From 3450eab0b0388fe2bc5f297cf477c080e49d8873 Mon Sep 17 00:00:00 2001 From: Vasil Kolev Date: Sat, 4 Nov 2017 12:16:00 +0200 Subject: [PATCH] sync to prod --- switch-configs/nocsw.cfg | 113 ++++++++++++++++++++++++--------------- 1 file changed, 70 insertions(+), 43 deletions(-) diff --git a/switch-configs/nocsw.cfg b/switch-configs/nocsw.cfg index d506668..ee3f6c0 100644 --- a/switch-configs/nocsw.cfg +++ b/switch-configs/nocsw.cfg @@ -1,13 +1,15 @@ -!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! -! -! NOCSW for OpenFest 2017 -! -! HW: WS-C3750G-24TS -! SW: c3750-ipservicesk9-mz.122-55.SE6.bin -! -! 2017.10.19 - initial -! -!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! +-!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! +-! +-! NOCSW for OpenFest 2017 +-! +-! HW: WS-C3750G-24TS +-! SW: c3750-ipservicesk9-mz.122-55.SE6.bin +-! +-! 2017.10.19 - initial +-! 2017.11.04 - production +-! +-!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! +Current configuration : 7319 bytes ! version 12.2 no service pad @@ -29,11 +31,38 @@ switch 1 provision ws-c3750g-24ts system mtu routing 1546 vtp mode transparent ip name-server 10.20.0.1 -! ! ! ! ! +crypto pki trustpoint TP-self-signed-448483968 + enrollment selfsigned + subject-name cn=IOS-Self-Signed-Certificate-448483968 + revocation-check none + rsakeypair TP-self-signed-448483968 +! +! +crypto pki certificate chain TP-self-signed-448483968 + certificate self-signed 01 + 3082023C 308201A5 A0030201 02020101 300D0609 2A864886 F70D0101 04050030 + 30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274 + 69666963 6174652D 34343834 38333936 38301E17 0D393330 33303130 30303231 + 315A170D 32303031 30313030 30303030 5A303031 2E302C06 03550403 1325494F + 532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3434 38343833 + 39363830 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100 + C23AA9B7 ADD891E1 33B799E2 57E2518E 0E66187B D98F2611 13329DFB 22AB44CD + B05F1A20 713812B3 B1316520 7CF4A44D 09B43B38 A51F5CE4 1AB2B6CE A517CE72 + 178BF3FC EABE83F0 3484E850 EA90B121 A7CC5A4A C59D51DA D571A3F6 6DB16B81 + E50F3AB7 9CBE1C54 E5B4044A 21885465 F799BF8D AC088EB0 E997975C B5EAE10D + 02030100 01A36630 64300F06 03551D13 0101FF04 05300301 01FF3011 0603551D + 11040A30 0882066E 6F637377 2E301F06 03551D23 04183016 80140B85 2A1FEAA2 + C57A710F 272188BA BD4C5B3E 16A2301D 0603551D 0E041604 140B852A 1FEAA2C5 + 7A710F27 2188BABD 4C5B3E16 A2300D06 092A8648 86F70D01 01040500 03818100 + 5D565D7E F937616F CDF07929 394894B7 00DDD4F3 5AF5EE67 9C3F2C56 3B183A86 + FF5F3B85 55857574 8C716002 A66A2A97 85D2BBAD 4972FAC8 744CC41E D0A9B51C + 65BF03DD 7924C33B 00150C57 A3815D7C AB54B1A7 B1F47487 9006F3AA 4B9BBB96 + C872A6DF 3501ABC0 8BD1BA44 9D920064 ECF3F134 900B220F 524D67B4 BE2C6C8D + quit ! ! ! @@ -52,7 +81,7 @@ vlan 20 vlan 21 name of-wired ! -vlan 22 +vlan 22 name of-wireless ! vlan 23 @@ -66,16 +95,17 @@ vlan 25 ! ! ! +! interface GigabitEthernet1/0/1 description phone/1 - switchport trunk encapsulation dot1q switchport access vlan 25 + switchport trunk encapsulation dot1q spanning-tree portfast trunk ! interface GigabitEthernet1/0/2 description phone/2 - switchport trunk encapsulation dot1q switchport access vlan 25 + switchport trunk encapsulation dot1q spanning-tree portfast trunk ! interface GigabitEthernet1/0/3 @@ -125,7 +155,7 @@ interface GigabitEthernet1/0/10 switchport access vlan 22 switchport mode access spanning-tree portfast trunk -! +! interface GigabitEthernet1/0/11 description of-video/1 switchport access vlan 23 @@ -163,58 +193,54 @@ interface GigabitEthernet1/0/16 spanning-tree portfast trunk ! interface GigabitEthernet1/0/17 - description shutdown - shutdown - spanning-tree portfast trunk + description noc-ap + switchport trunk encapsulation dot1q + switchport trunk allowed vlan 20,22 + switchport mode trunk ! interface GigabitEthernet1/0/18 - description shutdown - shutdown - spanning-tree portfast trunk + description noc-int + switchport access vlan 20 + switchport mode access ! interface GigabitEthernet1/0/19 - description shutdown - shutdown - spanning-tree portfast trunk + description noc-int + switchport access vlan 20 + switchport mode access ! interface GigabitEthernet1/0/20 - description shutdown - shutdown + description noc-int + switchport access vlan 20 + switchport mode access spanning-tree portfast trunk ! interface GigabitEthernet1/0/21 - description shutdown - shutdown - spanning-tree portfast trunk + description noc-int + switchport access vlan 20 + switchport mode access ! interface GigabitEthernet1/0/22 - description shutdown - shutdown - spanning-tree portfast trunk ! interface GigabitEthernet1/0/23 - description uplink/2 + description uplink switchport trunk encapsulation dot1q - spanning-tree portfast trunk + switchport trunk allowed vlan 20-25 + switchport mode trunk + no cdp enable + spanning-tree bpdufilter enable + spanning-tree bpduguard enable ! interface GigabitEthernet1/0/24 - description uplink/1 - switchport trunk encapsulation dot1q - spanning-tree portfast trunk ! interface GigabitEthernet1/0/25 - shutdown - spanning-tree portfast trunk ! interface GigabitEthernet1/0/26 shutdown spanning-tree portfast trunk ! interface GigabitEthernet1/0/27 - shutdown ! interface GigabitEthernet1/0/28 - shutdown ! interface Vlan1 no ip address @@ -223,9 +249,10 @@ interface Vlan1 interface Vlan20 ip address 10.20.0.23 255.255.255.0 ! +ip default-gateway 10.20.0.1 ip classless -no ip http server -no ip http secure-server +ip http server +ip http secure-server ! ! !