ansible/backup/files/cisco/MSK-KG-MSK-SW-11-2.txt

773 lines
19 KiB
Plaintext
Raw Permalink Normal View History

2025-10-31 08:47:26 +04:00
Building configuration...
Current configuration : 19092 bytes
!
! Last configuration change at 03:00:49 MSK Mon Jan 2 2006
! NVRAM config last updated at 01:00:05 MSK Thu Jul 28 2022
!
version 15.2
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service sequence-numbers
service unsupported-transceiver
!
hostname MSK-KG-MSK-SW-11-2
!
boot-start-marker
boot-end-marker
!
logging buffered 512000 informational
enable secret 5 $1$j4UP$Wgs2xMeWlYNzcOvcwfmE90
!
username netadmin privilege 15 secret 5 $1$VHO4$k9XltgCpoha2UQElHuHnq1
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 3 0
switch 1 provision ws-c2960s-48fps-l
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 1-4094
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
login on-failure log
login on-success log
vtp mode transparent
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-485647360
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-485647360
revocation-check none
rsakeypair TP-self-signed-485647360
!
!
crypto pki certificate chain TP-self-signed-485647360
certificate self-signed 01
quit
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/MSK/KG/MSK-SW_L2/$H.$T.conf
write-memory
time-period 10080
!
spanning-tree mode rapid-pvst
spanning-tree loopguard default
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
vlan 2
name KG_LAN-USER
!
vlan 5
name KG_LAN-ADMIN
!
vlan 12
name UNIFI_WIRELESS
!
vlan 100
name Inbound_management
!
vlan 150
name --Wi-Fi_WORK--
!
vlan 300
name --MANAGMENT--
!
vlan 301
name --Wi-Fi_MANAGEMENT--
!
vlan 350
name --VOICE--
!
vlan 351
name KG_VOIP
!
vlan 500
name -Wi-Fi_GUEST--
!
ip tftp source-interface Vlan300
lldp run
!
!
!
!
!
!
!
!
!
!
interface Loopback7777
description TK9724m
no ip address
shutdown
!
interface Port-channel1
description -=SW-1-1=-
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface FastEthernet0
no ip address
!
interface GigabitEthernet1/0/1
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/2
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/3
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/4
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/5
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/6
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/7
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/8
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/9
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/10
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/11
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/12
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/13
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/14
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/15
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/16
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/17
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/18
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/19
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/20
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/21
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/22
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/23
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/24
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/25
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/26
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/27
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/28
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/29
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/30
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/31
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/32
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/33
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/34
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/35
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/36
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/37
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/38
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/39
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/40
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/41
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/42
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/43
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/44
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/45
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/46
description NONE
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/47
description [WIFI] MSK-AP-11-2
switchport trunk native vlan 300
switchport trunk allowed vlan 150,300
switchport mode trunk
no snmp trap link-status
storm-control broadcast level pps 200
storm-control multicast level pps 200
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/48
description [KU] SW-11-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface GigabitEthernet1/0/49
description -=Po1 SW-1-1=-
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/50
description -=Po1 SW-1-1=-
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/51
!
interface GigabitEthernet1/0/52
!
interface Vlan1
no ip address
shutdown
!
interface Vlan300
description --MGM--
ip address 10.1.132.112 255.255.255.0
!
ip default-gateway 10.1.132.254
no ip http server
ip http secure-server
!
ip ssh authentication-retries 2
ip ssh logging events
ip ssh version 2
!
kron occurrence EveryDay at 1:00 recurring
policy-list SaveBackup
!
kron policy-list SaveBackup
cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan300
logging host 10.4.244.4 transport udp port 515
!
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv
!
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
!
banner login ^CC
*****************************************************************************
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************
^C
!
line con 0
logging synchronous
login authentication CONSOLE
line vty 0 4
exec-timeout 120 0
logging synchronous
length 0
transport input telnet ssh
line vty 5 15
exec-timeout 120 0
logging synchronous
transport input ssh
!
ntp server 10.1.132.254
end