Compare commits

...

13 Commits

13 changed files with 309 additions and 42 deletions

View File

@ -495,6 +495,8 @@ vlan 811
vlan 812
name InterVRF_A_Inside
description InterVRF B inside
vlan 813
name linewize-bypass-ct-inside
vlan 995
name l3vlan
vlan 999
@ -515,6 +517,10 @@ vlan 1254
vlan 1256
name OutsideVRFMXInterconnect
description Outside VRF MX Interconnect
vlan 1261
name FGHA1
vlan 1262
name FGHA2
vlan 1811
name InterVRF_A_Outside
description InterVRF A outside
@ -535,7 +541,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,511-519,525,699,811,812,995,999,1180,1202,1251,1254,1256,1811-1814,3000
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,511-519,525,699,811-813,995,999,1180,1202,1251,1254,1256,1261,1262,1811-1814,3000
spanning-tree vlan 3 priority 4
spanning-tree vlan 5 priority 4
spanning-tree vlan 6 priority 4
@ -685,6 +691,7 @@ spanning-tree vlan 525 priority 4
spanning-tree vlan 699 priority 4
spanning-tree vlan 811 priority 4
spanning-tree vlan 812 priority 4
spanning-tree vlan 813 priority 4
spanning-tree vlan 995 priority 4
spanning-tree vlan 999 priority 4
spanning-tree vlan 1180 priority 4
@ -692,6 +699,8 @@ spanning-tree vlan 1202 priority 4
spanning-tree vlan 1251 priority 4
spanning-tree vlan 1254 priority 4
spanning-tree vlan 1256 priority 4
spanning-tree vlan 1261 priority 4
spanning-tree vlan 1262 priority 4
spanning-tree vlan 1811 priority 4
spanning-tree vlan 1812 priority 4
spanning-tree vlan 1813 priority 4
@ -974,11 +983,8 @@ interface 1/1/25:1
interface 1/1/25:2
description hydra-2 to Linewize-A-LAN C07U35 C07P03 inside Layer-3
no shutdown
ip address 172.31.250.1/24
ip ospf 1 area 0.0.0.0
no ip ospf passive
ip ospf cost 500
ip ospf bfd
no routing
vlan access 813
interface 1/1/30
description DCI Link
no shutdown
@ -2294,6 +2300,12 @@ interface vlan 518
no ip ospf passive
ip ospf cost 4000
ip pim-sparse enable
interface vlan 813
ip address 172.31.250.1/24
ip ospf 1 area 0.0.0.0
no ip ospf passive
ip ospf cost 500
ip ospf bfd
interface vlan 1180
description Nutanix mgmt ct-noc
ip address 10.101.180.2/24
@ -2303,6 +2315,7 @@ interface vlan 1180
ip helper-address 10.21.48.20
ip ospf 1 area 0.0.0.0
ip pim-sparse enable
interface vlan 1254
interface vlan 3000
description inter-dc transit vlan
ip address 10.255.255.2/24
@ -2345,12 +2358,12 @@ https-server vrf default
https-server vrf mgmt
router msdp
enable
ip msdp peer 10.101.254.253
ip msdp peer 10.114.254.253
connect-source loopback0
sa-limit 2048
enable
mesh-group core-meshgrp
ip msdp peer 10.114.254.253
ip msdp peer 10.101.254.253
connect-source loopback0
sa-limit 2048
enable

View File

@ -494,6 +494,8 @@ vlan 811
vlan 812
name InterVRF_A_Inside
description InterVRF B inside
vlan 814
name linewize-b-inside
vlan 995
name l3vlan
vlan 999
@ -514,6 +516,10 @@ vlan 1254
vlan 1256
name OutsideVRFMXInterconnect
description Outside VRF MX Interconnect
vlan 1261
name FGHA1
vlan 1262
name FGHA2
vlan 1811
name InterVRF_A_Outside
description InterVRF A outside
@ -534,7 +540,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,511-519,525,699,811,812,995,999,1180,1202,1251,1254,1256,1811-1814,3000
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,511-519,525,699,811,812,814,995,999,1180,1202,1251,1254,1256,1261,1262,1811-1814,3000
spanning-tree vlan 3 priority 4
spanning-tree vlan 5 priority 4
spanning-tree vlan 6 priority 4
@ -684,6 +690,7 @@ spanning-tree vlan 525 priority 4
spanning-tree vlan 699 priority 4
spanning-tree vlan 811 priority 4
spanning-tree vlan 812 priority 4
spanning-tree vlan 814 priority 4
spanning-tree vlan 995 priority 4
spanning-tree vlan 999 priority 4
spanning-tree vlan 1180 priority 4
@ -691,6 +698,8 @@ spanning-tree vlan 1202 priority 4
spanning-tree vlan 1251 priority 4
spanning-tree vlan 1254 priority 4
spanning-tree vlan 1256 priority 4
spanning-tree vlan 1261 priority 4
spanning-tree vlan 1262 priority 4
spanning-tree vlan 1811 priority 4
spanning-tree vlan 1812 priority 4
spanning-tree vlan 1813 priority 4
@ -958,11 +967,8 @@ interface 1/1/25:1
interface 1/1/25:2
description hydra-2 to Linewize-B-LAN C12U35 C12P01 inside Layer-3
no shutdown
ip address 172.31.249.1/24
ip ospf 1 area 0.0.0.0
no ip ospf passive
ip ospf cost 800
ip ospf bfd
no routing
vlan access 814
interface 1/1/30
description DCI Link
no shutdown
@ -2288,6 +2294,12 @@ interface vlan 519
no ip ospf passive
ip ospf cost 4000
ip pim-sparse enable
interface vlan 814
ip address 172.31.249.1/24
ip ospf 1 area 0.0.0.0
no ip ospf passive
ip ospf cost 800
ip ospf bfd
interface vlan 1180
description Nutanix mgmt ct-noc
ip address 10.101.180.3/24

View File

@ -710,6 +710,8 @@ spanning-tree vlan 699 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1180 priority 12
spanning-tree vlan 1251 priority 12
spanning-tree vlan 1254 priority 12
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
interface mgmt
@ -893,16 +895,7 @@ interface vlan 1254
ip address 172.31.254.253/24
ip ospf 2 area 0.0.0.0
no ip ospf passive
ip ospf network point-to-point
ip pim-sparse enable
interface vlan 1811
description filter outside L3
vrf attach outside
ip address 172.31.251.2/24
ip ospf 2 area 0.0.0.0
no ip ospf passive
ip ospf cost 1000
ip ospf bfd
interface vlan 1813
description Linewize-A outside
vrf attach outside

View File

@ -709,6 +709,8 @@ spanning-tree vlan 699 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1180 priority 12
spanning-tree vlan 1251 priority 12
spanning-tree vlan 1254 priority 12
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
interface mgmt
@ -897,17 +899,7 @@ interface vlan 1254
ip address 172.31.254.254/24
ip ospf 2 area 0.0.0.0
no ip ospf passive
ip ospf network point-to-point
ip pim-sparse enable
interface vlan 1812
description filter outside L3
vrf attach outside
ip address 172.31.252.2/24
ip neighbor-flood
ip ospf 2 area 0.0.0.0
no ip ospf passive
ip ospf cost 9000
ip ospf bfd
interface vlan 1814
description Linewize-B outside
vrf attach outside

View File

@ -780,6 +780,12 @@ interface 1/1/1
no routing
vlan access 1299
spanning-tree port-type admin-edge
interface 1/1/19
description CC-ADVA-P5 Ring#9
no shutdown
no routing
vlan trunk native 1
vlan trunk allowed 509
interface 1/1/25
description MX-A_xe-0/0/0 C09U35 C09P01
no shutdown

View File

@ -514,6 +514,10 @@ vlan 1254
vlan 1256
name OutsideVRFMXInterconnect
description Outside VRF MX Interconnect
vlan 1261
name FGHA1
vlan 1262
name FGHA2
vlan 1811
name InterVRF_A_Outside
description InterVRF A outside
@ -531,7 +535,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,327-330,333,334,336,337,340-342,344,345,347-349,351,353-357,360,386,402-404,406-410,413-416,420-425,427-430,433,434,436,437,440-442,444,445,447-449,451,453-457,460,486,500-509,525,699,811,812,995,999,1180,1202,1251,1254,1256,1811,1812,2999,3000
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,327-330,333,334,336,337,340-342,344,345,347-349,351,353-357,360,386,402-404,406-410,413-416,420-425,427-430,433,434,436,437,440-442,444,445,447-449,451,453-457,460,486,500-509,525,699,811,812,995,999,1180,1202,1251,1254,1256,1261,1262,1811,1812,2999,3000
spanning-tree vlan 3 priority 12
spanning-tree vlan 5 priority 12
spanning-tree vlan 6 priority 12
@ -680,6 +684,8 @@ spanning-tree vlan 699 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1180 priority 12
spanning-tree vlan 1261 priority 12
spanning-tree vlan 1262 priority 12
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
interface mgmt
@ -860,6 +866,16 @@ interface 1/1/26
description FG-B_port5 C20U32 C20P31
no shutdown
lag 186
interface 1/1/28
description FGT-A-FGHA1
no shutdown
no routing
vlan access 1261
interface 1/1/30
description FGT-B-FGHA1
no shutdown
no routing
vlan access 1261
interface 1/1/34
description fortiweb-lag-P04 C19U30 C20P35
no shutdown

View File

@ -514,6 +514,10 @@ vlan 1254
vlan 1256
name OutsideVRFMXInterconnect
description Outside VRF MX Interconnect
vlan 1261
name FGHA1
vlan 1262
name FGHA2
vlan 1811
name InterVRF_A_Outside
description InterVRF A outside
@ -531,7 +535,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,327-330,333,334,336,337,340-342,344,345,347-349,351,353-357,360,386,402-404,406-410,413-416,420-425,427-430,433,434,436,437,440-442,444,445,447-449,451,453-457,460,486,500-509,525,699,811,812,995,999,1180,1202,1251,1254,1256,1811,1812,2999,3000
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,327-330,333,334,336,337,340-342,344,345,347-349,351,353-357,360,386,402-404,406-410,413-416,420-425,427-430,433,434,436,437,440-442,444,445,447-449,451,453-457,460,486,500-509,525,699,811,812,995,999,1180,1202,1251,1254,1256,1261,1262,1811,1812,2999,3000
spanning-tree vlan 3 priority 12
spanning-tree vlan 5 priority 12
spanning-tree vlan 6 priority 12
@ -680,6 +684,8 @@ spanning-tree vlan 699 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1180 priority 12
spanning-tree vlan 1261 priority 12
spanning-tree vlan 1262 priority 12
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
interface mgmt
@ -809,6 +815,16 @@ interface 1/1/26
description FG-B_port6 C20U32 C20P25
no shutdown
lag 186
interface 1/1/28
description FGT-A-FGHA2
no shutdown
no routing
vlan access 1262
interface 1/1/30
description FGT-B-FGHA2
no shutdown
no routing
vlan access 1262
interface 1/1/34
description fortiweb-lag-P05 C19U30 C20P29
no shutdown

View File

@ -500,6 +500,8 @@ vlan 539
description Ring_#9_sh-core-b
vlan 699
name SCSDDCDefaultVLAN
vlan 811
name linewize-a-inside
vlan 995
name l3vlan
vlan 999
@ -508,9 +510,17 @@ vlan 999
vlan 1202
name OutsideInternet
description Outside Internet
vlan 1251
name InsideFirewall
vlan 1254
name OutsideVRFTransit
vlan 1256
name OutsideVRFMXInterconnect
description Outside VRF MX Interconnect
vlan 1261
name FGHA1
vlan 1262
name FGHA2
vlan 1298
name CrownCastle-sh
vlan 2180
@ -527,7 +537,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,521-529,531-539,699,995,999,1202,1256,2180,2999,3000
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,521-529,531-539,699,811,995,999,1202,1251,1254,1256,1261,1262,2180,2999,3000
spanning-tree vlan 3 priority 5
spanning-tree vlan 5 priority 5
spanning-tree vlan 6 priority 5
@ -683,10 +693,15 @@ spanning-tree vlan 537 priority 3
spanning-tree vlan 538 priority 3
spanning-tree vlan 539 priority 3
spanning-tree vlan 699 priority 5
spanning-tree vlan 811 priority 4
spanning-tree vlan 995 priority 5
spanning-tree vlan 999 priority 5
spanning-tree vlan 1202 priority 5
spanning-tree vlan 1251 priority 4
spanning-tree vlan 1254 priority 4
spanning-tree vlan 1256 priority 5
spanning-tree vlan 1261 priority 4
spanning-tree vlan 1262 priority 4
spanning-tree vlan 2180 priority 4
spanning-tree vlan 2999 priority 5
spanning-tree vlan 3000 priority 5
@ -2145,6 +2160,12 @@ interface vlan 529
no ip ospf passive
ip ospf cost 1000
ip pim-sparse enable
interface vlan 811
ip address 172.31.251.1/24
ip ospf 1 area 0.0.0.0
no ip ospf passive
ip ospf cost 300
ip ospf bfd
interface vlan 2180
description Nutanix mgmt sh-noc
ip address 10.114.180.4/24

View File

@ -498,6 +498,8 @@ vlan 539
description Ring_#9_sh-core-b
vlan 699
name SCSDDCDefaultVLAN
vlan 812
name linewize-bypass-sh-inside
vlan 995
name l3vlan
vlan 999
@ -506,9 +508,17 @@ vlan 999
vlan 1202
name OutsideInternet
description Outside Internet
vlan 1251
name InsideFirewall
vlan 1254
name OutsideVRFTransit
vlan 1256
name OutsideVRFMXInterconnect
description Outside VRF MX Interconnect
vlan 1261
name FGHA1
vlan 1262
name FGHA2
vlan 1298
name CrownCastle-sh
vlan 2180
@ -525,7 +535,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,521-529,531-539,699,995,999,1202,1256,2180,2999,3000
spanning-tree vlan 3,5,6,10,12,18,20,21,30,35,40,45,48,50,70,72,99,101,107,114,140,150,151,164,168,172,175-179,200,203,230,252,254,302-310,313-316,320-325,327-330,333,334,336,337,340-342,344-349,351,353-357,360,366,386,402-410,413-416,420-425,427-430,433,434,436,437,440-442,444-449,451,453-457,460,466,486,500-509,521-529,531-539,699,812,995,999,1202,1251,1254,1256,1261,1262,2180,2999,3000
spanning-tree vlan 3 priority 5
spanning-tree vlan 5 priority 5
spanning-tree vlan 6 priority 5
@ -681,10 +691,15 @@ spanning-tree vlan 537 priority 3
spanning-tree vlan 538 priority 3
spanning-tree vlan 539 priority 3
spanning-tree vlan 699 priority 5
spanning-tree vlan 812 priority 4
spanning-tree vlan 995 priority 5
spanning-tree vlan 999 priority 5
spanning-tree vlan 1202 priority 5
spanning-tree vlan 1251 priority 4
spanning-tree vlan 1254 priority 4
spanning-tree vlan 1256 priority 5
spanning-tree vlan 1261 priority 4
spanning-tree vlan 1262 priority 4
spanning-tree vlan 2180 priority 4
spanning-tree vlan 2999 priority 5
spanning-tree vlan 3000 priority 5
@ -2135,6 +2150,12 @@ interface vlan 539
no ip ospf passive
ip ospf cost 2000
ip pim-sparse enable
interface vlan 812
ip address 172.31.252.1/24
ip ospf 1 area 0.0.0.0
no ip ospf passive
ip ospf cost 400
ip ospf bfd
interface vlan 2180
description Nutanix mgmt sh-noc
ip address 10.114.180.5/24

View File

@ -22,6 +22,7 @@ banner motd #
user admin group administrators password ciphertext AQBapchyXMs91yc46bisUG02SnIUId1PM4GHOvm4J50+iRfEYgAAAHaasxMUB06aaHrR2H5Pt/Kt1lmQJ6fc4h0xxvnEaEWkZblwKMLFPTbOMpDdC+5U9ybIHUNFxzgF/K8gzCejt6YzPNjY0LOrwFoj0wQn+mVvCNEaTdR84hLQHKbakJq3GukL
clock timezone america/new_york
profile aggregation-leaf
vrf outside
ntp server 10.1.1.2 iburst
ntp server 10.1.1.3 iburst
ntp server pool.ntp.org minpoll 4 maxpoll 4 iburst
@ -499,6 +500,8 @@ vlan 638
name Nysernet_CDN
vlan 699
name SCSDDCDefaultVLAN
vlan 811
name linewize-a-inside
vlan 995
name l3vlan
vlan 999
@ -506,10 +509,16 @@ vlan 999
description VPN_Concentrator
vlan 1202
name Inside
vlan 1251
name InsideFirewall
vlan 1254
name OutsideVRFTransit
vlan 1256
name InterJuniperLink
vlan 1298
name CrownCastle-sh
vlan 1811
name linewize-a-outside
vlan 2180
name Nutanix mgmt sh-noc
description Nutanix mgmt ct-noc
@ -524,7 +533,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5-7,9-12,16,18-21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,168,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,521-529,531-539,637,638,699,995,999,1202,1256,2180,2999,3000
spanning-tree vlan 3,5-7,9-12,16,18-21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,168,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,521-529,531-539,637,638,699,811,995,999,1202,1251,1254,1256,1811,2180,2999,3000
spanning-tree vlan 3 priority 12
spanning-tree vlan 5 priority 12
spanning-tree vlan 6 priority 12
@ -685,10 +694,14 @@ spanning-tree vlan 539 priority 12
spanning-tree vlan 637 priority 12
spanning-tree vlan 638 priority 12
spanning-tree vlan 699 priority 12
spanning-tree vlan 811 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1202 priority 12
spanning-tree vlan 1251 priority 4
spanning-tree vlan 1254 priority 4
spanning-tree vlan 1256 priority 12
spanning-tree vlan 1811 priority 4
spanning-tree vlan 2180 priority 4
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
@ -725,6 +738,18 @@ qos dscp-map 45 local-priority 6 color green name CS5
qos dscp-map 47 local-priority 6 color green name CS5
system interface-group 1 speed 10g
!interface group 1 contains ports 1/1/1-1/1/4
interface lag 106 multi-chassis
description to to FG-A Inside
no shutdown
no routing
vlan access 1251
lacp mode active
interface lag 107 multi-chassis
description to to FG-A Outside
no shutdown
no routing
vlan access 1202
lacp mode active
interface lag 114 multi-chassis
description to shea-noc-6300 sw1
no shutdown
@ -768,6 +793,24 @@ interface 1/1/3
no shutdown
no routing
vlan access 1298
interface 1/1/4
description linewize a inside
no shutdown
no routing
vlan access 811
interface 1/1/5
description linewize a outside
no shutdown
no routing
vlan access 1811
interface 1/1/6
description to FG-A port 17
no shutdown
lag 106
interface 1/1/7
description to FG-A port 19
no shutdown
lag 107
interface 1/1/11
description Ring#1
no shutdown
@ -842,6 +885,30 @@ interface 1/1/36
description ISL LAG
no shutdown
lag 256
interface vlan 1251
description ct-noc inside firewall
vrf attach outside
ip address 10.251.1.251/24
ip ospf 2 area 0.0.0.0
vrrp dual-active-forwarding
vrrp 1 address-family ipv4
address 10.251.1.1 primary
no shutdown
exit
interface vlan 1254
description outside vrf transit-vlan
vrf attach outside
ip address 172.31.254.251/24
ip ospf 2 area 0.0.0.0
no ip ospf passive
ip pim-sparse enable
interface vlan 1811
description linewize a outside
vrf attach outside
ip address 172.31.251.2/24
ip ospf 2 area 0.0.0.0
ip ospf cost 1000
ip ospf bfd
snmp-server vrf default
snmp-server vrf mgmt
snmp-server system-description sh-noc-8360-3-a
@ -861,6 +928,11 @@ ip dns server-address 10.21.48.10 vrf mgmt
!
!
!
router ospf 2 vrf outside
router-id 10.251.1.251
passive-interface default
rfc1583-compatibility
area 0.0.0.0
https-server vrf default
https-server vrf mgmt
configuration-lockout central managed

View File

@ -22,6 +22,7 @@ banner motd #
user admin group administrators password ciphertext AQBapSrm8XvyaIbd6IYUBDRJvSC4ThvypA0QAoFd58CHqKZnYgAAAPUZAAc/Rl2diIOXSEW67aGfKntmLRx/KapG7qfqqCM49hsw3FgTQmENpeq/LC52guL4ErINpTzGJ/1dfZAM3uDv9ukk/GA+mazyBx9pUdlcTNPS2/zqaei3hHjb5DgFo1fC
clock timezone america/new_york
profile aggregation-leaf
vrf outside
ntp server 10.1.1.2 iburst
ntp server 10.1.1.3 iburst
ntp server pool.ntp.org minpoll 4 maxpoll 4 iburst
@ -499,6 +500,8 @@ vlan 638
name Nysernet_CDN
vlan 699
name SCSDDCDefaultVLAN
vlan 812
name linewize-bypass-sh-inside
vlan 995
name l3vlan
vlan 999
@ -506,10 +509,16 @@ vlan 999
description VPN_Concentrator
vlan 1202
name Inside
vlan 1251
name InsideFirewall
vlan 1254
name OutsideVRFTransit
vlan 1256
name InterJuniperLink
vlan 1298
name CrownCastle-sh
vlan 1812
name linewize-bypass-sh-outside
vlan 2180
name Nutanix mgmt sh-noc
description Nutanix mgmt ct-noc
@ -524,7 +533,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5-7,9-12,16,18-21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,168,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,521-529,531-539,637,638,699,995,999,1202,1256,2180,2999,3000
spanning-tree vlan 3,5-7,9-12,16,18-21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,168,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,521-529,531-539,637,638,699,812,995,999,1202,1251,1254,1256,1812,2180,2999,3000
spanning-tree vlan 3 priority 12
spanning-tree vlan 5 priority 12
spanning-tree vlan 6 priority 12
@ -685,10 +694,14 @@ spanning-tree vlan 539 priority 12
spanning-tree vlan 637 priority 12
spanning-tree vlan 638 priority 12
spanning-tree vlan 699 priority 12
spanning-tree vlan 812 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1202 priority 12
spanning-tree vlan 1251 priority 4
spanning-tree vlan 1254 priority 4
spanning-tree vlan 1256 priority 12
spanning-tree vlan 1812 priority 4
spanning-tree vlan 2180 priority 4
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
@ -725,6 +738,18 @@ qos dscp-map 45 local-priority 6 color green name CS5
qos dscp-map 47 local-priority 6 color green name CS5
system interface-group 1 speed 10g
!interface group 1 contains ports 1/1/1-1/1/4
interface lag 106 multi-chassis
description to to FG-A Inside
no shutdown
no routing
vlan access 1251
lacp mode active
interface lag 107 multi-chassis
description to to FG-A Outside
no shutdown
no routing
vlan access 1202
lacp mode active
interface lag 114 multi-chassis
description to shea-noc-6300 sw2
no shutdown
@ -757,6 +782,24 @@ interface 1/1/1
description Juniper-B
no shutdown
lag 120
interface 1/1/4
description linewize bypass inside
no shutdown
no routing
vlan access 812
interface 1/1/5
description linewize bypass outside
no shutdown
no routing
vlan access 1812
interface 1/1/6
description to FG-A port 18
no shutdown
lag 106
interface 1/1/7
description to FG-A port 20
no shutdown
lag 107
interface 1/1/11
description Ring#1
no shutdown
@ -831,6 +874,31 @@ interface 1/1/36
description ISL LAG
no shutdown
lag 256
interface vlan 1251
description ct-noc inside firewall
vrf attach outside
ip address 10.251.1.252/24
ip ospf 2 area 0.0.0.0
vrrp dual-active-forwarding
vrrp 1 address-family ipv4
address 10.251.1.1 primary
no shutdown
exit
interface vlan 1254
description outside vrf transit-vlan
vrf attach outside
ip address 172.31.254.252/24
ip ospf 2 area 0.0.0.0
no ip ospf passive
ip pim-sparse enable
interface vlan 1812
description linewize bypass
vrf attach outside
ip address 172.31.252.2/24
ip neighbor-flood
ip ospf 2 area 0.0.0.0
ip ospf cost 9000
ip ospf bfd
snmp-server vrf default
snmp-server vrf mgmt
snmp-server system-description sh-noc-8360-3-b
@ -850,6 +918,11 @@ ip dns server-address 10.21.48.10 vrf mgmt
!
!
!
router ospf 2 vrf outside
router-id 10.251.1.252
passive-interface default
rfc1583-compatibility
area 0.0.0.0
https-server vrf default
https-server vrf mgmt
configuration-lockout central managed

View File

@ -479,6 +479,8 @@ vlan 995
vlan 999
name VPN_Concentrator
description VPN_Concentrator
vlan 1261
name FGHA1
vlan 2180
name Nutanix mgmt sh-noc
description Nutanix mgmt ct-noc
@ -493,7 +495,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,525,699,995,999,2180,2999,3000
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,525,699,995,999,1261,2180,2999,3000
spanning-tree vlan 3 priority 12
spanning-tree vlan 5 priority 12
spanning-tree vlan 6 priority 12
@ -635,6 +637,7 @@ spanning-tree vlan 525 priority 12
spanning-tree vlan 699 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1261 priority 12
spanning-tree vlan 2180 priority 4
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
@ -669,6 +672,12 @@ qos dscp-map 43 local-priority 6 color green name CS5
qos dscp-map 44 local-priority 6 color green name CS5
qos dscp-map 45 local-priority 6 color green name CS5
qos dscp-map 47 local-priority 6 color green name CS5
interface lag 102 multi-chassis
description to to FG-A City Phones
no shutdown
no routing
vlan access 500
lacp mode active
interface lag 245 multi-chassis
description Uplink LAG
no shutdown
@ -684,9 +693,14 @@ interface lag 256
vlan trunk allowed all
lacp mode active
interface 1/1/1
description FG HA1
no shutdown
no routing
vlan access 6
vlan access 1261
interface 1/1/2
description to FG-A port 5
no shutdown
lag 102
interface 1/1/3
no shutdown
interface 1/1/48

View File

@ -477,6 +477,8 @@ vlan 995
vlan 999
name VPN_Concentrator
description VPN_Concentrator
vlan 1262
name FGHA2
vlan 2180
name Nutanix mgmt sh-noc
description Nutanix mgmt ct-noc
@ -491,7 +493,7 @@ spanning-tree
spanning-tree priority 2
spanning-tree trap topology-change instance 0
spanning-tree ignore-pvid-inconsistency
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,525,699,995,999,2180,2999,3000
spanning-tree vlan 3,5-7,9-12,16,18,19,21,24,30,34,35,40,45,48,50,60,70,72,99-101,107,114,140,145,150,151,160,161,164,165,172-179,200,203,230,251,252,302-304,306-310,313-316,320-325,328-330,333,334,336,337,340-342,344,345,348,349,351,353-356,360,386,402-404,406-410,413-416,420-425,428-430,433,434,436,437,440-442,444,445,448,449,451,453-456,460,486,500-509,525,699,995,999,1262,2180,2999,3000
spanning-tree vlan 3 priority 12
spanning-tree vlan 5 priority 12
spanning-tree vlan 6 priority 12
@ -633,6 +635,7 @@ spanning-tree vlan 525 priority 12
spanning-tree vlan 699 priority 12
spanning-tree vlan 995 priority 12
spanning-tree vlan 999 priority 12
spanning-tree vlan 1262 priority 12
spanning-tree vlan 2180 priority 4
spanning-tree vlan 2999 priority 12
spanning-tree vlan 3000 priority 12
@ -667,6 +670,12 @@ qos dscp-map 43 local-priority 6 color green name CS5
qos dscp-map 44 local-priority 6 color green name CS5
qos dscp-map 45 local-priority 6 color green name CS5
qos dscp-map 47 local-priority 6 color green name CS5
interface lag 102 multi-chassis
description to to FG-A City Phones
no shutdown
no routing
vlan access 500
lacp mode active
interface lag 245 multi-chassis
description Uplink LAG
no shutdown
@ -681,6 +690,15 @@ interface lag 256
vlan trunk native 699 tag
vlan trunk allowed all
lacp mode active
interface 1/1/1
description FG HA2
no shutdown
no routing
vlan access 1262
interface 1/1/2
description to FG-A port 6
no shutdown
lag 102
interface 1/1/3
no shutdown
interface 1/1/49