! ! No configuration change since last restart version 15.1 service timestamps debug datetime msec localtime show-timezone year service timestamps log datetime msec localtime show-timezone year service password-encryption ! hostname krst-tw1-rt1 ! boot-start-marker boot-end-marker ! ! logging buffered 64000 informational no logging console no logging monitor ! aaa new-model ! ! aaa group server tacacs+ ISE-TACACS server name il-chi-eqx-dpsn1 server name tx-dal-eqx-dpsn1 ! aaa authentication login default group ISE-TACACS enable aaa authentication enable default group ISE-TACACS enable aaa authorization console aaa authorization config-commands aaa authorization exec default group ISE-TACACS none aaa authorization commands 1 default group ISE-TACACS none aaa authorization commands 15 default group ISE-TACACS none aaa accounting exec default start-stop group ISE-TACACS aaa accounting commands 15 default start-stop group ISE-TACACS aaa accounting network default start-stop group ISE-TACACS aaa accounting connection default start-stop group ISE-TACACS ! ! ! ! ! aaa session-id common ! clock timezone MNT -7 0 ! no ipv6 cef ip source-route ip cef ! ! ! ! ! ip domain name net.dvn ! multilink bundle-name authenticated ! crypto pki token default removal timeout 0 ! ! license udi pid CISCO1921/K9 sn FGL1604211Q ! ! vtp mode transparent vtp version 2 ! redundancy ! ! ! ! vlan 3 name AdminVlan ! ! ! ! ! ! ! ! interface Embedded-Service-Engine0/0 no ip address shutdown ! interface GigabitEthernet0/0 no ip address shutdown duplex auto speed auto ! interface GigabitEthernet0/1 no ip address shutdown duplex auto speed auto ! interface GigabitEthernet0/1/0 description krst-tw1-rd1 (> jck3-itct-rd1) switchport access vlan 3 no ip address ! interface GigabitEthernet0/1/1 description krst-tw1-rd2 (> PtMP NW) switchport access vlan 3 no ip address ! interface GigabitEthernet0/1/2 description krst-tw1-rd3 (> PtMP SE) switchport access vlan 3 no ip address ! interface GigabitEthernet0/1/3 no ip address ! interface GigabitEthernet0/1/4 no ip address ! interface GigabitEthernet0/1/5 no ip address ! interface GigabitEthernet0/1/6 no ip address ! interface GigabitEthernet0/1/7 no ip address ! interface Vlan1 no ip address ! interface Vlan3 ip address 10.74.3.1 255.255.255.224 no ip redirects no ip unreachables no ip proxy-arp no ip route-cache ! ip forward-protocol nd ! no ip http server no ip http secure-server ip flow-export destination 172.25.225.11 2055 ! ip route 0.0.0.0 0.0.0.0 10.74.3.14 ip tacacs source-interface Vlan3 ! ip access-list extended AccessControl permit ip host 10.52.5.69 any permit ip host 10.64.132.69 any permit ip 172.16.5.0 0.0.0.255 any permit ip 172.20.5.0 0.0.0.255 any permit ip 172.24.225.0 0.0.0.255 any permit ip 172.25.225.0 0.0.0.255 any permit tcp host 63.99.29.18 any eq 22 permit tcp host 63.99.29.40 any eq 22 permit tcp host 206.47.24.18 any eq 22 permit tcp host 206.47.24.169 any eq 22 ! logging trap debugging logging facility local5 logging source-interface Vlan3 logging 172.25.20.61 access-list 96 permit 172.18.2.37 access-list 96 permit 172.18.18.21 access-list 97 permit 10.66.37.101 access-list 97 permit 10.52.12.12 access-list 97 permit 172.16.32.30 access-list 97 permit 172.16.32.31 access-list 97 permit 172.20.32.30 access-list 97 permit 172.20.32.31 access-list 97 permit 172.16.12.104 access-list 97 permit 172.16.32.116 access-list 97 permit 10.64.146.32 access-list 97 permit 172.16.5.0 0.0.0.255 access-list 97 permit 172.20.5.0 0.0.0.255 access-list 97 permit 172.24.225.0 0.0.0.255 access-list 97 permit 172.25.225.0 0.0.0.255 access-list 98 permit 172.25.36.129 access-list 98 permit 172.25.17.190 access-list 98 permit 172.22.136.17 access-list 98 permit 172.18.200.80 access-list 98 permit 172.18.136.27 access-list 98 permit 172.18.2.121 access-list 98 permit 172.18.66.57 access-list 98 permit 172.18.2.122 access-list 98 permit 172.25.40.78 ! ! ! ! ! snmp-server view HPmib-exclude iso included snmp-server view HPmib-exclude at excluded snmp-server view HPmib-exclude internet.6.3.15 excluded snmp-server view HPmib-exclude internet.6.3.16 excluded snmp-server view HPmib-exclude internet.6.3.18 excluded snmp-server view HPmib-exclude ip.21 excluded snmp-server view HPmib-exclude ip.22 excluded snmp-server community wax0nwax0ff RO 97 snmp-server trap-source Vlan3 snmp-server location Kirby, AB snmp-server contact Network Services tacacs-server timeout 6 tacacs-server directed-request tacacs server il-chi-eqx-dpsn1 address ipv4 172.25.243.22 tacacs server tx-dal-eqx-dpsn1 address ipv4 172.24.243.22 ! ! ! control-plane ! ! banner exec ^C ********************************SYSTEM DESCRIPTION************************* * * * NAME: krst-tw1-rt1 * * LOCATION: South Kirby Telus Tower * * CORPORATION: DEVON CANADA CORPORATION * * CONTACT: ENTERPRISE NETWORK SERVICES * * DESCRIPTION: CISCO1921/K9 * * NOTES: * * * *************************************************************************** ^C banner motd ^C **************************SECURITY NOTICE**************************** * USAGE OF THIS SYSTEM MAY BE LOGGED AND/OR MONITORED WITHOUT NOTICE. * DISCONNECT IMMEDIATELY IF YOU ARE NOT AN AUTHORIZED USER! ********************************************************************* ^C ! line con 0 line aux 0 line 2 no activation-character no exec transport preferred none transport input all transport output pad telnet rlogin lapb-ta mop udptn v120 ssh stopbits 1 line vty 0 4 session-timeout 5 access-class AccessControl in exec-timeout 60 0 timeout login response 90 transport input all line vty 5 15 session-timeout 5 access-class AccessControl in exec-timeout 60 0 timeout login response 90 transport input all ! scheduler allocate 20000 1000 ntp server 172.20.2.33 ntp server 172.20.2.34 end