· 6 years ago · Feb 28, 2019, 07:30 PM
1Switch 1:
2version 16.3
3no service pad
4service timestamps debug datetime msec
5service timestamps log datetime msec
6service password-encryption
7no platform punt-keepalive disable-kernel-core
8hostname S1
9vrf definition Mgmt-vrf
10 address-family ipv4
11 exit-address-family
12 address-family ipv6
13 exit-address-family
14enable secret 5 $1$Km4I$fX6Ei3/YuQOI9vpXPDtWz1
15no aaa new-model
16switch 1 provision ws-c3650-24ps
17no ip domain lookup
18ip domain name bailey.dom
19crypto pki trustpoint TP-self-signed-1670704633
20 enrollment selfsigned
21 subject-name cn=IOS-Self-Signed-Certificate-1670704633
22 revocation-check none
23 rsakeypair TP-self-signed-1670704633
24crypto pki certificate chain TP-self-signed-1670704633
25 certificate self-signed 01
26 30820330 30820218 A0030201 02020101 300D0609 2A864886 F70D0101 05050030
27 31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
28 69666963 6174652D 31363730 37303436 3333301E 170D3139 30323238 31353039
29 30385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
30 4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 36373037
31 30343633 33308201 22300D06 092A8648 86F70D01 01010500 0382010F 00308201
32 0A028201 0100BF72 AA5E244F 6CF4E5FF 5E57D087 F7F85FD6 CBDC4F20 BC6AF3A4
33 A7C908DE 2C9E5699 05F022CC A656138B 665E6229 F656F358 959BABAC 928C3A8C
34 EA3D21E0 F373CD5A 9E70A2B3 8C929A42 81161DAF 743AC1C4 AB1BE126 DF733CF0
35 387F8754 C03B0CE6 5BAD29C0 C717400B EBF78D4B 698EDF1D DD6CEDC4 AB0BAB29
36 E4855693 2D9C4CB7 E349D02F 275221DA E288EB2A 044BC1B5 2E3ED4BD 6E9EE51A
37 942753F9 B21C7894 76B618E7 59889DC9 F609FBBA F0345A26 F490424A D494D84A
38 2996EED9 D1BBBD2E 39F7048F 1E1CF640 D585EC47 13B07207 029F15E8 0A72A1BC
39 9F81AE5C D6EF06C2 FD798C74 C612B7F8 A0D2EF4C D23CEBA3 842EFE1C 2507366D
40 F3E7C201 C9110203 010001A3 53305130 0F060355 1D130101 FF040530 030101FF
41 301F0603 551D2304 18301680 14D1706A 7E13AEC4 304B8043 048A455C 534CF40B
42 EB301D06 03551D0E 04160414 D1706A7E 13AEC430 4B804304 8A455C53 4CF40BEB
43 300D0609 2A864886 F70D0101 05050003 82010100 2D0143BB 5FDFD64D 16ACF3AF
44 9C6663DA 03E837C3 B3DABAE6 BB6599D1 EAFFFF6D ACECCE50 D55EFBC5 F353CAA3
45 D06F28B8 8F209B96 29329209 37F87633 3AD16BEB E231322B 7F595043 EB1B0227
46 DD23492B 76E6402A 622F31DB 09C922A9 CF3C7F74 CFC2DED6 AC54289A CAB0B0F3
47 2930FEDB 47266A22 B7CA647B 0630AD86 A7F7915F 838FE921 966D028A ED3C5B77
48 2F9E237A 5032E157 388A0EAC 8D12B187 175665DA A341486E 9CCFBBE4 861B5639
49 D7FAE9BE 8F2404D0 52B7A481 EBDB56C7 0C8DF87C 85F54B5B 0982E860 B7B71DF9
50 1DCF4CA0 586CA805 9745A8D5 EB31C1E3 961A781A C886B539 6167403D F3C198F2
51 F153D5F6 197A1B88 681F86D2 9182AC6B 9CCC686A
52 quit
53license boot level ipbasek9
54diagnostic bootup level minimal
55spanning-tree mode rapid-pvst
56spanning-tree extend system-id
57username admin privilege 15 password 7 03345A1815182E5E4A58
58redundancy
59 mode sso
60class-map match-any system-cpp-police-topology-control
61 description Topology control
62class-map match-any system-cpp-police-sw-forward
63 description Sw forwarding, SGT Cache Full, LOGGING
64class-map match-any system-cpp-default
65 description DHCP snooping, show forward and rest of traffic
66class-map match-any system-cpp-police-sys-data
67 description Learning cache ovfl, Crypto Control, Exception, EGR Exception, NFL SAMPLED DATA, Gold Pkt, RPF Failed
68class-map match-any system-cpp-police-punt-webauth
69 description Punt Webauth
70class-map match-any system-cpp-police-forus
71 description Forus Address resolution and Forus traffic
72class-map match-any system-cpp-police-multicast-end-station
73 description MCAST END STATION
74class-map match-any system-cpp-police-multicast
75 description Transit Traffic and MCAST Data
76class-map match-any system-cpp-police-l2-control
77 description L2 control
78class-map match-any system-cpp-police-dot1x-auth
79 description DOT1X Auth
80class-map match-any system-cpp-police-data
81 description ICMP_GEN and BROADCAST
82class-map match-any system-cpp-police-control-low-priority
83 description ICMP redirect and general punt
84class-map match-any system-cpp-police-wireless-priority1
85 description Wireless priority 1
86class-map match-any system-cpp-police-wireless-priority2
87 description Wireless priority 2
88class-map match-any system-cpp-police-wireless-priority3-4-5
89 description Wireless priority 3,4 and 5
90class-map match-any non-client-nrt-class
91class-map match-any system-cpp-police-routing-control
92 description Routing control
93class-map match-any system-cpp-police-protocol-snooping
94 description Protocol snooping
95policy-map port_child_policy
96 class non-client-nrt-class
97 bandwidth remaining ratio 10
98policy-map system-cpp-policy
99 class system-cpp-police-data
100 police rate 200 pps
101 class system-cpp-police-sys-data
102 police rate 100 pps
103 class system-cpp-police-sw-forward
104 police rate 1000 pps
105 class system-cpp-police-multicast
106 police rate 500 pps
107 class system-cpp-police-multicast-end-station
108 police rate 2000 pps
109 class system-cpp-police-punt-webauth
110 class system-cpp-police-l2-control
111 class system-cpp-police-routing-control
112 police rate 1800 pps
113 class system-cpp-police-control-low-priority
114 class system-cpp-police-wireless-priority1
115 class system-cpp-police-wireless-priority2
116 class system-cpp-police-wireless-priority3-4-5
117 class system-cpp-police-topology-control
118 class system-cpp-police-dot1x-auth
119 class system-cpp-police-protocol-snooping
120 class system-cpp-police-forus
121 class system-cpp-default
122interface Port-channel1
123 switchport trunk native vlan 99
124 switchport mode trunk
125interface Port-channel2
126 switchport trunk native vlan 99
127 switchport mode trunk
128interface GigabitEthernet0/0
129 vrf forwarding Mgmt-vrf
130 no ip address
131 negotiation auto
132interface GigabitEthernet1/0/1
133 switchport trunk native vlan 99
134 switchport mode trunk
135 channel-group 1 mode active
136interface GigabitEthernet1/0/2
137 switchport trunk native vlan 99
138 switchport mode trunk
139 channel-group 1 mode active
140interface GigabitEthernet1/0/3
141 switchport trunk native vlan 99
142 switchport mode trunk
143 channel-group 2 mode desirable
144interface GigabitEthernet1/0/4
145 switchport trunk native vlan 99
146 switchport mode trunk
147 channel-group 2 mode desirable
148interface GigabitEthernet1/0/5
149 shutdown
150interface GigabitEthernet1/0/6
151 switchport access vlan 10
152 switchport mode access
153interface GigabitEthernet1/0/7
154 shutdown
155interface GigabitEthernet1/0/8
156 shutdown
157interface GigabitEthernet1/0/9
158 shutdown
159interface GigabitEthernet1/0/10
160 shutdown
161interface GigabitEthernet1/0/11
162 shutdown
163interface GigabitEthernet1/0/12
164 shutdown
165interface GigabitEthernet1/0/13
166 shutdown
167interface GigabitEthernet1/0/14
168 shutdown
169interface GigabitEthernet1/0/15
170 shutdown
171interface GigabitEthernet1/0/16
172 shutdown
173interface GigabitEthernet1/0/17
174 shutdown
175interface GigabitEthernet1/0/18
176 shutdown
177interface GigabitEthernet1/0/19
178 shutdown
179interface GigabitEthernet1/0/20
180 shutdown
181interface GigabitEthernet1/0/21
182 shutdown
183interface GigabitEthernet1/0/22
184 shutdown
185interface GigabitEthernet1/0/23
186 shutdown
187interface GigabitEthernet1/0/24
188 shutdown
189interface GigabitEthernet1/1/1
190interface GigabitEthernet1/1/2
191interface GigabitEthernet1/1/3
192interface GigabitEthernet1/1/4
193interface Vlan1
194 no ip address
195 shutdown
196interface Vlan99
197 description S1 Vlan99
198 ip address 192.168.1.11 255.255.255.0
199ip forward-protocol nd
200ip http server
201ip http authentication local
202ip http secure-server
203ip ssh version 2
204ip access-list extended AutoQos-4.0-wlan-Acl-Bulk-Data
205 permit tcp any any eq 22
206 permit tcp any any eq 465
207 permit tcp any any eq 143
208 permit tcp any any eq 993
209 permit tcp any any eq 995
210 permit tcp any any eq 1914
211 permit tcp any any eq ftp
212 permit tcp any any eq ftp-data
213 permit tcp any any eq smtp
214 permit tcp any any eq pop3
215ip access-list extended AutoQos-4.0-wlan-Acl-MultiEnhanced-Conf
216 permit udp any any range 16384 32767
217 permit tcp any any range 50000 59999
218ip access-list extended AutoQos-4.0-wlan-Acl-Scavanger
219 permit tcp any any range 2300 2400
220 permit udp any any range 2300 2400
221 permit tcp any any range 6881 6999
222 permit tcp any any range 28800 29100
223 permit tcp any any eq 1214
224 permit udp any any eq 1214
225 permit tcp any any eq 3689
226 permit udp any any eq 3689
227 permit tcp any any eq 11999
228ip access-list extended AutoQos-4.0-wlan-Acl-Signaling
229 permit tcp any any range 2000 2002
230 permit tcp any any range 5060 5061
231 permit udp any any range 5060 5061
232ip access-list extended AutoQos-4.0-wlan-Acl-Transactional-Data
233 permit tcp any any eq 443
234 permit tcp any any eq 1521
235 permit udp any any eq 1521
236 permit tcp any any eq 1526
237 permit udp any any eq 1526
238 permit tcp any any eq 1575
239 permit udp any any eq 1575
240 permit tcp any any eq 1630
241 permit udp any any eq 1630
242 permit tcp any any eq 1527
243 permit tcp any any eq 6200
244 permit tcp any any eq 3389
245 permit tcp any any eq 5985
246 permit tcp any any eq 8080
247control-plane
248 service-policy input system-cpp-policy
249no vstack
250banner motd ^C yet another banner ^C
251line con 0
252 exec-timeout 120 0
253 password 7 046B0A151C36435C0D48
254 logging synchronous
255 login
256 stopbits 1
257line aux 0
258 stopbits 1
259line vty 0 4
260 exec-timeout 120 0
261 password 7 12290404011C03162E7A
262 login local
263 transport input ssh
264line vty 5 15
265 password 7 12290404011C03162E7A
266 login
267wsma agent exec
268wsma agent config
269wsma agent filesys
270wsma agent notify
271ap dot11 airtime-fairness policy-name Default 0
272ap group default-group
273ap hyperlocation ble-beacon 0
274ap hyperlocation ble-beacon 1
275ap hyperlocation ble-beacon 2
276ap hyperlocation ble-beacon 3
277ap hyperlocation ble-beacon 4
278end
279Switch 2:
280version 15.2
281no service pad
282service timestamps debug datetime msec
283service timestamps log datetime msec
284service password-encryption
285hostname S2
286boot-start-marker
287boot-end-marker
288enable secret 5 $1$M5C4$/BAyq8FsjS7nFZZVykQGo1
289username admin privilege 15 password 7 13351601181B0B382F75
290no aaa new-model
291system mtu routing 1500
292no ip domain-lookup
293ip domain-name seth.dom
294spanning-tree mode pvst
295spanning-tree extend system-id
296spanning-tree vlan 1,10,99 priority 24576
297vlan internal allocation policy ascending
298interface Port-channel1
299 switchport trunk native vlan 99
300 switchport trunk allowed vlan 1,10,99
301 switchport mode trunk
302interface Port-channel3
303 switchport trunk native vlan 99
304 switchport trunk allowed vlan 1,10,99
305 switchport mode trunk
306interface FastEthernet0/1
307 switchport trunk native vlan 99
308 switchport trunk allowed vlan 1,10,99
309 switchport mode trunk
310 channel-group 1 mode active
311interface FastEthernet0/2
312 switchport trunk native vlan 99
313 switchport trunk allowed vlan 1,10,99
314 switchport mode trunk
315 channel-group 1 mode active
316interface FastEthernet0/3
317 switchport trunk native vlan 99
318 switchport trunk allowed vlan 1,10,99
319 switchport mode trunk
320 channel-group 3 mode active
321interface FastEthernet0/4
322 switchport trunk native vlan 99
323 switchport trunk allowed vlan 1,10,99
324 switchport mode trunk
325 channel-group 3 mode active
326interface FastEthernet0/5
327 shutdown
328interface FastEthernet0/6
329 shutdown
330interface FastEthernet0/7
331 shutdown
332interface FastEthernet0/8
333 shutdown
334interface FastEthernet0/9
335 shutdown
336interface FastEthernet0/10
337 shutdown
338interface FastEthernet0/11
339 shutdown
340interface FastEthernet0/12
341 shutdown
342interface FastEthernet0/13
343 shutdown
344interface FastEthernet0/14
345 shutdown
346interface FastEthernet0/15
347 shutdown
348interface FastEthernet0/16
349 shutdown
350interface FastEthernet0/17
351 shutdown
352interface FastEthernet0/18
353 shutdown
354interface FastEthernet0/19
355 shutdown
356interface FastEthernet0/20
357 shutdown
358interface FastEthernet0/21
359 shutdown
360interface FastEthernet0/22
361 shutdown
362interface FastEthernet0/23
363 shutdown
364interface FastEthernet0/24
365 shutdown
366interface GigabitEthernet0/1
367 shutdown
368interface GigabitEthernet0/2
369 shutdown
370interface Vlan1
371interface Vlan99
372 description S2 Vlan99
373 ip address 192.168.1.12 255.255.255.0
374no ip http server
375no ip http secure-server
376ip ssh version 2
377no vstack
378banner motd ^C more banners 2.0 ^C
379line con 0
380 exec-timeout 120 0
381 password 7 107E080A16001D190855
382 logging synchronous
383 login
384line vty 0 4
385 exec-timeout 120 0
386 password 7 107E080A16001D190855
387 logging synchronous
388 login local
389 transport input ssh
390line vty 5 15
391 login
392end
393Switch 3:
394version 15.2
395no service pad
396service timestamps debug datetime msec
397service timestamps log datetime msec
398service password-encryption
399hostname S3
400boot-start-marker
401boot-end-marker
402enable secret 5 $1$Lfzi$HJa.4VWPHgzgDAzlNwkne/
403username Admin privilege 15 secret 5 $1$sPG3$tcYJFX9yQMSdum30N/Wlx1
404no aaa new-model
405system mtu routing 1500
406no ip domain-lookup
407ip domain-name Matt.dom
408spanning-tree mode pvst
409spanning-tree extend system-id
410vlan internal allocation policy ascending
411interface Port-channel2
412 switchport trunk native vlan 99
413 switchport trunk allowed vlan 1,10,99
414 switchport mode trunk
415interface Port-channel3
416 switchport trunk native vlan 99
417 switchport trunk allowed vlan 1,10,99
418 switchport mode trunk
419interface FastEthernet0/1
420 switchport trunk native vlan 99
421 switchport trunk allowed vlan 1,10,99
422 switchport mode trunk
423 channel-group 2 mode active
424interface FastEthernet0/2
425 switchport trunk native vlan 99
426 switchport trunk allowed vlan 1,10,99
427 switchport mode trunk
428 channel-group 2 mode active
429interface FastEthernet0/3
430 switchport trunk native vlan 99
431 switchport trunk allowed vlan 1,10,99
432 switchport mode trunk
433 channel-group 3 mode desirable
434interface FastEthernet0/4
435 switchport trunk native vlan 99
436 switchport trunk allowed vlan 1,10,99
437 switchport mode trunk
438 channel-group 3 mode desirable
439interface FastEthernet0/5
440 shutdown
441interface FastEthernet0/6
442 shutdown
443interface FastEthernet0/7
444 shutdown
445interface FastEthernet0/8
446 shutdown
447interface FastEthernet0/9
448 shutdown
449interface FastEthernet0/10
450 shutdown
451interface FastEthernet0/11
452 shutdown
453interface FastEthernet0/12
454 shutdown
455interface FastEthernet0/13
456 shutdown
457interface FastEthernet0/14
458 shutdown
459interface FastEthernet0/15
460 shutdown
461interface FastEthernet0/16
462 shutdown
463interface FastEthernet0/17
464 shutdown
465interface FastEthernet0/18
466 switchport access vlan 10
467 switchport mode access
468interface FastEthernet0/19
469 shutdown
470interface FastEthernet0/20
471 shutdown
472interface FastEthernet0/21
473 shutdown
474interface FastEthernet0/22
475 shutdown
476interface FastEthernet0/23
477 shutdown
478interface FastEthernet0/24
479 shutdown
480interface GigabitEthernet0/1
481 shutdown
482interface GigabitEthernet0/2
483 shutdown
484interface Vlan1
485interface Vlan99
486 description Management
487 ip address 192.168.1.13 255.255.255.0
488ip http server
489ip http secure-server
490ip ssh version 2
491no vstack
492banner motd ^C No access by unauthorized personnel ^C
493line con 0
494 exec-timeout 45 0
495 password 7 107E080A16001D190855
496 logging synchronous
497 login
498line vty 0 4
499 exec-timeout 45 0
500 password 7 097C4F1A0A1218000F5D
501 login local
502 transport input ssh
503line vty 5 15
504 login
505end