314 lines
5.7 KiB
Plaintext
314 lines
5.7 KiB
Plaintext
!
|
|
vrf definition Mgmt-vrf
|
|
!
|
|
address-family ipv4
|
|
exit-address-family
|
|
!
|
|
address-family ipv6
|
|
exit-address-family
|
|
!
|
|
enable secret 9 $9$OskBuLWP800Gu.$pbu8Tqf8.X8HY/Yg3pN1AtrRu2TWk6vQArlKSlRnDfI
|
|
!
|
|
aaa new-model
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
aaa session-id common
|
|
switch 1 provision ws-c3850-24t
|
|
!
|
|
!
|
|
!
|
|
!
|
|
ip routing
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
ip domain name 1stplt.dco.mil
|
|
!
|
|
ip dhcp pool DHCP
|
|
|
|
default-router 10.1.10.1
|
|
dns-server 10.1.10.162 10.1.10.163
|
|
!
|
|
!
|
|
vtp domain dco.mil
|
|
vtp mode off
|
|
no device-tracking logging theft
|
|
!
|
|
!
|
|
license boot level ipservicesk9
|
|
!
|
|
!
|
|
diagnostic bootup level minimal
|
|
!
|
|
spanning-tree mode rapid-pvst
|
|
spanning-tree extend system-id
|
|
memory free low-watermark processor 79468
|
|
!
|
|
username admin password 0 DM55Password!@
|
|
!
|
|
redundancy
|
|
mode sso
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
transceiver type all
|
|
monitoring
|
|
!
|
|
vlan 3,5
|
|
!
|
|
vlan 6
|
|
name VMOTION
|
|
!
|
|
vlan 7
|
|
name Provisioning
|
|
!
|
|
vlan 10
|
|
name users
|
|
!
|
|
vlan 40
|
|
name DMZ
|
|
!
|
|
vlan 60
|
|
!
|
|
!
|
|
!
|
|
policy-map system-cpp-policy
|
|
!
|
|
!
|
|
interface Port-channel1
|
|
switchport trunk allowed vlan 10,20,30
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet0/0
|
|
vrf forwarding Mgmt-vrf
|
|
no ip address
|
|
shutdown
|
|
negotiation auto
|
|
!
|
|
interface GigabitEthernet1/0/1
|
|
description Cyber Pack VSWI
|
|
switchport trunk native vlan 100
|
|
switchport trunk allowed vlan 3,10,20,30,40,50
|
|
switchport mode trunk
|
|
switchport nonegotiate
|
|
spanning-tree portfast trunk
|
|
!
|
|
interface GigabitEthernet1/0/2
|
|
description MiniRax1 VSWI
|
|
switchport trunk allowed vlan 10,20,30
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet1/0/3
|
|
description MiniRax2 VSWI
|
|
switchport trunk allowed vlan 10,30
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet1/0/4
|
|
description MiniRax3 VSWI
|
|
switchport trunk allowed vlan 10,30
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet1/0/5
|
|
description CyberPax MGMT
|
|
switchport trunk native vlan 100
|
|
switchport trunk allowed vlan 5-8
|
|
switchport mode trunk
|
|
switchport nonegotiate
|
|
spanning-tree portfast trunk
|
|
!
|
|
interface GigabitEthernet1/0/6
|
|
description MiniRax1 MGMT
|
|
switchport trunk native vlan 100
|
|
switchport trunk allowed vlan 5-8
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet1/0/7
|
|
description MiniRax2 MGMT
|
|
switchport trunk native vlan 100
|
|
switchport trunk allowed vlan 5-8
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet1/0/8
|
|
description MiniRax3 MGMT
|
|
switchport trunk native vlan 100
|
|
switchport trunk allowed vlan 5-8
|
|
switchport mode trunk
|
|
!
|
|
interface GigabitEthernet1/0/9
|
|
description Gigamon MGMT
|
|
switchport access vlan 10
|
|
switchport mode access
|
|
!
|
|
interface GigabitEthernet1/0/10
|
|
description NAS MGMT
|
|
switchport access vlan 10
|
|
switchport mode access
|
|
!
|
|
interface GigabitEthernet1/0/11
|
|
description NAS Link
|
|
switchport access vlan 20
|
|
switchport mode access
|
|
!
|
|
interface GigabitEthernet1/0/12
|
|
description IPMI
|
|
switchport access vlan 10
|
|
switchport mode access
|
|
!
|
|
interface GigabitEthernet1/0/13
|
|
description Laptop
|
|
switchport access vlan 5
|
|
!
|
|
interface GigabitEthernet1/0/14
|
|
description Laptop
|
|
switchport access vlan 60
|
|
switchport mode access
|
|
!
|
|
interface GigabitEthernet1/0/15
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/16
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/17
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/18
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/19
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/20
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/21
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/22
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/23
|
|
description Laptop
|
|
switchport access vlan 60
|
|
!
|
|
interface GigabitEthernet1/0/24
|
|
description Laptop
|
|
switchport access vlan 3
|
|
!
|
|
interface GigabitEthernet1/1/1
|
|
!
|
|
interface GigabitEthernet1/1/2
|
|
!
|
|
interface GigabitEthernet1/1/3
|
|
!
|
|
interface GigabitEthernet1/1/4
|
|
!
|
|
interface TenGigabitEthernet1/1/1
|
|
!
|
|
interface TenGigabitEthernet1/1/2
|
|
!
|
|
interface TenGigabitEthernet1/1/3
|
|
!
|
|
interface TenGigabitEthernet1/1/4
|
|
!
|
|
interface Vlan1
|
|
no ip address
|
|
shutdown
|
|
!
|
|
interface Vlan3
|
|
description Routing Interface
|
|
ip address 10.1.3.1 255.255.255.0
|
|
!
|
|
interface Vlan5
|
|
description ESXi Management
|
|
ip address 10.1.5.1 255.255.255.0
|
|
!
|
|
interface Vlan6
|
|
description ESXi vMotion
|
|
ip address 10.1.6.1 255.255.255.0
|
|
!
|
|
interface Vlan7
|
|
description ESXi Provisioning
|
|
ip address 10.1.7.1 255.255.255.0
|
|
!
|
|
interface Vlan10
|
|
description Domain Services
|
|
ip address 10.1.10.1 255.255.255.0
|
|
!
|
|
interface Vlan20
|
|
description ***MANAGEMENT***
|
|
no ip address
|
|
!
|
|
interface Vlan30
|
|
description ***SERVERS***
|
|
no ip address
|
|
!
|
|
interface Vlan40
|
|
description Host Data Collection
|
|
no ip address
|
|
!
|
|
interface Vlan60
|
|
description USER
|
|
ip address 10.1.60.1 255.255.255.0
|
|
!
|
|
ip forward-protocol nd
|
|
ip http server
|
|
ip http authentication local
|
|
ip http secure-server
|
|
ip route 0.0.0.0 0.0.0.0 10.1.3.2
|
|
ip route 10.0.0.0 255.255.0.0 10.0.3.1
|
|
ip route 10.1.15.0 255.255.255.0 10.0.3.4
|
|
ip route 10.1.16.0 255.255.255.0 10.0.3.4
|
|
ip route 10.1.20.0 255.255.255.0 10.0.3.4
|
|
ip route 10.1.30.0 255.255.255.0 10.0.3.4
|
|
ip route 10.1.40.0 255.255.255.0 10.0.3.14
|
|
ip route 10.1.50.0 255.255.255.0 10.0.3.4
|
|
ip route 10.2.0.0 255.255.0.0 10.0.3.5
|
|
ip route 10.3.0.0 255.255.0.0 10.0.3.7
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
control-plane
|
|
service-policy input system-cpp-policy
|
|
!
|
|
!
|
|
line con 0
|
|
logging synchronous
|
|
stopbits 1
|
|
line aux 0
|
|
stopbits 1
|
|
line vty 0 4
|
|
transport input ssh
|
|
line vty 5 15
|
|
transport input ssh
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
!
|
|
end |