CCNA 200-301 · configuration · troubleshooting
NetLab Trainer generates switching and routing labs, simulates the network you configure hop by hop, and grades your work against the running state of the topology — VLANs, trunks, STP, EtherChannel, static routes, OSPF, ACLs, NAT, DHCP and IPv6.
Requirements — graded live
4 / 5Checks re-run against the simulated network after every command — no answer key, no self-marking.
SW1#show interfaces trunk Port Mode Encapsulation Status Native vlan Gi0/1 on 802.1q trunking 99 Port Vlans allowed on trunk Gi0/1 10,20,30,99 SW1#configure terminal SW1(config)#interface range gi0/2 - 4 SW1(config-if-range)#switchport mode access SW1(config-if-range)#switchport access vlan 20 SW1(config-if-range)#spanning-tree portfast SW1(config-if-range)#end SW1#ping 192.168.20.1 !!!!! Success rate is 100 percent (5/5)
Generated topology
Topology, console and grading side by side — this is the actual screen
Topology
Device and link state update as you configure. Down ports and blocked links are visible, so you troubleshoot what you can see.
Console
R1#show ip route ospf O 10.0.20.0/24 [110/20] via 10.0.99.2, GigabitEthernet0/1 O 10.0.30.0/24 [110/20] via 10.0.99.2, GigabitEthernet0/1 R1#show ip ospf neighbor Neighbor ID Pri State Address Interface 2.2.2.2 1 FULL/DR 10.0.99.2 Gi0/1 R1#ping 10.0.30.10 !!!!! Success rate is 100 percent (5/5)
A separate session per device, command history, context help and running-config — parsed, not faked.
Grading & hints
Requirements describe the objective, not the answer. Hints unlock progressively and cost score — Expert mode gives neither.
Four moving parts, all driven by simulated device state.
Config modes, interface ranges, show running-config, ping and traceroute — parsed and simulated against real device state, not scripted output.
SW1(config-if)#switchport mode trunk
Every lab is generated from a seed and validated as solvable before it loads, so addressing, VLAN plans and topologies never repeat.
lab --topic ospf --difficulty advanced --seed 4471
Working networks are broken deliberately — shut ports, wrong masks, mismatched native VLANs. Diagnose with show commands, then repair.
%LINEPROTO-5-UPDOWN: Gi0/2 changed state to down
Scored against the running network: reachability, OSPF adjacencies, VLAN membership, route selection and ACL behaviour.
PASS PC1 can reach PC2 (5/5)
Labs build the hands, question banks build the recall. Every set is randomised from the bank and weighted toward the concepts you have missed before.
Practice
Pick any combination of topics and a difficulty band, choose 10 to 50 questions, and get an explanation for every answer — right or wrong.
Mock exam
Domain-weighted, free navigation, no feedback until you submit — then a per-topic breakdown showing exactly where to revise.
Four difficulty tiers per topic · free command reference on every topic
IPv4 Addressing
Interface addressing, masks and gateways
Subnetting
Divide a network into equal blocks
VLSM
Right-size subnets to host requirements
VLANs
VLAN database, naming and membership
Access Ports
Edge port assignment and hardening
Trunking
802.1Q trunks, pruning and native VLANs
Inter-VLAN Routing
Router-on-a-stick gateways
Static Routing
Manual routes and return paths
Default Routes
Quad-zero routing to an upstream
OSPF
Single-area OSPF adjacencies
STP
Root bridge control and edge ports
EtherChannel
Link aggregation with LACP/PAgP
IPv6 Addressing
Global, link-local and prefix configuration
IPv6 Routing
IPv6 static and default routes
OSPF for IPv6
Configure and verify OSPFv3 area 0
DHCP
Pools, exclusions and client options
DHCP Relay
Helper addresses across VLANs
NAT
Static NAT, dynamic NAT and PAT
DNS & Network Services
DNS, NTP, Syslog and SNMP on IOS
ACLs
Extended access lists and traffic policy
IPv6 ACLs
Named IPv6 access lists and traffic-filter
Port Security
Sticky MAC learning and violation actions
SSH & Device Security
SSHv2, local users and hardened VTY lines
DHCP Snooping
Trusted ports and rogue server protection
Dynamic ARP Inspection
Validate ARP against DHCP bindings
CDP & LLDP
Neighbour discovery and port-level control
Advanced STP
Rapid-PVST, per-VLAN load sharing and edge guards
Advanced EtherChannel
Multiple bundles, LACP vs PAgP and trunk pruning
Wireless LANs
WLAN profiles, client VLANs and AP ports
Wireless Security
WPA2/WPA3, 802.1X and guest SSIDs
QoS
Classification, marking and priority queueing
Device Management
NTP, syslog and SNMP monitoring
Programmability
RESTCONF, NETCONF and secure API access
Troubleshooting
Diagnose and repair a broken network
Every topic sits in one of the six published exam domains
1.0 · 20% of the exam
IPv4 Addressing · Subnetting · VLSM · IPv6 Addressing · CDP & LLDP
5 lab topics
2.0 · 20% of the exam
VLANs · Access Ports · Trunking · STP · EtherChannel · Advanced STP · Advanced EtherChannel · Wireless LANs
8 lab topics
3.0 · 25% of the exam
Inter-VLAN Routing · Static Routing · Default Routes · OSPF · IPv6 Routing · OSPF for IPv6 · Troubleshooting
7 lab topics
4.0 · 10% of the exam
DHCP · DHCP Relay · NAT · DNS & Network Services · QoS
5 lab topics
5.0 · 15% of the exam
ACLs · IPv6 ACLs · Port Security · SSH & Device Security · DHCP Snooping · Dynamic ARP Inspection · Wireless Security
7 lab topics
6.0 · 10% of the exam
Device Management · Programmability
2 lab topics
5 Beginner lab attempts per day, practice questions unlimited.