diff --git a/configs/vanduyn/vanduyn-mdf-a6300-sw1.cfg b/configs/vanduyn/vanduyn-mdf-a6300-sw1.cfg index 8d7d5dd..4bac9fb 100644 --- a/configs/vanduyn/vanduyn-mdf-a6300-sw1.cfg +++ b/configs/vanduyn/vanduyn-mdf-a6300-sw1.cfg @@ -18,7 +18,7 @@ banner motd # ! ! ! IF YOU ARE NOT AUTHORIZED TO BE HERE DISCONNECT NOW! ! !!!!!!!!!!!!!!!!!!!!!!!!!!!!! WARNING !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!# -user admin group administrators password ciphertext AQBapf2mPkCCPRcnIA1kv7SjjljvomLi3JiHXFpVZY/wdYPYYgAAANSQxSlIBI5/+K+qdF3hE04z8I3CLCsaxHwPI5wUD110GZvf436I34b5NkWosKqE2Kr9FKTh0PU8BK9MFBwLRAZ05M9pX3UWxI0412PX3NXcCGC9ToWYE3O/ZStaBVLy/CjA +user admin group administrators password ciphertext AQBapbau7aInBIN1pCD7TUzfDOezIWPMXD1Nymlw4Ne/vW14YgAAAIeHTFga4lgZScGT+6zzJnwlD+H+VHT4U0oLGTB3FIX5lN9ycTcyvgLih2dblaQgg5y4J88OAv1NvlyGDLRusb1dPvuPQu0JzZV14mSr3ZJludUyhYWW01/SxxYsmU0eF3s1 clock timezone america/new_york loop-protect re-enable-timer 30 ntp server 10.1.1.2 iburst @@ -27,13 +27,13 @@ ntp enable ! ! ! -tacacs-server host 10.1.40.115 key ciphertext AQBapX2u1uTnKLqXpa+JdsYsFnyuAmZFeY9BWLeh+48/zgzRCQAAAKTKN/4oxnvSBw== -tacacs-server host 10.1.40.116 key ciphertext AQBapdFCLKorxwSSHCR+SScMpclK8X5TV+3IW2lbl/Smy3puCQAAADJC6XfhAwVy6A== -tacacs-server host 10.1.40.117 key ciphertext AQBapY4lvJiOQReQPUr0HehCLPsTjoOkNP4WHm8kbdZGVYjyCQAAALJ33d4HJazOTw== +tacacs-server host 10.1.40.115 key ciphertext AQBapX3xJlyKS3zs1sHoLX7/8v9kZnbMg49JY1qbOZ3ecTAECQAAAOpW1igvWLnffg== +tacacs-server host 10.1.40.116 key ciphertext AQBapZpo4MMkqal0s1hI/rjTSeK+xhnI3m+uUZWfW2KchXyNCQAAADdQH0WwjmIJbQ== +tacacs-server host 10.1.40.117 key ciphertext AQBapb9VXVA7K8eF3papPTKpTvMjeSGPxj+7RizkzixpuL4wCQAAAIRFwpppRS6kEg== ! -radius-server host 10.1.40.115 key ciphertext AQBapbHGThOkZ1DGsp5tte3uLvRSTAltiETFZAWqZMeT9w4LCQAAAMyoUErPaiOCXg== -radius-server host 10.1.40.116 key ciphertext AQBapTOAZap630FN+wACqqqzUyFfevLMDVfMTwYzjje+BwtACQAAAFALhovheywT0Q== -radius-server host 10.1.40.117 key ciphertext AQBapUM7yvPIpKlJBOwOQmc7e1POMSl7B+OsgLxNcOydSU5xCQAAAI5ydU65akvegQ== +radius-server host 10.1.40.115 key ciphertext AQBapaYt1y8yQ4uZvByXucgaWENbszbU05oZqu0cs+n5LmTPCQAAADvS8tfMAFBzHA== +radius-server host 10.1.40.116 key ciphertext AQBapd/jHmg8OX5TEkakDvWcrKIh01YgANvxWEEFqwTk99/JCQAAAEGQ0mxW4B2Ebg== +radius-server host 10.1.40.117 key ciphertext AQBapZxnV5T3uEaGf5eu4XEKzjzVXgsKtSgxQj3DqVlgqwX3CQAAAEeLTBHKzU8Ofw== aaa authentication allow-fail-through ! ! @@ -51,9 +51,9 @@ aaa accounting port-access start-stop group tacacs ! radius dyn-authorization enable ! -radius dyn-authorization client 10.1.40.115 replay-protection enable secret-key ciphertext AQBapSfC7LXal9RQSislN28xxvG/ejjlybp8opYZFbj1qN0BCQAAAMI/EJvDFaxRqg== -radius dyn-authorization client 10.1.40.116 replay-protection enable secret-key ciphertext AQBapZP9XS11ygp91qRTLnBuAfTiW1sDO6pVyIktAcy8j++5CQAAAJjTuDZSOURrBg== -radius dyn-authorization client 10.1.40.117 replay-protection enable secret-key ciphertext AQBapR90pAzX8i4ijw7NZgqrsr8jEWaOVrwQ4y4Zk1qkWQDsCQAAAB7aoofE5NiHOA== +radius dyn-authorization client 10.1.40.115 replay-protection enable secret-key ciphertext AQBapaLoLzZrQ1faCxMth7Ehe6pUhNdaCUQjpjqwmezdsampCQAAAKAJaDpmem8cMA== +radius dyn-authorization client 10.1.40.116 replay-protection enable secret-key ciphertext AQBapVZQxKkLhNGiyobxVzEDbExog0D86HoI370iOm9zWHdJCQAAAKkyfh8yDB4a2g== +radius dyn-authorization client 10.1.40.117 replay-protection enable secret-key ciphertext AQBapbxkj8W932G2Hp4BGMHqXu53/cjY9t0b5UV8a/pfTTV0CQAAALrHBEpFMoWpuA== ssh server vrf default ssh server vrf mgmt ssh key-exchange-algorithms curve25519-sha256 curve25519-sha256@libssh.org diffie-hellman-group14-sha1 diffie-hellman-group14-sha256 diffie-hellman-group16-sha512 @@ -827,16 +827,30 @@ interface 1/1/24 client track ip update-interval 120 power-over-ethernet pre-std-detect interface 1/1/25 - description - To BT Clock Controller - + description Auto no shutdown no routing - vlan access 30 + vlan access 168 spanning-tree bpdu-guard spanning-tree port-type admin-edge spanning-tree root-guard spanning-tree tcn-guard loop-protect port-access onboarding-method concurrent enable + aaa authentication port-access allow-cdp-bpdu + aaa authentication port-access allow-lldp-bpdu + aaa authentication port-access client-limit 3 + aaa authentication port-access dot1x authenticator + cached-reauth + cached-reauth-period 86400 + reauth + enable + aaa authentication port-access mac-auth + cached-reauth + cached-reauth-period 86400 + quiet-period 30 + reauth + enable client track ip enable client track ip update-interval 120 power-over-ethernet pre-std-detect @@ -1261,16 +1275,30 @@ interface 1/1/40 client track ip update-interval 120 power-over-ethernet pre-std-detect interface 1/1/41 - description - to Galaxy phone - + description Auto no shutdown no routing - vlan access 72 + vlan access 168 spanning-tree bpdu-guard spanning-tree port-type admin-edge spanning-tree root-guard spanning-tree tcn-guard loop-protect port-access onboarding-method concurrent enable + aaa authentication port-access allow-cdp-bpdu + aaa authentication port-access allow-lldp-bpdu + aaa authentication port-access client-limit 3 + aaa authentication port-access dot1x authenticator + cached-reauth + cached-reauth-period 86400 + reauth + enable + aaa authentication port-access mac-auth + cached-reauth + cached-reauth-period 86400 + quiet-period 30 + reauth + enable client track ip enable client track ip update-interval 120 power-over-ethernet pre-std-detect @@ -1359,30 +1387,58 @@ interface 1/1/44 client track ip update-interval 120 power-over-ethernet pre-std-detect interface 1/1/45 - description - to dayco New - + description Auto no shutdown no routing - vlan access 230 + vlan access 168 spanning-tree bpdu-guard spanning-tree port-type admin-edge spanning-tree root-guard spanning-tree tcn-guard loop-protect port-access onboarding-method concurrent enable + aaa authentication port-access allow-cdp-bpdu + aaa authentication port-access allow-lldp-bpdu + aaa authentication port-access client-limit 3 + aaa authentication port-access dot1x authenticator + cached-reauth + cached-reauth-period 86400 + reauth + enable + aaa authentication port-access mac-auth + cached-reauth + cached-reauth-period 86400 + quiet-period 30 + reauth + enable client track ip enable client track ip update-interval 120 power-over-ethernet pre-std-detect interface 1/1/46 - description - to Old dayco - + description Auto no shutdown no routing - vlan access 20 + vlan access 168 spanning-tree bpdu-guard spanning-tree port-type admin-edge spanning-tree root-guard spanning-tree tcn-guard loop-protect port-access onboarding-method concurrent enable + aaa authentication port-access allow-cdp-bpdu + aaa authentication port-access allow-lldp-bpdu + aaa authentication port-access client-limit 3 + aaa authentication port-access dot1x authenticator + cached-reauth + cached-reauth-period 86400 + reauth + enable + aaa authentication port-access mac-auth + cached-reauth + cached-reauth-period 86400 + quiet-period 30 + reauth + enable client track ip enable client track ip update-interval 120 power-over-ethernet pre-std-detect @@ -1390,7 +1446,7 @@ interface 1/1/47 description Auto no shutdown no routing - vlan access 72 + vlan access 168 spanning-tree bpdu-guard spanning-tree port-type admin-edge spanning-tree root-guard