ansible/backup/files/cisco/KZN-MLK-KMK-SW-16-1.txt
Ахметзянов Рустам Рамилевич af70a6a354 first commit
2025-10-31 08:47:26 +04:00

727 lines
19 KiB
Plaintext

Building configuration...
Current configuration : 19518 bytes
!
! Last configuration change at 07:59:31 MSK Mon Jun 20 2022 by akhmetzyanovrr_adm
! NVRAM config last updated at 01:00:06 MSK Thu Jul 28 2022
!
version 15.2
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone year
service timestamps log datetime msec localtime show-timezone year
service password-encryption
service sequence-numbers
service unsupported-transceiver
!
hostname KZN-MLK-KMK-SW-16-1
!
boot-start-marker
boot-end-marker
!
logging userinfo
logging buffered 512000 informational
enable secret 5 $1$j4UP$Wgs2xMeWlYNzcOvcwfmE90
!
username netadmin privilege 15 secret 5 $1$7CcC$OsCYMOQjF1PHp5ZEh.lPr1
aaa new-model
!
!
aaa group server radius NPS
server name IZH-RDS002
server name P11-RDS003
load-balance method least-outstanding
!
aaa authentication login default group NPS local enable
aaa authentication login CONSOLE local group NPS
aaa authorization exec default group NPS local if-authenticated
!
!
!
!
!
!
aaa session-id common
clock timezone MSK 3 0
switch 1 provision ws-c2960s-48fps-l
no ip source-route
no ip gratuitous-arps
!
!
ip dhcp snooping vlan 1-4094
ip dhcp snooping
no ip domain-lookup
ip domain-name komos.ru
ip host tftp 10.4.0.214
login on-failure log
login on-success log
!
shutdown vlan 13
!
!
!
!
!
!
!
crypto pki trustpoint TP-self-signed-473206016
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-473206016
revocation-check none
rsakeypair TP-self-signed-473206016
!
!
crypto pki certificate chain TP-self-signed-473206016
certificate self-signed 01
30820229 30820192 A0030201 02020101 300D0609 2A864886 F70D0101 05050030
30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 34373332 30363031 36301E17 0D303630 31303230 30313632
375A170D 32303031 30313030 30303030 5A303031 2E302C06 03550403 1325494F
532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3437 33323036
30313630 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100
8E327A81 34C4EFEB D65A2943 220E23E6 EDEF376B F429760A 7CBA12FF 11D98DB8
4EF9A375 965197A5 7154721A BD4DCDAB 047E1231 125CAAC6 8C51017B AD230A0D
479DFAFB 33484B67 497F5390 3B7444E5 ADE43621 D2FD7B20 7B91C10E 9E9BE7E1
3C9BE9FB DA6D29AD BE0BD000 6F9E1645 5E04F6A2 D76F937F 9C831D8F 028E0BD3
02030100 01A35330 51300F06 03551D13 0101FF04 05300301 01FF301F 0603551D
23041830 168014EA 03F7A45F 24167A91 F57D7363 0D858C6E 35BEBC30 1D060355
1D0E0416 0414EA03 F7A45F24 167A91F5 7D73630D 858C6E35 BEBC300D 06092A86
4886F70D 01010505 00038181 00035932 A7187516 35B57BD9 69D96D3D A2308259
6FA5373A 18C21F01 9E95B2B2 EB942B1A 62D58D8F 174CEDDA E47AEAAD 6F1BF8BD
7D7B1817 3CDAF04D 31F0495D DE4AC1B3 9B058D5A D35F462F A32602BB D318038D
1B6104FF B7F929D4 6F2A3B66 581D32C7 CD575C8D 5316C2B7 063B030B E8A11371
3A50AC5A 36793D5B FA29F08A 8C
quit
archive
log config
logging enable
logging size 900
notify syslog contenttype plaintext
hidekeys
path tftp://tftp/KZN/MLK/KMK-SW_L2/$H.$T.conf
write-memory
time-period 10080
!
spanning-tree mode rapid-pvst
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
no errdisable detect cause gbic-invalid
errdisable recovery cause dtp-flap
errdisable recovery cause link-flap
errdisable recovery cause port-mode-failure
errdisable recovery cause loopback
errdisable recovery interval 600
!
!
!
!
vlan internal allocation policy ascending
!
lldp run
!
!
!
!
!
!
!
!
!
!
interface Port-channel1
description [CORE] SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
ip dhcp snooping trust
!
interface FastEthernet0
no ip address
shutdown
!
interface GigabitEthernet1/0/1
description [WIFI] AP-TBA1
switchport trunk native vlan 301
switchport trunk allowed vlan 150,301,450,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
spanning-tree guard root
!
interface GigabitEthernet1/0/2
description [WIFI] AP-TBA2
switchport trunk native vlan 301
switchport trunk allowed vlan 150,301,450,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
spanning-tree guard root
!
interface GigabitEthernet1/0/3
description [WIFI] AP-TBA3
switchport trunk native vlan 301
switchport trunk allowed vlan 150,301,450,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
spanning-tree guard root
!
interface GigabitEthernet1/0/4
description [WIFI] AP-TBA4
switchport trunk native vlan 301
switchport trunk allowed vlan 150,301,450,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
spanning-tree guard root
!
interface GigabitEthernet1/0/5
description [WIFI] AP-TBA5
switchport trunk native vlan 301
switchport trunk allowed vlan 150,301,450,500
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
spanning-tree guard root
!
interface GigabitEthernet1/0/6
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/7
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/8
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/9
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/10
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/11
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/12
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/13
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/14
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/15
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/16
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/17
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/18
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/19
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/20
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/21
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/22
description [PRN]
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/23
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/24
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/25
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/26
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/27
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/28
description [PRN] Etiketok
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/29
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/30
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/31
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/32
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/33
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/34
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/35
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/36
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/37
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/38
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/39
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/40
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/41
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/42
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/43
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/44
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/45
description NONE
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/46
description NONE
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree portfast
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/47
description [PRN]
switchport access vlan 16
switchport mode access
switchport voice vlan 350
no snmp trap link-status
storm-control broadcast level pps 100
storm-control multicast level pps 100
spanning-tree bpduguard enable
!
interface GigabitEthernet1/0/48
switchport mode trunk
switchport voice vlan 350
no snmp trap link-status
!
interface GigabitEthernet1/0/49
description [CORE] Po1 SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/50
description [CORE] Po1 SW-1-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/51
switchport mode trunk
logging event trunk-status
logging event spanning-tree
channel-group 1 mode active
ip dhcp snooping trust
!
interface GigabitEthernet1/0/52
description [CAM] AT KU-16-1
switchport mode trunk
logging event trunk-status
logging event spanning-tree
spanning-tree guard root
!
interface Vlan1
no ip address
shutdown
!
interface Vlan300
description --MANAGMENT--
ip address 10.5.62.161 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
!
ip default-gateway 10.5.62.254
no ip http server
no ip http secure-server
!
ip tftp source-interface Vlan300
ip ssh authentication-retries 2
ip ssh logging events
ip ssh version 2
!
kron occurrence EveryDay at 1:00 recurring
policy-list SaveBackup
!
kron policy-list SaveBackup
cli write memory
!
logging trap debugging
logging origin-id hostname
logging facility local6
logging source-interface Vlan300
logging host 10.4.244.4 transport udp port 515
!
snmp-server community lmTUEsk6Yvlv RO
!
!
radius server IZH-RDS002
address ipv4 10.4.0.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
radius server P11-RDS003
address ipv4 10.1.122.248 auth-port 1645 acct-port 1646
timeout 3
retransmit 2
key 7 101F3E4B5C19563C160C6C010516751A2D0A0A34321159181C7075222515524D7C7A7C00407B536324307D470117150D7E3A273C2B4443044F2E3C345B39522405
!
banner exec ^CC
Welcome to $(hostname). You are connected on line $(line) on domain $(domain)
^C
banner login ^CC
*****************************************************************************
* *
* UNAUTHORIZED ACCESS IS PROHIBITED *
* *
* You have accessed network equipment. *
* You must have authorized permission to access or configure this device. *
* All activities performed on this device are logged and monitored. *
* *
*****************************************************************************
^C
alias router x exit
alias subinterface x exit
alias interface x exit
alias configure x exit
alias exec ipconfig show ip interface brief | exclude unassigned
alias exec diff show archive config differences nvram:startup-config system:running-config
alias exec q exit
!
line con 0
logging synchronous
line vty 0 4
exec-timeout 120 0
logging synchronous
length 0
transport input ssh
line vty 5 15
exec-timeout 120 0
logging synchronous
transport input ssh
!
ntp server 192.168.8.200
ntp server 192.168.8.201
mac address-table notification change
mac address-table notification mac-move
mac address-table aging-time 900
end