Building configuration...

Current configuration : 21274 bytes
!
! Last configuration change at 11:41:54 SAMT Sat Mar 5 2022 by akhmetzyanovrr_adm
! NVRAM config last updated at 11:49:48 SAMT Sat Mar 5 2022 by akhmetzyanovrr_adm
!
version 15.2
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service unsupported-transceiver
!
hostname GLZ-GKZ-GKZ-SW-9-1
!
boot-start-marker
boot-end-marker
!
logging buffered 512000 informational
enable secret 5 $1$j4UP$Wgs2xMeWlYNzcOvcwfmE90
!
username netadmin privilege 15 secret 5 $1$016t$PDq4oh3.jqZcsMrbhx/VS.
aaa new-model
!
!
aaa group server radius NPS
 server name IZH-RDS002
 server name P11-RDS003
 load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated 
!
!
!
!
!
!
aaa session-id common
clock timezone SAMT 4 0
switch 1 provision ws-c2960s-48fps-l
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 1-4094
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
login on-failure log
login on-success log
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-948390784
 enrollment selfsigned
 subject-name cn=IOS-Self-Signed-Certificate-948390784
 revocation-check none
 rsakeypair TP-self-signed-948390784
!
!
crypto pki certificate chain TP-self-signed-948390784
 certificate self-signed 01
  30820229 30820192 A0030201 02020101 300D0609 2A864886 F70D0101 05050030 
  30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274 
  69666963 6174652D 39343833 39303738 34301E17 0D303630 31303230 30303035 
  315A170D 32303031 30313030 30303030 5A303031 2E302C06 03550403 1325494F 
  532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3934 38333930 
  37383430 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100 
  D231F9AC 537E6855 FAD281D0 809F0402 3B918177 30280840 CDF32736 6A758A56 
  494D6F32 2EFDB07D 6E777B5B FFAB2EAF F816ABF4 37DA5557 7AE5BB2A B19F3550 
  9869B883 5B5C741E 2A65366B 413BFA18 67ADF623 F214E225 42C8AD0A 75D849C3 
  5D7389AC F128358D B5F70BE5 40E0D9DA 858CE3AB 657541D6 A5F4FF80 3D07B975 
  02030100 01A35330 51300F06 03551D13 0101FF04 05300301 01FF301F 0603551D 
  23041830 16801440 2F0463D4 0AA09761 1BDA2CCC D73DFD64 81F70430 1D060355 
  1D0E0416 0414402F 0463D40A A097611B DA2CCCD7 3DFD6481 F704300D 06092A86 
  4886F70D 01010505 00038181 002315E4 E644D85A 9E779AF8 519C9EA4 FB3BB04A 
  84A8E8AE 4D5DEC45 BD3517BF A425264F D5937843 1F018C87 F53AD6A8 03B71902 
  60CA2E85 0AB8F765 819A8D82 7909B1A8 AD6C9294 578827EE 031714A6 1E09722A 
  A79FAEBD 1A6595EB C79A1905 F95F3B33 13BDD823 CA52996A 7E89AB9B AB3A88B0 
  FC0A5091 BE9C1361 828A552A 19
  	quit
archive
 log config
  logging enable
  logging size 900
  notify syslog contenttype plaintext
  hidekeys
 path tftp://tftp/GLZ/GKZ/GKZ-SW_L2/$H.$T.conf
 write-memory
 time-period 1440
!
spanning-tree mode rapid-pvst
spanning-tree extend system-id
no errdisable detect cause gbic-invalid
errdisable recovery cause udld
errdisable recovery cause bpduguard
errdisable recovery cause security-violation
errdisable recovery cause channel-misconfig
errdisable recovery cause pagp-flap
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause sfp-config-mismatch
errdisable recovery cause gbic-invalid
errdisable recovery cause psecure-violation
errdisable recovery cause port-mode-failure
errdisable recovery cause dhcp-rate-limit
errdisable recovery cause pppoe-ia-rate-limit
errdisable recovery cause mac-limit
errdisable recovery cause vmps
errdisable recovery cause storm-control
errdisable recovery cause inline-power
errdisable recovery cause arp-inspection
errdisable recovery cause loopback
errdisable recovery cause small-frame
errdisable recovery cause psp
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
lldp run
!
! 
!
!
!
!
!
!
!
!
interface Loopback7777
 description PRCH
 no ip address
 shutdown
!
interface Port-channel1
 description [CORE] SW-1-1
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 ip dhcp snooping trust
!
interface FastEthernet0
 no ip address
 shutdown
!
interface GigabitEthernet1/0/1
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/2
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/3
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/4
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/5
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/6
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/7
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/8
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/9
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/10
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/11
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/12
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/13
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/14
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/15
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/16
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/17
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/18
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/19
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/20
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/21
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/22
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/23
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/24
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/25
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/26
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/27
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/28
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/29
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/30
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/31
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/32
 description [ACC]
 switchport access vlan 3
 switchport mode access
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
 spanning-tree portfast
 spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/33
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/34
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/35
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/36
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/37
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/38
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/39
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/40
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/41
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/42
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/43
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/44
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/45
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/46
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/47
 description [WIFI]
 switchport trunk native vlan 301
 switchport trunk allowed vlan 150,151,301,500
 switchport mode trunk
 switchport voice vlan 350
 no snmp trap link-status
 storm-control broadcast level pps 100
 storm-control multicast level pps 100
!
interface GigabitEthernet1/0/48
 description [MGM]
 switchport access vlan 300
 switchport mode access
 switchport voice vlan 350
 logging event trunk-status
 logging event spanning-tree
 no snmp trap link-status
!
interface GigabitEthernet1/0/49
 description [CORE] Po1 SW-1-1
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 channel-group 1 mode active
 ip dhcp snooping trust
!
interface GigabitEthernet1/0/50
 description [CORE] Po1 SW-1-1
 switchport mode trunk
 logging event trunk-status
 logging event spanning-tree
 channel-group 1 mode active
 ip dhcp snooping trust
!
interface GigabitEthernet1/0/51
 shutdown
!
interface GigabitEthernet1/0/52
 shutdown
!
interface Vlan1
 no ip address
 shutdown
!
interface Vlan300
 description [MGM]
 ip address 10.13.15.91 255.255.255.0
 no ip redirects
 no ip unreachables
 no ip proxy-arp
!
ip default-gateway 10.13.15.254
no ip http server
ip http secure-server
!
ip tftp source-interface Vlan300
ip ssh authentication-retries 2
ip ssh logging events
ip ssh version 2
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan300
logging host 10.4.244.4 transport udp port 515
!
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv 
!
!
radius server IZH-RDS002
 address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
 timeout 3
 retransmit 2
 key 7 091D795B400B5325110442000A1A6E1C3A3B1E2527130E171D7B7278280E5C027D757801477A0C33793122485200000F216A2A35052941435F322E31423E5A0A04
!
radius server P11-RDS003
 address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
 timeout 3
 retransmit 2
 key 7 135420405202401D312C6E19141C5528191A0C7468485C154A20393A7F55134776787B594E295F6075333616015F180F2A106D7D0311081A442027227A1E72261D
!
banner exec ^C
	Welcome to $(hostname). You are connected on line $(line) on domain $(domain)
^C
banner login ^C
*****************************************************************************
*                                                                           *
*                    UNAUTHORIZED ACCESS IS PROHIBITED                      *
*                                                                           *
*                     You have accessed network equipment.                  *
*  You must have authorized permission to access or configure this device.  *
*     All activities performed on this device are logged and monitored.     *
*                                                                           *
*****************************************************************************
^C
alias router x exit  
alias subinterface x exit
alias interface x exit
alias configure x exit
alias exec ipconfig show ip interface brief | exclude unassigned
alias exec diff show archive config differences nvram:startup-config system:running-config
alias exec q exit
!
line con 0
 exec-timeout 60 0
 logging synchronous
 login authentication CONSOLE
 length 46
line vty 0 4
 exec-timeout 120 0
 logging synchronous
 length 0
 transport input ssh
line vty 5 15
 exec-timeout 120 0
 logging synchronous
 transport input ssh
!
ntp source Vlan300
ntp server 10.13.1.1
ntp server 10.13.15.254
mac address-table notification change
mac address-table notification mac-move
mac address-table aging-time 900
end