2025-12-08 16:19:52 -08:00
|
|
|
!RANCID-CONTENT-TYPE: cisco-clean
|
|
|
|
|
!
|
|
|
|
|
!
|
|
|
|
|
!
|
|
|
|
|
!
|
|
|
|
|
!
|
|
|
|
|
version 15.1
|
|
|
|
|
service timestamps debug datetime msec localtime show-timezone year
|
|
|
|
|
service timestamps log datetime msec localtime show-timezone year
|
|
|
|
|
service password-encryption
|
|
|
|
|
service sequence-numbers
|
|
|
|
|
!
|
|
|
|
|
hostname XIComputers_50MB_13.KQGN.638234.PT_980CalleNegocio
|
|
|
|
|
!
|
|
|
|
|
boot-start-marker
|
|
|
|
|
boot-end-marker
|
|
|
|
|
!
|
|
|
|
|
logging buffered 50000 informational
|
|
|
|
|
no logging console
|
|
|
|
|
!
|
|
|
|
|
aaa new-model
|
|
|
|
|
!
|
|
|
|
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
|
|
|
|
aaa authentication login default group tacacs+ local
|
|
|
|
|
aaa authentication enable default group tacacs+ none
|
|
|
|
|
!
|
|
|
|
|
aaa session-id common
|
|
|
|
|
!
|
|
|
|
|
clock timezone PST -8 0
|
|
|
|
|
clock summer-time PST recurring
|
|
|
|
|
!
|
|
|
|
|
dot11 syslog
|
|
|
|
|
ip source-route
|
|
|
|
|
!
|
|
|
|
|
ip cef
|
|
|
|
|
!
|
|
|
|
|
ip domain name tierzero.net
|
|
|
|
|
ip name-server 216.116.96.2
|
|
|
|
|
ip name-server 216.116.96.3
|
|
|
|
|
no ipv6 cef
|
|
|
|
|
!
|
|
|
|
|
multilink bundle-name authenticated
|
|
|
|
|
!
|
|
|
|
|
voice-card 0
|
|
|
|
|
!
|
|
|
|
|
crypto pki token default removal timeout 0
|
|
|
|
|
!
|
|
|
|
|
license udi pid CISCO2851 sn FTX1447AHSG
|
|
|
|
|
archive
|
|
|
|
|
log config
|
|
|
|
|
logging enable
|
|
|
|
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
|
|
|
|
!
|
|
|
|
|
redundancy
|
|
|
|
|
!
|
|
|
|
|
ip ssh version 2
|
|
|
|
|
!
|
|
|
|
|
class-map match-all BANDWIDTH
|
|
|
|
|
match any
|
|
|
|
|
!
|
|
|
|
|
policy-map BANDWIDTH_50MB
|
|
|
|
|
class BANDWIDTH
|
|
|
|
|
shape average 50000000
|
|
|
|
|
queue-limit 62500 bytes
|
|
|
|
|
class class-default
|
|
|
|
|
fair-queue
|
|
|
|
|
random-detect dscp-based
|
|
|
|
|
random-detect ecn
|
|
|
|
|
!
|
|
|
|
|
interface GigabitEthernet0/0
|
|
|
|
|
description XIComputers=13.KQGN.638234.PT
|
|
|
|
|
no ip address
|
|
|
|
|
ip flow ingress
|
|
|
|
|
load-interval 30
|
|
|
|
|
duplex full
|
|
|
|
|
speed 100
|
|
|
|
|
service-policy output BANDWIDTH_50MB
|
|
|
|
|
!
|
|
|
|
|
interface GigabitEthernet0/0.1
|
|
|
|
|
encapsulation dot1Q 2460
|
|
|
|
|
ip address 216.31.132.98 255.255.255.252
|
|
|
|
|
ip access-group 110 in
|
|
|
|
|
ip access-group 110 out
|
|
|
|
|
ip flow ingress
|
|
|
|
|
!
|
|
|
|
|
interface GigabitEthernet0/1
|
|
|
|
|
description CustomerLAN
|
|
|
|
|
ip address 208.179.5.1 255.255.255.0
|
|
|
|
|
ip access-group 110 in
|
|
|
|
|
ip access-group 110 out
|
|
|
|
|
ip flow ingress
|
|
|
|
|
duplex auto
|
|
|
|
|
speed auto
|
|
|
|
|
service-policy output BANDWIDTH_50MB
|
|
|
|
|
!
|
|
|
|
|
ip forward-protocol nd
|
|
|
|
|
no ip http server
|
|
|
|
|
no ip http secure-server
|
|
|
|
|
!
|
|
|
|
|
ip route 0.0.0.0 0.0.0.0 216.31.132.97
|
|
|
|
|
!
|
|
|
|
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
|
|
|
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
|
|
|
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
|
|
|
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
|
|
|
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
|
|
|
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
|
|
|
|
access-list 25 deny any
|
|
|
|
|
access-list 60 deny 176.126.129.87
|
|
|
|
|
access-list 60 deny 188.242.146.136
|
|
|
|
|
access-list 60 deny 192.233.24.65
|
|
|
|
|
access-list 60 permit any
|
|
|
|
|
access-list 110 deny ip any host 136.0.2.251
|
|
|
|
|
access-list 110 deny ip any host 104.143.153.244
|
|
|
|
|
access-list 110 deny ip any host 192.99.56.154
|
|
|
|
|
access-list 110 deny ip any host 31.28.122.55
|
|
|
|
|
access-list 110 deny ip any host 94.23.147.179
|
|
|
|
|
access-list 110 deny ip any host 123.243.242.81
|
|
|
|
|
access-list 110 deny ip any host 185.114.22.243
|
|
|
|
|
access-list 110 deny ip any host 118.184.61.152
|
|
|
|
|
access-list 110 deny ip any host 81.22.172.205
|
|
|
|
|
access-list 110 deny ip any host 169.48.97.53
|
|
|
|
|
access-list 110 deny ip any host 63.159.216.111
|
|
|
|
|
access-list 110 deny ip any host 198.251.82.19
|
|
|
|
|
access-list 110 deny ip any host 176.126.129.87
|
|
|
|
|
access-list 110 deny ip any host 188.242.146.136
|
|
|
|
|
access-list 110 deny ip any host 91.202.112.2
|
|
|
|
|
access-list 110 deny ip 80.82.0.0 0.0.255.255 any
|
|
|
|
|
access-list 110 deny ip host 94.23.147.179 any
|
|
|
|
|
access-list 110 deny ip host 136.0.2.251 any
|
|
|
|
|
access-list 110 deny ip host 176.126.129.87 any
|
|
|
|
|
access-list 110 deny ip host 188.242.146.136 any
|
|
|
|
|
access-list 110 permit ip any any
|
|
|
|
|
!
|
|
|
|
|
snmp-server engineID local 0000000902000050547D0984
|
|
|
|
|
snmp-server community tierzero RO
|
|
|
|
|
!
|
|
|
|
|
tacacs-server host 216.116.96.47
|
|
|
|
|
tacacs-server timeout 10
|
|
|
|
|
tacacs-server directed-request
|
|
|
|
|
tacacs-server key 7 01040E554F58165F2F5501
|
|
|
|
|
!
|
|
|
|
|
control-plane
|
|
|
|
|
!
|
|
|
|
|
mgcp profile default
|
|
|
|
|
!
|
|
|
|
|
banner motd ^CCCCCCCCCCCC
|
|
|
|
|
*************************************************************
|
|
|
|
|
Tierzero:
|
|
|
|
|
Unauthorized access to this device or the attached
|
|
|
|
|
networks is prohibited without express written permission.
|
|
|
|
|
Violators may be prosecuted to the fullest extent of the law.
|
|
|
|
|
Phone: 213-784-1400 option 1
|
|
|
|
|
Email: [tac@tierzero.net]
|
|
|
|
|
*********TACACS+*************************
|
|
|
|
|
^C
|
|
|
|
|
!
|
|
|
|
|
line con 0
|
|
|
|
|
line aux 0
|
|
|
|
|
line vty 0 4
|
|
|
|
|
access-class 25 in
|
|
|
|
|
transport input all
|
|
|
|
|
line vty 5 15
|
|
|
|
|
access-class 25 in
|
|
|
|
|
transport input all
|
|
|
|
|
!
|
|
|
|
|
scheduler allocate 20000 1000
|
|
|
|
|
ntp server 204.152.184.72
|
|
|
|
|
ntp server 216.31.128.192
|
|
|
|
|
ntp server 216.116.96.3
|
|
|
|
|
end
|