# version 5.20.99, Release 2221 # sysname PLC_RO_BOUCLE # clock timezone GMT+1 add 01:00:00 clock summer-time ETE repeating 01:00:00 03/28/2011 01:00:00 10/28/2011 01:00:00 # dhcp relay server-group 2 ip 171.20.0.17 # irf domain 25321 irf mac-address persistent always irf auto-update enable undo irf link-delay irf member 1 priority 32 # domain default enable system # router id 192.168.254.34 # telnet server enable # ip ttl-expires enable ip unreachables enable # mirroring-group 1 local mirroring-group 2 local # password-recovery enable # igmp-snooping # vlan 1 # vlan 10 name INTERCO_PLCROBOUCLE_A7500COEUR igmp-snooping enable igmp-snooping version 3 # vlan 70 name A5000 igmp-snooping enable igmp-snooping version 3 # vlan 71 name EXCHANGE_STD # vlan 72 name EXCHANGE_STD_REPLIC # vlan 109 name MPE_PLUMES igmp-snooping enable igmp-snooping version 3 # vlan 110 name RAM_PLEYEL # vlan 115 name MPE_SONATINES # vlan 130 name STD_ESP igmp-snooping enable igmp-snooping version 3 # vlan 132 name MQ_FM_TOIP igmp-snooping enable igmp-snooping version 3 # vlan 133 name STD_MQ_PLAINE igmp-snooping enable igmp-snooping version 3 # vlan 154 name STD_AS_PLAINE igmp-snooping enable igmp-snooping version 3 # vlan 163 name STD_CMS_PLAINE igmp-snooping enable igmp-snooping version 3 # vlan 168 name STD_CMS_PLAINE_TOIP igmp-snooping enable igmp-snooping version 3 # vlan 171 name STD_ASM_PLAINE igmp-snooping enable igmp-snooping version 3 # vlan 181 name STD_AJ_PLAINE igmp-snooping enable igmp-snooping version 3 # vlan 217 name DMZ_PUB_NEW # vlan 3310 description GS_FRANCE_DATA name GS_FRANCE_DATA # vlan 3319 name GS_GUTTEN_DATA igmp-snooping enable igmp-snooping version 3 # vlan 3338 name GS_CASARES_DATA # vlan 3410 name GS_FRANCE_TOIP # vlan 3419 name GS_GUTTEN_TOIP igmp-snooping enable igmp-snooping version 3 # vlan 3438 name GS CASARES_TOIP # vlan 4000 name PLC_AUB igmp-snooping enable igmp-snooping version 3 # vlan 4001 name PLC_ILESTD igmp-snooping enable igmp-snooping version 3 # vlan 4002 name INTERCO_FORTIGATE igmp-snooping enable igmp-snooping version 3 # radius scheme system primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domain # domain system access-limit disable state active idle-cut disable self-service-url disable # user-group system group-attribute allow-guest # local-user admin password cipher authorization-attribute level 3 service-type ssh telnet terminal service-type web local-user ro password cipher authorization-attribute level 1 service-type ssh telnet terminal # stp bpdu-protection # interface Bridge-Aggregation1 description "Interco PLC_RO_BOUCLE et A7500" port link-type trunk undo port trunk permit vlan 1 port trunk permit vlan 10 70 to 72 109 to 111 115 130 132 to 133 154 163 168 171 port trunk permit vlan 181 217 3310 3319 3338 3410 3419 3438 link-aggregation mode dynamic mad enable # interface NULL0 # interface Vlan-interface10 ip address 10.1.10.253 255.255.255.252 # interface Vlan-interface70 # interface Vlan-interface109 ip address 10.6.109.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface110 ip address 10.6.110.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface115 ip address 10.6.115.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface130 ip address 10.6.130.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface132 ip address 10.6.132.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface133 ip address 10.6.133.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface154 ip address 10.6.154.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface163 ip address 10.6.163.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface168 ip address 10.6.168.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface171 ip address 10.6.171.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface181 ip address 10.6.181.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface3310 ip address 172.16.10.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface3319 ip address 172.16.19.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface3338 ip address 172.16.38.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface3410 ip address 172.40.10.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface3419 ip address 172.40.19.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface3438 ip address 172.40.38.254 255.255.255.0 dhcp select relay dhcp relay server-select 2 # interface Vlan-interface4000 ip address 192.168.254.1 255.255.255.252 # interface Vlan-interface4001 ip address 192.168.254.34 255.255.255.252 # interface Vlan-interface4002 ip address 192.168.253.21 255.255.255.252 # interface GigabitEthernet1/0/1 port link-mode bridge description "FO PLC-AUBER" port link-type trunk port trunk permit vlan 1 70 to 72 217 4000 port trunk pvid vlan 4000 loopback-detection enable # interface GigabitEthernet1/0/2 port link-mode bridge shutdown loopback-detection enable # interface GigabitEthernet1/0/3 port link-mode bridge # interface GigabitEthernet1/0/4 port link-mode bridge # interface GigabitEthernet1/0/5 port link-mode bridge # interface GigabitEthernet1/0/6 port link-mode bridge # interface GigabitEthernet1/0/7 port link-mode bridge # interface GigabitEthernet1/0/8 port link-mode bridge # interface GigabitEthernet1/0/9 port link-mode bridge # interface GigabitEthernet1/0/10 port link-mode bridge # interface GigabitEthernet1/0/11 port link-mode bridge # interface GigabitEthernet1/0/12 port link-mode bridge # interface GigabitEthernet1/0/13 port link-mode bridge # interface GigabitEthernet1/0/14 port link-mode bridge # interface GigabitEthernet1/0/15 port link-mode bridge # interface GigabitEthernet1/0/16 port link-mode bridge # interface GigabitEthernet1/0/17 port link-mode bridge shutdown # interface GigabitEthernet1/0/18 port link-mode bridge shutdown # interface GigabitEthernet1/0/19 port link-mode bridge shutdown # interface GigabitEthernet1/0/20 port link-mode bridge shutdown # interface GigabitEthernet1/0/21 port link-mode bridge shutdown # interface GigabitEthernet1/0/22 port link-mode bridge shutdown # interface GigabitEthernet1/0/23 port link-mode bridge shutdown # interface GigabitEthernet1/0/24 port link-mode bridge shutdown # interface GigabitEthernet1/0/25 port link-mode bridge description "FGTMASTER" port access vlan 4002 loopback-detection enable mirroring-group 1 mirroring-port both # interface GigabitEthernet1/0/26 port link-mode bridge loopback-detection enable mirroring-group 1 monitor-port # interface GigabitEthernet1/0/27 port link-mode bridge shutdown # interface GigabitEthernet1/0/28 port link-mode bridge # interface GigabitEthernet1/0/29 port link-mode bridge port access vlan 70 # interface GigabitEthernet1/0/30 port link-mode bridge port access vlan 70 shutdown # interface GigabitEthernet1/0/31 port link-mode bridge port link-type hybrid port hybrid vlan 1 untagged # interface GigabitEthernet1/0/32 port link-mode bridge port link-type trunk undo port trunk permit vlan 1 port trunk permit vlan 10 70 to 72 109 to 111 115 130 132 to 133 154 163 168 171 port trunk permit vlan 181 217 3310 3319 3338 3410 3419 3438 port link-aggregation group 1 # interface GigabitEthernet2/0/1 port link-mode bridge description "FO PLC-ILESTD" port link-type trunk port trunk permit vlan 1 70 to 72 217 4001 port trunk pvid vlan 4001 loopback-detection enable # interface GigabitEthernet2/0/2 port link-mode bridge # interface GigabitEthernet2/0/3 port link-mode bridge # interface GigabitEthernet2/0/4 port link-mode bridge # interface GigabitEthernet2/0/5 port link-mode bridge # interface GigabitEthernet2/0/6 port link-mode bridge # interface GigabitEthernet2/0/7 port link-mode bridge # interface GigabitEthernet2/0/8 port link-mode bridge # interface GigabitEthernet2/0/9 port link-mode bridge # interface GigabitEthernet2/0/10 port link-mode bridge # interface GigabitEthernet2/0/11 port link-mode bridge # interface GigabitEthernet2/0/12 port link-mode bridge # interface GigabitEthernet2/0/13 port link-mode bridge # interface GigabitEthernet2/0/14 port link-mode bridge # interface GigabitEthernet2/0/15 port link-mode bridge # interface GigabitEthernet2/0/16 port link-mode bridge # interface GigabitEthernet2/0/17 port link-mode bridge shutdown # interface GigabitEthernet2/0/18 port link-mode bridge shutdown # interface GigabitEthernet2/0/19 port link-mode bridge # interface GigabitEthernet2/0/20 port link-mode bridge # interface GigabitEthernet2/0/21 port link-mode bridge # interface GigabitEthernet2/0/22 port link-mode bridge # interface GigabitEthernet2/0/23 port link-mode bridge # interface GigabitEthernet2/0/24 port link-mode bridge shutdown # interface GigabitEthernet2/0/25 port link-mode bridge description "FGTSLAVE" port access vlan 4002 loopback-detection enable mirroring-group 2 mirroring-port both # interface GigabitEthernet2/0/26 port link-mode bridge mirroring-group 2 monitor-port # interface GigabitEthernet2/0/27 port link-mode bridge shutdown # interface GigabitEthernet2/0/28 port link-mode bridge shutdown # interface GigabitEthernet2/0/29 port link-mode bridge shutdown # interface GigabitEthernet2/0/30 port link-mode bridge shutdown # interface GigabitEthernet2/0/31 port link-mode bridge shutdown # interface GigabitEthernet2/0/32 port link-mode bridge port link-type trunk undo port trunk permit vlan 1 port trunk permit vlan 10 70 to 72 109 to 111 115 130 132 to 133 154 163 168 171 port trunk permit vlan 181 217 3310 3319 3338 3410 3419 3438 port link-aggregation group 1 # interface Ten-GigabitEthernet1/1/1 # interface Ten-GigabitEthernet1/1/2 # interface Ten-GigabitEthernet2/1/1 # interface Ten-GigabitEthernet2/1/2 # ospf 1 router-id 192.168.254.34 opaque-capability enable graceful-restart ietf import-route static type 1 silent-interface Vlan-interface109 silent-interface Vlan-interface115 silent-interface Vlan-interface130 silent-interface Vlan-interface133 silent-interface Vlan-interface154 silent-interface Vlan-interface163 silent-interface Vlan-interface171 silent-interface Vlan-interface168 silent-interface Vlan-interface181 silent-interface Vlan-interface3310 silent-interface Vlan-interface3410 silent-interface Vlan-interface3319 silent-interface Vlan-interface3419 enable log config enable log error fast-reroute auto area 0.0.0.0 network 192.168.254.0 0.0.0.3 network 192.168.254.32 0.0.0.3 network 10.1.10.252 0.0.0.3 network 10.6.109.0 0.0.0.255 network 10.6.115.0 0.0.0.255 network 10.6.130.0 0.0.0.255 network 10.6.133.0 0.0.0.255 network 10.6.154.0 0.0.0.255 network 10.6.163.0 0.0.0.255 network 10.6.171.0 0.0.0.255 network 192.168.253.20 0.0.0.3 network 10.6.168.0 0.0.0.255 network 10.6.181.0 0.0.0.255 network 10.6.110.0 0.0.0.255 network 10.6.111.0 0.0.0.255 network 172.16.10.0 0.0.0.255 network 172.40.10.0 0.0.0.255 network 172.16.19.0 0.0.0.255 network 172.40.19.0 0.0.0.255 network 172.16.38.0 0.0.0.255 network 172.40.38.0 0.0.0.255 network 10.6.132.0 0.0.0.255 # nqa entry imclinktopologypleaseignore ping type icmp-echo destination ip 192.168.253.22 frequency 270000 # snmp-agent snmp-agent local-engineid 800063A2033CE5A6E2EBB5 snmp-agent community read nagios snmp-agent community read lireplc snmp-agent community write scribplc snmp-agent sys-info contact adm@plainecommune.fr snmp-agent sys-info location "PLAINE-COMMUNE" snmp-agent sys-info version all snmp-agent target-host trap address udp-domain 10.1.100.3 params securityname lireplc v2c snmp-agent target-host trap address udp-domain 10.1.0.0 params securityname nagios snmp-agent trap enable default-route # command-privilege level 1 view user-interface display current-configuration # dhcp enable # nqa schedule imclinktopologypleaseignore ping start-time now lifetime 630720000 # ntp-service unicast-server 10.1.100.2 # ssh server enable ssh user ro service-type all authentication-type password ssh user admin service-type all authentication-type password # load xml-configuration # load tr069-configuration # user-interface aux 0 authentication-mode scheme user-interface aux 1 user-interface vty 0 4 authentication-mode scheme idle-timeout 30 0 protocol inbound ssh user-interface vty 5 15 authentication-mode scheme idle-timeout 30 0 protocol inbound telnet # irf-port 1/1 port group interface Ten-GigabitEthernet1/1/1 mode normal # irf-port 1/2 port group interface Ten-GigabitEthernet1/1/2 mode normal # irf-port 2/1 port group interface Ten-GigabitEthernet2/1/1 mode normal # irf-port 2/2 port group interface Ten-GigabitEthernet2/1/2 mode normal # return