AdvancedPublished 2026-08-09
CCNA Resilient Campus Capstone: STP + EtherChannel + FHRP
Archive lab
Bring together core campus redundancy skills in one focused day: elect a deterministic STP root on the intended distribution switch, form a working LACP EtherChannel between distribution and access, harden edge with PortFast/BPDU Guard, and stand up an HSRP virtual gateway that the VLAN 10 users actually use. The starter is intentionally mis-tuned across layers so you must build or repair it end-to-end.
Learning objectives
- Elect a predictable STP root for a user VLAN and verify it with show commands
- Deploy an LACP EtherChannel and verify all members are bundled
- Apply edge protection (PortFast + BPDU Guard) to host-facing access ports
- Configure HSRP across two distribution switches to provide a working virtual default gateway
- Validate end-to-end host reachability and interpret failure symptoms across L2 and FHRP
Troubleshooting focus
- STP root not where you expect: compare bridge IDs and port roles; root should be the intended distribution switch
- One EtherChannel member not bundling: check LACP mode and that both sides use the same channel-group and trunk parameters
- Hosts fail to ARP for the default gateway: confirm HSRP group, VIP, and state (Active/Standby) on both distribution switches
- BPDU Guard not set: plugging a switch into an access port should err-disable to protect the edge
- Native VLAN or allowed list mismatch on trunks: ensure VLAN 10 and 999 match on both ends
Topology
Subscribe to preview this lab's topology.
See plansGrade your work
How this lab is graded
- Build it your way. Where a lab lets you choose a value — a VLAN name, an interface description — grading checks that you configured it, not which name you picked. Names that another line has to reference, like an ACL applied with
access-class, are stated in the guide and do have to match. - Addresses, modes and protocol keywords are exact. An IP address, a subnet mask,
switchport mode trunk, an encapsulation — these carry the meaning of the lab, so they are graded as written in the guide. - Grading reads your saved configuration. Export the lab from CML after you have configured it, and make sure anything you set is in the running-config — a change that only exists in a terminal session never reaches the grader.
- You can submit as many times as you like. Your best score stands, and each attempt tells you which checks passed so you can work the gaps.
- Scored something you believe is correct? Use Report an issue on this page — that is exactly how the grading fixes in the changelog got found.
Create a free account to submit your lab for grading.
Create a free accountFound a problem with this lab?
Please sign in to report a problem — tying it to your attempts lets us reproduce and fix it faster.