updates
This commit is contained in:
parent
91e38f5a89
commit
f3bd443ac9
|
|
@ -0,0 +1,151 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname DreamboxCreations_50MB_33.WPRL.10046529_667CliffsideDr
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1332AHF0
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
logging persistent auto
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_50MB2
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description DreamboxCreations=33.WPRL.10046529
|
||||||
|
ip address 216.31.130.18 255.255.255.252
|
||||||
|
ip virtual-reassembly in
|
||||||
|
rate-limit input 60000000 11250000 22500000 conform-action transmit exceed-action drop
|
||||||
|
rate-limit output 60000000 11250000 22500000 conform-action transmit exceed-action drop
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 216.31.162.1 255.255.255.0
|
||||||
|
ip virtual-reassembly in
|
||||||
|
rate-limit input 60000000 11250000 22500000 conform-action transmit exceed-action drop
|
||||||
|
rate-limit output 60000000 11250000 22500000 conform-action transmit exceed-action drop
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.130.17
|
||||||
|
!
|
||||||
|
access-list 1 permit 192.168.100.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,145 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname SunriseProduce_50MB_2.000013.CFL2.000311_500BurningTreeRd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
no process cpu autoprofile hog
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2811 sn FTX0950C3JD
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
logging persistent auto
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 55000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
crypto map NiStTeSt1 10 ipsec-manual
|
||||||
|
! Incomplete
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description SunriseProduce_2.000013.CFL2.000311
|
||||||
|
ip address 216.31.130.30 255.255.255.252
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 208.179.173.137 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.130.29
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 199 permit icmp host 10.10.10.10 host 20.20.20.20
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,183 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
!
|
||||||
|
hostname ConcoursAutoSpa_20MB_33/WPRL/10081973_340VanNessAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfgb"
|
||||||
|
!
|
||||||
|
ip dhcp pool CustomerLAN
|
||||||
|
network 192.168.1.0 255.255.255.0
|
||||||
|
default-router 192.168.1.1
|
||||||
|
dns-server 8.8.8.8 8.8.4.4 216.116.96.2 216.116.96.3
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1015A226
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_20MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 20000000
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description ConcoursAutoSpa=33/WPRL/10081973
|
||||||
|
ip address 216.31.130.54 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
rate-limit input 20968000 3932160 7864320 conform-action transmit exceed-action drop
|
||||||
|
rate-limit output 20968000 3932160 7864320 conform-action transmit exceed-action drop
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 192.168.1.1 255.255.255.0 secondary
|
||||||
|
ip address 64.239.128.241 255.255.255.248
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0 overload
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.130.53
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 1 permit 192.168.1.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server pool.ntp.org
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,151 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname PacificPrimeMeats_50MB_13KRGN620036PT_3501EVernonAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license accept end user agreement
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description PacificPrimeMeats=13KRGN620036PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2411
|
||||||
|
ip address 216.31.131.150 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.129.9 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.131.149
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,157 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
upgrade fpd auto
|
||||||
|
version 15.0
|
||||||
|
no service pad
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
!
|
||||||
|
hostname HealthAde_100MB_13.KRGN.595944.PT_6625CaballeroBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot system disk2:c7200-spservicesk9-mz.150-1.M10.bin
|
||||||
|
boot system flash disk2:c7200-is-mz.123-26.bin
|
||||||
|
boot bootldr disk2:c7200-boot-mz.124-25b.bin
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8
|
||||||
|
clock summer-time PST recurring
|
||||||
|
ip source-route
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB2
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
description HealthAde=13.KRGN.595944.PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 1000
|
||||||
|
media-type gbic
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1.1
|
||||||
|
encapsulation dot1Q 2417
|
||||||
|
ip address 216.31.131.182 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/2
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.131.145 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
media-type rj45
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB2
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
media-type rj45
|
||||||
|
no negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.131.181
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
gatekeeper
|
||||||
|
shutdown
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCC
|
||||||
|
|
||||||
|
*************************************************************
|
||||||
|
|
||||||
|
Tierzero:
|
||||||
|
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
|
||||||
|
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
|
||||||
|
*********TACACS+*************************
|
||||||
|
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,179 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname PensionBenefits_50MB_13.KQGN.627629.PT_18008SkyParkCircle
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot system flash disk2:c7200-is-mz.123-26.bin
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1327AHXA
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
logging persistent auto
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_50MB2
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description PensionBenefits=13.KQGN.627629.PT
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_50MB2
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2423
|
||||||
|
ip address 216.31.131.206 255.255.255.252
|
||||||
|
ip virtual-reassembly in
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
shutdown
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.128.89 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.131.205
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,134 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
!
|
||||||
|
hostname BrazilianBlowout_100MB_13.KRGN.593589.PT_28001DorothyDr
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot system flash disk2:c7200-is-mz.123-26.bin
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1353AH74
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description BrazilianBlowout=13.KRGN.593589.PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 1000
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2583
|
||||||
|
ip address 216.31.131.22 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.131.81 255.255.255.248 secondary
|
||||||
|
ip address 64.239.153.1 255.255.255.224
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.131.21
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,193 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname DrCharlesMoniak_50MB_13KQGN654165PT_320SuperiorAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
no process cpu autoprofile hog
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1225A4TW
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
logging persistent auto
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description DrCharlesMoniak=13KQGN654165PT
|
||||||
|
no ip address
|
||||||
|
ip flow ingress
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0.1
|
||||||
|
description DrCharlesMoniak=13KQGN654165PT
|
||||||
|
encapsulation dot1Q 2590
|
||||||
|
ip address 216.31.131.66 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
no cdp enable
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
description HPBX
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip flow ingress
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 216.31.175.233 255.255.255.248
|
||||||
|
ip access-group 198 in
|
||||||
|
ip access-group 198 out
|
||||||
|
ip flow ingress
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip flow-export source GigabitEthernet0/0
|
||||||
|
ip flow-export version 5
|
||||||
|
ip flow-export destination 216.116.96.71 2055
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0.1 overload
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.131.65
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
access-list 198 deny ip 8.254.243.0 0.0.0.255 any
|
||||||
|
access-list 198 permit ip any any
|
||||||
|
access-list 199 permit icmp host 10.10.10.10 host 20.20.20.20
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,155 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
No l4r_shim subsystem is included in this platform.
|
||||||
|
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname HollywoodProductionCenter_1GB_13KRGN621596PT_1010WilshireBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
hidekeys
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 1000000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description HollywoodProductionCenter=13KRGN621596PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2601
|
||||||
|
ip address 216.31.132.114 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.153.129 255.255.255.192
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
description Handoff_to_ADTRAN
|
||||||
|
ip address 208.179.23.137 255.255.255.252
|
||||||
|
speed 100
|
||||||
|
no negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.113
|
||||||
|
!
|
||||||
|
logging alarm informational
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,167 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.4
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname CBCB_100MB_86.KRGN.597303.PT_3033ShattuckAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
|
||||||
|
!
|
||||||
|
subscriber templating
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license udi pid ASR1001 sn JAE183103HQ
|
||||||
|
license boot level ipbase
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_100MB2
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description CBCB=86.KRGN.597303.PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB2
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2608
|
||||||
|
ip address 216.31.132.146 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.152.105 255.255.255.248
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB2
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.145
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,165 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.4
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname HollywoodProductionCenter_1GB_13KRGN621595PT_1027WilshireBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
ip dhcp excluded-address 10.27.0.0 10.27.0.49
|
||||||
|
ip dhcp excluded-address 10.27.0.241 10.27.0.254
|
||||||
|
!
|
||||||
|
ip dhcp pool LAN
|
||||||
|
network 10.27.0.0 255.255.255.0
|
||||||
|
default-router 10.27.0.254
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
!
|
||||||
|
subscriber templating
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license udi pid ASR1001 sn JAE18160AJB
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 1000000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description HollywoodProductionCenter=13KRGN621595PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2611
|
||||||
|
ip address 216.31.132.158 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.136.17 255.255.255.240
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
description CISCO TO ADTRAN
|
||||||
|
ip address 208.179.253.117 255.255.255.252
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
ip address 10.27.0.254 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.157
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.27.0.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,203 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 12.4
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
!
|
||||||
|
hostname OrangePsychiatricMedicalGroup_50MB_13KQGN639404PT_770MagnoliaAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging message-counter syslog
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.25.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.25.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfgb
|
||||||
|
!
|
||||||
|
ip dhcp pool LAN_DHCP
|
||||||
|
network 192.168.1.0 255.255.255.0
|
||||||
|
default-router 192.168.1.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
lease 0 23
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
ip name-server 64.239.184.125
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
no dspfarm
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
hidekeys
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 40
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_50MB2
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description OrangePsychiatricMedicalGroup=13KQGN639404PT
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_50MB2
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2613
|
||||||
|
ip address 216.31.132.166 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
description VOIP
|
||||||
|
no ip address
|
||||||
|
ip flow ingress
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1.1
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.25.1 255.255.255.0
|
||||||
|
ip flow ingress
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.130.25 255.255.255.248 secondary
|
||||||
|
ip address 192.168.1.1 255.255.255.0
|
||||||
|
ip access-group 198 in
|
||||||
|
ip flow ingress
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.165
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip tcp port 5060
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0.1 overload
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.25.0 0.0.0.255
|
||||||
|
access-list 1 permit 192.168.1.0 0.0.0.255
|
||||||
|
access-list 1 permit 192.168.12.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
access-list 198 permit tcp any host 64.239.130.26 eq 443
|
||||||
|
access-list 198 deny ip any host 64.239.130.26
|
||||||
|
access-list 198 permit ip any any
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,96 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 12.3
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
!
|
||||||
|
hostname LiveViewGPS_3MB_2.000013.CFL2.000314_29021AveSherman
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000 debugging
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
clock timezone PST -8
|
||||||
|
clock summer-time PST recurring
|
||||||
|
no network-clock-participate slot 1
|
||||||
|
no network-clock-participate wic 0
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
aaa session-id common
|
||||||
|
ip subnet-zero
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description LiveViewGPS=PendingCALID
|
||||||
|
ip address 216.31.132.182 255.255.255.252
|
||||||
|
load-interval 30
|
||||||
|
speed 100
|
||||||
|
full-duplex
|
||||||
|
traffic-shape rate 3000000 3000000 3000000 4096
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.133.217 255.255.255.248
|
||||||
|
ip route-cache flow
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
traffic-shape rate 3000000 3000000 3000000 4096
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
ip classless
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.181
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,158 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.5
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname SITV.com_1GB_13KRGN605816PT_700NCentralAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip name-server 216.116.96.2 216.116.96.3
|
||||||
|
|
||||||
|
ip domain name tierzero.net
|
||||||
|
!
|
||||||
|
subscriber templating
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license udi pid ASR1001 sn JAE2006059G
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 1000000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description SITV.com=13KRGN605816PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2616
|
||||||
|
ip address 216.31.132.190 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 208.179.103.241 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
ip address 208.179.230.97 255.255.255.240
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.189
|
||||||
|
ip route 10.15.106.0 255.255.255.224 192.168.30.17
|
||||||
|
ip route 192.168.30.0 255.255.255.0 208.179.103.242
|
||||||
|
ip route 192.168.31.0 255.255.255.0 172.16.0.2
|
||||||
|
ip route 208.179.120.128 255.255.255.192 172.16.0.2
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,205 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname TriTechLogistics_20MB_13KQGN649955PT_1370BreaBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
no process cpu autoprofile hog
|
||||||
|
memory-size iomem 15
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfgb
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2811 sn FTX1534ANC4
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
logging persistent auto
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_20MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 20000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
crypto map NiStTeSt1 10 ipsec-manual
|
||||||
|
! Incomplete
|
||||||
|
!
|
||||||
|
crypto map NiStTeSt2 10 ipsec-manual
|
||||||
|
! Incomplete
|
||||||
|
match address 198
|
||||||
|
!
|
||||||
|
crypto map NiStTeSt3 10 ipsec-manual
|
||||||
|
set peer 20.20.20.20
|
||||||
|
match address 197
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description TriTechLogistics=13KQGN649955PT
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2462
|
||||||
|
ip address 216.31.132.214 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
no cdp enable
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
no cdp enable
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.137.73 255.255.255.248
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
no cdp enable
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface FastEthernet0/0.1 overload
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.213
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
access-list 197 permit icmp host 10.10.10.10 host 20.20.20.20
|
||||||
|
access-list 198 permit icmp host 10.10.10.10 host 20.20.20.20
|
||||||
|
access-list 199 permit icmp host 10.10.10.10 host 20.20.20.20
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,162 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
No l4r_shim subsystem is included in this platform.
|
||||||
|
|
||||||
|
version 15.3
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname UniversalChurch_1GB_13KRGN607284PT_707SBroadway
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
|
||||||
|
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 1000000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description UniversalChurch=13KRGN607284PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2463
|
||||||
|
ip address 216.31.132.222 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.140.89 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.221
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,192 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
No l4r_shim subsystem is included in this platform.
|
||||||
|
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname BCCContracting_250MB_13KRGN608044PT_4160TemescalCanyonRd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfg/"
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_250MB
|
||||||
|
class VOIP
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 250000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description BCCContracting=13KRGN608044PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2618
|
||||||
|
ip address 216.31.132.226 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.152.57 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
description HPBX
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2.1159
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.225
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,184 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname CommunicationTechnologyServices_20MB_13KQGN643839PT_314ElizabethLn
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfgb
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1136A1AD
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_20MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 20000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0.1
|
||||||
|
description CommunicationTechnologyServices=13KQGN643839PT
|
||||||
|
encapsulation dot1Q 2412
|
||||||
|
ip address 216.31.132.238 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
duplex full
|
||||||
|
speed 1000
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.141.209 255.255.255.248
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0.1 overload
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.237
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,168 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname AccoEngineeredSystems_1GB_86KRGN613164PT_1133AladdinAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ip dhcp pool DHCP
|
||||||
|
network 192.168.0.0 255.255.255.0
|
||||||
|
default-router 192.168.0.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license boot level advipservices
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
police rate 1000000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
class class-default
|
||||||
|
police rate 1000000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
fair-queue
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description AccoEngineeredSystems=86KRGN613164PT
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly max-reassemblies 1024
|
||||||
|
load-interval 30
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2407
|
||||||
|
ip address 216.31.132.254 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly max-reassemblies 1024
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 216.116.109.1 255.255.255.224
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
ip address 192.168.0.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.253
|
||||||
|
!
|
||||||
|
access-list 1 permit 192.168.0.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server time.cloudflare.com
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,140 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname KinkisharyoInternational_50MB_38.KQGN.639628.SB_2126W.PointAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2811 sn FTX1253A154
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description KinkisharyoInternational=38.KQGN.639628.SB
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2452
|
||||||
|
ip address 216.31.132.62 255.255.255.252
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.133.137 255.255.255.248
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.61
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,191 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname MutatoMuzica_500MB_13.KRGN.603018.PT_8760SunsetBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfg"
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license boot level advipservices
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_500MB
|
||||||
|
class VOIP
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 500000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description MutatoMuzica=13.KRGN.603018.PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_500MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2455
|
||||||
|
ip address 216.31.132.74 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip flow ingress
|
||||||
|
ip virtual-reassembly
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 208.179.230.241 255.255.255.248
|
||||||
|
ip flow ingress
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_500MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
ip flow ingress
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_500MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
ip flow ingress
|
||||||
|
ip virtual-reassembly
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
ip flow-export source GigabitEthernet0/0/0.1
|
||||||
|
ip flow-export destination 216.116.96.71 2055
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.73
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,171 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname XIComputers_50MB_13.KQGN.638234.PT_980CalleNegocio
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2851 sn FTX1447AHSG
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0
|
||||||
|
description XIComputers=13.KQGN.638234.PT
|
||||||
|
no ip address
|
||||||
|
ip flow ingress
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2460
|
||||||
|
ip address 216.31.132.98 255.255.255.252
|
||||||
|
ip access-group 110 in
|
||||||
|
ip access-group 110 out
|
||||||
|
ip flow ingress
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 208.179.5.1 255.255.255.0
|
||||||
|
ip access-group 110 in
|
||||||
|
ip access-group 110 out
|
||||||
|
ip flow ingress
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.132.97
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 60 deny 176.126.129.87
|
||||||
|
access-list 60 deny 188.242.146.136
|
||||||
|
access-list 60 deny 192.233.24.65
|
||||||
|
access-list 60 permit any
|
||||||
|
access-list 110 deny ip any host 136.0.2.251
|
||||||
|
access-list 110 deny ip any host 104.143.153.244
|
||||||
|
access-list 110 deny ip any host 192.99.56.154
|
||||||
|
access-list 110 deny ip any host 31.28.122.55
|
||||||
|
access-list 110 deny ip any host 94.23.147.179
|
||||||
|
access-list 110 deny ip any host 123.243.242.81
|
||||||
|
access-list 110 deny ip any host 185.114.22.243
|
||||||
|
access-list 110 deny ip any host 118.184.61.152
|
||||||
|
access-list 110 deny ip any host 81.22.172.205
|
||||||
|
access-list 110 deny ip any host 169.48.97.53
|
||||||
|
access-list 110 deny ip any host 63.159.216.111
|
||||||
|
access-list 110 deny ip any host 198.251.82.19
|
||||||
|
access-list 110 deny ip any host 176.126.129.87
|
||||||
|
access-list 110 deny ip any host 188.242.146.136
|
||||||
|
access-list 110 deny ip any host 91.202.112.2
|
||||||
|
access-list 110 deny ip 80.82.0.0 0.0.255.255 any
|
||||||
|
access-list 110 deny ip host 94.23.147.179 any
|
||||||
|
access-list 110 deny ip host 136.0.2.251 any
|
||||||
|
access-list 110 deny ip host 176.126.129.87 any
|
||||||
|
access-list 110 deny ip host 188.242.146.136 any
|
||||||
|
access-list 110 permit ip any any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,158 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname GoldenRainFoundation_1GB_13KRGN615201PT_24351ElToroRd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license boot level adventerprise
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 1000000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description GoldenRainFoundation=13KRGN615201PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2445
|
||||||
|
ip address 216.31.134.106 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 216.31.172.129 255.255.255.128 secondary
|
||||||
|
ip address 208.179.73.1 255.255.255.128
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.105
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,208 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
No l4r_shim subsystem is included in this platform.
|
||||||
|
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname PowerhouseCombustion_100MB_13KRGN614341PT_3410W.MaywoodAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
ip dhcp excluded-address 192.168.1.2 192.168.1.69
|
||||||
|
ip dhcp excluded-address 192.168.1.200 192.168.1.254
|
||||||
|
!
|
||||||
|
ip dhcp pool LAN
|
||||||
|
network 192.168.1.0 255.255.255.0
|
||||||
|
domain-name tierzero.net
|
||||||
|
default-router 192.168.1.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfg"
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description PowerhouseCombustion=13KRGN614341PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2464
|
||||||
|
ip address 216.31.134.146 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description OPEN
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
description HPBX
|
||||||
|
no ip address
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 192.168.1.1 255.255.255.0 secondary
|
||||||
|
ip address 64.239.134.65 255.255.255.248
|
||||||
|
ip nat inside
|
||||||
|
ip flow ingress
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.145
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 1 permit 192.168.1.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,181 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
No l4r_shim subsystem is included in this platform.
|
||||||
|
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname HoptropicsInc_1GB_13KRGN615664PT_1909SSusanSt
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 1000000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description HoptropicsInc=1909SSusanSt
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2431
|
||||||
|
ip address 216.31.134.170 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.139.193 255.255.255.192
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 162.142.73.254 255.255.255.0
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.169
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 101 deny ip any 162.142.73.0 0.0.0.255
|
||||||
|
access-list 101 deny ip 162.142.73.0 0.0.0.255 any
|
||||||
|
access-list 101 permit icmp host 24.234.91.185 host 64.239.139.193
|
||||||
|
access-list 101 permit icmp host 74.87.47.242 host 64.239.139.193
|
||||||
|
access-list 101 permit icmp 107.0.64.0 0.0.0.255 host 64.239.139.193
|
||||||
|
access-list 101 permit icmp 162.142.73.0 0.0.0.255 host 64.239.139.193
|
||||||
|
access-list 101 deny icmp any host 64.239.139.193
|
||||||
|
access-list 101 deny icmp host 64.239.139.193 any
|
||||||
|
access-list 101 permit ip any any
|
||||||
|
access-list 125 permit icmp host 24.234.91.185 host 64.239.139.193
|
||||||
|
access-list 125 permit icmp host 24.234.91.185 host 162.142.73.254
|
||||||
|
access-list 125 permit icmp 64.239.139.192 0.0.0.63 host 64.239.139.193
|
||||||
|
access-list 125 permit icmp 64.239.139.192 0.0.0.63 host 162.142.73.254
|
||||||
|
access-list 125 permit icmp host 74.87.47.242 host 64.239.139.193
|
||||||
|
access-list 125 permit icmp host 74.87.47.242 host 162.142.73.254
|
||||||
|
access-list 125 permit icmp 107.0.64.0 0.0.0.255 host 64.239.139.193
|
||||||
|
access-list 125 permit icmp 107.0.64.0 0.0.0.255 host 162.142.73.254
|
||||||
|
access-list 125 permit icmp 162.142.73.0 0.0.0.255 host 64.239.139.193
|
||||||
|
access-list 125 permit icmp 162.142.73.0 0.0.0.255 host 162.142.73.254
|
||||||
|
access-list 125 deny icmp any host 64.239.139.193
|
||||||
|
access-list 125 deny icmp any host 162.142.73.254
|
||||||
|
access-list 125 permit ip any any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,173 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname UniversalChurchFresno_100MB_88KRGN509462PT_1921EBelmontAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ip dhcp pool LAN
|
||||||
|
network 192.168.11.0 255.255.255.0
|
||||||
|
default-router 192.168.11.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license accept end user agreement
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description UniversalChurchFresno=88KRGN509462PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2604
|
||||||
|
ip address 216.31.134.174 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip flow ingress
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 192.168.11.1 255.255.255.0 secondary
|
||||||
|
ip address 64.239.134.241 255.255.255.248
|
||||||
|
ip nat inside
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.173
|
||||||
|
!
|
||||||
|
access-list 1 permit 192.168.11.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,159 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
No l4r_shim subsystem is included in this platform.
|
||||||
|
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname OrangeTheoryFitness_50MB_13KQGN650853PT_139NSanFernandoBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_50MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 50000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description OrangeTheoryFitness=13KQGN650853PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 100
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2437
|
||||||
|
ip address 216.31.134.178 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.134.113 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_50MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.177
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,179 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname EverestPropertiesIILLC_10MB_42/WPRL/100158677_1025EBellRoad
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.10.10.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.10.10.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfgb
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2811 sn FTX1042A3P3
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_10MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 10000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
service-policy VOIP-POLICE
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description EverestPropertiesIILLC=42/WPRL/100158677
|
||||||
|
ip address 216.31.134.190 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_10MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_10MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.10.10.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
ip virtual-reassembly in
|
||||||
|
!
|
||||||
|
interface FastEthernet1/0
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.136.241 255.255.255.248
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_10MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface FastEthernet0/0 overload
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.189
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.10.10.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,156 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname WareDisposal_100MB_13KRGN616152PT_1035E.4thSt
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description WareDisposal=13KRGN616152PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2414
|
||||||
|
ip address 216.31.134.202 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.128.169 255.255.255.248
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.201
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,156 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname VelvetCannabis_250MB_86KRGN608209PT_4808SunriseDr
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license boot level advipservices
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_250MB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 250000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description VelvetCannabis=4808SunriseDr
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2505
|
||||||
|
ip address 216.31.134.206 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.128.217 255.255.255.248
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.205
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,178 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime msec
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname ParkwoodLandscape_250MB_13KRGN616526PT_16443HartSt
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
hidekeys
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-any VOIP
|
||||||
|
match access-group 110
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map BANDWIDTH_250MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape peak 250000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
policy-map VOIP-POLICE
|
||||||
|
class VOIP
|
||||||
|
priority percent 33
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description ParkwoodLandscape=13.KRGN.601662.PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2447
|
||||||
|
ip address 216.31.134.210 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.132.161 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.209
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,164 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.4
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname PKGGroup_100MB_13KRGN618412PT_421SBeverlyDr
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
|
||||||
|
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
|
||||||
|
!
|
||||||
|
subscriber templating
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license udi pid ASR1001 sn JAE192106MD
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
spanning-tree extend system-id
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 100000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description PKGGroup=13KRGN618412PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2457
|
||||||
|
ip address 216.31.134.234 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.135.193 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.233
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,199 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.5
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname CharlesAbbottAssociates_1GB_13KRGN617654PT_27201PuertaReal
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
|
||||||
|
|
||||||
|
ip name-server 216.116.96.2 216.116.96.3
|
||||||
|
|
||||||
|
ip domain name tierzero.net
|
||||||
|
!
|
||||||
|
ip dhcp pool HPBX
|
||||||
|
network 10.112.5.0 255.255.255.0
|
||||||
|
domain-name voip.tierzero.net
|
||||||
|
default-router 10.112.5.1
|
||||||
|
dns-server 216.116.96.2 216.116.96.3
|
||||||
|
option 66 ascii "http://config:uCdh8qBc3Hb@ndp.tierzero.net/cfg"
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
subscriber templating
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license udi pid ASR1001 sn JAE17460LNV
|
||||||
|
license boot level advipservices
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
!
|
||||||
|
spanning-tree extend system-id
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
police rate 1000000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
class class-default
|
||||||
|
police rate 1000000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
fair-queue
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description CharlesAbbottAssociates=13KRGN617654PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
ip virtual-reassembly max-reassemblies 1024
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2513
|
||||||
|
ip address 216.31.134.238 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
ip virtual-reassembly max-reassemblies 1024
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 72.18.1.241 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2.1
|
||||||
|
description HPBX
|
||||||
|
encapsulation dot1Q 1159
|
||||||
|
ip address 10.112.5.1 255.255.255.0
|
||||||
|
ip nat inside
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip nat translation timeout 300
|
||||||
|
ip nat translation tcp-timeout 300
|
||||||
|
ip nat translation udp-timeout 90
|
||||||
|
no ip nat service sip tcp port 5060
|
||||||
|
no ip nat service sip udp port 5060
|
||||||
|
ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.237
|
||||||
|
ip route 72.18.1.240 255.255.255.248 Null0 150
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
access-list 1 permit 10.112.5.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
access-list 110 permit ip any host 64.239.185.8
|
||||||
|
access-list 110 permit ip any host 64.239.185.9
|
||||||
|
access-list 110 permit ip any host 64.239.185.5
|
||||||
|
access-list 110 permit ip any host 64.239.188.8
|
||||||
|
access-list 110 permit ip any host 64.239.188.9
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,149 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname AlhambraValleyMillWorks_100MB_86KQGN632802PT_4808SunriseDr
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license boot level adventerprise
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description AlhambraValleyMillWorks=86KQGN632802PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 100
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2430
|
||||||
|
ip address 216.31.134.250 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.129.177 255.255.255.248
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.249
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,141 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.1
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
!
|
||||||
|
hostname StaplesEnergy_20MB_18KQGN529232PT_9901HornRd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
!
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
dot11 syslog
|
||||||
|
ip source-route
|
||||||
|
!
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name auto
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
no ipv6 cef
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
voice-card 0
|
||||||
|
!
|
||||||
|
crypto pki token default removal timeout 0
|
||||||
|
!
|
||||||
|
license udi pid CISCO2811 sn FTX1328A27X
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
logging persistent auto
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_20MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 20000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description StaplesEnergy=18KQGN529232PT
|
||||||
|
no ip address
|
||||||
|
ip virtual-reassembly in
|
||||||
|
load-interval 30
|
||||||
|
duplex full
|
||||||
|
speed 100
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0.1
|
||||||
|
encapsulation dot1Q 2435
|
||||||
|
ip address 216.31.134.30 255.255.255.252
|
||||||
|
ip virtual-reassembly in
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.133.169 255.255.255.248
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
service-policy output BANDWIDTH_20MB
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
!
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.29
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
mgcp profile default
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
scheduler allocate 20000 1000
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,156 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.4
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname 2917TempleLLC_1GB_13KRGN620807PT_2917WTempleSt
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
|
||||||
|
!
|
||||||
|
subscriber templating
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license udi pid ASR1001 sn JAE201101FA
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_1GB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 1000000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description 2917TempleLLC=13KRGN620807PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2401
|
||||||
|
ip address 216.31.134.42 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.132.129 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_1GB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.41
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,105 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 12.3
|
||||||
|
service timestamps debug datetime msec
|
||||||
|
service timestamps log datetime localtime
|
||||||
|
service password-encryption
|
||||||
|
!
|
||||||
|
hostname Yellowzone_10MB_33.FPRL.10043955_16055VenturaBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
logging buffered 20000 debugging
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
clock timezone PST -8
|
||||||
|
clock summer-time PST recurring
|
||||||
|
no network-clock-participate slot 1
|
||||||
|
no network-clock-participate wic 0
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
aaa session-id common
|
||||||
|
ip subnet-zero
|
||||||
|
ip cef
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ip dhcp pool LAN
|
||||||
|
network 192.168.1.0 255.255.255.0
|
||||||
|
dns-server 216.116.96.2 216.116.96.3 8.8.8.8
|
||||||
|
domain-name tierzero.net
|
||||||
|
default-router 192.168.1.1
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
interface FastEthernet0/0
|
||||||
|
description YellowZone=PendingCALID
|
||||||
|
ip address 216.31.134.46 255.255.255.252
|
||||||
|
ip nat outside
|
||||||
|
load-interval 30
|
||||||
|
speed 100
|
||||||
|
full-duplex
|
||||||
|
traffic-shape rate 10485760 1966080 3932160 1000
|
||||||
|
!
|
||||||
|
interface FastEthernet0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 192.168.1.1 255.255.255.0 secondary
|
||||||
|
ip address 208.179.3.193 255.255.255.224
|
||||||
|
ip nat inside
|
||||||
|
duplex auto
|
||||||
|
speed auto
|
||||||
|
traffic-shape rate 10485760 1966080 3932160 1000
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
ip classless
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.45
|
||||||
|
!
|
||||||
|
access-list 1 permit 192.168.1.0 0.0.0.255
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
line aux 0
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,160 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.3
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname Commlineinc_250MB_13KRGN610589PT_13700CimarronAve
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
|
||||||
|
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
archive
|
||||||
|
log config
|
||||||
|
logging enable
|
||||||
|
spanning-tree extend system-id
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_250MB
|
||||||
|
class BANDWIDTH
|
||||||
|
priority level 1
|
||||||
|
class class-default
|
||||||
|
police rate 250000000 burst 500000 conform-action transmit exceed-action drop
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description Commlineinc=13KRGN610589PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
speed 1000
|
||||||
|
no negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2504
|
||||||
|
ip address 216.31.134.90 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.133.145 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_250MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
ip address 64.239.180.9 255.255.255.252
|
||||||
|
speed 100
|
||||||
|
no negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.89
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
|
|
@ -0,0 +1,157 @@
|
||||||
|
!RANCID-CONTENT-TYPE: cisco-clean
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
!
|
||||||
|
version 15.2
|
||||||
|
service timestamps debug datetime msec localtime show-timezone year
|
||||||
|
service timestamps log datetime msec localtime show-timezone year
|
||||||
|
service password-encryption
|
||||||
|
service sequence-numbers
|
||||||
|
no platform punt-keepalive disable-kernel-core
|
||||||
|
!
|
||||||
|
hostname AmericanInstituteofArchitects_100MB_13KRGN619825PT_4450WestAdamsBlvd
|
||||||
|
!
|
||||||
|
boot-start-marker
|
||||||
|
boot-end-marker
|
||||||
|
!
|
||||||
|
vrf definition Mgmt-intf
|
||||||
|
!
|
||||||
|
address-family ipv4
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
address-family ipv6
|
||||||
|
exit-address-family
|
||||||
|
!
|
||||||
|
logging buffered 50000 informational
|
||||||
|
logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate
|
||||||
|
no logging console
|
||||||
|
!
|
||||||
|
aaa new-model
|
||||||
|
!
|
||||||
|
aaa authentication fail-message ^CCCCCCCCCCCCCC****TACACS+************^C
|
||||||
|
aaa authentication login default group tacacs+ local
|
||||||
|
aaa authentication enable default group tacacs+ none
|
||||||
|
!
|
||||||
|
aaa session-id common
|
||||||
|
clock timezone PST -8 0
|
||||||
|
clock summer-time PST recurring
|
||||||
|
!
|
||||||
|
ip domain name tierzero.net
|
||||||
|
ip name-server 216.116.96.2
|
||||||
|
ip name-server 216.116.96.3
|
||||||
|
!
|
||||||
|
ipv6 multicast rpf use-bgp
|
||||||
|
ipv6 multicast vrf Mgmt-intf rpf use-bgp
|
||||||
|
!
|
||||||
|
multilink bundle-name authenticated
|
||||||
|
!
|
||||||
|
license boot level adventerprise
|
||||||
|
!
|
||||||
|
username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ.
|
||||||
|
!
|
||||||
|
redundancy
|
||||||
|
mode none
|
||||||
|
!
|
||||||
|
ip tftp source-interface GigabitEthernet0
|
||||||
|
ip ssh version 2
|
||||||
|
!
|
||||||
|
class-map match-all BANDWIDTH
|
||||||
|
match any
|
||||||
|
!
|
||||||
|
policy-map BANDWIDTH_100MB
|
||||||
|
class BANDWIDTH
|
||||||
|
shape average 100000000
|
||||||
|
queue-limit 62500 bytes
|
||||||
|
class class-default
|
||||||
|
fair-queue
|
||||||
|
random-detect dscp-based
|
||||||
|
random-detect ecn
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0
|
||||||
|
description AmericanInstituteofArchitects=13KRGN619825PT
|
||||||
|
no ip address
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/0.1
|
||||||
|
encapsulation dot1Q 2402
|
||||||
|
ip address 216.31.134.98 255.255.255.252
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/1
|
||||||
|
description CustomerLAN
|
||||||
|
ip address 64.239.152.41 255.255.255.248
|
||||||
|
load-interval 30
|
||||||
|
negotiation auto
|
||||||
|
service-policy output BANDWIDTH_100MB
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/2
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0/0/3
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
interface GigabitEthernet0
|
||||||
|
vrf forwarding Mgmt-intf
|
||||||
|
no ip address
|
||||||
|
shutdown
|
||||||
|
negotiation auto
|
||||||
|
!
|
||||||
|
ip forward-protocol nd
|
||||||
|
!
|
||||||
|
no ip http server
|
||||||
|
no ip http secure-server
|
||||||
|
ip route 0.0.0.0 0.0.0.0 216.31.134.97
|
||||||
|
!
|
||||||
|
access-list 25 permit 64.239.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 66.6.208.0 0.0.15.255
|
||||||
|
access-list 25 permit 72.18.0.0 0.0.31.255
|
||||||
|
access-list 25 permit 208.179.0.0 0.0.255.255
|
||||||
|
access-list 25 permit 216.31.128.0 0.0.63.255
|
||||||
|
access-list 25 permit 216.116.96.0 0.0.31.255
|
||||||
|
access-list 25 deny any
|
||||||
|
!
|
||||||
|
snmp-server engineID local 0000000902000050547D0984
|
||||||
|
snmp-server community tierzero RO
|
||||||
|
!
|
||||||
|
tacacs-server host 216.116.96.47
|
||||||
|
tacacs-server timeout 10
|
||||||
|
tacacs-server directed-request
|
||||||
|
tacacs-server key 7 01040E554F58165F2F5501
|
||||||
|
!
|
||||||
|
control-plane
|
||||||
|
!
|
||||||
|
banner motd ^CCCCCCCCCCCCCCC
|
||||||
|
*************************************************************
|
||||||
|
Tierzero:
|
||||||
|
Unauthorized access to this device or the attached
|
||||||
|
networks is prohibited without express written permission.
|
||||||
|
Violators may be prosecuted to the fullest extent of the law.
|
||||||
|
Phone: 213-784-1400 option 1
|
||||||
|
|
||||||
|
Email: [tac@tierzero.net]
|
||||||
|
*********TACACS+*************************
|
||||||
|
^C
|
||||||
|
!
|
||||||
|
line con 0
|
||||||
|
stopbits 1
|
||||||
|
line aux 0
|
||||||
|
stopbits 1
|
||||||
|
line vty 0 4
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
line vty 5 15
|
||||||
|
access-class 25 in
|
||||||
|
transport input all
|
||||||
|
!
|
||||||
|
ntp server 204.152.184.72
|
||||||
|
ntp server 216.31.128.192
|
||||||
|
ntp server 216.116.96.3
|
||||||
|
!
|
||||||
|
end
|
||||||
46
router.db
46
router.db
|
|
@ -1,3 +1,47 @@
|
||||||
216.31.129.5;cisco-xr;up
|
216.31.129.5;cisco-xr;up
|
||||||
216.31.134.74;cisco-clean;up
|
216.31.134.74;cisco-clean;up
|
||||||
216.31.132.38;cisco-clean;up
|
216.31.132.38;cisco-clean;up
|
||||||
|
216.31.130.18;cisco-clean;up
|
||||||
|
216.31.130.30;cisco-clean;up
|
||||||
|
216.31.130.54;cisco-clean;up
|
||||||
|
216.31.131.22;cisco-clean;up
|
||||||
|
216.31.131.66;cisco-clean;up
|
||||||
|
216.31.131.150;cisco-clean;up
|
||||||
|
216.31.131.182;cisco-clean;up
|
||||||
|
216.31.131.206;cisco-clean;up
|
||||||
|
216.31.131.254;cisco-clean;up
|
||||||
|
216.31.132.38;cisco-clean;up
|
||||||
|
216.31.132.62;cisco-clean;up
|
||||||
|
216.31.132.74;cisco-clean;up
|
||||||
|
216.31.132.98;cisco-clean;up
|
||||||
|
216.31.132.114;cisco-clean;up
|
||||||
|
216.31.132.146;cisco-clean;up
|
||||||
|
216.31.132.158;cisco-clean;up
|
||||||
|
216.31.132.166;cisco-clean;up
|
||||||
|
216.31.132.182;cisco-clean;up
|
||||||
|
216.31.132.190;cisco-clean;up
|
||||||
|
216.31.132.214;cisco-clean;up
|
||||||
|
216.31.132.222;cisco-clean;up
|
||||||
|
216.31.132.226;cisco-clean;up
|
||||||
|
216.31.132.238;cisco-clean;up
|
||||||
|
216.31.132.254;cisco-clean;up
|
||||||
|
216.31.134.18;cisco-clean;up
|
||||||
|
216.31.134.22;cisco-clean;up
|
||||||
|
216.31.134.30;cisco-clean;up
|
||||||
|
216.31.134.42;cisco-clean;up
|
||||||
|
216.31.134.46;cisco-clean;up
|
||||||
|
216.31.134.74;cisco-clean;up
|
||||||
|
216.31.134.90;cisco-clean;up
|
||||||
|
216.31.134.98;cisco-clean;up
|
||||||
|
216.31.134.106;cisco-clean;up
|
||||||
|
216.31.134.146;cisco-clean;up
|
||||||
|
216.31.134.170;cisco-clean;up
|
||||||
|
216.31.134.174;cisco-clean;up
|
||||||
|
216.31.134.178;cisco-clean;up
|
||||||
|
216.31.134.190;cisco-clean;up
|
||||||
|
216.31.134.202;cisco-clean;up
|
||||||
|
216.31.134.206;cisco-clean;up
|
||||||
|
216.31.134.210;cisco-clean;up
|
||||||
|
216.31.134.234;cisco-clean;up
|
||||||
|
216.31.134.238;cisco-clean;up
|
||||||
|
216.31.134.250;cisco-clean;up
|
||||||
Loading…
Reference in New Issue
Block a user