Advertisement
Guest User

Untitled

a guest
Mar 21st, 2019
127
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 18.58 KB | None | 0 0
  1.  
  2. DES-3550 Fast Ethernet Switch Command Line Interface
  3.  
  4. Firmware: Build 5.00-B28
  5. Copyright(C) 2000-2004 D-Link Corporation. All rights reserved.
  6. username:admin
  7. password:********
  8.  
  9. DES-3550:admin#show config current_config
  10. Command: show config current_config
  11.  
  12. #-------------------------------------------------------------------
  13. # DES-3550 Configuration
  14. #
  15. # Firmware: Build 5.00-B28
  16. # Copyright(C) 2000-2005 D-Link Corporation. All rights reserved.
  17. #-------------------------------------------------------------------
  18.  
  19.  
  20. # BASIC
  21.  
  22. config serial_port baud_rate 9600 auto_logout 10_minutes
  23. enable telnet 23
  24. enable web 80
  25. config terminal_line default
  26.  
  27. # STORM
  28.  
  29. config traffic control_trap none
  30. config traffic control 1-8 broadcast disable multicast disable unicast disable action drop threshold 128000
  31.  
  32. # LOOP_DETECT
  33.  
  34. enable loopdetect
  35. config loopdetect recover_timer 60
  36. config loopdetect interval 10
  37. config loopdetect mode port-based
  38. config loopdetect ports 1-50 state disabled
  39.  
  40. # GM
  41.  
  42. config sim candidate
  43. disable sim
  44. config sim dp_interval 30
  45. config sim hold_time 100
  46.  
  47. # SYSLOG
  48.  
  49. disable syslog
  50. config system_severity trap information
  51. config system_severity log information
  52.  
  53. # QOS
  54.  
  55. config scheduling 0 max_packet 0 max_latency 0
  56. config scheduling 1 max_packet 0 max_latency 0
  57. config scheduling 2 max_packet 0 max_latency 0
  58. config scheduling 3 max_packet 0 max_latency 0
  59. config 802.1p user_priority 0 1
  60. config 802.1p user_priority 1 0
  61. config 802.1p user_priority 2 0
  62. config 802.1p user_priority 3 1
  63. config 802.1p user_priority 4 2
  64. config 802.1p user_priority 5 2
  65. config 802.1p user_priority 6 3
  66. config 802.1p user_priority 7 3
  67. config 802.1p default_priority 1-50 0
  68. config bandwidth_control 1-50 rx_rate no_limit
  69. config bandwidth_control 1-50 tx_rate no_limit
  70.  
  71. # MIRROR
  72.  
  73. disable mirror
  74.  
  75. # TRAF-SEGMENTATION
  76.  
  77. config traffic_segmentation 1-50 forward_list 1-50
  78.  
  79. # PORT
  80.  
  81. config ports 1-44,49-50 speed auto flow_control enable learning enable state enable trap enable
  82. config ports 45-48 speed auto flow_control enable learning enable state enable description "VLAN-ID 2" trap enable
  83.  
  84. # PORT_LOCK
  85.  
  86. disable port_security trap_log
  87. config port_security ports 1-50 admin_state disable max_learning_addr 1 lock_address_mode DeleteOnReset
  88.  
  89. # 8021X
  90.  
  91. disable 802.1x
  92. config 802.1x capability ports 1-50 none
  93. config 802.1x auth_parameter ports 1-50 direction both port_control auto quiet_period 60 tx_period 30 supp_timeout 30 server_timeou
  94. t 30 max_req 2 reauth_period 3600 enable_reauth disable
  95.  
  96. # SNMPv3
  97.  
  98. delete snmp community public
  99. delete snmp community private
  100. delete snmp user initial
  101. delete snmp group initial
  102. delete snmp view restricted all
  103. delete snmp view CommunityView all
  104. config snmp engineID 800000ab030022b005cb16
  105. create snmp view restricted 1.3.6.1.2.1.1 view_type included
  106. create snmp view restricted 1.3.6.1.2.1.11 view_type included
  107. create snmp view restricted 1.3.6.1.6.3.10.2.1 view_type included
  108. create snmp view restricted 1.3.6.1.6.3.11.2.1 view_type included
  109. create snmp view restricted 1.3.6.1.6.3.15.1.1 view_type included
  110. create snmp view CommunityView 1 view_type included
  111. create snmp view CommunityView 1.3.6.1.6.3 view_type excluded
  112. create snmp view CommunityView 1.3.6.1.6.3.1 view_type included
  113. create snmp group initial v3 noauth_nopriv read_view restricted notify_view restricted
  114. create snmp group ReadGroup v1 read_view CommunityView notify_view CommunityView
  115. create snmp group ReadGroup v2c read_view CommunityView notify_view CommunityView
  116. create snmp group WriteGroup v1 read_view CommunityView write_view CommunityView notify_view CommunityView
  117. create snmp group WriteGroup v2c read_view CommunityView write_view CommunityView notify_view CommunityView
  118. create snmp community private view CommunityView read_write
  119. create snmp community public view CommunityView read_only
  120. create snmp user initial initial
  121.  
  122. # MANAGEMENT
  123.  
  124. enable snmp traps
  125. enable snmp authenticate traps
  126. config snmp system_name nijniy
  127. config snmp system_location ats_direction
  128. disable rmon
  129.  
  130. # VLAN
  131.  
  132. disable asymmetric_vlan
  133. config vlan default delete 1-50
  134. config vlan default add untagged 1-44,49-50
  135. config vlan default advertisement enable
  136. create vlan wifi tag 2
  137. config vlan wifi add tagged 49-50
  138. config vlan wifi add untagged 45-48
  139. config vlan wifi advertisement disable
  140. disable gvrp
  141. config gvrp 1-44,49-50 state disable ingress_checking enable acceptable_frame admit_all pvid 1
  142. config gvrp 45-48 state disable ingress_checking enable acceptable_frame admit_all pvid 2
  143.  
  144. # FDB
  145.  
  146. config fdb aging_time 300
  147. config multicast port_filtering_mode 1-50 forward_unregistered_groups
  148.  
  149. # MAC_ADDRESS_TABLE_NOTIFICATION
  150.  
  151. config mac_notification interval 1 historysize 1
  152. disable mac_notification
  153. config mac_notification ports 1-50 disable
  154.  
  155. # STP
  156.  
  157. config stp version rstp
  158. config stp maxage 20 maxhops 20 forwarddelay 15 txholdcount 6 fbpdu enable
  159. config stp priority 32768 instance_id 0
  160. config stp hellotime 2
  161. config stp mst_config_id name 00:22:B0:05:CB:16 revision_level 0
  162. disable stp
  163. config stp ports 1-50 externalCost auto edge false p2p auto state enable
  164. config stp ports 1-50 fbpdu disable
  165. config stp ports 1-50 restricted_role false
  166. config stp ports 1-50 restricted_tcn false
  167. config stp mst_ports 1-50 instance_id 0 internalCost auto priority 128
  168.  
  169. # SSH
  170.  
  171. config ssh server maxsession 8
  172. config ssh server contimeout 300
  173. config ssh server authfail 2
  174. config ssh server rekey never
  175. disable ssh
  176.  
  177. # SSL
  178.  
  179. disable ssl
  180. enable ssl ciphersuite RSA_with_RC4_128_MD5
  181. enable ssl ciphersuite RSA_with_3DES_EDE_CBC_SHA
  182. enable ssl ciphersuite DHE_DSS_with_3DES_EDE_CBC_SHA
  183. enable ssl ciphersuite RSA_EXPORT_with_RC4_40_MD5
  184. config ssl cachetimeout timeout 600
  185.  
  186. # SAFE_GUARD
  187.  
  188. config safeguard_engine state enable cpu_utilization rising_threshold 100 falling_threshold 20 trap_log disable
  189.  
  190. # ACL
  191.  
  192. disable cpu_interface_filtering
  193.  
  194. # SNTP
  195.  
  196. disable sntp
  197. config time_zone operator - hour 6 min 0
  198. config sntp primary 0.0.0.0 secondary 0.0.0.0 poll-interval 720
  199. config dst disable
  200.  
  201. # IPBIND
  202. disable address_binding acl_mode
  203. disable address_binding trap_log
  204.  
  205.  
  206. # DHCP_NETBIOS_FILTER
  207.  
  208.  
  209. # ROUTE
  210.  
  211. create iproute default 192.168.0.1 1
  212.  
  213. # SNOOP
  214.  
  215. disable igmp_snooping
  216. config igmp_snooping default host_timeout 260 router_timeout 260 leave_timer 2 state disable
  217. config igmp_snooping querier default query_interval 125 max_response_time 10 robustness_variable 2
  218. config igmp_snooping querier default last_member_query_interval 1 state disable
  219. config igmp_snooping wifi host_timeout 260 router_timeout 260 leave_timer 2 state disable
  220. config igmp_snooping querier wifi query_interval 125 max_response_time 10 robustness_variable 2
  221. config igmp_snooping querier wifi last_member_query_interval 1 state disable
  222. config limited_multicast_addr ports 1-50 access deny state disable
  223.  
  224. # LACP
  225.  
  226. config link_aggregation algorithm mac_source
  227. config lacp_port 1-50 mode passive
  228.  
  229. # GVLAN
  230.  
  231.  
  232. # IP
  233.  
  234. config ipif System vlan default ipaddress 192.168.0.88/24 state enabled
  235.  
  236. # ARP
  237.  
  238. config arp_aging time 20
  239.  
  240. # ACCESS_AUTHENTICATION_CONTROL
  241.  
  242. config authen_login default method local
  243. config authen_enable default method local_enable
  244. config authen application console login default
  245. config authen application console enable default
  246. config authen application telnet login default
  247. config authen application telnet enable default
  248. config authen application ssh login default
  249. config authen application ssh enable default
  250. config authen application http login default
  251. config authen application http enable default
  252. config authen parameter response_timeout 0
  253. config authen parameter attempt 3
  254. disable authen_policy
  255.  
  256. # DHCP_RELAY
  257.  
  258. disable dhcp_relay
  259. config dhcp_relay hops 4 time 0
  260. config dhcp_relay option_82 state disable
  261. config dhcp_relay option_82 check disable
  262. config dhcp_relay option_82 policy replace
  263.  
  264. #-------------------------------------------------------------------
  265. # End of configuration file for DES-3550
  266. #-------------------------------------------------------------------
  267.  
  268. DES-3550:admin#
  269.  
  270.  
  271.  
  272.  
  273. DES-3550 Fast Ethernet Switch Command Line Interface
  274.  
  275. Firmware: Build 5.01.B52
  276. Copyright(C) 2008 D-Link Corporation. All rights reserved.
  277. username:admin
  278. password:********
  279.  
  280. DES-3550:admin#show config current_config
  281. Command: show config current_config
  282.  
  283. #-------------------------------------------------------------------
  284. # DES-3550 Configuration
  285. #
  286. # Firmware: Build 5.01.B52
  287. # Copyright(C) 2008 D-Link Corporation. All rights reserved.
  288. #-------------------------------------------------------------------
  289.  
  290.  
  291. # BASIC
  292.  
  293. config serial_port baud_rate 9600 auto_logout 10_minutes
  294. enable telnet 23
  295. enable web 80
  296.  
  297. # ACCOUNT LIST
  298.  
  299. create account admin admin
  300. naikboss
  301. naikboss
  302.  
  303.  
  304. # PASSWORD ENCRYPTION
  305.  
  306. disable password encryption
  307. config terminal_line default
  308.  
  309. # BNR
  310.  
  311. config command_prompt default
  312.  
  313. # STORM
  314.  
  315. config traffic control_trap none
  316. config traffic control 1-8 broadcast disable multicast disable unicast disable action drop threshold 128000
  317.  
  318. # LOOP_DETECT
  319.  
  320. enable loopdetect
  321. config loopdetect recover_timer 60
  322. config loopdetect interval 10
  323. config loopdetect mode port-based
  324. config loopdetect ports 1-50 state disabled
  325.  
  326. # GM
  327.  
  328. config sim candidate
  329. disable sim
  330. config sim dp_interval 30
  331. config sim hold_time 100
  332.  
  333. # SYSLOG
  334.  
  335. disable syslog
  336. config system_severity trap information
  337. config system_severity log information
  338.  
  339. # QOS
  340.  
  341. config scheduling 0 max_packet 0 max_latency 0
  342. config scheduling 1 max_packet 0 max_latency 0
  343. config scheduling 2 max_packet 0 max_latency 0
  344. config scheduling 3 max_packet 0 max_latency 0
  345. config 802.1p user_priority 0 1
  346. config 802.1p user_priority 1 0
  347. config 802.1p user_priority 2 0
  348. config 802.1p user_priority 3 1
  349. config 802.1p user_priority 4 2
  350. config 802.1p user_priority 5 2
  351. config 802.1p user_priority 6 3
  352. config 802.1p user_priority 7 3
  353. config 802.1p default_priority 1-50 0
  354. config bandwidth_control 1-50 rx_rate no_limit
  355. config bandwidth_control 1-50 tx_rate no_limit
  356.  
  357. # MIRROR
  358.  
  359. disable mirror
  360.  
  361. # TRAF-SEGMENTATION
  362.  
  363. config traffic_segmentation 1-50 forward_list 1-50
  364.  
  365. # PORT
  366.  
  367. config ports 1-48 speed auto flow_control enable mdix auto learning enable state enable trap enable
  368. config ports 49-50 medium_type copper speed auto flow_control enable mdix auto learning enable state enable trap enable
  369. config ports 49-50 medium_type fiber speed auto flow_control enable learning enable state enable trap enable
  370.  
  371. # PORT_LOCK
  372.  
  373. disable port_security trap_log
  374. config port_security ports 1-50 admin_state disable max_learning_addr 1 lock_address_mode DeleteOnReset
  375.  
  376. # 8021X
  377.  
  378. disable 802.1x
  379. config 802.1x capability ports 1-50 none
  380. config 802.1x auth_parameter ports 1-50 direction both port_control auto quiet_period 60 tx_period 30 supp_timeout 30 server_timeou
  381. t 30 max_req 2 reauth_period 3600 enable_reauth disable
  382.  
  383. # SNMPv3
  384.  
  385. delete snmp community public
  386. delete snmp community private
  387. delete snmp user initial
  388. delete snmp group initial
  389. delete snmp view restricted all
  390. delete snmp view CommunityView all
  391. config snmp engineID 800000ab030022b005da7c
  392. create snmp view restricted 1.3.6.1.2.1.1 view_type included
  393. create snmp view restricted 1.3.6.1.2.1.11 view_type included
  394. create snmp view restricted 1.3.6.1.6.3.10.2.1 view_type included
  395. create snmp view restricted 1.3.6.1.6.3.11.2.1 view_type included
  396. create snmp view restricted 1.3.6.1.6.3.15.1.1 view_type included
  397. create snmp view CommunityView 1 view_type included
  398. create snmp view CommunityView 1.3.6.1.6.3 view_type excluded
  399. create snmp view CommunityView 1.3.6.1.6.3.1 view_type included
  400. create snmp group initial v3 noauth_nopriv read_view restricted notify_view restricted
  401. create snmp group ReadGroup v1 read_view CommunityView notify_view CommunityView
  402. create snmp group ReadGroup v2c read_view CommunityView notify_view CommunityView
  403. create snmp group WriteGroup v1 read_view CommunityView write_view CommunityView notify_view CommunityView
  404. create snmp group WriteGroup v2c read_view CommunityView write_view CommunityView notify_view CommunityView
  405. create snmp community private view CommunityView read_write
  406. create snmp community public view CommunityView read_only
  407. create snmp user initial initial
  408.  
  409. # MANAGEMENT
  410.  
  411. enable snmp traps
  412. enable snmp authenticate traps
  413. config snmp system_name D-Link
  414. disable rmon
  415.  
  416. # VLAN
  417.  
  418. disable asymmetric_vlan
  419. config vlan default delete 1-50
  420. config vlan default add untagged 1-44,49-50
  421. config vlan default advertisement enable
  422. create vlan wifi tag 2
  423. config vlan wifi add tagged 31,49-50
  424. config vlan wifi add untagged 45-48
  425. config vlan wifi advertisement disable
  426. disable gvrp
  427. config gvrp 1-44,49-50 state disable ingress_checking enable acceptable_frame admit_all pvid 1
  428. config gvrp 45-48 state disable ingress_checking enable acceptable_frame admit_all pvid 2
  429.  
  430. # FDB
  431.  
  432. config fdb aging_time 300
  433. config multicast port_filtering_mode 1-50 forward_unregistered_groups
  434.  
  435. # MAC_ADDRESS_TABLE_NOTIFICATION
  436.  
  437. config mac_notification interval 1 historysize 1
  438. disable mac_notification
  439. config mac_notification ports 1-50 disable
  440.  
  441. # STP
  442.  
  443. config stp version rstp
  444. config stp maxage 20 maxhops 20 forwarddelay 15 txholdcount 6 fbpdu enable
  445. config stp priority 32768 instance_id 0
  446. config stp hellotime 2
  447. config stp mst_config_id name 00:22:B0:05:DA:7C revision_level 0
  448. disable stp
  449. config stp ports 1-50 externalCost auto edge false p2p auto state enable
  450. config stp ports 1-50 fbpdu disable
  451. config stp ports 1-50 restricted_role false
  452. config stp ports 1-50 restricted_tcn false
  453. config stp mst_ports 1-50 instance_id 0 internalCost auto priority 128
  454.  
  455. # SSH
  456.  
  457. config ssh server maxsession 8
  458. config ssh server contimeout 300
  459. config ssh server authfail 2
  460. config ssh server rekey never
  461. config ssh server port 22
  462. disable ssh
  463.  
  464. # SSL
  465.  
  466. disable ssl
  467. enable ssl ciphersuite RSA_with_RC4_128_MD5
  468. enable ssl ciphersuite RSA_with_3DES_EDE_CBC_SHA
  469. enable ssl ciphersuite DHE_DSS_with_3DES_EDE_CBC_SHA
  470. enable ssl ciphersuite RSA_EXPORT_with_RC4_40_MD5
  471. config ssl cachetimeout timeout 600
  472.  
  473. # SAFE_GUARD
  474.  
  475. config safeguard_engine state disable cpu_utilization rising_threshold 100 falling_threshold 20 trap_log disable
  476.  
  477. # TIMERANGE
  478.  
  479.  
  480. # ACL
  481.  
  482. disable cpu_interface_filtering
  483.  
  484. # SNTP
  485.  
  486. disable sntp
  487. config time_zone operator - hour 6 min 0
  488. config sntp primary 0.0.0.0 secondary 0.0.0.0 poll-interval 720
  489. config dst disable
  490.  
  491. # IPBIND
  492. disable address_binding acl_mode
  493. disable address_binding trap_log
  494. disable address_binding dhcp_snoop
  495. config address_binding dhcp_snoop max_entry ports 1-50 limit 5
  496.  
  497.  
  498. # FILTER
  499.  
  500.  
  501. # ARP_Spoofing_Prevention
  502.  
  503.  
  504. # ROUTE
  505.  
  506. create iproute default 192.168.0.1 1
  507.  
  508. # SNOOP
  509.  
  510. disable igmp_snooping
  511. config igmp_snooping default host_timeout 260 router_timeout 260 leave_timer 2 state disable
  512. config igmp_snooping querier default query_interval 125 max_response_time 10 robustness_variable 2
  513. config igmp_snooping querier default last_member_query_interval 1 state disable
  514. config igmp_snooping wifi host_timeout 260 router_timeout 260 leave_timer 2 state disable
  515. config igmp_snooping querier wifi query_interval 125 max_response_time 10 robustness_variable 2
  516. config igmp_snooping querier wifi last_member_query_interval 1 state disable
  517. config limited_multicast_addr ports 1-50 access deny state disable
  518.  
  519. # LACP
  520.  
  521. config link_aggregation algorithm mac_source
  522. config lacp_port 1-50 mode passive
  523.  
  524. # GVLAN
  525.  
  526.  
  527. # IP
  528.  
  529. config ipif System vlan default ipaddress 192.168.0.80/24 state enabled
  530. disable autoconfig
  531.  
  532. # ARP
  533.  
  534. config arp_aging time 20
  535. config gratuitous_arp send ipif_status_up enable
  536. config gratuitous_arp send dup_ip_detected enable
  537. config gratuitous_arp learning enable
  538.  
  539. # LLDP
  540.  
  541. disable lldp
  542. config lldp message_tx_interval 30
  543. config lldp tx_delay 2
  544. config lldp message_tx_hold_multiplier 4
  545. config lldp reinit_delay 2
  546. config lldp notification_interval 5
  547. config lldp ports 1-50 notification disable
  548. config lldp ports 1-50 admin_status tx_and_rx
  549.  
  550. # ACCESS_AUTHENTICATION_CONTROL
  551.  
  552. config authen_login default method local
  553. config authen_enable default method local_enable
  554. config authen application console login default
  555. config authen application console enable default
  556. config authen application telnet login default
  557. config authen application telnet enable default
  558. config authen application ssh login default
  559. config authen application ssh enable default
  560. config authen application http login default
  561. config authen application http enable default
  562. config authen parameter response_timeout 0
  563. config authen parameter attempt 3
  564. config authen enable_admin all state enable
  565. disable authen_policy
  566.  
  567. # DHCP_RELAY
  568.  
  569. disable dhcp_relay
  570. config dhcp_relay hops 4 time 0
  571. config dhcp_relay option_82 state disable
  572. config dhcp_relay option_82 check disable
  573. config dhcp_relay option_82 policy replace
  574. config dhcp_relay option_82 remote_id default
  575. config dhcp_relay option_60 state disable
  576. config dhcp_relay option_60 default mode drop
  577. config dhcp_relay option_61 state disable
  578. config dhcp_relay option_61 default drop
  579.  
  580. # DHCP_LOCAL_RELAY
  581.  
  582. disable dhcp_local_relay
  583.  
  584. #-------------------------------------------------------------------
  585. # End of configuration file for DES-3550
  586. #-------------------------------------------------------------------
  587.  
  588. DES-3550:admin#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement