VLAN 10,20 ka root banao), aur PCs wale ports par PortFast + BPDU Guard. Jaldi mat karo — step by step aagay barho.Phase 1 — Switching (steps 1-4): basic setup (hostname, passwords, SSH), then VLANs 10/20/30 + trunk + native VLAN 99, Rapid PVST+ (make SW1 the root for VLANs 10,20), and PortFast + BPDU Guard on PC ports. Don't rush — move step by step.

! Step 1: Har device par basic setup (hostname, passwords, SSH)
! Step 2: VLANs 10,20,30 + trunk + native VLAN 99
! Step 3: Rapid PVST+ — SW1 ko VLAN 10,20 ka root banao
! Step 4: PortFast + BPDU Guard PCs wale ports par

Step 2

Phase 2 — Routing (steps 5-7): راؤٹر پر sub-interfaces (inter-VLAN routing)، پھر single-area OSPFv2 دونوں routers پر، اور IPv6 کے لیے OSPFv3 کا basic setup۔Phase 2 — Routing (steps 5-7): router par sub-interfaces (inter-VLAN routing), phir single-area OSPFv2 dono routers par, aur IPv6 ke liye OSPFv3 ka basic setup.Phase 2 — Routing (steps 5-7): sub-interfaces on the router (inter-VLAN routing), then single-area OSPFv2 on both routers, and a basic OSPFv3 setup for IPv6.

! Step 5: Router par sub-interfaces (inter-VLAN routing)
! Step 6: Single-area OSPFv2 dono routers par
! Step 7: OSPFv3 ka basic setup IPv6 ke liye

Step 3

Phase 3 — Services (steps 8-9): DHCP server اور HSRP gateway redundancy، پھر internet کے لیے PAT۔Phase 3 — Services (steps 8-9): DHCP server aur HSRP gateway redundancy, phir internet ke liye PAT.Phase 3 — Services (steps 8-9): DHCP server and HSRP gateway redundancy, then PAT for internet.

! Step 8: DHCP server + HSRP gateway redundancy
! Step 9: PAT internet ke liye

Step 4

Phase 4 — Security اور AI (steps 10-12): Extended ACL — Guests (VLAN 30) کو صرف internet، servers تک نہیں۔ DHCP snooping + DAI آن کرو، پھر AI assistant سے ایک troubleshooting prompt لکھ کر test کرو۔Phase 4 — Security aur AI (steps 10-12): Extended ACL — Guests (VLAN 30) ko sirf internet, servers tak nahi. DHCP snooping + DAI on karo, phir AI assistant se ek troubleshooting prompt likh kar test karo.Phase 4 — Security and AI (steps 10-12): Extended ACL — Guests (VLAN 30) get internet only, not the servers. Turn on DHCP snooping + DAI, then write and test a troubleshooting prompt with the AI assistant.

! Step 10: Extended ACL — Guests (VLAN 30) ko sirf internet, servers tak nahi
! Step 11: DHCP snooping + DAI on karo
! Step 12: AI assistant se ek troubleshooting prompt likh kar test karo

Step 5

Final verification checklist۔ یہ 9 commands تمہارا final checklist ہے۔ ہر ایک کا output سمجھ کر دیکھو — اگر سب ٹھیک ہے تو project مکمل۔Final verification checklist. Ye 9 commands tumhara final checklist hai. Har ek ka output samajh kar dekho — agar sab theek hai to project mukammalFinal verification checklist. These 9 commands are your final checklist. Read each one's output carefully — if all are good, the project is complete.

show ip interface brief
show vlan brief
show interfaces trunk
show spanning-tree vlan 10
show ip ospf neighbor
show standby brief
show ip nat translations
show access-lists
show ip dhcp snooping

Step 6

Testing: Final test: (1) ہر VLAN کا ping، (2) R1 down کرو — HSRP سے network چلتا رہے، (3) Guest سے سرور ping fail ہونا چاہیے (ACL)، (4) AI assistant سے ایک مسئلے کا حل پوچھو اور verify کرو۔Testing: Final test: (1) Har VLAN ka ping, (2) R1 down karo — HSRP se network chalta rahe, (3) Guest se server ping fail hona chahiye (ACL), (4) AI assistant se ek masle ka hal poocho aur verify karo.Final test: (1) ping every VLAN, (2) take R1 down — the network should keep running via HSRP, (3) pinging the server from a Guest should fail (ACL), (4) ask the AI assistant for a fix to one problem and verify it.

تصدیقVerifyVerify

اوپر دی گئی 9 commands کا checklist پورا کرو۔ ہر command کا output سمجھ کر دیکھو۔Upar di gayi 9 commands ka checklist poora karo. Har command ka output samajh kar dekho.Complete the checklist of the 9 commands above. Read and understand each command's output.

show ip interface brief
show ip ospf neighbor
show standby brief
show access-lists

خرابی دور کرناTroubleshootingTroubleshooting

⚠️ Project میں کہیں خرابی ہے، سمجھ نہیں آ رہا کہاں۔Project mein kahin kharabi hai, samajh nahi aa raha kahan.There's a fault somewhere in the project, but I can't tell where.

✅ Checklist کی 9 commands ایک ایک کر کے چلاؤ — جو command غلط output دے، وہی مسئلے کی جگہ ہے۔Checklist ki 9 commands ek ek kar ke chalao — jo command ghalat output de, wahi masle ki jagah hai.Run the checklist's 9 commands one by one — whichever command gives wrong output, that's where the problem is.

⚠️ سب کچھ ایک ساتھ کرنے میں الجھ گیا ہوں۔Sab kuch ek saath karne mein ulajh gaya hun.I'm getting confused doing everything at once.

✅ ACLs سب سے آخر میں لگاؤ۔ پہلے بغیر ACL کے سب test کرو، پھر ACL لگاؤ — تاکہ پتا چلے مسئلہ ACL کا ہے یا config کا۔ACLs sab se aakhir mein lagao. Pehle bina ACL ke sab test karo, phir ACL lagao — taake pata chale masla ACL ka hai ya config ka.Apply ACLs last. Test everything without ACLs first, then add them — so you know whether the problem is the ACL or the config.

انٹرویو سوالاتInterview Q&AInterview Q&A

❓ پورے network میں خرابی ہو تو troubleshoot کہاں سے شروع کرو گے؟Poore network mein kharabi ho to troubleshoot kahan se shuru karoge?Where would you start troubleshooting if the whole network has a problem?

پہلے مسئلے کو چھوٹا کرو: کیا local ہے یا remote؟ پھر layer by layer نیچے سے اوپر چیک کرو (physical, VLAN, gateway, routing, ACL)۔Pehle masle ko chhota karo: kya local hai ya remote? Phir layer by layer neeche se upar check karo (physical, VLAN, gateway, routing, ACL).First narrow the problem: is it local or remote? Then check layer by layer, bottom-up (physical, VLAN, gateway, routing, ACL).