Advertisement
Guest User

Untitled

a guest
Apr 28th, 2016
134
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.14 KB | None | 0 0
  1. R1#show run
  2. Building configuration...
  3.  
  4. Current configuration : 4527 bytes
  5. !
  6. ! Last configuration change at 05:07:43 UTC Sat Mar 2 2002
  7. ! NVRAM config last updated at 00:31:49 UTC Fri Mar 1 2002
  8. !
  9. version 12.4
  10. service timestamps debug datetime msec
  11. service timestamps log datetime msec
  12. no service password-encryption
  13. !
  14. hostname R1
  15. !
  16. boot-start-marker
  17. boot-end-marker
  18. !
  19. !
  20. no aaa new-model
  21. memory-size iomem 5
  22. no ip icmp rate-limit unreachable
  23. ip cef
  24. ip tcp synwait-time 5
  25. !
  26. !
  27. !
  28. !
  29. no ip domain lookup
  30. ip domain name cisco.com
  31. !
  32. !
  33. !
  34. !
  35. !
  36. !
  37. !
  38. !
  39. !
  40. !
  41. !
  42. !
  43. !
  44. !
  45. !
  46. !
  47. crypto pki trustpoint R1
  48. enrollment url http://1.1.1.2:80
  49. revocation-check crl
  50. auto-enroll
  51. !
  52. !
  53. crypto pki certificate chain R1
  54. certificate 04
  55. 308201FC 30820165 A0030201 02020104 300D0609 2A864886 F70D0101 04050030
  56. 26312430 22060355 0403131B 63697363 6F312E63 6973636F 2E636F6D 204C3D52
  57. 54502043 3D555330 1E170D30 32303330 32303530 3831305A 170D3032 30393138
  58. 30353038 31305A30 1D311B30 1906092A 864886F7 0D010902 160C5231 2E636973
  59. 636F2E63 6F6D305C 300D0609 2A864886 F70D0101 01050003 4B003048 024100C0
  60. 8DB52297 C315C40B B57BD904 9ED49AF5 656F4F6A 8A234C70 FAC63743 4EDF6EE5
  61. 297AC3D9 8D28E562 1A100C83 E25F8D61 6288C80F FC6FFDBD 6A025CE7 C9150B02
  62. 03010001 A3818630 81833034 0603551D 1F042D30 2B3029A0 27A02586 23687474
  63. 703A2F2F 312E312E 312E322F 63697363 6F316364 702E6369 73636F31 2E63726C
  64. 300B0603 551D0F04 04030205 A0301F06 03551D23 04183016 8014C347 B61CEC35
  65. A35B7694 5E7A0485 FCEC9A06 163D301D 0603551D 0E041604 143728F5 4D9AD75D
  66. F121AD70 897CF7D6 C846F3CF 3E300D06 092A8648 86F70D01 01040500 03818100
  67. B461CFB2 65BC6C62 D89D8083 219A809D FBC7F1C9 AD1EC611 89EDB23E C1DDA50D
  68. 3FD6ECFF AE1FB895 0AE874EC A6EEE03E 8FF6CEE9 55C3E7EA 1CAE72CF 3F3DB050
  69. 49D58C74 C419936B 982C202C A106D90C 1B5D025A FA9ED8FD 5EE5EAB8 B4DE7ABE
  70. 639CF4A0 A55B3E13 8BD82C6F 80DFDADE 62EFBD53 A4847A33 D0F7936E D1C0E534
  71. quit
  72. certificate ca 01
  73. 30820225 3082018E A0030201 02020101 300D0609 2A864886 F70D0101 04050030
  74. 26312430 22060355 0403131B 63697363 6F312E63 6973636F 2E636F6D 204C3D52
  75. 54502043 3D555330 1E170D30 32303330 31303030 3831325A 170D3033 30333031
  76. 30303038 31325A30 26312430 22060355 0403131B 63697363 6F312E63 6973636F
  77. 2E636F6D 204C3D52 54502043 3D555330 819F300D 06092A86 4886F70D 01010105
  78. 0003818D 00308189 02818100 D9953278 F77165B3 0CC4E37D F193042A D0E16F27
  79. 0DB7542B 381EF31E 9476AA4C D7FE3D1D F57EB959 FC772582 31FC5330 EAD42AB3
  80. E98B4D5A 58A78DE0 D09E8A7A 68C60EF9 77C5AF40 1315760B F9C17A06 74E3FF9B
  81. 3FF10B77 6F8D07ED 03814DE7 1639D7C9 E9760D4E 9F230B3E C1B1B798 F93197EF
  82. C31FD430 11BA9037 75B98A43 02030100 01A36330 61300F06 03551D13 0101FF04
  83. 05300301 01FF300E 0603551D 0F0101FF 04040302 0186301F 0603551D 23041830
  84. 168014C3 47B61CEC 35A35B76 945E7A04 85FCEC9A 06163D30 1D060355 1D0E0416
  85. 0414C347 B61CEC35 A35B7694 5E7A0485 FCEC9A06 163D300D 06092A86 4886F70D
  86. 01010405 00038181 00A89382 7BF082EF C87EE39D 31E2B3A6 615FDE54 5EC57566
  87. FBE3048E B933A2F6 7B6369D8 F289E75D DD46407C 4F2E3DE4 19FCBA0F 012EF5C8
  88. D6BEA923 EC24705E 1360C3DC 77543C6A F040FFA9 3D4B55E8 77F0FACB 359F5EC7
  89. B4E6EF97 795265B1 FA94192B 759C144F 51644B11 24FBB71B B0BE71F8 8E6872BA
  90. 48A7A7C5 9D554761 1E
  91. quit
  92. !
  93. !
  94. !
  95. crypto isakmp policy 1
  96. encr aes 256
  97. group 5
  98. lifetime 3600
  99. !
  100. !
  101. crypto ipsec transform-set MYSET1 esp-aes esp-sha-hmac
  102. !
  103. crypto map MYMAP1 1 ipsec-isakmp
  104. set peer 2.2.2.3
  105. set transform-set MYSET1
  106. set pfs group2
  107. match address 100
  108. !
  109. !
  110. !
  111. !
  112. interface FastEthernet0/0
  113. ip address 1.1.1.1 255.255.255.0
  114. ip virtual-reassembly
  115. duplex auto
  116. speed auto
  117. crypto map MYMAP1
  118. !
  119. interface FastEthernet0/1
  120. ip address 172.16.0.1 255.255.255.0
  121. duplex auto
  122. speed auto
  123. !
  124. interface FastEthernet1/0
  125. no ip address
  126. ip virtual-reassembly
  127. duplex auto
  128. speed auto
  129. !
  130. interface FastEthernet2/0
  131. no ip address
  132. shutdown
  133. duplex auto
  134. speed auto
  135. !
  136. router ospf 1
  137. log-adjacency-changes
  138. passive-interface FastEthernet1/0
  139. network 1.1.1.0 0.0.0.255 area 0
  140. !
  141. ip route 0.0.0.0 0.0.0.0 FastEthernet0/0
  142. ip route 0.0.0.0 0.0.0.0 1.1.1.2
  143. !
  144. !
  145. no ip http server
  146. no ip http secure-server
  147. ip nat pool POOL 1.1.1.15 1.1.1.20 netmask 255.255.255.0
  148. ip nat inside source list 1 pool POOL overload
  149. !
  150. access-list 1 permit 172.16.0.0 0.0.0.255
  151. access-list 100 permit ip 172.16.0.0 0.0.0.255 192.168.15.0 0.0.0.255
  152. no cdp log mismatch duplex
  153. !
  154. !
  155. !
  156. !
  157. control-plane
  158. !
  159. !
  160. !
  161. !
  162. !
  163. !
  164. !
  165. !
  166. !
  167. !
  168. line con 0
  169. exec-timeout 0 0
  170. privilege level 15
  171. logging synchronous
  172. line aux 0
  173. exec-timeout 0 0
  174. privilege level 15
  175. logging synchronous
  176. line vty 0 4
  177. login
  178. !
  179. ntp clock-period 17179832
  180. ntp server 1.1.1.2
  181. !
  182. end
  183.  
  184.  
  185.  
  186.  
  187. R1#show crypto pki certificates
  188. Certificate
  189. Status: Available
  190. Certificate Serial Number: 04
  191. Certificate Usage: General Purpose
  192. Issuer:
  193. cn=cisco1.cisco.com L\=RTP C\=US
  194. Subject:
  195. Name: R1.cisco.com
  196. hostname=R1.cisco.com
  197. CRL Distribution Points:
  198. http://1.1.1.2/cisco1cdp.cisco1.crl
  199. Validity Date:
  200. start date: 05:08:10 UTC Mar 2 2002
  201. end date: 05:08:10 UTC Sep 18 2002
  202. Associated Trustpoints: R1
  203.  
  204. CA Certificate
  205. Status: Available
  206. Certificate Serial Number: 01
  207. Certificate Usage: Signature
  208. Issuer:
  209. cn=cisco1.cisco.com L\=RTP C\=US
  210. Subject:
  211. cn=cisco1.cisco.com L\=RTP C\=US
  212. Validity Date:
  213. start date: 00:08:12 UTC Mar 1 2002
  214. end date: 00:08:12 UTC Mar 1 2003
  215. Associated Trustpoints: R1
  216.  
  217.  
  218.  
  219.  
  220.  
  221.  
  222. R1#show crypto isakmp policy
  223.  
  224. Global IKE policy
  225. Protection suite of priority 1
  226. encryption algorithm: AES - Advanced Encryption Standard (256 bit keys).
  227. hash algorithm: Secure Hash Standard
  228. authentication method: Rivest-Shamir-Adleman Signature
  229. Diffie-Hellman group: #5 (1536 bit)
  230. lifetime: 3600 seconds, no volume limit
  231. Default protection suite
  232. encryption algorithm: DES - Data Encryption Standard (56 bit keys).
  233. hash algorithm: Secure Hash Standard
  234. authentication method: Rivest-Shamir-Adleman Signature
  235. Diffie-Hellman group: #1 (768 bit)
  236. lifetime: 86400 seconds, no volume limit
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement