ansible/backup/files/cisco/GLZ-GKZ-GKZ-SW-3-1.txt

500 lines
13 KiB
Plaintext
Raw Normal View History

2025-10-31 08:47:26 +04:00
Building configuration...
Current configuration : 13420 bytes
!
! Last configuration change at 04:00:48 MSK Mon Jan 2 2006
!
version 15.2
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service unsupported-transceiver
!
hostname GLZ-GKZ-GKZ-SW-3-1
!
boot-start-marker
boot-end-marker
!
logging buffered 512000 informational
enable secret 5 $1$j4UP$Wgs2xMeWlYNzcOvcwfmE90
!
username netadmin privilege 15 secret 5 $1$DD4o$lAhk4dPtBvn/8m3IyOJCJ0
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 4 0
switch 1 provision ws-c2960s-24ps-l
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 1-4094
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
login on-failure log
login on-success log
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-4292943104
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-4292943104
revocation-check none
rsakeypair TP-self-signed-4292943104
!
!
crypto pki certificate chain TP-self-signed-4292943104
certificate self-signed 01
3082022B 30820194 A0030201 02020101 300D0609 2A864886 F70D0101 05050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 34323932 39343331 3034301E 170D3036 30313032 30303030
35305A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D34 32393239
34333130 3430819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
810098E9 35CA0F5B 362576E6 0455B30A CB1B401A BF841D03 D8C9A454 1B91F70B
B133C43C BF4BCC06 0AAB71B3 550E27CC FE01FE23 754C7149 2EC139C2 34CD5228
FE368E4B 70A1E726 73BF4552 2EDE5DC6 C880D3D7 FCCFD2FF 4F88765F D219C3AE
E09AA2AB 537596C4 A1C6F7A8 484326E6 5FA06E26 408278A5 970D0263 722FB653
5D270203 010001A3 53305130 0F060355 1D130101 FF040530 030101FF 301F0603
551D2304 18301680 142D65DD D783C66D D0403FD4 C960237C 758E0797 41301D06
03551D0E 04160414 2D65DDD7 83C66DD0 403FD4C9 60237C75 8E079741 300D0609
2A864886 F70D0101 05050003 81810027 8CED41FD 0B1CC6B5 ADCAA094 1A290249
2D1D1FA0 60975BFB C4519917 33616CE8 73D3915F 071C961C 54FC7D38 32BE0F35
622DCF7F 0628106F 9F9F6E80 9DCF5C36 A4D1E081 EACA9915 85C0ECE5 45F6EA81
6B317D20 20EBE059 A130200E 686826AB AE8EBB0A F4BEC850 EF909C3A 997EBFB7
8DEECDEC 56CD072D 6F4022E7 3C4704
quit
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/GLZ/GKZ/GKZ-SW_L2/$H.$T.conf
write-memory
time-period 1440
!
spanning-tree mode rapid-pvst
spanning-tree extend system-id
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
lldp run
!
!
!
!
!
!
!
!
!
!
interface Loopback7777
description PRCH9022738
no ip address
shutdown
!
interface Port-channel1
description [CORE] SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface FastEthernet0
no ip address
!
interface GigabitEthernet1/0/1
description [PRN]
switchport access vlan 101
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/2
description [PRN]
switchport access vlan 101
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/3
description [PRN]
switchport access vlan 101
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/4
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/5
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/6
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/7
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/8
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/9
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/10
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/11
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/12
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/13
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/14
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/15
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/16
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/17
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/18
description [ACC]
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/19
description [WIFI]
switchport trunk native vlan 301
switchport trunk allowed vlan 150,151,301,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
!
interface GigabitEthernet1/0/20
description [WIFI]
switchport trunk native vlan 301
switchport trunk allowed vlan 150,151,301,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
!
interface GigabitEthernet1/0/21
description [WIFI]
switchport trunk native vlan 301
switchport trunk allowed vlan 150,151,301,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
!
interface GigabitEthernet1/0/22
description [WIFI]
switchport trunk native vlan 301
switchport trunk allowed vlan 150,151,301,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
!
interface GigabitEthernet1/0/23
description [WIFI]
switchport trunk native vlan 301
switchport trunk allowed vlan 150,151,301,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
!
interface GigabitEthernet1/0/24
description [MGM]
switchport access vlan 300
switchport mode access
switchport voice vlan 350
logging event trunk-status
logging event spanning-tree
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/25
description [CORE] Po1 SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/26
description [CORE] Po1 SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/27
shutdown
!
interface GigabitEthernet1/0/28
shutdown
!
interface Vlan1
no ip address
shutdown
!
interface Vlan300
description [MGM]
ip address 10.13.15.31 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
!
ip default-gateway 10.13.15.254
ip http server
ip http secure-server
!
ip tftp source-interface Vlan300
ip ssh authentication-retries 2
ip ssh logging events
ip ssh version 2
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan300
logging host 10.4.244.4 transport udp port 515
!
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv
!
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
banner login ^CC
*****************************************************************************
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************
^C
alias router x exit
alias subinterface x exit
alias interface x exit
alias configure x exit
alias exec ipconfig show ip interface brief | exclude unassigned
alias exec diff show archive config differences nvram:startup-config system:running-config
alias exec q exit
!
line con 0
logging synchronous
login authentication CONSOLE
line vty 0 4
exec-timeout 120 0
logging synchronous
length 0
transport input ssh
line vty 5 15
exec-timeout 120 0
logging synchronous
transport input ssh
!
ntp source Vlan300
ntp server 10.13.1.1
ntp server 10.13.15.254
end