!RANCID-CONTENT-TYPE: cisco-clean ! ! ! ! ! version 15.4 service timestamps debug datetime msec localtime show-timezone year service timestamps log datetime msec localtime show-timezone year service password-encryption service sequence-numbers no platform punt-keepalive disable-kernel-core ! hostname LAPropoint_500MB_ASKRGN005504PT_10870LaTunaCanyonRd ! boot-start-marker boot-end-marker ! vrf definition Mgmt-intf ! address-family ipv4 exit-address-family ! address-family ipv6 exit-address-family ! logging buffered 50000 informational logging persistent url flash:/syslog1 size 10485760 filesize 40000 immediate no logging console ! aaa new-model ! aaa authentication fail-message ^CCCCCCCCCCC****TACACS+************^C aaa authentication login default group tacacs+ local aaa authentication enable default group tacacs+ none ! aaa session-id common clock timezone PST -8 0 clock summer-time PST recurring ! ip domain name tierzero.net ip name-server 216.116.96.2 ip name-server 216.116.96.3 ! ip dhcp pool HPBX network 10.10.10.0 255.255.255.0 default-router 10.10.10.1 dns-server 8.8.8.8 8.8.4.4 216.116.96.2 216.116.96.3 ! subscriber templating multilink bundle-name authenticated ! license udi pid ASR1001 sn JAE200402CL archive log config logging enable ! username tzcare privilege 15 secret 5 $1$QcDi$cx/mqm7rFUUwXiVU5g0OJ. ! redundancy mode none ! ip tftp source-interface GigabitEthernet0 ! class-map match-all BANDWIDTH match any ! policy-map BANDWIDTH_500MB class BANDWIDTH police rate 500000000 burst 500000 conform-action transmit exceed-action drop class class-default police rate 500000000 burst 500000 conform-action transmit exceed-action drop violate-action drop ! interface GigabitEthernet0/0/0 description LAPropoint=ASKRGN005504PT no ip address load-interval 30 no negotiation auto service-policy input BANDWIDTH_500MB service-policy output BANDWIDTH_500MB ! interface GigabitEthernet0/0/0.1 encapsulation dot1Q 2710 ip address 216.31.137.62 255.255.255.252 ip nat outside ! interface GigabitEthernet0/0/1 description CustomerLAN ip address 208.179.251.97 255.255.255.240 speed 1000 no negotiation auto service-policy input BANDWIDTH_500MB service-policy output BANDWIDTH_500MB ! interface GigabitEthernet0/0/2 description POTSinaBOX ip address 10.10.10.1 255.255.255.0 ip nat inside negotiation auto service-policy input BANDWIDTH_500MB service-policy output BANDWIDTH_500MB ! interface GigabitEthernet0/0/3 no ip address shutdown negotiation auto ! interface GigabitEthernet0 vrf forwarding Mgmt-intf no ip address shutdown negotiation auto ! ip nat translation timeout 300 ip nat translation tcp-timeout 300 ip nat translation udp-timeout 90 no ip nat service sip udp port 5060 ip nat inside source list 1 interface GigabitEthernet0/0/0.1 overload ip forward-protocol nd ! no ip http server no ip http secure-server ip route 0.0.0.0 0.0.0.0 216.31.137.61 ! access-list 1 permit 10.10.10.0 0.0.0.255 access-list 25 permit 64.239.128.0 0.0.63.255 access-list 25 permit 66.6.208.0 0.0.15.255 access-list 25 permit 72.18.0.0 0.0.31.255 access-list 25 permit 208.179.0.0 0.0.255.255 access-list 25 permit 216.31.128.0 0.0.63.255 access-list 25 permit 216.116.96.0 0.0.31.255 access-list 25 deny any ! snmp-server engineID local 0000000902000050547D0984 snmp-server community tierzero RO ! tacacs-server host 216.116.96.47 tacacs-server timeout 10 tacacs-server directed-request tacacs-server key 7 01040E554F58165F2F5501 ! control-plane ! banner motd ^CCCCCCCCCCCC ************************************************************* Tierzero: Unauthorized access to this device or the attached networks is prohibited without express written permission. Violators may be prosecuted to the fullest extent of the law. Phone: 213-784-1400 option 1 Email: [tac@tierzero.net] *********TACACS+************************* ^C ! line con 0 stopbits 1 line aux 0 stopbits 1 line vty 0 4 access-class 25 in transport input all line vty 5 15 access-class 25 in transport input all ! ntp server 204.152.184.72 ntp server 216.31.128.192 ntp server 216.116.96.3 ! end