Advertisement
Guest User

Untitled

a guest
Mar 16th, 2016
268
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.56 KB | None | 0 0
  1.  
  2. ASR-BRS-01#sh run
  3. Building configuration...
  4.  
  5. Current configuration : 5403 bytes
  6. !
  7. ! Last configuration change at 17:06:27 YEKT Wed Mar 16 2016 by root
  8. ! NVRAM config last updated at 15:58:43 YEKT Wed Mar 16 2016 by root
  9. !
  10. version 15.4
  11. service timestamps debug datetime msec
  12. service timestamps log datetime msec
  13. service password-encryption
  14. no platform punt-keepalive disable-kernel-core
  15. platform hardware throughput level 36000000
  16. !
  17. hostname ASR-BRS-01
  18. !
  19. boot-start-marker
  20. boot system flash bootflash:asr1002x-universalk9.03.13.02.S.154-3.S2-ext.SPA.bin
  21. boot-end-marker
  22. !
  23. !
  24. vrf definition Mgmt-intf
  25. !
  26. address-family ipv4
  27. exit-address-family
  28. !
  29. address-family ipv6
  30. exit-address-family
  31. !
  32. !
  33. aaa new-model
  34. !
  35. !
  36. aaa group server radius ISG-PPPoE
  37. server name UTM
  38. ip radius source-interface GigabitEthernet0
  39. !
  40. aaa group server radius ACC-PPPoE
  41. server name UTM
  42. ip radius source-interface GigabitEthernet0
  43. !
  44. aaa group server radius ISG-PROFILES
  45. server name UTM
  46. ip radius source-interface GigabitEthernet0
  47. !
  48. aaa authentication login default local
  49. aaa authentication enable default none
  50. aaa authentication ppp PPPoE group ISG-PPPoE
  51. aaa authorization exec default local
  52. aaa authorization network PPPoE group ISG-PPPoE
  53. aaa authorization subscriber-service default group ISG-PROFILES
  54. aaa authorization subscriber-service PPPoE group ISG-PROFILES
  55. aaa accounting update periodic 1800
  56. aaa accounting network PPPoE start-stop group ACC-PPPoE
  57. !
  58. !
  59. !
  60. !
  61. aaa server radius dynamic-author
  62. client 192.168.1.4
  63. server-key 7 121A0C041104020539
  64. auth-type all
  65. ignore session-key
  66. ignore server-key
  67. !
  68. aaa session-id common
  69. aaa policy interface-config allow-subinterface
  70. ppp packet throttle 30 1 10
  71. clock timezone YEKT 5 0
  72. !
  73. !
  74. !
  75. !
  76. !
  77. !
  78. !
  79. !
  80. !
  81.  
  82.  
  83. no ip domain lookup
  84. ip domain name domain.name
  85. ip name-server dns ip
  86. ip name-server dns ip
  87.  
  88. !
  89. !
  90. !
  91. !
  92. !
  93. !
  94. !
  95. !
  96. !
  97. !
  98. subscriber templating
  99. !
  100. multilink bundle-name authenticated
  101. !
  102. !
  103. !
  104. !
  105. !
  106. !
  107. !
  108. !
  109. !
  110. !
  111. license udi pid ASR1002-X sn JAE191405WR
  112. license boot level advipservices
  113. spanning-tree extend system-id
  114. !
  115. username root privilege 15 secret 5 $1$ewBn$NKRLNsTjnJKlMzxg26gPi0
  116. !
  117. redundancy
  118. mode none
  119. !
  120. !
  121. !
  122. !
  123. !
  124. !
  125. ip telnet source-interface GigabitEthernet0
  126. ip tftp source-interface GigabitEthernet0
  127. ip ssh time-out 60
  128. ip ssh source-interface GigabitEthernet0
  129. ip ssh rsa keypair-name ASR-BRS-01.infkom.ru
  130. ip ssh version 2
  131. !
  132. !
  133. !
  134. !
  135. !
  136. !
  137. !
  138. !
  139. !
  140. !
  141. !
  142. !
  143. !
  144. !
  145. !
  146. !
  147. bba-group pppoe global
  148. virtual-template 1
  149. sessions max limit 10000
  150. ac name ASR-BRS-01
  151. sessions per-mac limit 2
  152. sessions auto cleanup
  153. !
  154. !
  155. interface Loopback100
  156. ip address 172.30.0.1 255.255.255.255
  157. !
  158. interface GigabitEthernet0/0/0
  159. no ip address
  160. negotiation auto
  161. !
  162. interface GigabitEthernet0/0/1
  163. no ip address
  164. negotiation auto
  165. !
  166. interface GigabitEthernet0/0/2
  167. no ip address
  168. negotiation auto
  169. !
  170. interface GigabitEthernet0/0/3
  171. no ip address
  172. negotiation auto
  173. !
  174. interface GigabitEthernet0/0/4
  175. no ip address
  176. negotiation auto
  177. !
  178. interface GigabitEthernet0/0/5
  179. no ip address
  180. negotiation auto
  181. !
  182. interface TenGigabitEthernet0/1/0
  183. no ip address
  184. load-interval 30
  185. !
  186. interface TenGigabitEthernet0/1/0.2250
  187. encapsulation dot1Q 2250
  188. pppoe enable group global
  189. !
  190. interface TenGigabitEthernet0/1/0.4000
  191. encapsulation dot1Q 4000
  192. ip address
  193. !
  194. interface GigabitEthernet0
  195. vrf forwarding Mgmt-intf
  196. ip address 192.168.1.103 255.255.255.0
  197. negotiation auto
  198. !
  199. interface Virtual-Template1
  200. mtu 1492
  201. ip unnumbered Loopback100
  202. ip tcp adjust-mss 1452
  203. no peer default ip address
  204. ppp authentication chap PPPoE
  205. ppp authorization PPPoE
  206. ppp accounting PPPoE
  207. ppp ipcp dns 77.88.8.8
  208. !
  209. router ospf 65000
  210. router-id 1.1.1.1
  211. redistribute connected subnets
  212. redistribute static subnets
  213. passive-interface default
  214. no passive-interface TenGigabitEthernet0/1/0.4000
  215. network 1.1.1.1 0.0.0.63 area 0
  216. !
  217. ip forward-protocol nd
  218. !
  219. no ip http server
  220. no ip http secure-server
  221. ip route 0.0.0.0 0.0.0.0 1.1.1.2
  222. ip route vrf Mgmt-intf 0.0.0.0 0.0.0.0 2.2.2.133
  223. !
  224. ip access-list standard MGMT
  225. permit 192.168.0.0 0.0.255.255
  226. permit 172.16.0.0 0.15.255.255
  227. permit 10.0.0.0 0.255.255.255
  228. permit 1.1.20.0 0.0.3.255
  229. !
  230. ip access-list extended one
  231. permit ip any any
  232. !
  233. !
  234. snmp-server community public RO MGMT
  235. snmp ifmib ifindex persist
  236. !
  237. !
  238. radius-server attribute 44 include-in-access-req all
  239. no radius-server attribute 77 include-in-acct-req
  240. no radius-server attribute 77 include-in-access-req
  241. radius-server attribute 6 on-for-login-auth
  242. radius-server attribute 8 include-in-access-req
  243. radius-server attribute 32 include-in-access-req
  244. radius-server attribute 32 include-in-accounting-req
  245. radius-server attribute 55 include-in-acct-req
  246. radius-server attribute 55 access-request include
  247. radius-server attribute 30 original-called-number
  248. radius-server attribute nas-port format d
  249. radius-server attribute 61 extended
  250. radius-server attribute 31 mac format ietf
  251. radius-server attribute 31 send nas-port-detail mac-only
  252. radius-server attribute 31 remote-id
  253. radius-server attribute nas-port-id include circuit-id plus remote-id plus vendor-class-id
  254. radius-server vsa send cisco-nas-port
  255. !
  256. radius server UTM
  257. address ipv4 192.168.1.4 auth-port 1812 acct-port 1813
  258. key 7 05080F1C224340080A
  259. !
  260. !
  261. control-plane
  262. !
  263. !
  264. !
  265. !
  266. !
  267. !
  268. !
  269. !
  270. !
  271. !
  272. line con 0
  273. logging synchronous
  274. stopbits 1
  275. line aux 0
  276. stopbits 1
  277. line vty 0 4
  278. access-class MGMT in vrf-also
  279. exec-timeout 60 0
  280. logging synchronous
  281. transport input ssh
  282. line vty 5 15
  283. transport input none
  284. !
  285. ntp server 31.28.161.68
  286. !
  287. !
  288. end
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement