Difference between revisions of "24PinTechSwitch Config"

From 24PinTech Wiki
Jump to navigation Jump to search
Line 1: Line 1:
==Running Configuration==
==Running Configuration==
Current configuration : 10309 bytes
Building configuration...
 
Current configuration : 10104 bytes


!
!


! Last configuration change at 03:18:05 UTC Fri Jan 17 2020
! Last configuration change at 22:49:24 UTC Wed Mar 10 2021


!
!
Line 282: Line 284:
interface Port-channel1
interface Port-channel1


description Ports: 21, 22, 23, 24 to Freyr
description Ports: 9, 10, 11, 12 to Asgard


switchport access vlan 25
switchport access vlan 25
Line 312: Line 314:
interface Port-channel4
interface Port-channel4


description Ports: 7, 8, 17, 18 to Hela
description Ports: 13, 14, 15, 16 to Thor


switchport access vlan 25
switchport access vlan 25
Line 322: Line 324:
interface Port-channel5
interface Port-channel5


description Ports: 13, 14, 15, 16 to Logan
description Ports: 17, 18, 19, 20 to Midgard


switchport access vlan 25
switchport access vlan 25
Line 328: Line 330:
switchport mode access
switchport mode access


!
speed 1000
 
interface Port-channel6
 
description Ports: 19, 20 to Surtr
 
switchport access vlan 25
 
switchport mode access


!
!
Line 382: Line 376:
switchport mode access
switchport mode access


channel-group 2 mode passive
channel-group 2 mode on


!
!
Line 394: Line 388:
switchport mode access
switchport mode access


channel-group 2 mode passive
channel-group 2 mode on


!
!
Line 406: Line 400:
switchport mode access
switchport mode access


channel-group 2 mode passive
channel-group 2 mode on


!
!
Line 418: Line 412:
switchport mode access
switchport mode access


channel-group 2 mode passive
channel-group 2 mode on


!
!


interface GigabitEthernet1/0/7
interface GigabitEthernet1/0/7
description Ports: 7, 8, 17, 18 to Hela


switchport access vlan 25
switchport access vlan 25
Line 430: Line 422:
switchport mode access
switchport mode access


channel-group 4 mode passive
shutdown


!
!


interface GigabitEthernet1/0/8
interface GigabitEthernet1/0/8
description Ports: 7, 8, 17, 18 to Hela


switchport access vlan 25
switchport access vlan 25
Line 442: Line 432:
switchport mode access
switchport mode access


channel-group 4 mode passive
shutdown


!
!


interface GigabitEthernet1/0/9
interface GigabitEthernet1/0/9
description Ports: 9, 10, 11, 12 to Asgard


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!


interface GigabitEthernet1/0/10
interface GigabitEthernet1/0/10
description Ports: 9, 10, 11, 12 to Asgard


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!


interface GigabitEthernet1/0/11
interface GigabitEthernet1/0/11
description Ports: 9, 10, 11, 12 to Asgard


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!


interface GigabitEthernet1/0/12
interface GigabitEthernet1/0/12
description Ports: 9, 10, 11, 12 to Asgard


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!
Line 480: Line 486:
interface GigabitEthernet1/0/13
interface GigabitEthernet1/0/13


description Ports: 13, 14, 15, 16 to Logan
description Ports: 13, 14, 15, 16 to Thor


switchport access vlan 25
switchport access vlan 25
Line 486: Line 492:
switchport mode access
switchport mode access


channel-group 5 mode passive
channel-group 4 mode on


!
!
Line 492: Line 498:
interface GigabitEthernet1/0/14
interface GigabitEthernet1/0/14


description Ports: 13, 14, 15, 16 to Logan
description Ports: 13, 14, 15, 16 to Thor


switchport access vlan 25
switchport access vlan 25
Line 498: Line 504:
switchport mode access
switchport mode access


channel-group 5 mode passive
channel-group 4 mode on


!
!
Line 504: Line 510:
interface GigabitEthernet1/0/15
interface GigabitEthernet1/0/15


description Ports: 13, 14, 15, 16 to Logan
description Ports: 13, 14, 15, 16 to Thor


switchport access vlan 25
switchport access vlan 25
Line 510: Line 516:
switchport mode access
switchport mode access


channel-group 5 mode passive
channel-group 4 mode on


!
!
Line 516: Line 522:
interface GigabitEthernet1/0/16
interface GigabitEthernet1/0/16


description Ports: 13, 14, 15, 16 to Logan
description Ports: 13, 14, 15, 16 to Thor


switchport access vlan 25
switchport access vlan 25
Line 522: Line 528:
switchport mode access
switchport mode access


channel-group 5 mode passive
channel-group 4 mode on


!
!
Line 528: Line 534:
interface GigabitEthernet1/0/17
interface GigabitEthernet1/0/17


description Ports: 7, 8, 17, 18 to Hela
description Ports: 17, 18, 19, 20 to Midgard


switchport access vlan 25
switchport access vlan 25
Line 534: Line 540:
switchport mode access
switchport mode access


channel-group 4 mode passive
speed 1000
 
channel-group 5 mode on


!
!
Line 540: Line 548:
interface GigabitEthernet1/0/18
interface GigabitEthernet1/0/18


description Ports: 7, 8, 17, 18 to Hela
description Ports: 17, 18, 19, 20 to Midgard


switchport access vlan 25
switchport access vlan 25
Line 546: Line 554:
switchport mode access
switchport mode access


channel-group 4 mode passive
speed 1000
 
channel-group 5 mode on


!
!
Line 552: Line 562:
interface GigabitEthernet1/0/19
interface GigabitEthernet1/0/19


description Ports: 19, 20 to Surtr
description Ports: 17, 18, 19, 20 to Midgard


switchport access vlan 25
switchport access vlan 25
Line 558: Line 568:
switchport mode access
switchport mode access


channel-group 6 mode passive
speed 1000
 
channel-group 5 mode on


!
!
Line 564: Line 576:
interface GigabitEthernet1/0/20
interface GigabitEthernet1/0/20


description Ports: 19, 20 to Surtr
description Ports: 17, 18, 19, 20 to Midgard


switchport access vlan 25
switchport access vlan 25
Line 570: Line 582:
switchport mode access
switchport mode access


channel-group 6 mode passive
speed 1000
 
channel-group 5 mode on


!
!


interface GigabitEthernet1/0/21
interface GigabitEthernet1/0/21
description Ports: 21, 22, 23, 24 to Freyr


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!


interface GigabitEthernet1/0/22
interface GigabitEthernet1/0/22
description Ports: 21, 22, 23, 24 to Freyr


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!


interface GigabitEthernet1/0/23
interface GigabitEthernet1/0/23
description Ports: 21, 22, 23, 24 to Freyr


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!


interface GigabitEthernet1/0/24
interface GigabitEthernet1/0/24
description Ports: 21, 22, 23, 24 to Freyr


switchport access vlan 25
switchport access vlan 25


switchport mode access
switchport mode access
channel-group 1 mode passive


!
!

Revision as of 15:29, 23 March 2021

Running Configuration

Building configuration...

Current configuration : 10104 bytes

!

! Last configuration change at 22:49:24 UTC Wed Mar 10 2021

!

version 16.3

no service pad

service timestamps debug datetime msec

service timestamps log datetime msec

service password-encryption

no platform punt-keepalive disable-kernel-core

!

hostname 24PinTech_Switch

!

!

vrf definition Mgmt-vrf

!

address-family ipv4

exit-address-family

!

address-family ipv6

exit-address-family

!

enable secret 5 $1$bibk$uwpxgKcUpBT0Qz.R1EfA50

!

no aaa new-model

switch 1 provision ws-c3650-24ps

!

!

!

!

!

!

!

!

!

!

!

!

!

!

!

!

crypto pki trustpoint TP-self-signed-833429682

enrollment selfsigned

subject-name cn=IOS-Self-Signed-Certificate-833429682

revocation-check none

rsakeypair TP-self-signed-833429682

!

!

crypto pki certificate chain TP-self-signed-833429682

!

license boot level ipbasek9

diagnostic bootup level minimal

spanning-tree mode rapid-pvst

spanning-tree extend system-id

!

!

!

redundancy

mode sso

!

!

!

class-map match-any system-cpp-police-topology-control

description Topology control

class-map match-any system-cpp-police-sw-forward

description Sw forwarding, SGT Cache Full, LOGGING

class-map match-any system-cpp-default

description DHCP snooping, show forward and rest of traffic

class-map match-any system-cpp-police-sys-data

description Learning cache ovfl, Crypto Control, Exception, EGR Exception, NFL SAMPLED DATA, Gold Pkt, RPF Failed

class-map match-any system-cpp-police-punt-webauth

description Punt Webauth

class-map match-any system-cpp-police-forus

description Forus Address resolution and Forus traffic

class-map match-any system-cpp-police-multicast-end-station

description MCAST END STATION

class-map match-any system-cpp-police-multicast

description Transit Traffic and MCAST Data

class-map match-any system-cpp-police-l2-control

description L2 control

class-map match-any system-cpp-police-dot1x-auth

description DOT1X Auth

class-map match-any system-cpp-police-data

description ICMP_GEN and BROADCAST

class-map match-any system-cpp-police-control-low-priority

description ICMP redirect and general punt

class-map match-any system-cpp-police-wireless-priority1

description Wireless priority 1

class-map match-any system-cpp-police-wireless-priority2

description Wireless priority 2

class-map match-any system-cpp-police-wireless-priority3-4-5

description Wireless priority 3,4 and 5

class-map match-any non-client-nrt-class

class-map match-any system-cpp-police-routing-control

description Routing control

class-map match-any system-cpp-police-protocol-snooping

description Protocol snooping

!

policy-map port_child_policy

class non-client-nrt-class

bandwidth remaining ratio 10

policy-map system-cpp-policy

class system-cpp-police-data

police rate 200 pps

class system-cpp-police-sys-data

police rate 100 pps

class system-cpp-police-sw-forward

police rate 1000 pps

class system-cpp-police-multicast

police rate 500 pps

class system-cpp-police-multicast-end-station

police rate 2000 pps

class system-cpp-police-punt-webauth

class system-cpp-police-l2-control

class system-cpp-police-routing-control

police rate 1800 pps

class system-cpp-police-control-low-priority

class system-cpp-police-wireless-priority1

class system-cpp-police-wireless-priority2

class system-cpp-police-wireless-priority3-4-5

class system-cpp-police-topology-control

class system-cpp-police-dot1x-auth

class system-cpp-police-protocol-snooping

class system-cpp-police-forus

class system-cpp-default

!

!

!

!

!

!

!

!

!

!

!

!

!

!

interface Port-channel1

description Ports: 9, 10, 11, 12 to Asgard

switchport access vlan 25

switchport mode access

!

interface Port-channel2

description Ports: 3, 4, 5, 6 to Loki

switchport access vlan 25

switchport mode access

!

interface Port-channel3

description Ports: 1, 2 to School Network

switchport trunk allowed vlan 25

switchport mode trunk

!

interface Port-channel4

description Ports: 13, 14, 15, 16 to Thor

switchport access vlan 25

switchport mode access

!

interface Port-channel5

description Ports: 17, 18, 19, 20 to Midgard

switchport access vlan 25

switchport mode access

speed 1000

!

interface GigabitEthernet0/0

vrf forwarding Mgmt-vrf

no ip address

negotiation auto

!

interface GigabitEthernet1/0/1

description Ports: 1, 2 to School Network

switchport trunk allowed vlan 25

switchport mode trunk

channel-group 3 mode active

!

interface GigabitEthernet1/0/2

description Ports: 1, 2 to School Network

switchport trunk allowed vlan 25

switchport mode trunk

channel-group 3 mode active

!

interface GigabitEthernet1/0/3

description Ports: 3, 4, 5, 6 to Loki

switchport access vlan 25

switchport mode access

channel-group 2 mode on

!

interface GigabitEthernet1/0/4

description Ports: 3, 4, 5, 6 to Loki

switchport access vlan 25

switchport mode access

channel-group 2 mode on

!

interface GigabitEthernet1/0/5

description Ports: 3, 4, 5, 6 to Loki

switchport access vlan 25

switchport mode access

channel-group 2 mode on

!

interface GigabitEthernet1/0/6

description Ports: 3, 4, 5, 6 to Loki

switchport access vlan 25

switchport mode access

channel-group 2 mode on

!

interface GigabitEthernet1/0/7

switchport access vlan 25

switchport mode access

shutdown

!

interface GigabitEthernet1/0/8

switchport access vlan 25

switchport mode access

shutdown

!

interface GigabitEthernet1/0/9

description Ports: 9, 10, 11, 12 to Asgard

switchport access vlan 25

switchport mode access

channel-group 1 mode passive

!

interface GigabitEthernet1/0/10

description Ports: 9, 10, 11, 12 to Asgard

switchport access vlan 25

switchport mode access

channel-group 1 mode passive

!

interface GigabitEthernet1/0/11

description Ports: 9, 10, 11, 12 to Asgard

switchport access vlan 25

switchport mode access

channel-group 1 mode passive

!

interface GigabitEthernet1/0/12

description Ports: 9, 10, 11, 12 to Asgard

switchport access vlan 25

switchport mode access

channel-group 1 mode passive

!

interface GigabitEthernet1/0/13

description Ports: 13, 14, 15, 16 to Thor

switchport access vlan 25

switchport mode access

channel-group 4 mode on

!

interface GigabitEthernet1/0/14

description Ports: 13, 14, 15, 16 to Thor

switchport access vlan 25

switchport mode access

channel-group 4 mode on

!

interface GigabitEthernet1/0/15

description Ports: 13, 14, 15, 16 to Thor

switchport access vlan 25

switchport mode access

channel-group 4 mode on

!

interface GigabitEthernet1/0/16

description Ports: 13, 14, 15, 16 to Thor

switchport access vlan 25

switchport mode access

channel-group 4 mode on

!

interface GigabitEthernet1/0/17

description Ports: 17, 18, 19, 20 to Midgard

switchport access vlan 25

switchport mode access

speed 1000

channel-group 5 mode on

!

interface GigabitEthernet1/0/18

description Ports: 17, 18, 19, 20 to Midgard

switchport access vlan 25

switchport mode access

speed 1000

channel-group 5 mode on

!

interface GigabitEthernet1/0/19

description Ports: 17, 18, 19, 20 to Midgard

switchport access vlan 25

switchport mode access

speed 1000

channel-group 5 mode on

!

interface GigabitEthernet1/0/20

description Ports: 17, 18, 19, 20 to Midgard

switchport access vlan 25

switchport mode access

speed 1000

channel-group 5 mode on

!

interface GigabitEthernet1/0/21

switchport access vlan 25

switchport mode access

!

interface GigabitEthernet1/0/22

switchport access vlan 25

switchport mode access

!

interface GigabitEthernet1/0/23

switchport access vlan 25

switchport mode access

!

interface GigabitEthernet1/0/24

switchport access vlan 25

switchport mode access

!

interface GigabitEthernet1/1/1

!

interface GigabitEthernet1/1/2

!

interface GigabitEthernet1/1/3

!

interface GigabitEthernet1/1/4

!

interface Vlan1

no ip address

shutdown

!

interface Vlan99

description Management VLAN for CISCOACA.local domain

ip address 10.21.25.12 255.255.255.0

!

ip forward-protocol nd

ip http server

ip http authentication local

ip http secure-server

!

ip access-list extended AutoQos-4.0-wlan-Acl-Bulk-Data

permit tcp any any eq 22

permit tcp any any eq 465

permit tcp any any eq 143

permit tcp any any eq 993

permit tcp any any eq 995

permit tcp any any eq 1914

permit tcp any any eq ftp

permit tcp any any eq ftp-data

permit tcp any any eq smtp

permit tcp any any eq pop3

ip access-list extended AutoQos-4.0-wlan-Acl-MultiEnhanced-Conf

permit udp any any range 16384 32767

permit tcp any any range 50000 59999

ip access-list extended AutoQos-4.0-wlan-Acl-Scavanger

permit tcp any any range 2300 2400

permit udp any any range 2300 2400

permit tcp any any range 6881 6999

permit tcp any any range 28800 29100

permit tcp any any eq 1214

permit udp any any eq 1214

permit tcp any any eq 3689

permit udp any any eq 3689

permit tcp any any eq 11999

ip access-list extended AutoQos-4.0-wlan-Acl-Signaling

permit tcp any any range 2000 2002

permit tcp any any range 5060 5061

permit udp any any range 5060 5061

ip access-list extended AutoQos-4.0-wlan-Acl-Transactional-Data

permit tcp any any eq 443

permit tcp any any eq 1521

permit udp any any eq 1521

permit tcp any any eq 1526

permit udp any any eq 1526

permit tcp any any eq 1575

permit udp any any eq 1575

permit tcp any any eq 1630

permit udp any any eq 1630

permit tcp any any eq 1527

permit tcp any any eq 6200

permit tcp any any eq 3389

permit tcp any any eq 5985

permit tcp any any eq 8080

!

!

!

control-plane

service-policy input system-cpp-policy

!

banner motd ^CAuthorized personnel only! Violators will be subject to the wrath of Chambie!^C

!

line con 0

password 7 080078764D4B554742

logging synchronous

login

stopbits 1

line aux 0

stopbits 1

line vty 0 4

password 7 080878764A4A554742

logging synchronous

login

line vty 5 15

password 7 080878764A4A554742

logging synchronous

login

!

!

wsma agent exec

!

wsma agent config

!

wsma agent filesys

!

wsma agent notify

!

!

ap dot11 airtime-fairness policy-name Default 0

ap group default-group

ap hyperlocation ble-beacon 0

ap hyperlocation ble-beacon 1

ap hyperlocation ble-beacon 2

ap hyperlocation ble-beacon 3

ap hyperlocation ble-beacon 4

end