Building configuration...

Current configuration : 20123 bytes
!
! Last configuration change at 04:00:48 MSK Mon Jan 2 2006
! NVRAM config last updated at 01:00:05 MSK Thu Jul 28 2022
!
version 15.2
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service sequence-numbers
!
hostname IZH-KG-P11-SW-2-3
!
boot-start-marker
boot-end-marker
!
logging buffered 512000 informational
enable secret 5 $1$E5KI$NLcrXK.Ut0BcwNo0g27v80
!
username netadmin privilege 15 secret 5 $1$emNL$8Lo.J6.c1O7ccpV7y2dsA0
aaa new-model
!
!
aaa group server radius NPS
 server name IZH-RDS002
 server name P11-RDS003
 load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated 
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 4 0
switch 1 provision ws-c2960s-48ts-l
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 2,12,150,351,500
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
ip host VM-KG-NET 10.1.12.70
login on-failure log
login on-success log
vtp mode transparent
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-3369411072
 enrollment selfsigned
 subject-name cn=IOS-Self-Signed-Certificate-3369411072
 revocation-check none
 rsakeypair TP-self-signed-3369411072
!
!
crypto pki certificate chain TP-self-signed-3369411072
 certificate self-signed 01
  30820246 308201AF A0030201 02020101 300D0609 2A864886 F70D0101 04050030 
  31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274 
  69666963 6174652D 33333639 34313130 3732301E 170D3933 30333031 30303033 
  30385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649 
  4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 33363934 
  31313037 3230819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281 
  8100BAA1 A0794A70 A1A58324 2EC4F664 3024B4C9 FA1F706A E27FD58E 1D9FFA0C 
  6E9DFEFA 67423717 54F5CBC3 8423FA44 973AEA31 7B126B25 15669F61 09DE4D41 
  BCDF84D7 C8B71FE2 3A355BDA C7695A58 76CD4BD6 3715D6EF C5C54ACD 89399211 
  9678E2BB 2C001A00 99C7C706 3878BEDF 6E31DB37 DD6D25B3 A678FE2A 79C6B9DB 
  DDD90203 010001A3 6E306C30 0F060355 1D130101 FF040530 030101FF 30190603 
  551D1104 12301082 0E537732 2D332E6B 6F6D6F73 2E727530 1F060355 1D230418 
  30168014 4242605B 47BCF657 C1BE5763 0EF70B9C D034BCEC 301D0603 551D0E04 
  16041442 42605B47 BCF657C1 BE57630E F70B9CD0 34BCEC30 0D06092A 864886F7 
  0D010104 05000381 81003062 B2122497 E12F3902 931B9AB1 B8D81BFF 164180BA 
  35134160 F3EABF40 5DF9D06D A746394D CC6715BB 49532815 9AFA2827 4BC2806D 
  0EFA5336 D5D3C032 6ABECB9B D8A3A1AD 50ABED7C 06FCCD3B 14662B80 89FC7F9D 
  E36A4C10 13FC0BC4 62BF6706 12AE879E F7D86885 D273D651 587B31A3 29771993 
  FC4DAB24 149E0BB4 5712
  	quit
archive
 log config
  logging enable
  logging size 900
  notify syslog contenttype plaintext
  hidekeys
 path tftp://tftp/IZH/KG/P11-SW_L2/$H.$T.conf
 write-memory
 time-period 10080
!
spanning-tree mode rapid-pvst
spanning-tree loopguard default
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
vlan 2
 name KG_LAN-USER
!
vlan 12
 name UNIFI_NETWORK
!
vlan 100
 name Inbound_management
!
vlan 150
 name KG_WIFI-USER
!
vlan 300
 name KG_MGMT-NET
!
vlan 301
 name KG_MGMT-WIFI
!
vlan 351
 name KG_VOIP
!
vlan 500
 name KG_WIFI-GUEST
!
lldp run
!
! 
!
!
!
!
!
!
!
!
interface Loopback7777
 description TK5736m
 no ip address
 shutdown
!
interface Port-channel1
 description [CORE] SW-1-1
 switchport mode trunk
 ip dhcp snooping trust
!
interface FastEthernet0
 no ip address
 shutdown
!
interface GigabitEthernet1/0/1
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/2
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/3
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/4
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/5
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/6
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/7
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/8
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/9
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/10
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/11
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/12
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/13
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/14
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/15
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/16
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/17
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/18
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/19
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/20
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/21
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/22
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/23
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/24
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/25
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/26
 description [ACC] Danilov EV
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/27
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/28
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/29
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/30
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/31
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/32
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/33
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/34
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/35
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/36
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/37
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/38
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/39
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/40
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/41
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/42
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/43
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/44
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/45
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/46
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/47
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/48
 description NONE
 switchport access vlan 2
 switchport mode access
 switchport voice vlan 351
 no logging event link-status
 no snmp trap link-status
 storm-control broadcast level 30.00
 no cdp enable
 spanning-tree portfast
!
interface GigabitEthernet1/0/49
 description PORT-CHANNEL
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 channel-group 1 mode on
 ip dhcp snooping trust
!
interface GigabitEthernet1/0/50
 description [CORE] Po1 SW-1-1
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 channel-group 1 mode on
 ip dhcp snooping trust
!
interface GigabitEthernet1/0/51
 description PORT-CHANNEL
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 channel-group 1 mode on
 ip dhcp snooping trust
!
interface GigabitEthernet1/0/52
 description PORT-CHANNEL
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 channel-group 1 mode on
 ip dhcp snooping trust
!
interface Vlan1
 no ip address
 shutdown
!
interface Vlan100
 ip address 10.1.1.23 255.255.255.0
 no ip redirects
 no ip unreachables
 no ip proxy-arp
!
ip default-gateway 10.1.1.1
no ip http server
no ip http secure-server
!
ip tftp source-interface Vlan100
ip ssh authentication-retries 2
!
kron occurrence EveryDay at 1:00 recurring
 policy-list SaveBackup
!
kron policy-list SaveBackup
 cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan100
logging host 10.4.244.4 transport udp port 515
access-list 23 permit any
access-list 23 deny   any log
!
snmp-server community private RW
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv 
!
!
radius server IZH-RDS002
 address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
 timeout 3
 retransmit 2
 key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
 address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
 timeout 3
 retransmit 2
 key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
privilege exec all level 7 show cdp
privilege exec all level 7 show running-config
privilege exec all level 7 show configuration
privilege exec level 7 show
banner login ^CC
*****************************************************************************
*                                                                           *
*                            OOO "KOMOS GROUP"                              *
*                              Pesochnaya 11                                *
*                                2st FLOOR                                  *
*                                Servernaya                                 *
*                                                                           *
*                    UNAUTHORIZED ACCESS IS PROHIBITED                      *
*                                                                           *
*                     You have accessed network equipment.                  *
*  You must have authorized permission to access or configure this device.  *
*     All activities performed on this device are logged and monitored.     *
*                                                                           *
*****************************************************************************^C
!
line con 0
 logging synchronous
 login authentication CONSOLE
line vty 0 4
 access-class 23 in
 logging synchronous
 login authentication NPS
 length 0
 transport input ssh
line vty 5 15
 access-class 23 in
 logging synchronous
 login authentication NPS
 transport input ssh
!
ntp source Vlan100
ntp server 10.1.1.2
end