RJLT PERU
RJLT PERU
[V200R007C00SPCb00]
#
sysname rJLT_PERU
#
drop illegal-mac alarm
#
dns server 200.62.191.11
dns server 200.62.191.12
dns server 200.24.191.11
dns server 200.24.191.12
#
dhcp enable
#
radius-server template default
#
hwtacacs-server template Claro_aaa
hwtacacs-server authentication 200.14.241.43
hwtacacs-server authorization 200.14.241.43
hwtacacs-server accounting 200.14.241.43
hwtacacs-server source-ip 190.116.172.170
hwtacacs-server shared-key cipher %^%#MFydL<)H=#D6xZGk5Nl2v\~c##PHCO[NiM3>l~r@%^%#
undo hwtacacs-server user-name domain-included
#
pki realm default
enrollment self-signed
#
ssl policy default_policy type server
pki-realm default
#
acl number 2000
rule 0 permit source 192.168.1.0 0.0.0.255
#
acl number 3333
rule 0 permit ip source 190.116.172.161 0
rule 1 permit ip source 200.14.241.43 0
#
ip pool POOL_AUSENCO
gateway-list 192.168.1.1
network 192.168.1.0 mask 255.255.255.0
excluded-ip-address 192.168.1.2 192.168.1.20
dns-list 200.62.191.11 200.62.191.12 200.24.191.11 200.24.191.12
#
aaa
authentication-scheme default
authentication-scheme radius
authentication-mode radius
authentication-scheme hwtacacs
authentication-mode hwtacacs local
authorization-scheme default
authorization-scheme hwtacacs
authorization-mode hwtacacs local
accounting-scheme default
accounting-scheme hwtacacs
accounting-mode hwtacacs
accounting start-fail online
domain default
domain default_admin
authentication-scheme hwtacacs
accounting-scheme hwtacacs
authorization-scheme hwtacacs
hwtacacs-server Claro_aaa
domain default_aaa
authentication-scheme radius
radius-server default
local-user admin password irreversible-cipher %^%#8M/eX<:+
{VV^670II#x#jqP\;]TiD.Legt'bQse5VHOyH_N_y,W;`AB:G5fL%^%#
local-user admin privilege level 15
local-user admin service-type terminal http
local-user huawei password irreversible-cipher %^%#Fy3g$`x=W!r@/OLe:)]V){'w&:[]e!
#Z,$90g7JJSKFYU&r8vT=/qQB1q,TF%^%# access-limit 5
local-user huawei privilege level 15
local-user huawei ftp-directory flash:
local-user huawei service-type telnet ssh
#
firewall zone Local
priority 16
#
interface Vlanif1
description Red LAN | rJLT_PERU S.A.C | INTERNET CORPORATIVO 5 MBPS |
CID:11121994|
set flow-stat interval 10
ip address 190.119.182.81 255.255.255.248
ip netstream inbound
ip netstream outbound
#
interface GigabitEthernet0/0/0
set flow-stat interval 10
#
interface GigabitEthernet0/0/1
#
interface GigabitEthernet0/0/2
set flow-stat interval 10
undo negotiation auto
#
interface GigabitEthernet0/0/3
set flow-stat interval 10
#
interface GigabitEthernet0/0/4
description Red WAN | rJLT_PERU S.A.C | INTERNET CORPORATIVO 5 MBPS |
CID:11121994|
set flow-stat interval 10
port media type fiber
undo negotiation auto
port media type copper
undo negotiation auto
combo-port fiber
#
interface GigabitEthernet0/0/10.10
description Red WAN | rJLT_PERU S.A.C | INTERNET CORPORATIVO 5 MBPS |
CID:11121994|
set flow-stat interval 10
dot1q termination vid 500
ip address 190.116.172.170 255.255.255.240
ip netstream inbound
ip netstream outbound
nat outbound 2000 interface Vlanif 1
qos car inbound cir 40960 cbs 7680000 pbs 15360000 green pass yellow discard red
discard
qos car outbound cir 40960 cbs 7680000 pbs 15360000 green pass yellow discard red
discard
statistic enable inbound
statistic enable outbound
#
interface GigabitEthernet0/0/5
description VirtualPort
#
interface Cellular0/0/0
#
interface NULL0
#
snmp-agent local-engineid 800007DB0328A6DBA933E3
snmp-agent sys-info version v2c
snmp-agent target-host trap-hostname mraClaro address 190.81.124.68 udp-port 162
trap-paramsname mraClaro
snmp-agent target-host trap-paramsname 190.81.124.68 v2c securityname %^
%#vV3m&4@]0%<QFcLn@<6Qc4)X:k*o@#`Bk{D.Ww{3%^%#
snmp-agent trap source GigabitEthernet0/0/4.10
snmp-agent trap enable
snmp-agent
#
telnet server enable
#
http secure-server ssl-policy default_policy
http server enable
http secure-server enable
#
ip route-static 0.0.0.0 0.0.0.0 190.116.172.161
#
ip netstream timeout active 1
ip netstream timeout inactive 20
ip netstream export source 190.116.164.125
ip netstream export host 190.81.124.75 9996
ip netstream export host 190.81.124.212 9996
ip netstream export version 9
#
fib regularly-refresh disable
#
user-interface con 0
authentication-mode password
set authentication password cipher %^%#_3^zWTI
%xLAKVcQgX646kvC6,4DSoSdb$X>aQ&&&F*;o*^]SqAOib]CN[x:1%^%#
user-interface vty 0 4
acl 3333 inbound
authentication-mode aaa
user privilege level 15
#
wlan ac
#
ops
#
autostart
#
return
[rAusencoPEru]