Networking Labs & Workbooks
50 completely interactive, hands-on lab exercises covering CCNA, ENCOR, and ENARSI tracks, plus a massive 12-phase Enterprise Architecture.
Switch Basics & VLANs
Configure hostname, passwords, SSH, create VLANs, assign ports
Inter-VLAN Routing (ROAS + SVI)
Router-on-a-stick sub-interfaces and L3 switch SVIs
Spanning Tree (STP/RSTP)
Root bridge election, port roles, PortFast, BPDU Guard, Rapid PVST+
EtherChannel (LACP/PAgP)
Link aggregation, load balancing, and redundancy
IPv4 Static & Default Routing
Static routes, default gateway, floating static routes
OSPFv2 Single-Area
OSPF hello/dead timers, DR/BDR election, passive interfaces
IPv6 Addressing & Routing
EUI-64, SLAAC, DHCPv6, OSPFv3, static IPv6
DHCP Server & Relay
Cisco IOS DHCP server, ip helper-address, DHCP relay
ACLs (Standard & Extended)
Numbered/named ACLs, traffic filtering, placement strategy
NAT & PAT Configuration
Static NAT, dynamic NAT, PAT (overload), NAT verification
Port Security & DHCP Snooping
Sticky MACs, violation modes, DHCP snooping, DAI
CDP, LLDP & Device Discovery
CDP neighbors, LLDP, topology mapping, security considerations
NTP, Syslog & SNMP
NTP hierarchy, syslog server, SNMP v2c/v3 monitoring
Wireless Fundamentals & QoS Basics
SSID, WPA3, QoS marking, DSCP, queuing concepts
OSPF Advanced Features
Route filtering, summarization, virtual links, authentication
EIGRP Named Mode
EIGRP named config, bandwidth/delay tuning, MD5 auth
BGP Fundamentals
eBGP/iBGP peering, AS-PATH, MED, Local Pref attributes
BGP Route Manipulation
Route maps, prefix-lists, communities, AS-PATH prepending
Route Redistribution
Mutual redistribution, metric manipulation, loop prevention
VRF-Lite & Multi-VRF
VRF creation, per-VRF routing, leaking across VRFs
QoS Classification & Marking
DSCP, CoS, class-maps, policy-maps, MQC framework
QoS Queuing & Congestion
CBWFQ, LLQ, WRED, traffic shaping and policing
Zone-Based Firewall
Zone pairs, policy maps, inspect rules, self zone
Site-to-Site IPSec VPN
IKEv2, crypto maps, IPSec phase 1/2 troubleshooting
DMVPN Phase 1, 2, 3
mGRE, NHRP, spoke-to-spoke tunnels, DMVPN with OSPF
Wireless LAN Controller
WLC setup, AP join, SSID/WLAN config, roaming
802.1X & AAA with RADIUS
EAP-TLS, dot1X port auth, RADIUS server, ISE integration
Python Network Automation
Netmiko, paramiko, Nornir, NAPALM device management
Ansible for Network Automation
Playbooks, roles, ios_config module, automated config backup
REST API & RESTCONF
YANG models, RESTCONF, Postman, HTTP methods on IOS-XE
SD-Access & SD-WAN Concepts
DNA Center overview, SD-WAN vManage, fabric concepts
Network Virtualization
VXLAN, overlay networks, EVPN concepts, spine-leaf intro
ENCOR Troubleshooting
Systematic approach, debug commands, show commands analysis
EIGRP Advanced Tuning
Variance, load balancing, stub routers, route leaking
OSPF Advanced Troubleshooting
Adjacency issues, LSA flooding, MTU mismatch, auth problems
BGP Advanced Attributes
Weight, Local Pref, AS-PATH, Origin, MED, route reflectors
BGP Route Filtering & Policy
Prefix lists, distribute-lists, route maps with BGP
Advanced Route Redistribution
Multi-point redistribution, administrative distance, loop prevention with tags
Policy-Based Routing (PBR)
Route maps, set commands, ip policy, next-hop tracking
IP SLA & Tracking
ICMP probes, UDP echo, threshold tracking, failover automation
VRF & MPLS L3VPN
PE-CE routing, MP-BGP, VPNv4 address family, RD/RT
IPv6 Advanced Routing
OSPFv3, EIGRPv6, BGP4+, IPv6 redistribution
DMVPN with OSPF/BGP
DMVPN Phase 3 with dynamic routing protocols, split-horizon
FlexVPN & IKEv2
FlexVPN hub-and-spoke, IKEv2 configuration, smart defaults
SNMP, NetFlow & IP Accounting
SNMPv3 traps, NetFlow v9, IP SLA statistics, accounting
Security at L3/L4
uRPF, control plane policing (CoPP), RTBH, TACACS+
ENARSI Troubleshooting Lab 1
Multi-protocol failure scenarios, systematic isolation methodology
ENARSI Troubleshooting Lab 2
Exam-style troubleshooting tickets with full resolution documentation
The Enterprise Lab
A massive 12-phase multi-domain architecture integrating routing, security, wireless, and systems.
Deployment & Baseline
EVE-NG topology staging, image mapping, base management IPs, and full device hardening across the core, distribution, and access layers.
L2 Fabric & Inter-VLAN Routing
Spanning-Tree optimization, L2 EtherChannels, redundant SVIs with HSRP, and an OSPF transit backbone design.
Infrastructure Services & Voice
Setting up DHCP pools, Voice VLANs with QoS, Windows Server Domain Controller integration, and DNS record structure.
Edge Security & Wireless
Configuring NAT, deploying Zone-Based Firewalls for the DMZ boundaries, and standing up WLC SSIDs with WPA-Enterprise.
Systems & End-to-End Monitoring
Integrating PRTG/Solarwinds via SNMPv3, flow exports, specialized DMZ Linux servers, and dot1x physical port security.
BGP, VPN & Break-Fix Analysis
DMVPN Phase 3 rollout, enterprise BGP peering limits, and structured troubleshooting of 10 injected faults across the topology.
Ready to Build Your Network Skills?
These labs represent real-world scenarios — designed from the ground up to prepare you for actual production enterprise networks.