IntermediatePublished 2026-07-25
CCNA Foundations: Syslog & SNMP — Baseline Network Observability
Archive lab
Stand up a small enterprise-style network where routers forward device logs and SNMP notifications to a central collector. You will configure SSH management, verify reachability from end hosts, and implement Syslog + SNMP on multiple routers so the network is observable from a single collector host.
Learning objectives
- Build baseline reachability between branch LAN and an upstream router using clean point-to-point addressing and a user VLAN through an access switch.
- Configure a complete SSH management plane on IOS routers.
- Configure Syslog destinations and trap severity so devices export logs to a central collector.
- Configure SNMP community, contact/location, and a notification host (trap receiver).
- Validate reachability and configuration from endpoints and with IOS show commands; practice troubleshooting common observability misconfigurations.
Troubleshooting focus
- Syslog not received: verify 'logging host <collector>' is present and the collector IP is reachable from the router source interface.
- SNMP notifications not received: ensure 'snmp-server community <string> RO' and 'snmp-server host <collector> <community>' exist and match.
- Routing asymmetry: ensure return routing to the collector (static route on upstream to the LAN) so traps/logs can reach the server.
- Layer 2 access VLAN mismatch: confirm user and server ports are in the same access VLAN as the router-facing uplink.
- SSH failures: confirm RSA keys exist, ip domain name is set, and VTY is login local with transport input ssh.
Topology
Subscribe to preview this lab's topology.
See plansGrade your work
How this lab is graded
- Build it your way. Where a lab lets you choose a value — a VLAN name, an interface description — grading checks that you configured it, not which name you picked. Names that another line has to reference, like an ACL applied with
access-class, are stated in the guide and do have to match. - Addresses, modes and protocol keywords are exact. An IP address, a subnet mask,
switchport mode trunk, an encapsulation — these carry the meaning of the lab, so they are graded as written in the guide. - Grading reads your saved configuration. Export the lab from CML after you have configured it, and make sure anything you set is in the
running-config— a change that only exists in a terminal session never reaches the grader. - You can submit as many times as you like. Your best score stands, and each attempt tells you which checks passed so you can work the gaps.
- Scored something you believe is correct? Use Report an issue on this page — that is exactly how the grading fixes in the changelog got found.
Create a free account to submit your lab for grading.
Create a free accountFound a problem with this lab?
Please sign in to report a problem — tying it to your attempts lets us reproduce and fix it faster.