ansible/backup/files/cisco/GLZ-GKZ-GKZ-SW-1-1.txt

1062 lines
25 KiB
Plaintext
Raw Permalink Normal View History

2025-10-31 08:47:26 +04:00
Building configuration...
Current configuration : 25977 bytes
!
! Last configuration change at 09:34:37 MSK Thu Mar 17 2022 by adm_karavaevan@milkom-
! NVRAM config last updated at 01:00:02 MSK Thu Jul 28 2022
!
version 15.2
no service pad
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service compress-config
service sequence-numbers
service unsupported-transceiver
!
hostname GLZ-GKZ-GKZ-SW-1-1
!
boot-start-marker
boot system flash bootflash:cat4500e-universalk9.SPA.03.11.04.E.152-7.E4.bin
boot system flash slavebootflash:cat4500e-universalk9.SPA.03.11.04.E.152-7.E4.bin
boot-end-marker
!
!
vrf definition mgmtVrf
!
address-family ipv4
exit-address-family
!
address-family ipv6
exit-address-family
!
logging buffered 512000 informational
enable secret 5 $1$j4UP$Wgs2xMeWlYNzcOvcwfmE90
!
username akhmetzyanovrr privilege 15 secret 5 $1$3WMC$ghEC3oPdsKH1zZ//tlUMK/
username netadmin privilege 15 secret 9 $9$RIwAWEM8bfI6xJ$q8plpUIcB6sqyWNQuf.tpkciD0oaQBQ6Ddwn9em.jzE
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 4 0
!
switch virtual domain 1
switch mode virtual
switch 1 priority 200
mac-address use-virtual
!
!
!
!
!
!
!
!
!
!
!
no ip source-route
no ip gratuitous-arps
!
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
!
!
login on-failure log
login on-success log
vtp mode transparent
!
!
power redundancy-mode redundant
!
mac access-list extended VSL-BPDU
permit any 0180.c200.0000 0000.0000.0003
mac access-list extended VSL-CDP
permit any host 0100.0ccc.cccc
mac access-list extended VSL-DOT1x
permit any any 0x888E
mac access-list extended VSL-GARP
permit any host 0180.c200.0020
mac access-list extended VSL-LLDP
permit any host 0180.c200.000e
mac access-list extended VSL-MGMT
permit any 0022.bdcd.d200 0000.0000.00ff
permit 0022.bdcd.d200 0000.0000.00ff any
mac access-list extended VSL-SSTP
permit any host 0100.0ccc.cccd
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/GLZ/GKZ/GKZ-SW_L3/$H.$T.conf
write-memory
time-period 1440
!
spanning-tree mode rapid-pvst
spanning-tree loopguard default
spanning-tree extend system-id
!
redundancy
mode sso
!
vlan internal allocation policy ascending
!
vlan 2
name --Users_KU1--
!
vlan 3
name --Users_other---
!
vlan 101
name --Printers--
!
vlan 150
name --Wi-Fi_WORK--
!
vlan 250
name --Servers--
!
vlan 300
name --MANAGMENT--
!
vlan 301
name --Wi-Fi_MANAGEMENT--
!
vlan 350
name --VOICE--
!
vlan 400
name --Video--
!
vlan 500
name --WiFi_Guest--
!
vlan 551
name --TRANSIT_HSRP--
!
vlan 555
name --BGP_TRANSIT--
lldp run
!
!
class-map match-any VSL-MGMT-PACKETS
match access-group name VSL-MGMT
class-map match-any VSL-DATA-PACKETS
match any
class-map match-any VSL-L2-CONTROL-PACKETS
match access-group name VSL-DOT1x
match access-group name VSL-BPDU
match access-group name VSL-CDP
match access-group name VSL-LLDP
match access-group name VSL-SSTP
match access-group name VSL-GARP
class-map match-any VSL-L3-CONTROL-PACKETS
match access-group name VSL-IPV4-ROUTING
match access-group name VSL-BFD
match access-group name VSL-DHCP-CLIENT-TO-SERVER
match access-group name VSL-DHCP-SERVER-TO-CLIENT
match access-group name VSL-DHCP-SERVER-TO-SERVER
match access-group name VSL-IPV6-ROUTING
class-map match-any VSL-MULTIMEDIA-TRAFFIC
match dscp af41
match dscp af42
match dscp af43
match dscp af31
match dscp af32
match dscp af33
match dscp af21
match dscp af22
match dscp af23
class-map match-any VSL-VOICE-VIDEO-TRAFFIC
match dscp ef
match dscp cs4
match dscp cs5
class-map match-any VSL-SIGNALING-NETWORK-MGMT
match dscp cs2
match dscp cs3
match dscp cs6
match dscp cs7
!
policy-map VSL-Queuing-Policy
class VSL-MGMT-PACKETS
bandwidth percent 5
class VSL-L2-CONTROL-PACKETS
bandwidth percent 5
class VSL-L3-CONTROL-PACKETS
bandwidth percent 5
class VSL-VOICE-VIDEO-TRAFFIC
bandwidth percent 30
class VSL-SIGNALING-NETWORK-MGMT
bandwidth percent 10
class VSL-MULTIMEDIA-TRAFFIC
bandwidth percent 20
class VSL-DATA-PACKETS
bandwidth percent 20
class class-default
bandwidth percent 5
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface Port-channel1
description [KU] SW-1-2
switchport
switchport trunk allowed vlan 2-4094
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel2
description [KU] SW-2-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel3
description [KU] SW-3-1
switchport
switchport trunk allowed vlan 2-4094
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel4
description [KU] SW-4-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel5
description [KU] SW-5-1
switchport
switchport trunk allowed vlan 2-4094
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel6
description [KU] SW-6-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel7
description [KU] SW-7-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel8
description [KU] SW-8-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel9
description [KU] SW-9-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel10
description [KU] SW-10-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel11
description [KU] SW-11-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel12
description [KU] SW-12-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel13
description [KU] SW-13-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel14
description [KU] SW-14-1
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel15
description SW-
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel18
description [KU] SW-1-3
switchport
switchport trunk allowed vlan 2-4094
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel19
description [KU] SW-1-4
switchport
switchport trunk allowed vlan 2-4094
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel20
description [KU] SW-5-2
switchport
switchport trunk allowed vlan 2-4094
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel21
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-299
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel23
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel25
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel26
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel27
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel28
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel29
description [NO_SRV]
switchport
switchport trunk allowed vlan 2-999
switchport mode trunk
logging event link-status
logging event trunk-status
storm-control broadcast level pps 200
!
interface Port-channel253
description [VSL] To Switch 2
switchport
switchport mode trunk
switchport nonegotiate
switch virtual link 1
!
interface Port-channel254
description [VSL] To Switch 1
switchport
switchport mode trunk
switchport nonegotiate
switch virtual link 2
!
interface FastEthernet1
vrf forwarding mgmtVrf
no ip address
speed auto
duplex auto
!
interface TenGigabitEthernet1/1/1
description [KU] Po1 SW-1-2
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 1 mode active
!
interface TenGigabitEthernet1/1/2
description [KU] Po2 SW-2-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 2 mode active
!
interface TenGigabitEthernet1/1/3
description [KU] Po3 SW-3-1
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 3 mode active
!
interface TenGigabitEthernet1/1/4
description [KU] Po4 SW-4-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 4 mode active
!
interface TenGigabitEthernet1/1/5
description [KU] Po5 SW-5-1
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 5 mode active
!
interface TenGigabitEthernet1/1/6
description [KU] Po6 SW-6-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 6 mode active
!
interface TenGigabitEthernet1/1/7
description [KU] Po7 SW-7-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 7 mode active
!
interface TenGigabitEthernet1/1/8
description [KU] Po8 SW-8-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 8 mode active
!
interface TenGigabitEthernet1/1/9
description [KU] Po9 SW-9-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 9 mode active
!
interface TenGigabitEthernet1/1/10
description [KU] Po10 SW-10-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 10 mode active
!
interface TenGigabitEthernet1/1/11
description [KU] Po11 SW-11-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 11 mode active
!
interface TenGigabitEthernet1/1/12
description [KU] Po12 SW-12-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 12 mode active
!
interface TenGigabitEthernet1/1/13
description [KU] Po13 SW-13-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 13 mode active
!
interface TenGigabitEthernet1/1/14
description [KU] Po14 SW-14-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 14 mode active
!
interface TenGigabitEthernet1/1/15
!
interface TenGigabitEthernet1/1/16
!
interface TenGigabitEthernet1/1/17
!
interface TenGigabitEthernet1/1/18
description [KU] Po18 SW-1-3
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 18 mode active
!
interface TenGigabitEthernet1/1/19
description [KU] Po19 SW-1-4
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 19 mode active
!
interface TenGigabitEthernet1/1/20
description [KU] Po20 SW-5-2
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 20 mode active
!
interface TenGigabitEthernet1/1/21
description [SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/22
!
interface TenGigabitEthernet1/1/23
description [SRV]
switchport trunk allowed vlan 2-299
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/24
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/25
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/26
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/27
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/28
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet1/1/29
description [CORE] RT-1-1
switchport mode trunk
!
interface TenGigabitEthernet1/1/30
description [CORE] Old D-LINK--RT
switchport mode trunk
!
interface TenGigabitEthernet1/1/31
description [VSL] Po253
switchport mode trunk
switchport nonegotiate
no lldp transmit
no lldp receive
channel-group 253 mode on
service-policy output VSL-Queuing-Policy
!
interface TenGigabitEthernet1/1/32
description [VSL] Po253
switchport mode trunk
switchport nonegotiate
no lldp transmit
no lldp receive
channel-group 253 mode on
service-policy output VSL-Queuing-Policy
!
interface TenGigabitEthernet2/1/1
description [KU] Po1 SW-1-2
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 1 mode active
!
interface TenGigabitEthernet2/1/2
description [KU] Po2 SW-2-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 2 mode active
!
interface TenGigabitEthernet2/1/3
description [KU] Po3 SW-3-1
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 3 mode active
!
interface TenGigabitEthernet2/1/4
description [KU] Po4 SW-4-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 4 mode active
!
interface TenGigabitEthernet2/1/5
description [KU] Po5 SW-5-1
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 5 mode active
!
interface TenGigabitEthernet2/1/6
description [KU] Po6 SW-6-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 6 mode active
!
interface TenGigabitEthernet2/1/7
description [KU] Po7 SW-7-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 7 mode active
!
interface TenGigabitEthernet2/1/8
description [KU] Po8 SW-8-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 8 mode active
!
interface TenGigabitEthernet2/1/9
description [KU] Po9 SW-9-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 9 mode active
!
interface TenGigabitEthernet2/1/10
description [KU] Po10 SW-10-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 10 mode active
!
interface TenGigabitEthernet2/1/11
description [KU] Po11 SW-11-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 11 mode active
!
interface TenGigabitEthernet2/1/12
description [KU] Po12 SW-12-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 12 mode active
!
interface TenGigabitEthernet2/1/13
description [KU] Po13 SW-13-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 13 mode active
!
interface TenGigabitEthernet2/1/14
description [KU] Po14 SW-14-1
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
channel-group 14 mode active
!
interface TenGigabitEthernet2/1/15
!
interface TenGigabitEthernet2/1/16
!
interface TenGigabitEthernet2/1/17
!
interface TenGigabitEthernet2/1/18
description [KU] Po18 SW-1-3
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 18 mode active
!
interface TenGigabitEthernet2/1/19
description [KU] Po19 SW-1-4
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 19 mode active
!
interface TenGigabitEthernet2/1/20
description [KU] Po20 SW-5-2
switchport trunk allowed vlan 2-4094
switchport mode trunk
storm-control broadcast level pps 200
channel-group 20 mode active
!
interface TenGigabitEthernet2/1/21
description [SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/22
!
interface TenGigabitEthernet2/1/23
description [SRV]
switchport trunk allowed vlan 2-299
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/24
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/25
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/26
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/27
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/28
description [NO_SRV]
switchport trunk allowed vlan 2-999
switchport mode trunk
storm-control broadcast level pps 200
!
interface TenGigabitEthernet2/1/29
description [CORE] RT-1-2
switchport mode trunk
!
interface TenGigabitEthernet2/1/30
description UPLINK2
shutdown
!
interface TenGigabitEthernet2/1/31
description [VSL] Po254
switchport mode trunk
switchport nonegotiate
no lldp transmit
no lldp receive
channel-group 254 mode on
service-policy output VSL-Queuing-Policy
!
interface TenGigabitEthernet2/1/32
description [VSL] Po254
switchport mode trunk
switchport nonegotiate
no lldp transmit
no lldp receive
channel-group 254 mode on
service-policy output VSL-Queuing-Policy
!
interface Vlan1
no ip address
no ip redirects
shutdown
!
interface Vlan2
description --Users_KU1--
ip dhcp relay information trusted
ip address 10.13.8.254 255.255.255.0
ip helper-address 10.13.1.1
no ip redirects
!
interface Vlan3
description --Users_other--
ip dhcp relay information trusted
ip address 10.13.9.254 255.255.255.0
ip helper-address 10.13.1.1
no ip redirects
!
interface Vlan101
description --Printers--
ip address 10.13.17.254 255.255.255.0
no ip redirects
no ip proxy-arp
!
interface Vlan150
description --Wi-Fi_Users--
ip dhcp relay information trusted
ip address 10.13.13.254 255.255.254.0
ip helper-address 10.13.1.1
no ip redirects
!
interface Vlan250
description -=SERVERS=-
ip dhcp relay information trusted
ip address 10.13.20.254 255.255.255.0
ip helper-address 10.13.1.1
no ip redirects
!
interface Vlan300
description --MGM--
ip address 10.13.15.254 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
!
interface Vlan301
description --MGM_Wi-Fi--
ip dhcp relay information trusted
ip address 10.13.14.254 255.255.255.0
ip helper-address 10.13.1.1
no ip redirects
!
interface Vlan350
description --Voice--
ip dhcp relay information trusted
ip address 10.13.11.254 255.255.254.0
ip helper-address 10.13.1.1
no ip redirects
!
interface Vlan500
description --Wifi_guest--
ip dhcp relay information trusted
ip address 10.13.18.254 255.255.255.0
ip helper-address 10.13.1.1
no ip redirects
no ip proxy-arp
!
interface Vlan551
description --TRANSIT_HSRP--
ip address 172.16.3.4 255.255.255.248
!
interface Vlan555
description --BGP_TRANSIT--
ip address 172.30.30.219 255.255.255.248
no ip redirects
no ip unreachables
no ip proxy-arp
!
router bgp 64535
bgp router-id 172.30.30.219
bgp log-neighbor-changes
bgp graceful-restart
network 10.13.0.0 mask 255.255.0.0
network 10.13.8.0 mask 255.255.255.0
network 10.13.9.0 mask 255.255.255.0
network 10.13.10.0 mask 255.255.254.0
network 10.13.12.0 mask 255.255.254.0
network 10.13.14.0 mask 255.255.255.0
network 10.13.15.0 mask 255.255.255.0
network 10.13.17.0 mask 255.255.255.0
network 10.13.18.0 mask 255.255.255.0
network 10.13.20.0 mask 255.255.255.0
neighbor 172.30.30.217 remote-as 64535
neighbor 172.30.30.217 next-hop-self
neighbor 172.30.30.217 soft-reconfiguration inbound
neighbor 172.30.30.218 remote-as 64535
neighbor 172.30.30.218 next-hop-self
neighbor 172.30.30.218 soft-reconfiguration inbound
!
ip forward-protocol nd
no ip http server
no ip http secure-server
!
ip tftp source-interface Vlan300
ip route 0.0.0.0 0.0.0.0 172.16.3.3
ip route 10.13.0.0 255.255.0.0 Null0 254
ip ssh logging events
ip ssh version 2
!
ip access-list extended VSL-BFD
permit udp any any eq 3784
ip access-list extended VSL-DHCP-CLIENT-TO-SERVER
permit udp any eq bootpc any eq bootps
ip access-list extended VSL-DHCP-SERVER-TO-CLIENT
permit udp any eq bootps any eq bootpc
ip access-list extended VSL-DHCP-SERVER-TO-SERVER
permit udp any eq bootps any eq bootps
ip access-list extended VSL-IPV4-ROUTING
permit ip any 224.0.0.0 0.0.0.255
!
ip radius source-interface Vlan300
kron occurrence EveryDay at 1:00 recurring
policy-list SaveBackup
!
kron policy-list SaveBackup
cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan300
logging host 10.4.244.4 transport udp port 515
!
!
snmp-server community lmTUEsk6Yvlv RO
no snmp mib flash cache
!
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 07073847682838253F1552345D2C382B23043D77025F01061B151F66520D022A110C555C7F784A59660E4955357D00251115304821110B03727C2C2A235317215C
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 060E162A6A6F28392D104B33550239242F1F3B60334B101319421067590A58270A021A5D707C4B5E6751190834220F7606003217711C022D1F7E6B3A3F4112385B
!
!
!
ipv6 access-list VSL-IPV6-ROUTING
permit ipv6 any FF02::/124
banner login ^CC
*****************************************************************************
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************
^C
!
line con 0
logging synchronous
login authentication CONSOLE
stopbits 1
line vty 0 4
exec-timeout 120 0
logging synchronous
length 0
transport input ssh
line vty 5 15
exec-timeout 120 0
logging synchronous
length 0
transport input ssh
!
!
module provision switch 1
chassis-type 73 base-mac A03D.6FD5.3200
slot 1 slot-type 402 base-mac A03D.6FD5.3200
!
module provision switch 2
chassis-type 73 base-mac A03D.6FD5.27C0
slot 1 slot-type 402 base-mac A03D.6FD5.27C0
!
ntp source Vlan300
ntp server 192.168.1.100
ntp server 192.168.1.21
!
end