ansible/backup/files/cisco/IZH-KG-P11-SW-8b-1.txt

816 lines
20 KiB
Plaintext
Raw Normal View History

2025-10-31 08:47:26 +04:00
Building configuration...
Current configuration : 20240 bytes
!
! Last configuration change at 04:00:49 MSK Mon Jan 2 2006
! NVRAM config last updated at 01:00:05 MSK Thu Jul 28 2022
!
version 15.2
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service sequence-numbers
!
hostname IZH-KG-P11-SW-8b-1
!
boot-start-marker
boot-end-marker
!
enable secret 5 $1$.0be$PSGKw//41NE0fKBd4miIK0
!
username netadmin privilege 15 secret 5 $1$nu82$FbKyev5HmMkBEOsKhJSQF0
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 4 0
switch 1 provision ws-c2960s-48ts-l
!
!
ip dhcp snooping vlan 2,5-6,12,150,350-351,500
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
ip host VM-KG-NET 10.1.12.70
login on-failure log
login on-success log
vtp mode transparent
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-3369413632
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3369413632
revocation-check none
rsakeypair TP-self-signed-3369413632
!
!
crypto pki certificate chain TP-self-signed-3369413632
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33333639 34313336 3332301E 170D3138 30383232 31343532
34395A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 33363934
31333633 3230819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100D0FB 0E2F4EF5 F6CC2DAD 8906B742 1277C017 0BEA8331 622A3DD3 561FA9BF
469EBC52 DB657D5B C03C3D5F B120001E 90B64CD5 24D0863C 57BF2490 E5CFD5E8
BCC536B9 38AC586B 17321513 0045C423 5C914F48 239D0D85 4CCD4128 942F1933
699FC5C6 6DF08CCC 99400A63 C5B3DDCB D7C82980 442575EA 4E3C928A 690EAEAA
06E30203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 15495A48 2D4B472D 5357382D 312E6B6F 6D6F732E 7275301F
0603551D 23041830 16801492 FF3A82C8 4B7EA29C E19CA5EE A199AB6C BC41F130
1D060355 1D0E0416 041492FF 3A82C84B 7EA29CE1 9CA5EEA1 99AB6CBC 41F1300D
06092A86 4886F70D 01010405 00038181 009B8A18 22D7CB6E 3D6973FD AC58616A
5453BEFA 511E8034 EDFED6AF A4494A83 E1077837 6AE0A5D9 0813193E 4CE369B4
EA68499E 6D0B7450 BA996894 8AE2D802 DE0ABD6A CA320351 5CCAD72D 9E6903A5
5FA77C46 C9F9CD84 3608F1E0 E7695519 A89A2970 0E01D9C7 8B7A79F5 5CB19B99
D9EA1770 4FFE41C8 883CE659 4B2F9F2E 82
quit
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/IZH/KG/P11-SW_L2/$H.$T.conf
write-memory
time-period 10080
!
spanning-tree mode rapid-pvst
spanning-tree loopguard default
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
vlan 2
name KG_LAN-USER
!
vlan 5
name KG_LAN-ADMIN
!
vlan 6
name IMP-LAN
!
vlan 12
name UNIFI_WIRELESS
!
vlan 100
name Inbound_management
!
vlan 150
name KG_WIFI-USER
!
vlan 300
name KG_MGMT-NET
!
vlan 301
name KG_MGMT-WIFI
!
vlan 350
name IMP-VOIP
!
vlan 351
name KG_VOIP
!
vlan 500
name KG_WIFI-GUEST
!
vlan 3915
name --TEST_ZLOBIN_DENIS_UNTIL_01.07-
!
lldp run
!
!
!
!
!
!
!
!
!
!
interface Loopback7777
description TK5740m
no ip address
shutdown
!
interface Port-channel1
description [CORE] SW-1-1
switchport mode trunk
ip dhcp snooping trust
!
interface FastEthernet0
no ip address
!
interface GigabitEthernet1/0/1
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast
!
interface GigabitEthernet1/0/2
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast
!
interface GigabitEthernet1/0/3
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast
!
interface GigabitEthernet1/0/4
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
spanning-tree portfast
!
interface GigabitEthernet1/0/5
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/6
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/7
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/8
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/9
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/10
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/11
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/12
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/13
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/14
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/15
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/16
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/17
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/18
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/19
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/20
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/21
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/22
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/23
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/24
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/25
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/26
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/27
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/28
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/29
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/30
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/31
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/32
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/33
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/34
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/35
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/36
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/37
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/38
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/39
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/40
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/41
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/42
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/43
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/44
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/45
description KG-LOCAL
switchport access vlan 2
switchport mode access
switchport voice vlan 351
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/46
description IMP-LOCAL
switchport access vlan 6
switchport mode access
switchport voice vlan 350
no logging event link-status
no snmp trap link-status
storm-control broadcast level 30.00
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/47
description [WIFI] AP-8-MK BUH
switchport trunk native vlan 12
switchport trunk allowed vlan 6,9,10,12,150,301,500
switchport mode trunk
no logging event link-status
no snmp trap link-status
no cdp enable
spanning-tree portfast
!
interface GigabitEthernet1/0/48
description [KU] SW-8a-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface GigabitEthernet1/0/49
description PORT-CHANNEL
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface GigabitEthernet1/0/50
description [CORE] Po1 SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface GigabitEthernet1/0/51
description PORT-CHANNEL
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface GigabitEthernet1/0/52
description PORT-CHANNEL
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode on
ip dhcp snooping trust
!
interface Vlan1
no ip address
shutdown
!
interface Vlan100
ip address 10.1.1.81 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
!
ip default-gateway 10.1.1.1
ip http server
ip http secure-server
!
ip tftp source-interface Vlan100
ip ssh authentication-retries 2
!
kron occurrence EveryDay at 1:00 recurring
policy-list SaveBackup
!
kron policy-list SaveBackup
cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan100
logging host 192.168.2.25
logging host 10.4.244.4 transport udp port 515
access-list 23 permit any
access-list 23 deny any log
!
snmp-server community lmTUEsk6Yvlv RO
snmp-server host 10.1.122.227 lmTUEsk6Yvlv
!
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
privilege exec all level 7 show cdp
privilege exec all level 7 show running-config
privilege exec all level 7 show configuration
privilege exec level 7 show
banner login ^CC
*****************************************************************************
* *
* OOO "KOMOS GROUP" *
* Pesochnaya 11 *
* 8st FLOOR *
* Buhgalteria *
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************^C
!
line con 0
logging synchronous
login authentication CONSOLE
line vty 0 4
access-class 23 in
exec-timeout 120 0
logging synchronous
login authentication NPS
length 0
transport input ssh
line vty 5 15
access-class 23 in
exec-timeout 120 0
logging synchronous
login authentication NPS
transport input ssh
!
ntp source Vlan100
ntp server 10.1.1.2
end