Fast recall for N10-009: OSI model, subnetting, IPv6 essentials, VLANs/trunks, Wi‑Fi, cabling/fiber, ports/protocols, DHCP/DNS, VPN/AAA, and a troubleshooting playbook with common commands.
Use this for last-mile review. Star weak rows and re-drill with practice.
| Layer | Name | PDU | Common examples |
|---|---|---|---|
| 7 | Application | Data | HTTP/S, DNS, SMTP, DHCP (conceptual) |
| 6 | Presentation | Data | TLS/SSL, encoding, compression |
| 5 | Session | Data | Session setup/teardown (high level) |
| 4 | Transport | Segment/Datagram | TCP/UDP, ports |
| 3 | Network | Packet | IP, routing, ICMP |
| 2 | Data Link | Frame | Ethernet, VLANs, MAC, ARP |
| 1 | Physical | Bits | Cabling, RF, signaling |
flowchart LR
A[App data] --> B[TCP/UDP + ports]
B --> C[IP + routing]
C --> D[Ethernet + MAC/VLAN]
D --> E[Bits on wire / RF]
Rules
2^(host bits) - 2 (except /31 point-to-point)256 - mask_octet (in the interesting octet)| Prefix | Mask | Usable hosts | Block size (last octet) |
|---|---|---|---|
| /24 | 255.255.255.0 | 254 | 1 |
| /25 | 255.255.255.128 | 126 | 128 |
| /26 | 255.255.255.192 | 62 | 64 |
| /27 | 255.255.255.224 | 30 | 32 |
| /28 | 255.255.255.240 | 14 | 16 |
| /29 | 255.255.255.248 | 6 | 8 |
| /30 | 255.255.255.252 | 2 | 4 |
| /31 | 255.255.255.254 | 2 (P2P) | 2 |
Fast sanity checks
2000::/3 (public)fc00::/7 (private-ish)fe80::/10 (always on; neighbor discovery):: only once per address.ff02::1 all nodes (local link)ff02::2 all routers (local link)ff02::1:ff00:0/104 solicited-node (ND)| Generation | IEEE | Bands | Notes |
|---|---|---|---|
| Wi‑Fi 4 | 802.11n | 2.4/5 | MIMO |
| Wi‑Fi 5 | 802.11ac | 5 | MU‑MIMO, wider channels |
| Wi‑Fi 6/6E | 802.11ax | 2.4/5/6 | OFDMA, dense environments |
Channel planning
Security order (best → worst)
Copper
| Cable | Typical use | Notes |
|---|---|---|
| Cat5e | 1 Gbps @ 100 m | Common baseline |
| Cat6 | 10 Gbps @ ~55 m | Better noise performance |
| Cat6a | 10 Gbps @ 100 m | Best pick for long 10G copper runs |
Fiber
| Fiber | Mode | Typical range | Notes |
|---|---|---|---|
| MMF | Multi‑mode | Short | Common in buildings |
| SMF | Single‑mode | Long | Metro/long distance |
Transceivers
PoE
| Service | Port/Proto | Notes |
|---|---|---|
| DNS | 53 UDP/TCP | UDP for queries; TCP for zone/large replies |
| DHCP | 67/68 UDP | Server/client |
| HTTP / HTTPS | 80 / 443 TCP | Web; TLS on 443 |
| SSH | 22 TCP | Secure remote management |
| Telnet | 23 TCP | Insecure (distractor) |
| RDP | 3389 TCP/UDP | Remote desktop |
| SMB | 445 TCP | Windows file sharing |
| NTP | 123 UDP | Time sync |
| SNMP | 161/162 UDP | Polling / traps |
| Syslog | 514 UDP | Logging (TCP variants exist) |
| LDAP / LDAPS | 389 / 636 TCP | Directory |
| RADIUS | 1812/1813 UDP | AAA (auth/accounting) |
| TACACS+ | 49 TCP | AAA (common alt) |
DHCP DORA Discover → Offer → Request → Acknowledge
DNS records
A / AAAA (name → IP)CNAME (alias)MX (mail)TXT (verification/SPF hints)PTR (reverse lookup)| Symptom | Likely layer | Fast checks / tools |
|---|---|---|
| No link light | L1 | Cable, port, PoE, NIC enabled |
APIPA (169.254.x.x) | L3/service | DHCP scope, VLAN, relay, server reachability |
| IP works, names fail | L7/service | DNS servers, nslookup/dig, firewall 53 |
| One VLAN can’t reach gateway | L2/L3 | VLAN on access port, trunk allowed VLANs, SVI/gateway |
| High latency/packet loss | L3/L4 | ping, tracert/traceroute, interface errors, congestion |
| Intermittent drops | L1/L2 | Duplex/speed mismatch, bad cable, loops/STP, Wi‑Fi interference |
Useful commands
1# Windows
2ipconfig /all
3ping 8.8.8.8
4tracert example.com
5nslookup example.com
6
7# Linux/macOS
8ip a
9ip route
10traceroute example.com
11dig example.com
12sudo tcpdump -ni any port 53
Wireshark filter starters
dnstcp.port == 443ip.addr == 10.0.0.10