ansible/backup/files/cisco/IZH-KG-P11-SW-2-4.txt

826 lines
20 KiB
Plaintext
Raw Permalink Normal View History

2025-10-31 08:47:26 +04:00
Building configuration...
Current configuration : 20357 bytes
!
! Last configuration change at 04:00:48 MSK Mon Jan 2 2006
! NVRAM config last updated at 01:00:04 MSK Thu Jul 28 2022
!
version 15.2
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service sequence-numbers
!
hostname IZH-KG-P11-SW-2-4
!
boot-start-marker
boot-end-marker
!
logging buffered 512000 informational
enable secret 5 $1$9Vpw$97Y2JLiqjjlv3n0qvtJVq/
!
username netadmin privilege 15 secret 5 $1$P0ZO$Nsymqs6rAUCzaIw1kboEk0
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 4 0
switch 1 provision ws-c2960s-48ts-l
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 2,5,12,150,154,351,500
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
ip host VM-KG-NET 10.1.12.70
login on-failure log
login on-success log
vtp mode transparent
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-3367600000
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3367600000
revocation-check none
rsakeypair TP-self-signed-3367600000
!
!
crypto pki certificate chain TP-self-signed-3367600000
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33333637 36303030 3030301E 170D3933 30333031 30303033
30365A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 33363736
30303030 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
810095A5 C7BC60B7 CE2AA928 0F94DB04 87FB1050 8A8B1E40 8C37321E 0E1CB755
2721DD4C EBECD975 3D24E94C 3B60508F 5ED23D64 25039E58 C53F6D37 49F2485F
7DCC9D97 27C03A9F 329CC530 F9C32760 B630AA3D 8AA33D02 B32D6D7F 7C17EA3C
340ADCBF 6D3E7E41 E4831F7B 578C9DEA BEDA8F48 6762AACD AD618788 15A40A94
7D8D0203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15495A48 2D4B472D 5357322D 342E6B6F 6D6F732E 7275301F
0603551D 23041830 168014BC A01CE88E 0A36A7C2 9D274D5D 4440771F A8B1FE30
1D060355 1D0E0416 0414BCA0 1CE88E0A 36A7C29D 274D5D44 40771FA8 B1FE300D
06092A86 4886F70D 01010405 00038181 007BFB4F 415CF10A 77568946 436A4AA5
7E79E6A4 60CB4429 ACE24EF4 3BFD232F 96F5AE9A DD0B07EE 59FEFE37 80DB9A09
4AC40F3B 603A65CF C4D741A9 A6C3F707 BB759A63 55D52D20 819EC30A 781956A2
9DF56907 12CC4D92 B3A87F2D 2BF61A59 B4BE4F64 70DD2D2E F2148D29 A2593C25
5E05048A 43E2A3FE 6D13949B 2B25B71A 60
quit
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/IZH/KG/P11-SW_L2/$H.$T.conf
write-memory
time-period 10080
!
spanning-tree mode rapid-pvst
spanning-tree loopguard default
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
no spanning-tree vlan 888
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
vlan 2
name KG_LAN-USER
!
vlan 5
name KG_LAN-ADMIN
!
vlan 12
name WIRELESS_UNIFI
!
vlan 100
name Inbound_management
!
vlan 150
name KG_WIFI-USER
!
vlan 154
name ELTEX-WIFI_MGMT
!
vlan 300
name KG_MGMT-NET
!
vlan 301
name KG_MGMT-WIFI
!
vlan 351
name KG_VOIP
!
vlan 500
name KG_WIFI-GUEST
!
lldp run
!
!
!
!
!
!
!
!
!
!
interface Loopback7777
description TK5738m
no ip address
shutdown
!
interface Loopback9999
no ip address
shutdown
!
interface Port-channel1
description [CORE] SW-1-1
switchport mode trunk
ip dhcp snooping trust
!
interface FastEthernet0
no ip address
shutdown
!
interface GigabitEthernet1/0/1
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/2
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/3
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/4
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/5
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/6
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/7
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/8
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/9
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/10
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/11
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/12
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/13
description [ACC] cab.103_10
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/14
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/15
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/16
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/17
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/18
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/19
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/20
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/21
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/22
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/23
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/24
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/25
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/26
description [PRN]
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/27
description ACCESS_5_VER-PC
switchport access vlan 5
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/28
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/29
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/30
description [ACC]Semenov_Mikhail
switchport access vlan 2
switchport trunk native vlan 154
switchport trunk allowed vlan 150,154
switchport mode access
switchport voice vlan 351
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/31
description MINIAKHMETOV
switchport access vlan 5
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/32
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/33
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/34
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/35
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/36
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/37
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/38
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/39
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/40
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/41
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/42
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/43
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/44
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/45
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast
!
interface GigabitEthernet1/0/46
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/47
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/48
description NONE
switchport access vlan 2
switchport trunk allowed vlan 1,11,25,100,112
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/49
description [CORE] Po1 SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface GigabitEthernet1/0/50
description PORT-CHANNEL
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface GigabitEthernet1/0/51
description PORT-CHANNEL
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface GigabitEthernet1/0/52
description PORT-CHANNEL
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface Vlan1
no ip address
shutdown
!
interface Vlan100
ip address 10.1.1.24 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
!
ip default-gateway 10.1.1.1
no ip http server
no ip http secure-server
!
ip tftp source-interface Vlan100
ip ssh authentication-retries 2
!
kron occurrence EveryDay at 1:00 recurring
policy-list SaveBackup
!
kron policy-list SaveBackup
cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan100
logging host 10.4.244.4 transport udp port 515
access-list 23 permit any
access-list 23 deny any log
!
snmp-server community private RW
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv
!
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
privilege exec all level 7 show cdp
privilege exec all level 7 show running-config
privilege exec all level 7 show configuration
privilege exec level 7 show
banner login ^CC
*****************************************************************************
* *
* OOO "KOMOS GROUP" *
* Pesochnaya 11 *
* 2st FLOOR *
* Servernaya *
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************^C
!
line con 0
logging synchronous
login authentication CONSOLE
line vty 0 4
access-class 23 in
logging synchronous
login authentication NPS
length 0
transport input ssh
line vty 5 15
access-class 23 in
logging synchronous
login authentication NPS
transport input ssh
!
ntp source Vlan100
ntp server 10.1.1.2
end