Advertisement
Guest User

Untitled

a guest
Jun 11th, 2024
66
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 19.83 KB | None | 0 0
  1. ## Last commit: 2023-11-14 18:09:17 CST by admin
  2. version 12.3R12.4;
  3. groups {
  4. MDC-TACACS {
  5. system {
  6. tacplus-server {
  7. 10.20.11.2 {
  8. secret "fake secret"; ## SECRET-DATA
  9. timeout 2;
  10. }
  11. }
  12. }
  13. }
  14. }
  15. system {
  16. host-name mdc-sw1-prod;
  17. domain-name mgmt.mdc.com;
  18. time-zone America/Chicago;
  19. authentication-order tacplus;
  20. root-authentication {
  21. encrypted-password "fake password"; ## SECRET-DATA
  22. }
  23. name-server {
  24. 10.20.11.2;
  25. }
  26. accounting {
  27. events [ login change-log interactive-commands ];
  28. destination {
  29. tacplus {
  30. server {
  31. 10.20.11.2;
  32. }
  33. }
  34. }
  35. }
  36. login {
  37. message "\n########################################################################\n# THIS SYSTEM IS RESTRICTED TO AUTHORIZED USAGE! #\n# #\n# Unauthorized usage will be subject to criminal penalties, fines, #\n# damages and/or disciplinary action. If you are not authorized to use #\n# this system, you must exit immediately. If you are authorized to #\n# use this system, you must do so in compliance with all laws, #\n# regulations, conduct rules, and company security policies applicable #\n# to this system. This system, including any hardware components, #\n# software, workstations, and storage spaces is subject to monitoring #\n# and search without advanced notice. Users should have no expectation #\n# of privacy in their use of any aspect of this system. #\n########################################################################\n\n";
  38. retry-options {
  39. tries-before-disconnect 3;
  40. backoff-threshold 2;
  41. lockout-period 5;
  42. }
  43. user admin {
  44. full-name Administrator;
  45. uid 2000;
  46. class super-user;
  47. authentication {
  48. encrypted-password "fake password"; ## SECRET-DATA
  49. }
  50. }
  51. user remote {
  52. uid 2001;
  53. class superuser;
  54. }
  55. }
  56. services {
  57. ssh {
  58. root-login deny;
  59. protocol-version v2;
  60. }
  61. web-management {
  62. http {
  63. interface vlan.1016;
  64. }
  65. }
  66. dhcp {
  67. traceoptions {
  68. file dhcp_logfile;
  69. level all;
  70. flag all;
  71. }
  72. }
  73. }
  74. syslog {
  75. user * {
  76. any emergency;
  77. }
  78. host 10.20.11.2 {
  79. any any;
  80. }
  81. file messages {
  82. any notice;
  83. authorization info;
  84. }
  85. file interactive-commands {
  86. interactive-commands any;
  87. }
  88. time-format year millisecond;
  89. }
  90. ntp;
  91. }
  92. chassis {
  93. auto-image-upgrade;
  94. }
  95. interfaces {
  96. ge-0/0/0 {
  97. unit 0 {
  98. family ethernet-switching {
  99. port-mode trunk;
  100. vlan {
  101. members all;
  102. }
  103. }
  104. }
  105. }
  106. ge-0/0/1 {
  107. disable;
  108. unit 0 {
  109. description Access;
  110. family ethernet-switching {
  111. port-mode access;
  112. vlan {
  113. members VLAN3616;
  114. }
  115. }
  116. }
  117. }
  118. ge-0/0/2 {
  119. disable;
  120. unit 0 {
  121. description Access;
  122. family ethernet-switching {
  123. port-mode access;
  124. vlan {
  125. members VLAN3616;
  126. }
  127. }
  128. }
  129. }
  130. ge-0/0/3 {
  131. disable;
  132. unit 0 {
  133. description Access;
  134. family ethernet-switching {
  135. port-mode access;
  136. vlan {
  137. members VLAN3616;
  138. }
  139. }
  140. }
  141. }
  142. ge-0/0/4 {
  143. disable;
  144. unit 0 {
  145. description Access;
  146. family ethernet-switching {
  147. port-mode access;
  148. vlan {
  149. members VLAN3616;
  150. }
  151. }
  152. }
  153. }
  154. ge-0/0/5 {
  155. disable;
  156. unit 0 {
  157. description Access;
  158. family ethernet-switching {
  159. port-mode access;
  160. vlan {
  161. members VLAN3616;
  162. }
  163. }
  164. }
  165. }
  166. ge-0/0/6 {
  167. disable;
  168. unit 0 {
  169. description Access;
  170. family ethernet-switching {
  171. port-mode access;
  172. vlan {
  173. members VLAN3616;
  174. }
  175. }
  176. }
  177. }
  178. ge-0/0/7 {
  179. disable;
  180. unit 0 {
  181. description Access;
  182. family ethernet-switching {
  183. port-mode access;
  184. vlan {
  185. members VLAN3616;
  186. }
  187. }
  188. }
  189. }
  190. ge-0/0/8 {
  191. disable;
  192. unit 0 {
  193. description Access;
  194. family ethernet-switching {
  195. port-mode access;
  196. vlan {
  197. members VLAN3616;
  198. }
  199. }
  200. }
  201. }
  202. ge-0/0/9 {
  203. disable;
  204. unit 0 {
  205. description Access;
  206. family ethernet-switching {
  207. port-mode access;
  208. vlan {
  209. members VLAN3616;
  210. }
  211. }
  212. }
  213. }
  214. ge-0/0/10 {
  215. disable;
  216. unit 0 {
  217. description Access;
  218. family ethernet-switching {
  219. port-mode access;
  220. vlan {
  221. members VLAN3616;
  222. }
  223. }
  224. }
  225. }
  226. ge-0/0/11 {
  227. disable;
  228. unit 0 {
  229. description Access;
  230. family ethernet-switching {
  231. port-mode access;
  232. vlan {
  233. members VLAN3616;
  234. }
  235. }
  236. }
  237. }
  238. ge-0/0/12 {
  239. disable;
  240. unit 0 {
  241. description Access;
  242. family ethernet-switching {
  243. port-mode access;
  244. vlan {
  245. members VLAN3616;
  246. }
  247. }
  248. }
  249. }
  250. ge-0/0/13 {
  251. disable;
  252. unit 0 {
  253. description Access;
  254. family ethernet-switching {
  255. port-mode access;
  256. vlan {
  257. members VLAN3616;
  258. }
  259. }
  260. }
  261. }
  262. ge-0/0/14 {
  263. disable;
  264. unit 0 {
  265. description Access;
  266. family ethernet-switching {
  267. port-mode access;
  268. vlan {
  269. members VLAN3616;
  270. }
  271. }
  272. }
  273. }
  274. ge-0/0/15 {
  275. disable;
  276. unit 0 {
  277. description Access;
  278. family ethernet-switching {
  279. port-mode access;
  280. vlan {
  281. members VLAN3616;
  282. }
  283. }
  284. }
  285. }
  286. ge-0/0/16 {
  287. disable;
  288. unit 0 {
  289. description Access;
  290. family ethernet-switching {
  291. port-mode access;
  292. vlan {
  293. members VLAN3616;
  294. }
  295. }
  296. }
  297. }
  298. ge-0/0/17 {
  299. disable;
  300. unit 0 {
  301. description Access;
  302. family ethernet-switching {
  303. port-mode access;
  304. vlan {
  305. members VLAN3616;
  306. }
  307. }
  308. }
  309. }
  310. ge-0/0/18 {
  311. disable;
  312. unit 0 {
  313. description Access;
  314. family ethernet-switching {
  315. port-mode access;
  316. vlan {
  317. members VLAN3616;
  318. }
  319. }
  320. }
  321. }
  322. ge-0/0/19 {
  323. disable;
  324. unit 0 {
  325. description Access;
  326. family ethernet-switching {
  327. port-mode access;
  328. vlan {
  329. members VLAN3616;
  330. }
  331. }
  332. }
  333. }
  334. ge-0/0/20 {
  335. disable;
  336. unit 0 {
  337. description Access;
  338. family ethernet-switching {
  339. port-mode access;
  340. vlan {
  341. members VLAN3616;
  342. }
  343. }
  344. }
  345. }
  346. ge-0/0/21 {
  347. disable;
  348. unit 0 {
  349. description Access;
  350. family ethernet-switching {
  351. port-mode access;
  352. vlan {
  353. members VLAN3616;
  354. }
  355. }
  356. }
  357. }
  358. ge-0/0/22 {
  359. disable;
  360. unit 0 {
  361. description Access;
  362. family ethernet-switching {
  363. port-mode access;
  364. vlan {
  365. members VLAN3616;
  366. }
  367. }
  368. }
  369. }
  370. ge-0/0/23 {
  371. disable;
  372. unit 0 {
  373. description Access;
  374. family ethernet-switching {
  375. port-mode access;
  376. vlan {
  377. members VLAN3616;
  378. }
  379. }
  380. }
  381. }
  382. ge-0/0/24 {
  383. disable;
  384. unit 0 {
  385. description Access;
  386. family ethernet-switching {
  387. port-mode access;
  388. vlan {
  389. members VLAN3616;
  390. }
  391. }
  392. }
  393. }
  394. ge-0/0/25 {
  395. disable;
  396. unit 0 {
  397. description Access;
  398. family ethernet-switching {
  399. port-mode access;
  400. vlan {
  401. members VLAN3616;
  402. }
  403. }
  404. }
  405. }
  406. ge-0/0/26 {
  407. disable;
  408. unit 0 {
  409. description Access;
  410. family ethernet-switching {
  411. port-mode access;
  412. vlan {
  413. members VLAN3616;
  414. }
  415. }
  416. }
  417. }
  418. ge-0/0/27 {
  419. disable;
  420. unit 0 {
  421. description Access;
  422. family ethernet-switching {
  423. port-mode access;
  424. vlan {
  425. members VLAN3616;
  426. }
  427. }
  428. }
  429. }
  430. ge-0/0/28 {
  431. disable;
  432. unit 0 {
  433. description Access;
  434. family ethernet-switching {
  435. port-mode access;
  436. vlan {
  437. members VLAN3616;
  438. }
  439. }
  440. }
  441. }
  442. ge-0/0/29 {
  443. disable;
  444. unit 0 {
  445. description Access;
  446. family ethernet-switching {
  447. port-mode access;
  448. vlan {
  449. members VLAN3616;
  450. }
  451. }
  452. }
  453. }
  454. ge-0/0/30 {
  455. disable;
  456. unit 0 {
  457. description Access;
  458. family ethernet-switching {
  459. port-mode access;
  460. vlan {
  461. members VLAN3616;
  462. }
  463. }
  464. }
  465. }
  466. ge-0/0/31 {
  467. disable;
  468. unit 0 {
  469. description Access;
  470. family ethernet-switching {
  471. port-mode access;
  472. vlan {
  473. members VLAN3616;
  474. }
  475. }
  476. }
  477. }
  478. ge-0/0/32 {
  479. disable;
  480. unit 0 {
  481. description Access;
  482. family ethernet-switching {
  483. port-mode access;
  484. vlan {
  485. members VLAN3616;
  486. }
  487. }
  488. }
  489. }
  490. ge-0/0/33 {
  491. disable;
  492. unit 0 {
  493. description Access;
  494. family ethernet-switching {
  495. port-mode access;
  496. vlan {
  497. members VLAN3616;
  498. }
  499. }
  500. }
  501. }
  502. ge-0/0/34 {
  503. disable;
  504. unit 0 {
  505. description Access;
  506. family ethernet-switching {
  507. port-mode access;
  508. vlan {
  509. members VLAN3616;
  510. }
  511. }
  512. }
  513. }
  514. ge-0/0/35 {
  515. disable;
  516. unit 0 {
  517. description Access;
  518. family ethernet-switching {
  519. port-mode access;
  520. vlan {
  521. members VLAN3616;
  522. }
  523. }
  524. }
  525. }
  526. ge-0/0/36 {
  527. disable;
  528. unit 0 {
  529. description Access;
  530. family ethernet-switching {
  531. port-mode access;
  532. vlan {
  533. members VLAN3616;
  534. }
  535. }
  536. }
  537. }
  538. ge-0/0/37 {
  539. disable;
  540. unit 0 {
  541. description Access;
  542. family ethernet-switching {
  543. port-mode access;
  544. vlan {
  545. members VLAN3616;
  546. }
  547. }
  548. }
  549. }
  550. ge-0/0/38 {
  551. disable;
  552. unit 0 {
  553. description Access;
  554. family ethernet-switching {
  555. port-mode access;
  556. vlan {
  557. members VLAN3616;
  558. }
  559. }
  560. }
  561. }
  562. ge-0/0/39 {
  563. disable;
  564. unit 0 {
  565. description Access;
  566. family ethernet-switching {
  567. port-mode access;
  568. vlan {
  569. members VLAN3616;
  570. }
  571. }
  572. }
  573. }
  574. ge-0/0/40 {
  575. disable;
  576. unit 0 {
  577. description Access;
  578. family ethernet-switching {
  579. port-mode access;
  580. vlan {
  581. members VLAN3616;
  582. }
  583. }
  584. }
  585. }
  586. ge-0/0/41 {
  587. disable;
  588. unit 0 {
  589. description Access;
  590. family ethernet-switching {
  591. port-mode access;
  592. vlan {
  593. members VLAN3616;
  594. }
  595. }
  596. }
  597. }
  598. ge-0/0/42 {
  599. disable;
  600. unit 0 {
  601. description Access;
  602. family ethernet-switching {
  603. port-mode access;
  604. vlan {
  605. members VLAN3616;
  606. }
  607. }
  608. }
  609. }
  610. ge-0/0/43 {
  611. disable;
  612. unit 0 {
  613. description Access;
  614. family ethernet-switching {
  615. port-mode access;
  616. vlan {
  617. members VLAN3616;
  618. }
  619. }
  620. }
  621. }
  622. ge-0/0/44 {
  623. disable;
  624. unit 0 {
  625. description Access;
  626. family ethernet-switching {
  627. port-mode access;
  628. vlan {
  629. members VLAN3616;
  630. }
  631. }
  632. }
  633. }
  634. ge-0/0/45 {
  635. unit 0 {
  636. description VLAN2328;
  637. family ethernet-switching {
  638. port-mode access;
  639. vlan {
  640. members VLAN2328;
  641. }
  642. }
  643. }
  644. }
  645. ge-0/0/46 {
  646. unit 0 {
  647. description VLAN3516;
  648. family ethernet-switching {
  649. port-mode access;
  650. vlan {
  651. members VLAN3516;
  652. }
  653. }
  654. }
  655. }
  656. ge-0/0/47 {
  657. unit 0 {
  658. description VLAN2116;
  659. family ethernet-switching {
  660. port-mode access;
  661. vlan {
  662. members VLAN2116;
  663. }
  664. }
  665. }
  666. }
  667. ge-0/1/0 {
  668. unit 0 {
  669. description Trunk;
  670. family ethernet-switching {
  671. port-mode trunk;
  672. vlan {
  673. members all;
  674. }
  675. native-vlan-id 999;
  676. }
  677. }
  678. }
  679. ge-0/1/1 {
  680. unit 0 {
  681. description Trunk;
  682. family ethernet-switching {
  683. port-mode trunk;
  684. vlan {
  685. members all;
  686. }
  687. native-vlan-id 999;
  688. }
  689. }
  690. }
  691. ge-0/1/2 {
  692. ether-options {
  693. 802.3ad ae3;
  694. }
  695. }
  696. ge-0/1/3 {
  697. ether-options {
  698. 802.3ad ae3;
  699. }
  700. }
  701. ae3 {
  702. description "LACP Core 1";
  703. aggregated-ether-options {
  704. lacp {
  705. active;
  706. }
  707. }
  708. unit 0 {
  709. family ethernet-switching {
  710. port-mode trunk;
  711. vlan {
  712. members all;
  713. }
  714. native-vlan-id 999;
  715. }
  716. }
  717. }
  718. me0 {
  719. unit 0 {
  720. family inet {
  721. address 10.192.0.5/24;
  722. }
  723. }
  724. }
  725. vlan {
  726. unit 0 {
  727. family inet {
  728. dhcp {
  729. vendor-id Juniper-ex2200-48p-4g;
  730. }
  731. }
  732. }
  733. unit 1016 {
  734. family inet {
  735. address 10.10.16.6/24;
  736. }
  737. }
  738. }
  739. }
  740. snmp {
  741. description "MDC Edge Switch 1";
  742. location "MDC 327 Rack 1";
  743. filter-duplicates;
  744. community fakeRO {
  745. authorization read-only;
  746. }
  747. community fakeRW {
  748. authorization read-write;
  749. }
  750. trap-group PRTG {
  751. version v2;
  752. categories {
  753. authentication;
  754. chassis;
  755. link;
  756. remote-operations;
  757. routing;
  758. startup;
  759. rmon-alarm;
  760. configuration;
  761. }
  762. targets {
  763. 10.20.11.2;
  764. }
  765. }
  766. }
  767. routing-options {
  768. static {
  769. route 0.0.0.0/0 next-hop 10.10.16.1;
  770. }
  771. }
  772. protocols {
  773. lacp {
  774. traceoptions {
  775. file lacp.log;
  776. flag all;
  777. }
  778. }
  779. igmp-snooping {
  780. vlan all;
  781. }
  782. rstp;
  783. lldp {
  784. interface all;
  785. }
  786. lldp-med {
  787. interface all;
  788. }
  789. }
  790. ethernet-switching-options {
  791. secure-access-port {
  792. interface ge-0/0/46.0 {
  793. mac-limit 1 action drop;
  794. allowed-mac A:B:C:D:E:F;
  795. }
  796. vlan VLAN1016 {
  797. no-arp-inspection;
  798. no-examine-dhcp;
  799. }
  800. vlan all {
  801. arp-inspection;
  802. examine-dhcp;
  803. }
  804. }
  805. storm-control {
  806. interface all;
  807. }
  808. }
  809. vlans {
  810. VLAN1016 {
  811. description Network-Mgmt;
  812. vlan-id 1016;
  813. l3-interface vlan.1016;
  814. }
  815. VLAN1316 {
  816. description VoIP-Active;
  817. vlan-id 1316;
  818. }
  819. VLAN1320 {
  820. description VoIP-Deadend;
  821. vlan-id 1320;
  822. }
  823. VLAN2020 {
  824. description Security-Devices;
  825. vlan-id 2020;
  826. }
  827. VLAN2116 {
  828. description Printers;
  829. vlan-id 2116;
  830. }
  831. VLAN2328 {
  832. description IoT;
  833. vlan-id 2328;
  834. }
  835. VLAN3310 {
  836. description Trusted-Wired;
  837. vlan-id 3310;
  838. }
  839. VLAN3516 {
  840. description ITS-Admins;
  841. vlan-id 3516;
  842. }
  843. VLAN3524 {
  844. description ITS-Staff;
  845. vlan-id 3524;
  846. }
  847. VLAN3616 {
  848. description Guest-Wired;
  849. vlan-id 3616;
  850. }
  851. VLAN3638 {
  852. description Access-Restrict;
  853. vlan-id 3638;
  854. }
  855. VLAN999 {
  856. description Native;
  857. vlan-id 999;
  858. }
  859. default {
  860. l3-interface vlan.0;
  861. }
  862. }
  863. poe {
  864. interface all;
  865. }
  866.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement