Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ASR-BRS-01#sh run
- Building configuration...
- Current configuration : 5403 bytes
- !
- ! Last configuration change at 17:06:27 YEKT Wed Mar 16 2016 by root
- ! NVRAM config last updated at 15:58:43 YEKT Wed Mar 16 2016 by root
- !
- version 15.4
- service timestamps debug datetime msec
- service timestamps log datetime msec
- service password-encryption
- no platform punt-keepalive disable-kernel-core
- platform hardware throughput level 36000000
- !
- hostname ASR-BRS-01
- !
- boot-start-marker
- boot system flash bootflash:asr1002x-universalk9.03.13.02.S.154-3.S2-ext.SPA.bin
- boot-end-marker
- !
- !
- vrf definition Mgmt-intf
- !
- address-family ipv4
- exit-address-family
- !
- address-family ipv6
- exit-address-family
- !
- !
- aaa new-model
- !
- !
- aaa group server radius ISG-PPPoE
- server name UTM
- ip radius source-interface GigabitEthernet0
- !
- aaa group server radius ACC-PPPoE
- server name UTM
- ip radius source-interface GigabitEthernet0
- !
- aaa group server radius ISG-PROFILES
- server name UTM
- ip radius source-interface GigabitEthernet0
- !
- aaa authentication login default local
- aaa authentication enable default none
- aaa authentication ppp PPPoE group ISG-PPPoE
- aaa authorization exec default local
- aaa authorization network PPPoE group ISG-PPPoE
- aaa authorization subscriber-service default group ISG-PROFILES
- aaa authorization subscriber-service PPPoE group ISG-PROFILES
- aaa accounting update periodic 1800
- aaa accounting network PPPoE start-stop group ACC-PPPoE
- !
- !
- !
- !
- aaa server radius dynamic-author
- client 192.168.1.4
- server-key 7 121A0C041104020539
- auth-type all
- ignore session-key
- ignore server-key
- !
- aaa session-id common
- aaa policy interface-config allow-subinterface
- ppp packet throttle 30 1 10
- clock timezone YEKT 5 0
- !
- !
- !
- !
- !
- !
- !
- !
- !
- no ip domain lookup
- ip domain name domain.name
- ip name-server dns ip
- ip name-server dns ip
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- subscriber templating
- !
- multilink bundle-name authenticated
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- license udi pid ASR1002-X sn JAE191405WR
- license boot level advipservices
- spanning-tree extend system-id
- !
- username root privilege 15 secret 5 $1$ewBn$NKRLNsTjnJKlMzxg26gPi0
- !
- redundancy
- mode none
- !
- !
- !
- !
- !
- !
- ip telnet source-interface GigabitEthernet0
- ip tftp source-interface GigabitEthernet0
- ip ssh time-out 60
- ip ssh source-interface GigabitEthernet0
- ip ssh rsa keypair-name ASR-BRS-01.infkom.ru
- ip ssh version 2
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- bba-group pppoe global
- virtual-template 1
- sessions max limit 10000
- ac name ASR-BRS-01
- sessions per-mac limit 2
- sessions auto cleanup
- !
- !
- interface Loopback100
- ip address 172.30.0.1 255.255.255.255
- !
- interface GigabitEthernet0/0/0
- no ip address
- negotiation auto
- !
- interface GigabitEthernet0/0/1
- no ip address
- negotiation auto
- !
- interface GigabitEthernet0/0/2
- no ip address
- negotiation auto
- !
- interface GigabitEthernet0/0/3
- no ip address
- negotiation auto
- !
- interface GigabitEthernet0/0/4
- no ip address
- negotiation auto
- !
- interface GigabitEthernet0/0/5
- no ip address
- negotiation auto
- !
- interface TenGigabitEthernet0/1/0
- no ip address
- load-interval 30
- !
- interface TenGigabitEthernet0/1/0.2250
- encapsulation dot1Q 2250
- pppoe enable group global
- !
- interface TenGigabitEthernet0/1/0.4000
- encapsulation dot1Q 4000
- ip address
- !
- interface GigabitEthernet0
- vrf forwarding Mgmt-intf
- ip address 192.168.1.103 255.255.255.0
- negotiation auto
- !
- interface Virtual-Template1
- mtu 1492
- ip unnumbered Loopback100
- ip tcp adjust-mss 1452
- no peer default ip address
- ppp authentication chap PPPoE
- ppp authorization PPPoE
- ppp accounting PPPoE
- ppp ipcp dns 77.88.8.8
- !
- router ospf 65000
- router-id 1.1.1.1
- redistribute connected subnets
- redistribute static subnets
- passive-interface default
- no passive-interface TenGigabitEthernet0/1/0.4000
- network 1.1.1.1 0.0.0.63 area 0
- !
- ip forward-protocol nd
- !
- no ip http server
- no ip http secure-server
- ip route 0.0.0.0 0.0.0.0 1.1.1.2
- ip route vrf Mgmt-intf 0.0.0.0 0.0.0.0 2.2.2.133
- !
- ip access-list standard MGMT
- permit 192.168.0.0 0.0.255.255
- permit 172.16.0.0 0.15.255.255
- permit 10.0.0.0 0.255.255.255
- permit 1.1.20.0 0.0.3.255
- !
- ip access-list extended one
- permit ip any any
- !
- !
- snmp-server community public RO MGMT
- snmp ifmib ifindex persist
- !
- !
- radius-server attribute 44 include-in-access-req all
- no radius-server attribute 77 include-in-acct-req
- no radius-server attribute 77 include-in-access-req
- radius-server attribute 6 on-for-login-auth
- radius-server attribute 8 include-in-access-req
- radius-server attribute 32 include-in-access-req
- radius-server attribute 32 include-in-accounting-req
- radius-server attribute 55 include-in-acct-req
- radius-server attribute 55 access-request include
- radius-server attribute 30 original-called-number
- radius-server attribute nas-port format d
- radius-server attribute 61 extended
- radius-server attribute 31 mac format ietf
- radius-server attribute 31 send nas-port-detail mac-only
- radius-server attribute 31 remote-id
- radius-server attribute nas-port-id include circuit-id plus remote-id plus vendor-class-id
- radius-server vsa send cisco-nas-port
- !
- radius server UTM
- address ipv4 192.168.1.4 auth-port 1812 acct-port 1813
- key 7 05080F1C224340080A
- !
- !
- control-plane
- !
- !
- !
- !
- !
- !
- !
- !
- !
- !
- line con 0
- logging synchronous
- stopbits 1
- line aux 0
- stopbits 1
- line vty 0 4
- access-class MGMT in vrf-also
- exec-timeout 60 0
- logging synchronous
- transport input ssh
- line vty 5 15
- transport input none
- !
- ntp server 31.28.161.68
- !
- !
- end
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement