filsif

wap generic

Jun 30th, 2020
64
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.09 KB | None | 0 0
  1. configure
  2. !
  3. ! Configuration of AP7532 version 5.8.2.0-030R
  4. !
  5. !
  6. version 2.5
  7. !
  8. !
  9. client-identity-group default
  10. load default-fingerprints
  11. !
  12. ip access-list BROADCAST-MULTICAST-CONTROL
  13. permit tcp any any rule-precedence 10 rule-description "permit all TCP traffic"
  14. permit udp any eq 67 any eq dhcpc rule-precedence 11 rule-description "permit DHCP replies"
  15. deny udp any range 137 138 any range 137 138 rule-precedence 20 rule-description "deny windows netbios"
  16. deny ip any 224.0.0.0/4 rule-precedence 21 rule-description "deny IP multicast"
  17. deny ip any host 255.255.255.255 rule-precedence 22 rule-description "deny IP local broadcast"
  18. permit ip any any rule-precedence 100 rule-description "permit all IP traffic"
  19. !
  20. mac access-list PERMIT-ARP-AND-IPv4
  21. permit any any type ip rule-precedence 10 rule-description "permit all IPv4 traffic"
  22. permit any any type arp rule-precedence 20 rule-description "permit all ARP traffic"
  23. !
  24. ip snmp-access-list default
  25. permit any
  26. !
  27. firewall-policy default
  28. no ip dos tcp-sequence-past-window
  29. no stateful-packet-inspection-l2
  30. ip tcp adjust-mss 1400
  31. !
  32. !
  33. mint-policy global-default
  34. !
  35. meshpoint-qos-policy default
  36. !
  37. wlan-qos-policy B747_IFE_PGA
  38. rate-limit client to-air rate 5000
  39. rate-limit client from-air rate 5000
  40. qos trust dscp
  41. qos trust wmm
  42. !
  43. wlan-qos-policy B747_VIP_backup
  44. rate-limit client to-air rate 5000
  45. rate-limit client from-air rate 5000
  46. qos trust dscp
  47. qos trust wmm
  48. !
  49. wlan-qos-policy B747_cabin_bkup
  50. rate-limit client to-air rate 5000
  51. rate-limit client from-air rate 5000
  52. qos trust dscp
  53. qos trust wmm
  54. !
  55. wlan-qos-policy B747_cabin_hset
  56. rate-limit client to-air rate 5000
  57. rate-limit client from-air rate 5000
  58. qos trust dscp
  59. qos trust wmm
  60. !
  61. wlan-qos-policy B747_internet
  62. rate-limit client to-air rate 5000
  63. rate-limit client from-air rate 5000
  64. qos trust dscp
  65. qos trust wmm
  66. !
  67. wlan-qos-policy B747_vip_intern
  68. rate-limit client to-air rate 5000
  69. rate-limit client from-air rate 5000
  70. qos trust dscp
  71. qos trust wmm
  72. !
  73. wlan-qos-policy default
  74. qos trust dscp
  75. qos trust wmm
  76. !
  77. radio-qos-policy default
  78. !
  79. wlan B747_IFE_PGA
  80. ssid MSN_37501_2_4
  81. vlan 1
  82. bridging-mode local
  83. encryption-type ccmp
  84. authentication-type none
  85. no client-client-communication
  86. wpa-wpa2 psk 0 MSN37501
  87. use wlan-qos-policy B747_IFE_PGA
  88. !
  89. wlan B747_VIP_backup
  90. ssid "VIP Backup"
  91. vlan 2003
  92. bridging-mode local
  93. encryption-type ccmp
  94. authentication-type none
  95. no client-client-communication
  96. wpa-wpa2 psk 0 MSN37501
  97. use wlan-qos-policy B747_VIP_backup
  98. !
  99. wlan B747_cabin_bkup
  100. ssid "Cabin Backup"
  101. vlan 2003
  102. bridging-mode local
  103. encryption-type ccmp
  104. authentication-type none
  105. no client-client-communication
  106. wpa-wpa2 psk 0 MSN37501
  107. use wlan-qos-policy B747_cabin_bkup
  108. !
  109. wlan B747_cabin_hset
  110. ssid "Cabin Handset"
  111. vlan 2002
  112. bridging-mode local
  113. encryption-type ccmp
  114. authentication-type none
  115. no client-client-communication
  116. wpa-wpa2 psk 0 MSN37501
  117. use wlan-qos-policy B747_cabin_hset
  118. !
  119. wlan B747_internet
  120. ssid Internet
  121. vlan 2001
  122. bridging-mode local
  123. encryption-type ccmp
  124. authentication-type none
  125. no client-client-communication
  126. wpa-wpa2 psk 0 MSN37501
  127. use wlan-qos-policy B747_internet
  128. !
  129. wlan B747_vip_intern
  130. ssid "VIP Internet"
  131. vlan 2006
  132. bridging-mode local
  133. encryption-type ccmp
  134. authentication-type none
  135. no client-client-communication
  136. wpa-wpa2 psk 0 MSN37501
  137. use wlan-qos-policy B747_vip_intern
  138. !
  139. !
  140. management-policy default
  141. telnet
  142. no http server
  143. https server
  144. ssh
  145. user admin password 1 06b5e36b8e43abc7bcb4781f76988ea4f5ce17ed13577dc5432be0b212e9c08d role superuser access all
  146. snmp-server community 0 private rw
  147. snmp-server community 0 public ro
  148. snmp-server user snmptrap v3 encrypted des auth md5 0 admin123
  149. snmp-server user snmpmanager v3 encrypted des auth md5 0 admin123
  150. !
  151. nsight-policy default
  152. !
  153. profile ap7532 default-ap7532
  154. autoinstall configuration
  155. autoinstall firmware
  156. crypto ikev1 policy ikev1-default
  157. isakmp-proposal default encryption aes-256 group 2 hash sha
  158. crypto ikev2 policy ikev2-default
  159. isakmp-proposal default encryption aes-256 group 2 hash sha
  160. crypto ipsec transform-set default esp-aes-256 esp-sha-hmac
  161. crypto ikev1 remote-vpn
  162. crypto ikev2 remote-vpn
  163. crypto auto-ipsec-secure
  164. crypto load-management
  165. crypto remote-vpn-client
  166. interface radio1
  167. wlan B747_VIP_backup bss 1 primary
  168. wlan B747_internet bss 2 primary
  169. wlan B747_vip_intern bss 3 primary
  170. wlan B747_cabin_bkup bss 4 primary
  171. wlan B747_cabin_hset bss 5 primary
  172. wlan B747_IFE_PGA bss 6 primary
  173. interface radio2
  174. interface ge1
  175. switchport mode trunk
  176. switchport trunk native vlan 1
  177. switchport trunk native tagged
  178. switchport trunk allowed vlan 1,2001-2004,2006
  179. interface vlan1
  180. ip address 172.17.17.0/16
  181. interface vlan2001
  182. ip address dhcp
  183. interface vlan2002
  184. ip address dhcp
  185. interface vlan2003
  186. ip address dhcp
  187. interface vlan2004
  188. ip address dhcp
  189. interface vlan2006
  190. ip address dhcp
  191. interface pppoe1
  192. use firewall-policy default
  193. use client-identity-group default
  194. logging on
  195. service pm sys-restart
  196. router ospf
  197. !
  198. rf-domain default
  199. country-code ca
  200. use nsight-policy default
  201. !
  202. ap7532 74-67-F7-04-CB-98
  203. radio-count 2
  204. use profile default-ap7532
  205. use rf-domain default
  206. hostname ap7532-WAP01
  207. license AP VIRTUAL_CONTROLLER_DEFAULT_AP_LICENSE
  208. no adoption-site
  209. interface radio1
  210. channel 11
  211. power 25
  212. data-rates bg
  213. interface vlan1
  214. ip address 172.17.15.100/16
  215. rf-domain-manager capable
  216. !
  217. ap7532 74-67-F7-04-C5-C4
  218. radio-count 2
  219. use profile default-ap7532
  220. use rf-domain default
  221. hostname ap7532-WAP03
  222. license AP VIRTUAL_CONTROLLER_DEFAULT_AP_LICENSE
  223. interface radio1
  224. channel 11
  225. power 25
  226. data-rates bg
  227. interface vlan1
  228. ip address 172.17.15.102/16
  229. rf-domain-manager capable
  230. !
  231. ap7532 B8-50-01-73-83-38
  232. radio-count 2
  233. use profile default-ap7532
  234. use rf-domain default
  235. hostname ap7532-WAP05
  236. license AP VIRTUAL_CONTROLLER_DEFAULT_AP_LICENSE
  237. no adoption-site
  238. interface radio1
  239. channel 6
  240. power 25
  241. data-rates bg
  242. interface vlan1
  243. ip address 172.17.15.104/16
  244. rf-domain-manager capable
  245. !
  246. ap7532 74-67-F7-04-C8-4C
  247. radio-count 2
  248. use profile default-ap7532
  249. use rf-domain default
  250. hostname ap7532-WAP06
  251. license AP VIRTUAL_CONTROLLER_DEFAULT_AP_LICENSE
  252. no adoption-site
  253. interface radio1
  254. channel 1
  255. power 25
  256. data-rates bg
  257. interface vlan1
  258. ip address 172.17.15.105/16
  259. rf-domain-manager capable
  260. !
  261. ap7532 74-67-F7-A3-35-58
  262. radio-count 2
  263. use profile default-ap7532
  264. use rf-domain default
  265. hostname ap7532-WAP04
  266. license AP VIRTUAL_CONTROLLER_DEFAULT_AP_LICENSE
  267. no adoption-site
  268. interface radio1
  269. channel 1
  270. power 25
  271. data-rates bg
  272. interface vlan1
  273. ip address 172.17.15.103/16
  274. rf-domain-manager capable
  275. !
  276. ap7532 74-67-F7-A3-38-D0
  277. radio-count 2
  278. use profile default-ap7532
  279. use rf-domain default
  280. hostname ap7532-WAP02
  281. license AP VIRTUAL_CONTROLLER_DEFAULT_AP_LICENSE
  282. no adoption-site
  283. interface radio1
  284. channel 6
  285. power 25
  286. data-rates bg
  287. interface vlan1
  288. ip address 172.17.15.101/16
  289. no virtual-controller
  290. rf-domain-manager capable
  291. !
  292. !
  293. end
Add Comment
Please, Sign In to add comment