wlc/wlc-mm-2.cfg Wed Apr 2 10:08:58 AM EDT 2025

This commit is contained in:
John Poland 2025-04-02 10:08:58 -04:00
parent b0483a49e5
commit f6ace80524

View File

@ -6,9 +6,11 @@ hostname "NOC-ARUBA-MM-2"
clock timezone America/New_York -04 0
!
location "Building1.floor1"
controller config 621
controller config 625
crypto-local pki ServerCert scsd_wc2_full_2025 Star-Exp042025-fullchain.pfx
crypto-local pki ServerCert scsd_wc2_full_2026 StarCert-Ex03_26_fullchain.pfx
crypto-local pki ServerCert scsd_wildcard_2025 StartCert-Expire042025.pfx
crypto-local pki ServerCert scsd_wildcard_2026 StarCert-Ex03_26_fullchain.pfx
crypto-local pki PublicCert master-ssh-pub-cert master-ssh-pub-cert
ip nat pool dynamic-srcnat 0.0.0.0 0.0.0.0
ip nat pool localip 0.0.0.0 0.0.0.0
@ -720,9 +722,9 @@ crypto dynamic-map default-dynamicmap 10000
crypto map GLOBAL-IKEV2-MAP 10000 ipsec-isakmp dynamic default-rap-ipsecmap
crypto map GLOBAL-MAP 10000 ipsec-isakmp dynamic default-dynamicmap
localip 10.1.35.14 ipsec *redacted*
localip 10.1.35.11 ipsec *redacted*
localip 10.1.35.12 ipsec *redacted*
localip 10.1.35.14 ipsec *redacted*
localip 10.1.35.11 ipsec *redacted*
localip 10.1.35.12 ipsec *redacted*
crypto isakmp eap-passthrough eap-tls
crypto isakmp eap-passthrough eap-peap
crypto isakmp eap-passthrough eap-mschapv2
@ -827,12 +829,12 @@ aaa authentication dot1x "default-psk"
!
aaa authentication-server tacacs "ClearPass A"
host "10.1.40.116"
key *redacted*
key *redacted*
session-authorization
!
aaa authentication-server tacacs "ClearPass B"
host "10.1.40.117"
key *redacted*
key *redacted*
session-authorization
!
aaa authentication via global-config
@ -1049,10 +1051,10 @@ ap mesh-radio-profile "default"
ap usb-profile "default"
!
ap system-profile "default"
ap-console-password *redacted*
ap-console-password *redacted*
!
ap system-profile "NoAuthApSystem"
ap-console-password *redacted*
ap-console-password *redacted*
!
ap wired-port-profile "default"
!
@ -1531,7 +1533,7 @@ ale-configuration
!
conductor-redundancy
conductor-vrrp 35
peer-ip-address 10.1.35.13 ipsec *redacted*
peer-ip-address 10.1.35.13 ipsec *redacted*
!
vrrp 35
authentication ********