diff --git a/configs/wlc/wlc-mm-2.cfg b/configs/wlc/wlc-mm-2.cfg index 8fa416e..c3872fc 100644 --- a/configs/wlc/wlc-mm-2.cfg +++ b/configs/wlc/wlc-mm-2.cfg @@ -6,9 +6,11 @@ hostname "NOC-ARUBA-MM-2" clock timezone America/New_York -04 0 ! location "Building1.floor1" -controller config 621 +controller config 625 crypto-local pki ServerCert scsd_wc2_full_2025 Star-Exp042025-fullchain.pfx +crypto-local pki ServerCert scsd_wc2_full_2026 StarCert-Ex03_26_fullchain.pfx crypto-local pki ServerCert scsd_wildcard_2025 StartCert-Expire042025.pfx +crypto-local pki ServerCert scsd_wildcard_2026 StarCert-Ex03_26_fullchain.pfx crypto-local pki PublicCert master-ssh-pub-cert master-ssh-pub-cert ip nat pool dynamic-srcnat 0.0.0.0 0.0.0.0 ip nat pool localip 0.0.0.0 0.0.0.0 @@ -720,9 +722,9 @@ crypto dynamic-map default-dynamicmap 10000 crypto map GLOBAL-IKEV2-MAP 10000 ipsec-isakmp dynamic default-rap-ipsecmap crypto map GLOBAL-MAP 10000 ipsec-isakmp dynamic default-dynamicmap -localip 10.1.35.14 ipsec *redacted* -localip 10.1.35.11 ipsec *redacted* -localip 10.1.35.12 ipsec *redacted* +localip 10.1.35.14 ipsec *redacted* +localip 10.1.35.11 ipsec *redacted* +localip 10.1.35.12 ipsec *redacted* crypto isakmp eap-passthrough eap-tls crypto isakmp eap-passthrough eap-peap crypto isakmp eap-passthrough eap-mschapv2 @@ -827,12 +829,12 @@ aaa authentication dot1x "default-psk" ! aaa authentication-server tacacs "ClearPass A" host "10.1.40.116" - key *redacted* + key *redacted* session-authorization ! aaa authentication-server tacacs "ClearPass B" host "10.1.40.117" - key *redacted* + key *redacted* session-authorization ! aaa authentication via global-config @@ -1049,10 +1051,10 @@ ap mesh-radio-profile "default" ap usb-profile "default" ! ap system-profile "default" - ap-console-password *redacted* + ap-console-password *redacted* ! ap system-profile "NoAuthApSystem" - ap-console-password *redacted* + ap-console-password *redacted* ! ap wired-port-profile "default" ! @@ -1531,7 +1533,7 @@ ale-configuration ! conductor-redundancy conductor-vrrp 35 - peer-ip-address 10.1.35.13 ipsec *redacted* + peer-ip-address 10.1.35.13 ipsec *redacted* ! vrrp 35 authentication ********