Building configuration... Current configuration : 13537 bytes ! ! No configuration change since last restart ! version 15.0 no service pad service timestamps debug datetime msec localtime show-timezone year service timestamps log datetime msec localtime show-timezone year no service password-encryption ! hostname KZN-MLK-KMK-SW-5-1 ! boot-start-marker boot-end-marker ! logging userinfo logging buffered 512000 enable secret 5 $1$P7yp$dYZmIkcxLVgcgS9xgbTO4. ! username root privilege 15 secret 5 $1$1ha7$Z9UqZcU28aVqXjk9iT/OM/ username netadmin privilege 15 secret 5 $1$w5GN$S3EfY.7Zqw1FStTWBMbWs0 aaa new-model ! ! aaa group server radius NPS server name IZH-RDS002 server name P11-RDS003 load-balance method least-outstanding ! aaa authentication login default group NPS local enable aaa authentication login CONSOLE local group NPS aaa authorization exec default group NPS local if-authenticated ! ! ! ! ! ! aaa session-id common clock timezone MSK 3 0 system mtu routing 1500 ! ! ip dhcp snooping vlan 1-4094 ip dhcp snooping no ip domain-lookup ip domain-name milkom-komos.ru ip host tftp 10.4.0.214 login on-failure login on-success ! ! ! ! ! ! ! ! errdisable recovery cause udld errdisable recovery cause bpduguard errdisable recovery cause security-violation errdisable recovery cause channel-misconfig (STP) errdisable recovery cause pagp-flap errdisable recovery cause dtp-flap errdisable recovery cause link-flap errdisable recovery cause sfp-config-mismatch errdisable recovery cause gbic-invalid errdisable recovery cause psecure-violation errdisable recovery cause port-mode-failure errdisable recovery cause dhcp-rate-limit errdisable recovery cause pppoe-ia-rate-limit errdisable recovery cause mac-limit errdisable recovery cause vmps errdisable recovery cause storm-control errdisable recovery cause inline-power errdisable recovery cause arp-inspection errdisable recovery cause loopback errdisable recovery cause small-frame errdisable recovery cause psp errdisable recovery interval 60 archive log config logging enable logging size 900 notify syslog contenttype plaintext hidekeys path tftp://tftp/KZN/2960/$H-$T write-memory time-period 10080 ! spanning-tree mode rapid-pvst spanning-tree logging no spanning-tree etherchannel guard misconfig spanning-tree extend system-id ! vlan internal allocation policy ascending lldp run ! ip ssh rsa keypair-name SSH_KEYS ip ssh version 2 ! ! ! ! ! interface Port-channel1 description [CORE] SW-1-1 switchport mode trunk ip dhcp snooping trust ! interface FastEthernet0/1 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/2 description CRPT_Markirovka_3korp_1floor switchport access vlan 603 switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/3 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/4 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/5 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/6 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/7 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/8 description --Wi-Fi_AP-- switchport mode trunk switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/9 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/10 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/11 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/12 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/13 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/14 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/15 description --MILKOSKAN_KZN-151-- switchport mode access switchport voice vlan 350 no snmp trap link-status storm-control broadcast level pps 200 storm-control action trap spanning-tree bpduguard enable spanning-tree guard root ! interface FastEthernet0/16 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status no cdp enable spanning-tree bpduguard enable ! interface FastEthernet0/17 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/18 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/19 description ACC_9.1.11_Mark switchport access vlan 603 switchport mode access no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/20 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/21 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/22 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/23 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/24 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/25 description [WIFI] AP-5-1-KORPUS-3-1 (for Farid 9-3-5) switchport trunk native vlan 301 switchport trunk allowed vlan 150,200,220,301,450,500 switchport mode trunk switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/26 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/27 description --LINK_TO_TVOROG_CEH-- switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/28 description [WIFI] AP-5-1-KORPUS-3-2 (for Farid 9-3-6) switchport trunk native vlan 301 switchport trunk allowed vlan 150,200,220,301,450,500 switchport mode trunk switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/29 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/30 description -=KZN-MLK-SW-16-1=- switchport mode trunk switchport voice vlan 350 no snmp trap link-status storm-control broadcast level pps 100 storm-control multicast level pps 100 spanning-tree bpduguard enable ! interface FastEthernet0/31 description [PRN] Domino_TBA19_floor1 switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/32 description [WIFI] AP-5-1-KORPUS-3-1-CRPT_2 switchport trunk native vlan 301 switchport trunk allowed vlan 150,220,301,450,500 switchport mode trunk no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/33 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/34 description [WIFI] AP-5-1-KORPUS-3-1-CRPT_1 switchport trunk native vlan 301 switchport trunk allowed vlan 150,220,301,450,500 switchport mode trunk no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/35 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/36 description [WIFI] AP-5-1-KORPUS-3-1-CRPT_3 switchport trunk native vlan 301 switchport trunk allowed vlan 150,220,301,450,500 switchport mode trunk no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/37 description --Wi-Fi_AP-- switchport trunk allowed vlan 1,150,200,220,301,450,500 switchport mode trunk no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/38 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/39 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/40 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/41 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/42 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/43 description [PRN] Domino_TBA8_floor1 switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/44 description NONE switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/45 description [PRN] Domino_EDGE_floor1 switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/46 description --Wi-Fi_AP-- switchport mode trunk switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/47 description [WIFI] AP-5-1-KORPUS-3-1-AP1 switchport trunk native vlan 301 switchport trunk allowed vlan 150,200,220,301,450,500 switchport mode trunk switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface FastEthernet0/48 description --MANAGEMENT-- switchport access vlan 100 switchport mode access switchport voice vlan 350 no snmp trap link-status spanning-tree bpduguard enable ! interface GigabitEthernet0/1 description [CORE] Po1 SW-1-1 switchport mode trunk channel-group 1 mode active ip dhcp snooping trust ! interface GigabitEthernet0/2 description [CORE] Po1 SW-1-1 switchport mode trunk channel-group 1 mode active ip dhcp snooping trust ! interface GigabitEthernet0/3 description [CAM] AT switchport mode trunk spanning-tree guard root ! interface GigabitEthernet0/4 description [KU] SW-9A-3 switchport trunk allowed vlan 1,300,550 switchport mode trunk storm-control broadcast level pps 200 storm-control multicast level pps 200 storm-control action trap spanning-tree bpdufilter enable ! interface Vlan1 no ip address ! interface Vlan300 description --MANAGEMENT-- ip address 10.5.62.58 255.255.255.0 no ip redirects no ip unreachables no ip proxy-arp ! ip default-gateway 10.5.62.254 ip http server no ip http secure-server logging history size 500 logging origin-id hostname logging source-interface Vlan300 logging host 192.168.8.119 transport udp port 5544 logging host 10.4.244.4 transport udp port 515 snmp-server community lmTUEsk6Yvlv RO ! radius server IZH-RDS002 address ipv4 10.4.0.248 auth-port 1645 acct-port 1646 timeout 3 retransmit 2 key 1W29n$Wzh&JA^&OoymBQpo!$CALFm$tDMO2uO8XBWEpedsiEQASjhmm6KKF0U6nN ! radius server P11-RDS003 address ipv4 10.1.122.248 auth-port 1645 acct-port 1646 timeout 3 retransmit 2 key 1W29n$Wzh&JA^&OoymBQpo!$CALFm$tDMO2uO8XBWEpedsiEQASjhmm6KKF0U6nN ! ! ! banner login ^C ***************************************************************************** * * * UNAUTHORIZED ACCESS IS PROHIBITED * * * * You have accessed network equipment. * * You must have authorized permission to access or configure this device. * * All activities performed on this device are logged and monitored. * * * ***************************************************************************** ^C ! line con 0 exec-timeout 120 0 logging synchronous login authentication CONSOLE line vty 0 4 exec-timeout 120 0 logging synchronous login authentication NPS transport input ssh line vty 5 15 exec-timeout 120 0 logging synchronous login authentication NPS transport input ssh ! ntp server 192.168.8.200 ntp server 192.168.8.201 end