Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- firewall {
- broadcast-ping disable
- group {
- }
- ipv6-receive-redirects disable
- ipv6-src-route disable
- ip-src-route disable
- receive-redirects disable
- twa-hazards-protection enable
- }
- high-availability {
- vrrp {
- group MGMT_Gateway {
- address 10.50.0.1/24 {
- }
- interface eth3.500
- no-preempt
- priority 100
- vrid 100
- }
- group VM_MGMT_vlan501 {
- address 10.50.1.1/24 {
- }
- interface eth3.501
- preempt-delay 60
- priority 100
- vrid 11
- }
- group VM_services {
- address 10.50.3.1/24 {
- }
- interface eth3.503
- priority 100
- vrid 13
- }
- group cust01_vlan502 {
- address 10.50.2.1/24 {
- }
- interface eth3.502
- priority 100
- vrid 12
- }
- group gc-vyos-vip-01 {
- address XXX.XXX.XX.24/23 {
- }
- authentication {
- password XXXXXXX
- type plaintext-password
- }
- interface eth0
- preempt-delay 60
- priority 100
- vrid 10
- }
- }
- }
- interfaces {
- ethernet eth0 {
- address XXX.XXX.XX.23/24
- description "Core: Management"
- hw-id be:14:43:64:b3:06
- }
- ethernet eth1 {
- address 169.254.0.5/31
- description "XVR: Link to XXXXXXX-vm-fw-a"
- hw-id d6:c5:4b:ce:f7:cf
- }
- ethernet eth2 {
- address 172.30.21.7/31
- description "Core: XXXXXXX<->XXXXXXX/NY(sec xconnect)"
- hw-id e6:3c:8e:94:ea:4e
- }
- ethernet eth3 {
- description "Cust: App Servers"
- hw-id ba:d1:3c:7c:13:1e
- vif 500 {
- address 10.50.0.3/24
- description "Physical Management vlan500"
- }
- vif 501 {
- address 10.50.1.3/24
- description "VM Management vlan501"
- }
- vif 502 {
- address 10.50.2.3/24
- }
- vif 503 {
- address 10.50.3.3/24
- description "VM services (DNS/NTP etc) vlan503"
- }
- }
- ethernet eth4 {
- address 169.254.0.2/31
- description "Core: XXXXXXX<->XXXXXXX/AZ(gc-rt-az-02/ge-0/0/2.0)"
- hw-id e6:69:61:0d:f6:5d
- policy {
- route RRRR-OUT-502
- }
- }
- loopback lo {
- address 169.254.1.2/32
- address XXX.XXX.XX.82/32
- address 169.254.2.2/32
- }
- tunnel tun10 {
- address 10.10.10.6/30
- description "XXXXXXX "
- encapsulation gre
- policy {
- route TTTT-OUT-502
- }
- remote 161.30.14.123
- source-address XXX.XXX.XX.82
- }
- tunnel tun11 {
- address 10.10.10.14/30
- description "XXXXXXX "
- encapsulation gre
- policy {
- route TTTT-OUT-502
- }
- remote 161.30.18.123
- source-address XXX.XXX.XX.82
- }
- }
- nat {
- destination {
- rule 21 {
- description ""
- destination {
- port 16011
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.0.21
- port 8006
- }
- }
- rule 22 {
- description ""
- destination {
- port 16012
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.0.22
- port 8006
- }
- }
- rule 23 {
- description "NRPE 5666 - XXXXXXX-hv-a - 5772"
- destination {
- port 5772
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.0.21
- port 5666
- }
- }
- rule 24 {
- description "NRPE 5666 - XXXXXXX-hv-b - 5773"
- destination {
- port 5773
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.0.22
- port 5666
- }
- }
- rule 25 {
- description "NRPE 5666 - XXXXXXX-5774"
- destination {
- port 5774
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.51
- port 5666
- }
- }
- rule 26 {
- description "NRPE 5666 - XXXXXXX-5775"
- destination {
- port 5775
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.52
- port 5666
- }
- }
- rule 27 {
- description "SSH 22 - XXXXXXX-hv-a - 2223"
- destination {
- port 2223
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.0.21
- port 22
- }
- }
- rule 28 {
- description "SSH 22 - XXXXXXX-hv-b - 2224"
- destination {
- port 2224
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.0.22
- port 22
- }
- }
- rule 29 {
- description "SSH 22 - XXXXXXX-a - 2230"
- destination {
- port 2230
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.51
- port 22
- }
- }
- rule 30 {
- description "SSH 22 - XXXXXXX-b - 2231"
- destination {
- port 2231
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.52
- port 22
- }
- }
- rule 31 {
- description "SSH 22 - XXXXXXX-util-a - 2232"
- destination {
- port 2232
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.10
- port 22
- }
- }
- rule 32 {
- description "NRPE 5666 - XXXXXXX-util-a - 5776"
- destination {
- port 5776
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.10
- port 5666
- }
- }
- rule 33 {
- description "SSH 22 - XXXXXXX-logstash-01 - 2233"
- destination {
- port 2233
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.20
- port 22
- }
- }
- rule 34 {
- description "NRPE 5666 - XXXXXXX-logstash-01 - 5777"
- destination {
- port 5777
- }
- inbound-interface eth0
- protocol tcp
- translation {
- address 10.50.1.20
- port 5666
- }
- }
- }
- source {
- rule 20 {
- outbound-interface eth0
- source {
- address 10.50.0.0/16
- }
- translation {
- address masquerade
- }
- }
- }
- }
- policy {
- prefix-list v4-peer-172_26_169_247-in {
- description "Prefixes accepted from 172.26.169.247"
- rule 10 {
- action permit
- le 32
- prefix 192.168.64.0/18
- }
- rule 15 {
- action permit
- prefix 172.27.124.1/32
- }
- rule 20 {
- action permit
- prefix 172.27.124.2/32
- }
- rule 25 {
- action permit
- prefix 192.168.127.253/32
- }
- rule 30 {
- action permit
- prefix 192.168.127.254/32
- }
- rule 35 {
- action permit
- prefix 172.26.252.1/32
- }
- rule 40 {
- action permit
- prefix 172.26.252.2/32
- }
- rule 200 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4-peer-172_26_169_247-out {
- description "Prefixes sent to 172.26.169.247"
- rule 10 {
- action permit
- prefix 0.0.0.0/0
- }
- rule 20 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4-peer-172_27_41_247-in {
- description "Prefixes accepted from 172.27.41.247"
- rule 10 {
- action permit
- le 32
- prefix 192.168.64.0/18
- }
- rule 15 {
- action permit
- prefix 172.27.124.1/32
- }
- rule 20 {
- action permit
- prefix 172.27.124.2/32
- }
- rule 25 {
- action permit
- prefix 192.168.127.253/32
- }
- rule 30 {
- action permit
- prefix 192.168.127.254/32
- }
- rule 35 {
- action permit
- prefix 172.26.252.1/32
- }
- rule 40 {
- action permit
- prefix 172.26.252.2/32
- }
- rule 200 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4-peer-172_27_41_247-out {
- description "Prefixes sent to 172.27.41.247"
- rule 10 {
- action permit
- prefix 0.0.0.0/0
- }
- rule 20 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4-peer-172_30_21_6-in {
- description "Prefixes accepted from 172.30.21.6"
- rule 10 {
- action permit
- prefix 161.30.14.0/24
- }
- rule 11 {
- action permit
- prefix 161.30.15.0/24
- }
- rule 12 {
- action permit
- prefix 161.30.18.0/24
- }
- rule 13 {
- action permit
- prefix 161.30.18.88/29
- }
- rule 14 {
- action permit
- prefix 161.30.18.128/25
- }
- rule 20 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4-peer-172_30_21_6-out {
- description "Prefixes sent to 172.30.21.6"
- rule 10 {
- action permit
- prefix XXX.XXX.XX.81/32
- }
- rule 15 {
- action permit
- prefix XXX.XXX.XX.82/32
- }
- rule 20 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4_connected2bgp_primary {
- rule 25 {
- action permit
- prefix XXX.XXX.XX.82/32
- }
- rule 30 {
- action permit
- prefix 10.10.10.4/30
- }
- rule 35 {
- action permit
- prefix 10.10.10.12/30
- }
- rule 40 {
- action permit
- prefix 169.254.2.2/32
- }
- rule 1000 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4_connected2bgp_secondary {
- rule 1000 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4_static2bgp_primary {
- rule 5 {
- action permit
- prefix 0.0.0.0/0
- }
- rule 10 {
- action permit
- prefix 172.26.169.247/32
- }
- rule 15 {
- action permit
- prefix 172.27.41.247/32
- }
- rule 1000 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- prefix-list v4_static2bgp_secondary {
- rule 1000 {
- action deny
- le 32
- prefix 0.0.0.0/0
- }
- }
- route TTTT-OUT-502 {
- rule 16 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 16
- }
- source {
- address 192.168.64.0/30
- }
- }
- rule 17 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 17
- }
- source {
- address 192.168.64.4/30
- }
- }
- rule 18 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 18
- }
- source {
- address 192.168.64.8/30
- }
- }
- rule 19 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 19
- }
- source {
- address 192.168.64.12/30
- }
- }
- rule 20 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 20
- }
- source {
- address 192.168.64.16/30
- }
- }
- rule 21 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 21
- }
- source {
- address 192.168.64.20/30
- }
- }
- rule 22 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 22
- }
- source {
- address 192.168.64.24/30
- }
- }
- rule 23 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 23
- }
- source {
- address 192.168.64.28/30
- }
- }
- rule 24 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 24
- }
- source {
- address 192.168.64.32/30
- }
- }
- rule 25 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 25
- }
- source {
- address 192.168.64.36/30
- }
- }
- rule 26 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 26
- }
- source {
- address 192.168.64.40/30
- }
- }
- rule 27 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 27
- }
- source {
- address 192.168.64.44/30
- }
- }
- rule 28 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 28
- }
- source {
- address 192.168.64.48/30
- }
- }
- rule 29 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 29
- }
- source {
- address 192.168.64.52/30
- }
- }
- rule 30 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 30
- }
- source {
- address 192.168.64.56/30
- }
- }
- rule 31 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 31
- }
- source {
- address 192.168.64.60/30
- }
- }
- rule 32 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 32
- }
- source {
- address 192.168.64.64/30
- }
- }
- rule 33 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 33
- }
- source {
- address 192.168.64.68/30
- }
- }
- rule 34 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 34
- }
- source {
- address 192.168.64.72/30
- }
- }
- rule 35 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 35
- }
- source {
- address 192.168.64.76/30
- }
- }
- rule 36 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 36
- }
- source {
- address 192.168.64.80/30
- }
- }
- rule 37 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 37
- }
- source {
- address 192.168.64.84/30
- }
- }
- rule 38 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 38
- }
- source {
- address 192.168.64.88/30
- }
- }
- rule 39 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 39
- }
- source {
- address 192.168.64.92/30
- }
- }
- rule 40 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 40
- }
- source {
- address 192.168.64.96/30
- }
- }
- rule 41 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 41
- }
- source {
- address 192.168.64.100/30
- }
- }
- rule 42 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 42
- }
- source {
- address 192.168.64.104/30
- }
- }
- rule 43 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 43
- }
- source {
- address 192.168.64.108/30
- }
- }
- rule 44 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 44
- }
- source {
- address 192.168.64.112/30
- }
- }
- rule 45 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 45
- }
- source {
- address 192.168.64.116/30
- }
- }
- rule 46 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 46
- }
- source {
- address 192.168.64.120/30
- }
- }
- rule 47 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 47
- }
- source {
- address 192.168.64.124/30
- }
- }
- rule 48 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 48
- }
- source {
- address 192.168.64.128/29
- }
- }
- rule 49 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 49
- }
- source {
- address 192.168.64.136/29
- }
- }
- rule 50 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 50
- }
- source {
- address 192.168.64.144/29
- }
- }
- rule 51 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 51
- }
- source {
- address 192.168.64.152/29
- }
- }
- rule 52 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 52
- }
- source {
- address 192.168.64.160/29
- }
- }
- rule 53 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 53
- }
- source {
- address 192.168.64.168/29
- }
- }
- rule 54 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 54
- }
- source {
- address 192.168.64.176/29
- }
- }
- rule 55 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 55
- }
- source {
- address 192.168.64.184/29
- }
- }
- rule 56 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 56
- }
- source {
- address 192.168.64.192/29
- }
- }
- rule 57 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 57
- }
- source {
- address 192.168.64.200/29
- }
- }
- rule 58 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 58
- }
- source {
- address 192.168.64.208/29
- }
- }
- rule 59 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 59
- }
- source {
- address 192.168.64.216/29
- }
- }
- rule 60 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 60
- }
- source {
- address 192.168.64.224/29
- }
- }
- rule 61 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 61
- }
- source {
- address 192.168.64.232/29
- }
- }
- rule 62 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 62
- }
- source {
- address 192.168.64.240/29
- }
- }
- rule 63 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 63
- }
- source {
- address 192.168.64.248/29
- }
- }
- rule 64 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 64
- }
- source {
- address 192.168.65.0/28
- }
- }
- rule 65 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 65
- }
- source {
- address 192.168.65.16/28
- }
- }
- rule 66 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 66
- }
- source {
- address 192.168.65.32/28
- }
- }
- rule 67 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 67
- }
- source {
- address 192.168.65.48/28
- }
- }
- rule 68 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 68
- }
- source {
- address 192.168.65.64/28
- }
- }
- rule 69 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 69
- }
- source {
- address 192.168.65.80/28
- }
- }
- rule 70 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 70
- }
- source {
- address 192.168.65.96/28
- }
- }
- rule 71 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 71
- }
- source {
- address 192.168.65.112/28
- }
- }
- rule 72 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 72
- }
- source {
- address 192.168.65.128/27
- }
- }
- rule 73 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 73
- }
- source {
- address 192.168.65.160/27
- }
- }
- rule 74 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 74
- }
- source {
- address 192.168.65.192/26
- }
- }
- }
- route RRRR-OUT-502 {
- rule 116 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 116
- }
- source {
- address 172.29.152.0/30
- }
- }
- rule 117 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 117
- }
- source {
- address 172.29.152.4/30
- }
- }
- rule 118 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 118
- }
- source {
- address 172.29.152.8/30
- }
- }
- rule 119 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 119
- }
- source {
- address 172.29.152.12/30
- }
- }
- rule 120 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 120
- }
- source {
- address 172.29.152.16/30
- }
- }
- rule 121 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 121
- }
- source {
- address 172.29.152.20/30
- }
- }
- rule 122 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 122
- }
- source {
- address 172.29.152.24/30
- }
- }
- rule 123 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 123
- }
- source {
- address 172.29.152.28/30
- }
- }
- rule 124 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 124
- }
- source {
- address 172.29.152.32/30
- }
- }
- rule 125 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 125
- }
- source {
- address 172.29.152.36/30
- }
- }
- rule 126 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 126
- }
- source {
- address 172.29.152.40/30
- }
- }
- rule 127 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 127
- }
- source {
- address 172.29.152.44/30
- }
- }
- rule 128 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 128
- }
- source {
- address 172.29.152.48/30
- }
- }
- rule 129 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 129
- }
- source {
- address 172.29.152.52/30
- }
- }
- rule 130 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 130
- }
- source {
- address 172.29.152.56/30
- }
- }
- rule 131 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 131
- }
- source {
- address 172.29.152.60/30
- }
- }
- rule 132 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 132
- }
- source {
- address 172.29.152.64/30
- }
- }
- rule 133 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 133
- }
- source {
- address 172.29.152.68/30
- }
- }
- rule 134 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 134
- }
- source {
- address 172.29.152.72/30
- }
- }
- rule 135 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 135
- }
- source {
- address 172.29.152.76/30
- }
- }
- rule 136 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 136
- }
- source {
- address 172.29.152.80/30
- }
- }
- rule 137 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 137
- }
- source {
- address 172.29.152.84/30
- }
- }
- rule 138 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 138
- }
- source {
- address 172.29.152.88/30
- }
- }
- rule 139 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 139
- }
- source {
- address 172.29.152.92/30
- }
- }
- rule 140 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 140
- }
- source {
- address 172.29.152.96/30
- }
- }
- rule 141 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 141
- }
- source {
- address 172.29.152.100/30
- }
- }
- rule 142 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 142
- }
- source {
- address 172.29.152.104/30
- }
- }
- rule 143 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 143
- }
- source {
- address 172.29.152.108/30
- }
- }
- rule 144 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 144
- }
- source {
- address 172.29.152.112/30
- }
- }
- rule 145 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 145
- }
- source {
- address 172.29.152.116/30
- }
- }
- rule 146 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 146
- }
- source {
- address 172.29.152.120/30
- }
- }
- rule 147 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 147
- }
- source {
- address 172.29.152.124/30
- }
- }
- rule 148 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 148
- }
- source {
- address 172.29.152.128/29
- }
- }
- rule 149 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 149
- }
- source {
- address 172.29.152.136/29
- }
- }
- rule 150 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 150
- }
- source {
- address 172.29.152.144/29
- }
- }
- rule 151 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 151
- }
- source {
- address 172.29.152.152/29
- }
- }
- rule 152 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 152
- }
- source {
- address 172.29.152.160/29
- }
- }
- rule 153 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 153
- }
- source {
- address 172.29.152.168/29
- }
- }
- rule 154 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 154
- }
- source {
- address 172.29.152.176/29
- }
- }
- rule 155 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 155
- }
- source {
- address 172.29.152.184/29
- }
- }
- rule 156 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 156
- }
- source {
- address 172.29.152.192/29
- }
- }
- rule 157 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 157
- }
- source {
- address 172.29.152.200/29
- }
- }
- rule 158 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 158
- }
- source {
- address 172.29.152.208/29
- }
- }
- rule 159 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 159
- }
- source {
- address 172.29.152.216/29
- }
- }
- rule 160 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 160
- }
- source {
- address 172.29.152.224/29
- }
- }
- rule 161 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 161
- }
- source {
- address 172.29.152.232/29
- }
- }
- rule 162 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 162
- }
- source {
- address 172.29.152.240/29
- }
- }
- rule 163 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 163
- }
- source {
- address 172.29.152.248/29
- }
- }
- rule 164 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 164
- }
- source {
- address 172.29.153.0/28
- }
- }
- rule 165 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 165
- }
- source {
- address 172.29.153.16/28
- }
- }
- rule 166 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 166
- }
- source {
- address 172.29.153.32/28
- }
- }
- rule 167 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 167
- }
- source {
- address 172.29.153.48/28
- }
- }
- rule 168 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 168
- }
- source {
- address 172.29.153.64/28
- }
- }
- rule 169 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 169
- }
- source {
- address 172.29.153.80/28
- }
- }
- rule 170 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 170
- }
- source {
- address 172.29.153.96/28
- }
- }
- rule 171 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 171
- }
- source {
- address 172.29.153.112/28
- }
- }
- rule 172 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 172
- }
- source {
- address 172.29.153.128/27
- }
- }
- rule 173 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 173
- }
- source {
- address 172.29.153.160/27
- }
- }
- rule 174 {
- destination {
- address 0.0.0.0/0
- }
- set {
- table 174
- }
- source {
- address 172.29.153.192/26
- }
- }
- }
- route-map v4-peer-172_30_21_6-in {
- description "Ingress Policy for 172.30.21.6"
- rule 10 {
- action permit
- match {
- ip {
- address {
- prefix-list v4-peer-172_30_21_6-in
- }
- }
- }
- set {
- local-preference 115
- metric 250
- }
- }
- rule 20 {
- action permit
- set {
- local-preference 66
- metric 500
- }
- }
- }
- route-map v4_connected2bgp {
- rule 10 {
- action permit
- match {
- ip {
- address {
- prefix-list v4_connected2bgp_primary
- }
- }
- }
- set {
- local-preference 125
- origin igp
- weight 0
- }
- }
- rule 20 {
- action permit
- match {
- ip {
- address {
- prefix-list v4_connected2bgp_secondary
- }
- }
- }
- set {
- local-preference 115
- origin igp
- weight 0
- }
- }
- }
- route-map v4_static2bgp {
- rule 10 {
- action permit
- match {
- ip {
- address {
- prefix-list v4_static2bgp_primary
- }
- }
- }
- set {
- local-preference 125
- origin igp
- weight 0
- }
- }
- rule 20 {
- action permit
- match {
- ip {
- address {
- prefix-list v4_static2bgp_secondary
- }
- }
- }
- set {
- local-preference 115
- origin igp
- weight 0
- }
- }
- }
- }
- protocols {
- bfd {
- profile 3x300 {
- interval {
- multiplier 3
- receive 300
- transmit 300
- }
- }
- }
- bgp {
- address-family {
- ipv4-unicast {
- redistribute {
- connected {
- route-map v4_connected2bgp
- }
- static {
- route-map v4_static2bgp
- }
- }
- }
- }
- neighbor 169.254.1.1 {
- address-family {
- ipv4-unicast {
- maximum-prefix 1000
- maximum-prefix-out 1000
- nexthop-self {
- }
- }
- }
- bfd {
- }
- description XXXXXXX-vm-fw-a
- remote-as 64521
- ttl-security {
- hops 250
- }
- update-source 169.254.1.2
- }
- neighbor 169.254.1.11 {
- address-family {
- ipv4-unicast {
- maximum-prefix 1000
- maximum-prefix-out 1000
- nexthop-self {
- }
- }
- }
- bfd {
- }
- description gc-rt-az-01
- remote-as 64521
- ttl-security {
- hops 250
- }
- update-source 169.254.1.2
- }
- neighbor 169.254.1.12 {
- address-family {
- ipv4-unicast {
- maximum-prefix 1000
- maximum-prefix-out 1000
- nexthop-self {
- }
- }
- }
- bfd {
- }
- description gc-rt-az-02
- remote-as 64521
- ttl-security {
- hops 250
- }
- update-source 169.254.1.2
- }
- neighbor 172.26.169.247 {
- address-family {
- ipv4-unicast {
- maximum-prefix 1000
- maximum-prefix-out 10
- prefix-list {
- export v4-peer-172_26_169_247-out
- import v4-peer-172_26_169_247-in
- }
- soft-reconfiguration {
- inbound
- }
- }
- }
- description ""
- ebgp-multihop 10
- local-as 65534 {
- }
- remote-as 65500
- update-source 169.254.2.2
- }
- neighbor 172.27.41.247 {
- address-family {
- ipv4-unicast {
- maximum-prefix 1000
- maximum-prefix-out 10
- prefix-list {
- export v4-peer-172_27_41_247-out
- import v4-peer-172_27_41_247-in
- }
- soft-reconfiguration {
- inbound
- }
- }
- }
- description ""
- ebgp-multihop 10
- local-as 65534 {
- }
- remote-as 65500
- update-source 169.254.2.2
- }
- neighbor 172.30.21.6 {
- address-family {
- ipv4-unicast {
- maximum-prefix 10
- maximum-prefix-out 10
- prefix-list {
- export v4-peer-172_30_21_6-out
- import v4-peer-172_30_21_6-in
- }
- route-map {
- import v4-peer-172_30_21_6-in
- }
- }
- }
- description INM-MMP-RTR02
- password W7fAiwkHbf5x6B
- remote-as 31515
- }
- parameters {
- ebgp-requires-policy
- graceful-shutdown
- log-neighbor-changes
- router-id 169.254.1.2
- }
- system-as 64521
- timers {
- holdtime 30
- keepalive 10
- }
- }
- mpls {
- interface eth1
- interface eth2
- ldp {
- discovery {
- transport-ipv4-address 169.254.1.2
- }
- interface eth1
- interface eth2
- parameters {
- }
- router-id 169.254.1.2
- }
- }
- ospf {
- area 0 {
- }
- auto-cost {
- reference-bandwidth 100000
- }
- interface eth1 {
- area 0
- bfd {
- profile 3x300
- }
- dead-interval 12
- hello-interval 3
- mtu-ignore
- network point-to-point
- }
- interface eth4 {
- area 0
- bfd {
- profile 3x300
- }
- dead-interval 12
- hello-interval 3
- mtu-ignore
- network point-to-point
- }
- interface lo {
- area 0
- }
- }
- static {
- route 0.0.0.0/0 {
- next-hop XXX.XXX.XX.1 {
- interface eth0
- }
- }
- route 172.26.169.247/32 {
- interface tun10 {
- }
- }
- route 172.27.41.247/32 {
- interface tun11 {
- }
- }
- route 216.116.74.2/32 {
- next-hop 10.50.1.115 {
- }
- }
- route 216.116.74.3/32 {
- next-hop 10.50.1.115 {
- }
- }
- table 16 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.16 {
- interface eth3.502
- }
- }
- }
- table 17 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.17 {
- interface eth3.502
- }
- }
- }
- table 18 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.18 {
- interface eth3.502
- }
- }
- }
- table 19 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.19 {
- interface eth3.502
- }
- }
- }
- table 20 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.20 {
- interface eth3.502
- }
- }
- }
- table 21 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.21 {
- interface eth3.502
- }
- }
- }
- table 22 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.22 {
- interface eth3.502
- }
- }
- }
- table 23 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.23 {
- interface eth3.502
- }
- }
- }
- table 24 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.24 {
- interface eth3.502
- }
- }
- }
- table 25 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.25 {
- interface eth3.502
- }
- }
- }
- table 26 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.26 {
- interface eth3.502
- }
- }
- }
- table 27 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.27 {
- interface eth3.502
- }
- }
- }
- table 28 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.28 {
- interface eth3.502
- }
- }
- }
- table 29 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.29 {
- interface eth3.502
- }
- }
- }
- table 30 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.30 {
- interface eth3.502
- }
- }
- }
- table 31 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.31 {
- interface eth3.502
- }
- }
- }
- table 32 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.32 {
- interface eth3.502
- }
- }
- }
- table 33 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.33 {
- interface eth3.502
- }
- }
- }
- table 34 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.34 {
- interface eth3.502
- }
- }
- }
- table 35 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.35 {
- interface eth3.502
- }
- }
- }
- table 36 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.36 {
- interface eth3.502
- }
- }
- }
- table 37 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.37 {
- interface eth3.502
- }
- }
- }
- table 38 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.38 {
- interface eth3.502
- }
- }
- }
- table 39 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.39 {
- interface eth3.502
- }
- }
- }
- table 40 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.40 {
- interface eth3.502
- }
- }
- }
- table 41 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.41 {
- interface eth3.502
- }
- }
- }
- table 42 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.42 {
- interface eth3.502
- }
- }
- }
- table 43 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.43 {
- interface eth3.502
- }
- }
- }
- table 44 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.44 {
- interface eth3.502
- }
- }
- }
- table 45 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.45 {
- interface eth3.502
- }
- }
- }
- table 46 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.46 {
- interface eth3.502
- }
- }
- }
- table 47 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.47 {
- interface eth3.502
- }
- }
- }
- table 48 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.48 {
- interface eth3.502
- }
- }
- }
- table 49 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.49 {
- interface eth3.502
- }
- }
- }
- table 50 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.50 {
- interface eth3.502
- }
- }
- }
- table 51 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.51 {
- interface eth3.502
- }
- }
- }
- table 52 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.52 {
- interface eth3.502
- }
- }
- }
- table 53 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.53 {
- interface eth3.502
- }
- }
- }
- table 54 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.54 {
- interface eth3.502
- }
- }
- }
- table 55 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.55 {
- interface eth3.502
- }
- }
- }
- table 56 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.56 {
- interface eth3.502
- }
- }
- }
- table 57 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.57 {
- interface eth3.502
- }
- }
- }
- table 58 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.58 {
- interface eth3.502
- }
- }
- }
- table 59 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.58 {
- interface eth3.502
- }
- }
- }
- table 60 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.60 {
- interface eth3.502
- }
- }
- }
- table 61 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.61 {
- interface eth3.502
- }
- }
- }
- table 62 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.62 {
- interface eth3.502
- }
- }
- }
- table 63 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.63 {
- interface eth3.502
- }
- }
- }
- table 64 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.64 {
- interface eth3.502
- }
- }
- }
- table 65 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.65 {
- interface eth3.502
- }
- }
- }
- table 66 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.66 {
- interface eth3.502
- }
- }
- }
- table 67 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.67 {
- interface eth3.502
- }
- }
- }
- table 68 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.68 {
- interface eth3.502
- }
- }
- }
- table 69 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.69 {
- interface eth3.502
- }
- }
- }
- table 70 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.70 {
- interface eth3.502
- }
- }
- }
- table 71 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.71 {
- interface eth3.502
- }
- }
- }
- table 72 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.72 {
- interface eth3.502
- }
- }
- }
- table 73 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.73 {
- interface eth3.502
- }
- }
- }
- table 74 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.74 {
- interface eth3.502
- }
- }
- }
- table 116 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.116 {
- interface eth3.502
- }
- }
- }
- table 117 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.117 {
- interface eth3.502
- }
- }
- }
- table 118 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.118 {
- interface eth3.502
- }
- }
- }
- table 119 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.119 {
- interface eth3.502
- }
- }
- }
- table 120 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.120 {
- interface eth3.502
- }
- }
- }
- table 121 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.121 {
- interface eth3.502
- }
- }
- }
- table 122 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.122 {
- interface eth3.502
- }
- }
- }
- table 123 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.123 {
- interface eth3.502
- }
- }
- }
- table 124 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.124 {
- interface eth3.502
- }
- }
- }
- table 125 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.125 {
- interface eth3.502
- }
- }
- }
- table 126 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.126 {
- interface eth3.502
- }
- }
- }
- table 127 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.127 {
- interface eth3.502
- }
- }
- }
- table 128 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.128 {
- interface eth3.502
- }
- }
- }
- table 129 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.129 {
- interface eth3.502
- }
- }
- }
- table 130 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.130 {
- interface eth3.502
- }
- }
- }
- table 131 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.131 {
- interface eth3.502
- }
- }
- }
- table 132 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.132 {
- interface eth3.502
- }
- }
- }
- table 133 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.133 {
- interface eth3.502
- }
- }
- }
- table 134 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.134 {
- interface eth3.502
- }
- }
- }
- table 135 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.135 {
- interface eth3.502
- }
- }
- }
- table 136 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.136 {
- interface eth3.502
- }
- }
- }
- table 137 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.137 {
- interface eth3.502
- }
- }
- }
- table 138 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.138 {
- interface eth3.502
- }
- }
- }
- table 139 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.139 {
- interface eth3.502
- }
- }
- }
- table 140 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.140 {
- interface eth3.502
- }
- }
- }
- table 141 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.141 {
- interface eth3.502
- }
- }
- }
- table 142 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.142 {
- interface eth3.502
- }
- }
- }
- table 143 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.143 {
- interface eth3.502
- }
- }
- }
- table 144 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.144 {
- interface eth3.502
- }
- }
- }
- table 145 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.145 {
- interface eth3.502
- }
- }
- }
- table 146 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.146 {
- interface eth3.502
- }
- }
- }
- table 147 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.147 {
- interface eth3.502
- }
- }
- }
- table 148 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.148 {
- interface eth3.502
- }
- }
- }
- table 149 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.149 {
- interface eth3.502
- }
- }
- }
- table 150 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.150 {
- interface eth3.502
- }
- }
- }
- table 151 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.151 {
- interface eth3.502
- }
- }
- }
- table 152 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.152 {
- interface eth3.502
- }
- }
- }
- table 153 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.153 {
- interface eth3.502
- }
- }
- }
- table 154 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.154 {
- interface eth3.502
- }
- }
- }
- table 155 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.155 {
- interface eth3.502
- }
- }
- }
- table 156 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.156 {
- interface eth3.502
- }
- }
- }
- table 157 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.157 {
- interface eth3.502
- }
- }
- }
- table 158 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.158 {
- interface eth3.502
- }
- }
- }
- table 159 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.158 {
- interface eth3.502
- }
- }
- }
- table 160 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.160 {
- interface eth3.502
- }
- }
- }
- table 161 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.161 {
- interface eth3.502
- }
- }
- }
- table 162 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.162 {
- interface eth3.502
- }
- }
- }
- table 163 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.163 {
- interface eth3.502
- }
- }
- }
- table 164 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.164 {
- interface eth3.502
- }
- }
- }
- table 165 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.165 {
- interface eth3.502
- }
- }
- }
- table 166 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.166 {
- interface eth3.502
- }
- }
- }
- table 167 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.167 {
- interface eth3.502
- }
- }
- }
- table 168 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.168 {
- interface eth3.502
- }
- }
- }
- table 169 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.169 {
- interface eth3.502
- }
- }
- }
- table 170 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.170 {
- interface eth3.502
- }
- }
- }
- table 171 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.171 {
- interface eth3.502
- }
- }
- }
- table 172 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.172 {
- interface eth3.502
- }
- }
- }
- table 173 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.173 {
- interface eth3.502
- }
- }
- }
- table 174 {
- route 0.0.0.0/0 {
- next-hop 10.50.2.174 {
- interface eth3.502
- }
- }
- }
- }
- }
- service {
- lldp {
- interface eth1 {
- }
- interface eth2 {
- }
- interface eth4 {
- }
- management-address 169.254.1.2
- }
- snmp {
- listen-address XXX.XXX.XX.23 {
- }
- location ""
- v3 {
- engineid 8000be144364b306
- group RO_GROUP {
- mode ro
- seclevel priv
- view RO_VIEW
- }
- group TNE_SNMP_RO_GROUP {
- mode ro
- seclevel priv
- view RO_VIEW
- }
- user RO_USER {
- auth {
- encrypted-password ef83d33941f1c4662760b60163aa376d1c692d1b
- type sha
- }
- group RO_GROUP
- privacy {
- encrypted-password 67c613f77d054fd815322f6dd15249f5b3a4f05a
- type aes
- }
- }
- user TNE_SNMP_RO_USER {
- auth {
- encrypted-password c5d12778d646eb93c72897bed1eb70636045470f
- type sha
- }
- group TNE_SNMP_RO_GROUP
- privacy {
- encrypted-password 0c7f5598d0e34710a06b5b07689e887ea83bd3ce
- type aes
- }
- }
- view RO_VIEW {
- oid 1 {
- }
- }
- }
- }
- ssh {
- access-control {
- allow {
- user XXXXXXX
- user XXXXXXX
- user XXXXXXX
- }
- }
- disable-host-validation
- disable-password-authentication
- port 22
- }
- }
- system {
- config-management {
- commit-revisions 100
- }
- conntrack {
- modules {
- ftp
- h323
- nfs
- pptp
- sip
- sqlnet
- tftp
- }
- table-size 4194304
- timeout {
- tcp {
- established 3600
- }
- }
- }
- console {
- device ttyS0 {
- speed 115200
- }
- }
- domain-name positive-dedicated.net
- domain-search {
- domain
- }
- host-name XXXXXXX-vm-fw-b
- ip {
- arp {
- table-size 32768
- }
- multipath {
- layer4-hashing
- }
- }
- ipv6 {
- multipath {
- layer4-hashing
- }
- neighbor {
- table-size 32768
- }
- strict-dad
- }
- login {
- user XXXXXXXXXX {
- authentication {
- public-keys XXXXXXX {
- key xxxxxxxxxxxxxxxxxxxxxxxxxx
- type ssh-rsa
- }
- }
- full-name "XXXXXXXXXXX"
- }
- user XXXXXXXXXX {
- authentication {
- public-keys luke@XXXXXXXX {
- key xxxxxxxxxxxxxxxxxxxxxxxxxx
- type ssh-rsa
- }
- }
- full-name "XXXXXXXXXXXX"
- }
- user vyos {
- authentication {
- encrypted-password XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
- plaintext-password ""
- }
- }
- }
- name-server XXX.XXX.XX.4
- name-server XXX.XXX.XX.5
- ntp {
- listen-address XXX.XXX.XX.23
- server time0 {
- }
- server time1 {
- }
- server time2 {
- }
- }
- option {
- performance throughput
- root-partition-auto-resize
- }
- sysctl {
- parameter net.netfilter.nf_conntrack_buckets {
- value 2097152
- }
- }
- syslog {
- global {
- facility all {
- level info
- }
- facility protocols {
- level debug
- }
- }
- }
- time-zone US/Eastern
- }
- // Warning: Do not remove the following line.
- // vyos-config-version: "bgp@3:broadcast-relay@1:cluster@1:config-management@1:conntrack@3:conntrack-sync@2:dhcp-relay@2:dhcp-server@6:dhcpv6-server@1:dns-forwarding@3:firewall@8:flow-accounting@1:https@4:ids@1:interfaces@26:ipoe-server@1:ipsec@10:isis@2:l2tp@4:lldp@1:mdns@1:monitoring@1:nat@5:nat66@1:ntp@1:openconnect@2:ospf@1:policy@4:pppoe-server@6:pptp@2:qos@1:quagga@10:rpki@1:salt@1:snmp@2:ssh@2:sstp@4:system@25:vrf@3:vrrp@3:vyos-accel-ppp@2:wanloadbalance@3:webproxy@2"
- // Release version: 1.4-rolling-202211060813
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement