Poc3 Sample Nokia
Poc3 Sample Nokia
exit all
configure
#--------------------------------------------------
echo "System Configuration"
#--------------------------------------------------
system
name "4211(1)-SR2848202-EDIRNE_STAR-POC3"
contact "VF_Test"
location "Esenurt_Istanbul"
coordinates "41.0488022,28.6698182" ?
ptp
profile g8275dot1-2014 ?
clock-type boundary
exit
snmp
packet-size 9216
exit
time
ntp
no shutdown
exit
sntp
shutdown
exit
zone TR 03
exit
exit
#--------------------------------------------------
echo "System Security Configuration"
#--------------------------------------------------
system
security
password
authentication-order tacplus local
exit
tacplus
accounting
authorization
server 1 address 10.150.101.20 secret test123 ? Tacacs server mi ?
server 2 address 10.150.101.21 secret test123 ?
exit
user-template "tacplus_default"
access console ftp
exit
user "SNMPV3-USER"
password "$2y$10$TrnBWjkm0Ic58rFX98v.E.rjH2BbXneA7bEFdbv69rcQpHOrNGmGm"
access snmp
snmp
authentication hash2 md5 VpvdBgFypuIIRMEnLikG4xzqEn/utj/37RIalEQfbdI= privacy des-key VpvdBgFypuIIRME
group "SNMPV3"
exit
exit
user "nokiaswap"
password V0daf0ne!!
access console ftp
console
member "default"
member "administrative"
exit
exit
user "admin"
password "$2y$10$CKk60ZlUmpdHAOW3qn3GM.g5R7xN4mKf.Ne/Fy4uWwayGC3RRBAdu"
access console ftp
console
member "administrative"
exit
exit
snmp
access group "SNMPV3" security-model usm security-level privacy read "iso" write "iso" notify "iso"
community "XEL43Cym29IIFShahy3Asptn7+iph1hlOAg83L0=" hash2 rwa version v2c
exit
exit
exit
#--------------------------------------------------
echo "Log Configuration"
#--------------------------------------------------
log
snmp-trap-group 98
description "5620sam"
trap-target "005056016275:main1" address 10.122.238.20 snmpv3 notify-community "SNMPV3-USER" security-leve
trap-target "005056016275:main2" address 10.122.238.28 snmpv3 notify-community "SNMPV3-USER" security-leve
trap-target "Cacti1" address 195.87.113.139 snmpv2c notify-community "N@wvDf1D03!R0"
trap-target "Cacti2" address 195.87.113.140 snmpv2c notify-community "N@wvDf1D03!R0"
trap-target "Solarwinds1" address 188.3.24.110 snmpv2c notify-community "N@wvDf1D03!R0"
exit
log-id 32
from debug-trace
to memory
no shutdown
exit
log-id 98
from main security change
to snmp 1024
no shutdown
exit
exit
#--------------------------------------------------
echo "Card Configuration"
#--------------------------------------------------
card 1
card-type iom-ixr-r6
mda 1
mda-type m6-10g-sfp++1-100g-qsfp28
sync-e
no shutdown
exit
no shutdown
exit
card 2
card-type iom-ixr-r6
no shutdown
exit
#--------------------------------------------------
echo "Connector Configuration"
#--------------------------------------------------
port 1/1/c7
connector
breakout c1-100g
exit
no shutdown
exit
#--------------------------------------------------
echo "Port Configuration"
#--------------------------------------------------
port 1/1/1
description Uplink_or_Connected_poc3_sample
ethernet
mtu xxxx
hold-time up 20
mode hybrid
encap-type dot1q
lldp
dest-mac nearest-bridge
admin-status tx-rx
notification
tx-tlvs port-desc sys-name sys-desc sys-cap
tx-mgmt-address system
exit
exit
ssm
no shutdown
exit
efm-oam
transmit-interval 1 multiplier 2
no shutdown
exit
exit
no shutdown
exit
port 1/1/2
description "Customer_sample_port"
ethernet
mtu xxxx
mode access
encap-type dot1q
lldp
dest-mac nearest-bridge
admin-status tx-rx
notification
tx-tlvs port-desc sys-name sys-desc sys-cap
tx-mgmt-address system
exit
exit
ssm
no shutdown
exit
exit
no shutdown
exit
#--------------------------------------------------
echo "System Sync-If-Timing Configuration"
#--------------------------------------------------
system
sync-if-timing
begin
ql-selection
ref-order ref1 ref2 bits ptp
ref1
source-port x/x/x
no shutdown
exit
ref2
source-port x/x/cx/x
no shutdown
exit
revert
commit
exit
exit
#--------------------------------------------------
echo "LAG Configuration"
#--------------------------------------------------
lag x
description <lag-description>
mode hybrid
encap-type dot1q
port x/x/x
port x/x/x
lacp active
port-threshold <value> action down
family ipv4
local-ip-address <local-node-interface-ip-address>
receive-interval 10
remote-ip-address <remote-node-interface-ip-address>
transmit-interval 10
no shutdown
exit
exit
no shutdown
exit
#--------------------------------------------------
echo "Redundancy Configuration"
#--------------------------------------------------
redundancy
synchronize config
exit
#--------------------------------------------------
echo "Management Router Configuration"
#--------------------------------------------------
router management
exit
#--------------------------------------------------
echo "Router (Network Side) Configuration"
#--------------------------------------------------
router Base
#--------------------------------------------------
interface <interface-name>
address <ip-address[/mask]>
loopback
no shutdown
exit
interface "system"
address <ip-address[/mask]>
bfd x receive x multiplier x
no shutdown
exit
interface <interface-name>
address <ip-address[/mask]>
description <long-description-string>
port <port-name>
bfd x receive x multiplier x
no shutdown
exit
no shutdown
exit
autonomous-system 65000
#--------------------------------------------------
echo "MPLS Label Range Configuration"
#--------------------------------------------------
mpls-labels
static-label-range 15968
sr-labels start 16000 end 34000
exit
#--------------------------------------------------
echo "ISIS Configuration"
#--------------------------------------------------
isis 0
shutdown
exit
#--------------------------------------------------
echo "ISIS (Inst: 1) Configuration"
#--------------------------------------------------
isis 1
shutdown
exit
#--------------------------------------------------
echo "ISIS (Inst: 2) Configuration"
#--------------------------------------------------
isis x
level-capability level-2
standard-multi-instance
graceful-restart
exit
area-id 49.0001
overload-on-boot timeout 300
traffic-engineering
advertise-router-capability area
loopfree-alternates
remote-lfa
node-protect
exit
ti-lfa
node-protect
exit
exit
timers
lsp-wait 8000 lsp-initial-wait 10 lsp-second-wait 1000
spf-wait 1000 spf-initial-wait 50 spf-second-wait 100
exit
level 2
wide-metrics-only
exit
segment-routing
prefix-sid-range global
no shutdown
exit
interface "system"
ipv4-node-sid label 24xxx
passive
no shutdown
exit
interface "xxx"
interface-type point-to-point
bfd-enable ipv4
level 2
hello-authentication-key xxxxxx
hello-authentication-type message-digest
metric 100
exit
no shutdown
exit
no shutdown
exit
#--------------------------------------------------
echo "MPLS Configuration"
#--------------------------------------------------
mpls
resignal-timer 30
hold-timer 10
admin-group-frr
bypass-resignal-timer 30
interface "system"
no shutdown
exit
interface "third_loopback"
no shutdown
exit
interface "other interface"
no shutdown
exit
no shutdown
exit
#--------------------------------------------------
echo "RSVP Configuration"
#--------------------------------------------------
rsvp
implicit-null-label
interface "system"
no shutdown
exit
interface "third_loopback"
no shutdown
exit
interface <Interface Name>
bfd-enable
no shutdown
exit
no shutdown
exit
#--------------------------------------------------
echo "MPLS LSP Configuration"
#--------------------------------------------------
mpls
path "toPOC2-1_primary"
hop 10 x.x.x.x strict
hop 20 x.x.x.x strict
hop 30 …..
no shutdown
exit
path "toPOC2-1_secondary"
hop 10 x.x.x.x strict
hop 20 x.x.x.x strict
hop 30 …..
no shutdown
exit
path "loose"
no shutdown
exit
path "toPOC2-2_primary"
hop 10 x.x.x.x strict
hop 20 x.x.x.x strict
hop 30 …..
no shutdown
exit
path "toPOC2-2_secondary"
hop 10 x.x.x.x strict
hop 20 x.x.x.x strict
hop 30 …..
no shutdown
lsp "toPOC2-1"
to x.x.x.x
path-computation-method local-cspf
fast-reroute facility
propagate-admin-group
exit
primary "toPOC2-1_primary"
exit
secondary "toPOC2-1_scondary"
standby
exit
secondary "loose"
exit
no shutdown
exit
lsp "toPOC2_2"
to x.x.x.x
path-computation-method local-cspf
fast-reroute facility
propagate-admin-group
exit
primary "toPOC2-2_primary"
exit
secondary "toPOC2-2_scondary"
standby
exit
secondary "loose"
exit
no shutdown
exit
no shutdown
exit
#--------------------------------------------------
echo "LDP Configuration"
#--------------------------------------------------
ldp
import-pmsi-routes
exit
interface-parameters
exit
targeted-session
peer x.x.x.x
local-lsr-id "Second-Loopback"
no shutdown
exit
no shutdown
exit
exit
#--------------------------------------------------
echo "Service Configuration"
#--------------------------------------------------
service
customer 1 name "1" create
description "Default customer"
exit
#--------------------------------------------------
echo "Router (Service Side) Configuration"
#--------------------------------------------------
router Base
#--------------------------------------------------
echo "ISIS Configuration"
#--------------------------------------------------
isis 0
exit
#--------------------------------------------------
echo "ISIS (Inst: 1) Configuration"
#--------------------------------------------------
isis 1
exit
#--------------------------------------------------
echo "ISIS (Inst: 2) Configuration"
#--------------------------------------------------
isis 2
no shutdown
exit
#--------------------------------------------------
echo "Policy Configuration"
#--------------------------------------------------
policy-options
begin
prefix-list "ALL-System-IPv4"
prefix x.x.x.x/24 prefix-length-range 32-32
exit
prefix-list "POC3-Second-Loopbacks"
prefix x.x.x.x/24 prefix-length-range 32-32
exit
prefix-list "POC3-Fourth-Loopbacks"
prefix x.x.x.x/24 prefix-length-range 32-32
exit
community "4G_target"
members "target:65000:4"
exit
community "2G_Hub_target"
members "target:65000:2"
exit
community "3G_Hub_target"
members "target:65000:3"
exit
community "REGIONX-ISISY"
members "origin:X:Y"
exit
community "2G_Spoke_target"
members "target:65000:22"
exit
community "3G_Spoke_target"
members "target:65000:33"
exit
community "Mobile-All-Community"
members "65000:65000"
exit
community "Enterprise-All-Community"
members "15924:15924"
exit
policy-statement "To-POC2-1(name)-exp"
entry 10
from
protocol direct
prefix-list "POC3-Second-Loopbacks"
exit
action accept
community add "REGIONX-ISISY"
local-preference 140
exit
exit
entry 20
from
protocol direct
prefix-list "POC3-fourth-Loopbacks"
exit
to
protocol bgp-label
exit
action accept
community add "REGIONX-ISISY"
local-preference 140
exit
exit
entry 30
from
family vpn-ipv4
exit
action accept
community add "REGIONX-ISISY"
local-preference 140
exit
exit
default-action drop
exit
exit
policy-statement "To-POC2-2(name)-exp"
entry 10
from
protocol direct
prefix-list "POC3-Second-Loopbacks"
exit
action accept
community add "REGIONX-ISISY"
local-preference 130
exit
exit
entry 20
from
protocol direct
prefix-list "POC3-fourth-Loopbacks"
exit
to
protocol bgp-label
exit
action accept
community add "REGIONX-ISISY"
local-preference 130
exit
exit
entry 30
from
family vpn-ipv4
exit
action accept
community add "REGIONX-ISISY"
local-preference 130
exit
exit
default-action drop
exit
exit
policy-statement "From-POC2-1(name)-imp"
entry 100
action accept
local-preference 90
exit
exit
exit
policy-statement "From-POC2-2(name)-imp"
entry 100
action accept
local-preference 80
exit
exit
exit
commit
exit
#--------------------------------------------------
echo "BGP Configuration"
#--------------------------------------------------
bgp
vpn-apply-import
vpn-apply-export
graceful-restart
exit
min-route-advertisement 5
enable-peer-tracking
rapid-withdrawal
split-horizon
selective-label-ipv4-install
next-hop-resolution
labeled-routes
transport-tunnel
family vpn
resolution-filter
no ldp
rsvp
sr-isis
no bgp
exit
resolution filter
exit
family label-ipv4
resolution-filter
no ldp
rsvp
sr-isis
exit
resolution filter
exit
exit
exit
exit
group "to-POC2"
family vpn-ipv4 label-ipv4
type internal
outbound-route-filtering
extended-community
send-orf
exit
exit
peer-as 65000
neighbor x.x.x.x
import "From-POC2-name-imp"
export "To-POC2-name-exp"
bfd-enable
exit
neighbor x.x.x.x
import "From-POC2-name-imp"
export "To-POC2-name-exp"
bfd-enable
exit
exit
no shutdown
exit
exit
#--------------------------------------------------
echo "Source IP Address Configuration"
#--------------------------------------------------
system
security
source-address
application tacplus "Second-Loopback"
application snmptrap "Second-Loopback"
application syslog "Second-Loopback"
application ntp "Second-Loopback"
exit
exit
exit
#--------------------------------------------------
echo "Log all events for service vprn Configuration"
#--------------------------------------------------
log
exit
#--------------------------------------------------
echo "System Time NTP Configuration"
#--------------------------------------------------
system
time
ntp
server 10.122.238.20 prefer
server 10.122.238.28
exit
exit
exit
system
ptp
port x/x/x create
master-only false
no shutdown
exit
port x/x/x create
no shutdown
exit
no shutdown
exit
exit
exit all
//*SITEID(sequence)-<SR/IXR><phonecode><DeviceID>-<locationname>-POCID
//contact information
//location information
//location coordinates
// TR 03 seçilir
Tacacs config'i mi ?
Snmp user oluşturulmalı cihazları monitor edebilmek için oluşturulmalı.
Password'u ne ?
Snmp'yi açmak için kullanıyoruz.
Değişebilir mi ?
//mode (hybrid-access-network)
//encap-type {dot1q|null|qinq}
//uplink simetrik ise default değer 1 dir
En son girilecek.
Netleşmesi beklenıyor.
Netleşmesi beklenıyor.
Verilecek değer beklenıyor.
//sid label her cihaz için farklıdır. Nokia cihazlar 24000 den itibaren sid label kullanır
//router interfaceler daima point to point çalışır.
//other poc3 ?