ansible/backup/files/cisco/IZH-TK-M44-SW-4-1.txt

784 lines
19 KiB
Plaintext
Raw Normal View History

2025-10-31 08:47:26 +04:00
Building configuration...
Current configuration : 19809 bytes
!
! Last configuration change at 04:01:33 MSK Mon Mar 1 1993
! NVRAM config last updated at 01:00:01 MSK Thu Jul 28 2022
!
version 15.2
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service sequence-numbers
!
hostname IZH-TK-M44-SW-4-1
!
boot-start-marker
boot-end-marker
!
logging buffered 51200 warnings
logging rate-limit 10000
enable secret 5 $1$j4UP$Wgs2xMeWlYNzcOvcwfmE90
!
username netadmin privilege 15 secret 5 $1$YwX8$DUhYuAoqxC./qm0E80SUT1
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 4 0
system mtu routing 1500
vtp mode transparent
!
!
!
!
!
!
!
!
!
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 2,150,300,350,500
ip dhcp snooping
ip domain-list komos.local
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
ip host VM-KG-NET 10.1.12.70
login on-failure log
login on-success log
!
crypto pki trustpoint TP-self-signed-591929728
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-591929728
revocation-check none
rsakeypair TP-self-signed-591929728
!
!
crypto pki certificate chain TP-self-signed-591929728
certificate self-signed 01
30820229 30820192 A0030201 02020101 300D0609 2A864886 F70D0101 05050030
30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 35393139 32393732 38301E17 0D393330 33303130 30303131
395A170D 32303031 30313030 30303030 5A303031 2E302C06 03550403 1325494F
532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3539 31393239
37323830 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100
E7407EA8 949B2F4B F3A718CC 46ADF252 31FD5E71 1EA2820D 9F44C36D FF201372
997991D7 ED0DF80A 43B7B9F6 F12429A2 19E34CB0 EE7EE46D 2CB817E2 CEBF9D6D
CFE2639B AFB3A275 C91E3ADD 12F9D03B FEFEFC0A 9223B0CC C731386F 0B15A2F3
17E0CEBA 51632B66 061E6865 C6D0B7C3 E2D646D5 BFB10B35 91BB8E4E 5EB1FB41
02030100 01A35330 51300F06 03551D13 0101FF04 05300301 01FF301F 0603551D
23041830 168014D4 08DBB4EF 0D6830A1 3AF0EB1B 7A44E5B0 DD6E2B30 1D060355
1D0E0416 0414D408 DBB4EF0D 6830A13A F0EB1B7A 44E5B0DD 6E2B300D 06092A86
4886F70D 01010505 00038181 00904B2D F85A592C 20932291 96DE7BBE 60F7A6A4
1509B82D 820FD92C 27162EF7 C4320FE6 EDE5DB2D 9FCA547F 4D06EE4F 889468BB
7A0AA230 739A0849 F8C8F58C AF409813 D4120963 1E6F8F9A 1388227A 0D75BCAA
3A1F36CC 09AB3498 01D1365D 4812E8AC D6BE6222 E70AFAD8 5240DC94 1F5707B5
4F397AAD 3815513B B3B696AC 5C
quit
errdisable recovery cause bpduguard
errdisable recovery cause security-violation
errdisable recovery cause channel-misconfig
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause psecure-violation
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/IZH/TK/M44-SW_L2/$H.$T.conf
write-memory
time-period 10080
!
spanning-tree mode rapid-pvst
spanning-tree loopguard default
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
!
!
vlan 2
name TK-LAN-USERS-AREA
!
vlan 25
name VOICE_AREA
!
vlan 150
name TK-WIFI-USERS-AREA
!
vlan 300
name NETWORK_MANAGEMENT
!
vlan 350
name TK-VOICE-AREA
!
vlan 500
name TK-WIFI-GUEST-AREA
lldp run
!
!
!
!
!
!
interface Loopback7777
description TK01000680
no ip address
shutdown
downshift disable
!
interface FastEthernet0/1
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/2
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/3
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/4
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/5
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/6
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/7
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/8
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/9
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/10
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/11
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/12
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/13
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/14
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/15
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/16
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/17
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/18
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/19
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/20
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/21
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/22
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/23
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/24
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/25
description ACCESS-SW-LOG-2
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/26
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/27
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/28
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/29
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/30
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/31
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/32
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/33
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/34
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/35
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/36
description ACCESS-SW-LOG-1
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/37
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/38
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/39
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/40
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/41
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/42
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/43
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/44
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/45
description ACCESS
switchport access vlan 2
switchport mode access
switchport voice vlan 350
no logging event link-status
no cdp enable
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast edge
!
interface FastEthernet0/46
description [WIFI] M44-AP-4-Rampa
switchport trunk allowed vlan 2,150,300,500
switchport trunk native vlan 2
switchport mode trunk
logging event trunk-status
logging event spanning-tree
!
interface FastEthernet0/47
description IZH-TK-M44-AP-4-1-Pavlov
switchport trunk allowed vlan 150,300,500
switchport trunk native vlan 300
switchport mode trunk
logging event trunk-status
logging event spanning-tree
power inline port 2x-mode
no cdp enable
no lldp transmit
no lldp receive
!
interface FastEthernet0/48
description [WIFI] M44-AP-4-Sklad-Zamorozka
switchport trunk allowed vlan 150,300,500
switchport trunk native vlan 300
switchport mode trunk
logging event trunk-status
logging event spanning-tree
!
interface GigabitEthernet0/1
description [CORE] M44-SW-1-3
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface GigabitEthernet0/2
description TRUNK
switchport mode trunk
logging event trunk-status
logging event spanning-tree
!
interface GigabitEthernet0/3
description --IZH-TK-M44-SW-4-2--
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface GigabitEthernet0/4
description TRUNK
switchport mode trunk
logging event trunk-status
logging event spanning-tree
!
interface Vlan1
no ip address
shutdown
!
interface Vlan300
ip address 10.0.5.245 255.255.255.0
no ip route-cache
!
ip default-gateway 10.0.5.254
ip tcp selective-ack
ip tcp path-mtu-discovery
no ip http server
no ip http secure-server
ip tftp source-interface Vlan300
ip ssh authentication-retries 2
ip ssh version 2
!
kron occurrence EveryDay at 1:00 recurring
policy-list SaveBackup
!
kron policy-list SaveBackup
cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local1
logging source-interface Vlan300
logging host 192.168.2.25
logging host 10.4.244.4 transport udp port 515
access-list 23 permit any
access-list 23 deny any log
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv
snmp mib flash cache
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
!
banner login ^CCC
*****************************************************************************
* *
* KOMOS GROUP LLC *
* Izhevsk, Ordzhonikidze, 2 *
* 2st FLOOR *
* CROSS ROOM *
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************^C
!
line con 0
logging synchronous
login authentication CONSOLE
line vty 0 4
exec-timeout 120 0
logging synchronous
login authentication NPS
length 0
transport input ssh
line vty 5 15
exec-timeout 120 0
logging synchronous
login authentication NPS
transport input ssh
!
ntp source Vlan300
ntp server 10.0.5.254
end