Skip to content

Instantly share code, notes, and snippets.

@Tachashi
Last active December 3, 2018 16:31
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save Tachashi/f63afb5693140687007756f16517fb37 to your computer and use it in GitHub Desktop.
Save Tachashi/f63afb5693140687007756f16517fb37 to your computer and use it in GitHub Desktop.
Display the source blob
Display the rendered blob
Raw
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
!
! Last configuration change at 21:01:48 JST Sat Dec 1 2018 by test
! NVRAM config last updated at 21:01:49 JST Sat Dec 1 2018 by test
!
version 12.4
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname brborder1
!
boot-start-marker
boot-end-marker
!
no logging console
enable secret 5 $1$c.Tv$34QkJgPvvsORieBDr/hGO0
!
no aaa new-model
!
resource policy
!
clock timezone JST 9
!
!
ip cef
!
!
no ip domain lookup
ip domain name brborder1
ip ssh version 2
!
!
!
username test privilege 15 password 7 0835495D1D
!
!
class-map match-all C-DATA2
match access-group 101
class-map match-all C-DATA1
match access-group 100
!
!
policy-map P-CHILD
class C-DATA1
priority percent 40
class C-DATA2
bandwidth percent 30
class class-default
bandwidth percent 30
policy-map P-PARENT
class class-default
shape average 10000000
service-policy P-CHILD
!
!
!
!
!
!
interface FastEthernet0
description << To hqborder1 >>
bandwidth 100
ip address 10.1.1.2 255.255.255.252
delay 10
duplex auto
speed auto
service-policy output P-PARENT
!
interface FastEthernet1
no ip address
shutdown
duplex auto
speed auto
!
interface BRI0
no ip address
encapsulation hdlc
shutdown
!
interface FastEthernet2
switchport access vlan 10
!
interface FastEthernet3
!
interface FastEthernet4
!
interface FastEthernet5
!
interface FastEthernet6
!
interface FastEthernet7
!
interface FastEthernet8
!
interface FastEthernet9
!
interface Vlan1
no ip address
!
interface Vlan10
ip address 10.10.1.49 255.255.255.0
!
router eigrp 1
network 10.1.1.0 0.0.0.3
network 10.10.1.0 0.0.0.255
no auto-summary
!
!
!
no ip http server
no ip http secure-server
!
logging 192.168.100.107
access-list 100 permit ip any 192.168.100.0 0.0.0.255
access-list 101 permit ip any 192.168.101.0 0.0.0.255
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
!
!
!
!
!
!
control-plane
!
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line aux 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp clock-period 17179867
ntp server 10.10.1.4
!
webvpn context Default_context
ssl authenticate verify all
!
no inservice
!
end
!
! Last configuration change at 21:01:07 JST Sat Dec 1 2018 by test
! NVRAM config last updated at 21:01:17 JST Sat Dec 1 2018 by test
!
version 12.4
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname brborder2
!
boot-start-marker
boot-end-marker
!
no logging console
enable secret 5 $1$Eh.A$Gx4VNmzFLnplntmFSw4Sg/
!
no aaa new-model
!
resource policy
!
clock timezone JST 9
!
!
ip cef
!
!
no ip domain lookup
ip domain name brborder2
ip ssh version 2
!
!
!
username test privilege 15 password 7 051F031C35
!
!
class-map match-all C-DATA2
match access-group 101
class-map match-all C-DATA1
match access-group 100
!
!
policy-map P-CHILD
class C-DATA1
priority percent 40
class C-DATA2
bandwidth percent 30
class class-default
bandwidth percent 30
policy-map P-PARENT
class class-default
shape average 10000000
service-policy P-CHILD
!
!
!
!
!
!
interface Tunnel1
description << To hqborder2 >>
bandwidth 100
ip address 10.1.1.10 255.255.255.252
delay 10
tunnel source Loopback0
tunnel destination 1.1.1.1
service-policy output P-PARENT
!
interface Loopback0
ip address 1.1.1.2 255.255.255.255
!
interface FastEthernet0
description << To PE Router >>
ip address 10.1.1.6 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet1
no ip address
shutdown
duplex auto
speed auto
!
interface BRI0
no ip address
encapsulation hdlc
shutdown
!
interface FastEthernet2
switchport access vlan 10
!
interface FastEthernet3
!
interface FastEthernet4
!
interface FastEthernet5
!
interface FastEthernet6
!
interface FastEthernet7
!
interface FastEthernet8
!
interface FastEthernet9
!
interface Vlan1
no ip address
!
interface Vlan10
ip address 10.10.1.48 255.255.255.0
!
router eigrp 1
network 10.1.1.8 0.0.0.3
network 10.10.1.0 0.0.0.255
no auto-summary
!
ip route 1.1.1.1 255.255.255.255 10.1.1.5
!
!
no ip http server
no ip http secure-server
!
logging 192.168.100.107
access-list 100 permit ip any 192.168.100.0 0.0.0.255
access-list 101 permit ip any 192.168.101.0 0.0.0.255
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
!
!
!
!
!
!
control-plane
!
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line aux 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp clock-period 17179867
ntp server 10.10.1.44
!
webvpn context Default_context
ssl authenticate verify all
!
no inservice
!
end
!
version 12.1
no service pad
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname hqaccess1
!
no logging console
enable secret 5 $1$dKdo$Zpaac5aW4hk9H3SikD9zu/
!
username test privilege 15 password 7 0835495D1D
clock timezone JST 9
ip subnet-zero
no ip domain-lookup
ip domain-name hqaccess1
!
spanning-tree mode pvst
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
!
!
interface FastEthernet0/1
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface FastEthernet0/2
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface FastEthernet0/3
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface FastEthernet0/4
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface FastEthernet0/5
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface FastEthernet0/6
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/7
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/8
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/9
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/10
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/11
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/12
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/13
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/14
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/15
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/16
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/17
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/18
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/19
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/20
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/21
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/22
switchport access vlan 100
switchport mode access
no ip address
shutdown
spanning-tree portfast
!
interface FastEthernet0/23
description << To hqdist1 >>
switchport access vlan 100
switchport mode access
no ip address
duplex full
speed 100
!
interface FastEthernet0/24
description << To hqdist2 >>
switchport access vlan 100
switchport mode access
no ip address
duplex full
speed 100
!
interface Vlan1
no ip address
no ip route-cache
shutdown
!
interface Vlan100
description << Server Segment >>
ip address 192.168.100.47 255.255.255.0
no ip route-cache
!
ip default-gateway 192.168.100.150
ip http server
!
logging 192.168.100.107
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp server 192.168.100.44
end
!
! Last configuration change at 20:57:23 JST Sat Dec 1 2018 by test
! NVRAM config last updated at 20:57:24 JST Sat Dec 1 2018 by test
!
version 12.4
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname hqborder1
!
boot-start-marker
boot-end-marker
!
no logging console
enable secret 5 $1$/gv1$pWoYSL0EXUfRc6KwNH9oX1
!
no aaa new-model
!
resource policy
!
clock timezone JST 9
!
!
ip cef
!
!
no ip domain lookup
ip domain name hqborder1
ip ssh version 2
!
!
!
username test privilege 15 password 7 06120A3258
!
!
class-map match-all C-DATA2
match access-group 101
class-map match-all C-DATA1
match access-group 100
!
!
policy-map P-CHILD
class C-DATA1
priority percent 40
class C-DATA2
bandwidth percent 30
class class-default
bandwidth percent 30
policy-map P-PARENT
class class-default
shape average 10000000
service-policy P-CHILD
!
!
!
!
!
!
interface FastEthernet0
description << To brborder1 >>
bandwidth 100
ip address 10.1.1.1 255.255.255.252
delay 10
duplex auto
speed auto
service-policy output P-PARENT
!
interface FastEthernet1
description << border1 - dist1 Segment >>
ip address 192.168.200.1 255.255.255.252
speed 100
full-duplex
!
interface BRI0
no ip address
encapsulation hdlc
shutdown
!
interface FastEthernet2
description << To hqdist2 Fa0/1 >>
switchport access vlan 201
duplex full
speed 100
!
interface FastEthernet3
!
interface FastEthernet4
!
interface FastEthernet5
!
interface FastEthernet6
!
interface FastEthernet7
!
interface FastEthernet8
!
interface FastEthernet9
!
interface Vlan1
no ip address
!
interface Vlan201
description << border1 - dist2 Segment >>
ip address 192.168.200.5 255.255.255.252
!
router eigrp 1
network 10.1.1.0 0.0.0.3
network 192.168.200.0 0.0.0.3
network 192.168.200.4 0.0.0.3
no auto-summary
!
!
!
no ip http server
no ip http secure-server
!
logging 192.168.100.107
access-list 100 permit ip 192.168.100.0 0.0.0.255 any
access-list 101 permit ip 192.168.101.0 0.0.0.255 any
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
!
!
!
!
!
!
control-plane
!
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line aux 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp clock-period 17179867
ntp server 192.168.100.44
!
webvpn context Default_context
ssl authenticate verify all
!
no inservice
!
end
!
! Last configuration change at 20:56:21 JST Sat Dec 1 2018 by test
! NVRAM config last updated at 20:56:22 JST Sat Dec 1 2018 by test
!
version 12.4
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname hqborder2
!
boot-start-marker
boot-end-marker
!
no logging console
enable secret 5 $1$wD.F$WXmDhYs9APx451X1fKoyj/
!
no aaa new-model
!
resource policy
!
clock timezone JST 9
!
!
ip cef
!
!
no ip domain lookup
ip domain name hqborder2
ip ssh version 2
!
!
!
username test privilege 15 password 7 1403171818
!
!
class-map match-all C-DATA2
match access-group 101
class-map match-all C-DATA1
match access-group 100
!
!
policy-map P-CHILD
class C-DATA1
priority percent 40
class C-DATA2
compress header ip
bandwidth percent 30
class class-default
compress header ip
bandwidth percent 30
policy-map P-PARENT
class class-default
shape average 10000000
service-policy P-CHILD
!
!
!
!
!
!
interface Tunnel1
description << To brborder2 >>
bandwidth 100
ip address 10.1.1.9 255.255.255.252
delay 10
tunnel source Loopback0
tunnel destination 1.1.1.2
!
interface Loopback0
description << Loopback >>
ip address 1.1.1.1 255.255.255.255
!
interface FastEthernet0
description << To PE Router >>
ip address 10.1.1.5 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet1
description << border2 - dist1 Segment >>
ip address 192.168.200.9 255.255.255.252
speed 100
full-duplex
!
interface BRI0
no ip address
encapsulation hdlc
shutdown
!
interface FastEthernet2
description << To hqdist2 Fa0/2 >>
switchport access vlan 203
duplex full
speed 100
!
interface FastEthernet3
shutdown
!
interface FastEthernet4
shutdown
!
interface FastEthernet5
shutdown
!
interface FastEthernet6
shutdown
!
interface FastEthernet7
shutdown
!
interface FastEthernet8
shutdown
!
interface FastEthernet9
shutdown
!
interface Vlan1
no ip address
shutdown
!
interface Vlan203
description << border2 - dist2 Segment >>
ip address 192.168.200.13 255.255.255.252
!
router eigrp 1
network 10.1.1.8 0.0.0.3
network 192.168.200.8 0.0.0.3
network 192.168.200.12 0.0.0.3
no auto-summary
!
ip route 1.1.1.2 255.255.255.255 10.1.1.6
!
!
no ip http server
no ip http secure-server
!
logging 192.168.100.107
access-list 100 permit ip 192.168.100.0 0.0.0.255 any
access-list 101 permit ip 192.168.101.0 0.0.0.255 any
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
!
!
!
!
!
!
control-plane
!
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line aux 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp clock-period 17179867
ntp ser 192.168.100.44
!
webvpn context Default_context
ssl authenticate verify all
!
no inservice
!
end
!
! Last configuration change at 15:37:05 JST Sun Dec 2 2018 by test
! NVRAM config last updated at 15:39:08 JST Sun Dec 2 2018 by test
!
version 12.2
no service pad
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname hqdist1
!
no logging console
enable secret 5 $1$I.C5$FOWv94CdxU5VXidbxTggJ1
!
username test privilege 15 password 7 021201481F
no aaa new-model
clock timezone JST 9
system mtu routing 1500
ip subnet-zero
ip routing
no ip domain-lookup
ip domain-name hqdist1
!
!
!
!
no file verify auto
!
spanning-tree mode pvst
spanning-tree extend system-id
spanning-tree vlan 100-101 priority 0
!
vlan internal allocation policy ascending
!
interface Port-channel1
description << Connect hqdist1 and hqdist2 >>
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 100,101
switchport mode trunk
!
interface FastEthernet0/1
description << To hqborder1 Fa1 >>
switchport access vlan 200
switchport mode access
speed 100
duplex full
!
interface FastEthernet0/2
description << To hqborder2 Fa1 >>
switchport access vlan 202
switchport mode access
speed 100
duplex full
!
interface FastEthernet0/3
description << To hqaccess1 Fa0/23 >>
switchport access vlan 100
switchport mode access
speed 100
duplex full
!
interface FastEthernet0/4
shutdown
!
interface FastEthernet0/5
shutdown
!
interface FastEthernet0/6
shutdown
!
interface FastEthernet0/7
shutdown
!
interface FastEthernet0/8
shutdown
!
interface FastEthernet0/9
shutdown
!
interface FastEthernet0/10
shutdown
!
interface FastEthernet0/11
shutdown
!
interface FastEthernet0/12
shutdown
!
interface FastEthernet0/13
shutdown
!
interface FastEthernet0/14
shutdown
!
interface FastEthernet0/15
shutdown
!
interface FastEthernet0/16
shutdown
!
interface FastEthernet0/17
shutdown
!
interface FastEthernet0/18
shutdown
!
interface FastEthernet0/19
shutdown
!
interface FastEthernet0/20
shutdown
!
interface FastEthernet0/21
shutdown
!
interface FastEthernet0/22
shutdown
!
interface FastEthernet0/23
description << To hqdist2 Fa0/23 >>
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 100,101
switchport mode trunk
channel-group 1 mode on
!
interface FastEthernet0/24
description << To hqdist2 Fa0/24 >>
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 100,101
switchport mode trunk
channel-group 1 mode on
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
!
interface Vlan1
no ip address
shutdown
!
interface Vlan100
description << Server Segment >>
ip address 192.168.100.49 255.255.255.0
ip access-group Server out
standby 100 ip 192.168.100.50
standby 100 priority 150
standby 100 preempt
!
interface Vlan101
description << Client Segment >>
ip address 192.168.101.49 255.255.255.0
standby 101 ip 192.168.101.50
standby 101 priority 150
standby 101 preempt
!
interface Vlan200
description << border1 - dist1 Segment >>
ip address 192.168.200.2 255.255.255.252
!
interface Vlan202
description << border2 - dist1 Segment >>
ip address 192.168.200.10 255.255.255.252
!
router eigrp 1
passive-interface Vlan101
network 192.168.100.0
network 192.168.101.0
network 192.168.200.0 0.0.0.3
network 192.168.200.8 0.0.0.3
no auto-summary
!
ip classless
ip http server
!
ip access-list extended Server
permit ip 10.10.1.0 0.0.0.255 192.168.100.0 0.0.0.255
permit ip any host 192.168.100.107
permit ip any host 192.168.100.37
permit ip any host 192.168.100.47
permit ip any host 192.168.100.44
permit udp any host 192.168.100.44 eq ntp
!
logging 192.168.100.107
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
!
control-plane
!
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp server 192.168.100.44
end
!
version 12.2
no service pad
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
!
hostname hqdist2
!
no logging console
enable secret 5 $1$IsC5$7IGGek9CiYr2AXye1m2341
!
username test privilege 15 password 7 06120A3258
no aaa new-model
clock timezone JST 9
system mtu routing 1500
ip subnet-zero
ip routing
no ip domain-lookup
ip domain-name hqdist2
!
!
!
!
no file verify auto
!
spanning-tree mode pvst
spanning-tree extend system-id
spanning-tree vlan 100-101 priority 4096
!
vlan internal allocation policy ascending
!
!
interface Port-channel1
description << Connect hqdist1 and hqdist2 >>
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 100,101
!
interface FastEthernet0/1
description << To hqborder1 Fa2 >>
switchport access vlan 201
switchport mode access
speed 100
duplex full
!
interface FastEthernet0/2
description << To hqdist2 Fa2 >>
switchport access vlan 203
switchport mode access
speed 100
duplex full
!
interface FastEthernet0/3
description << To hqaccess1 Fa0/24 >>
switchport access vlan 100
switchport mode access
speed 100
duplex full
!
interface FastEthernet0/4
shutdown
!
interface FastEthernet0/5
shutdown
!
interface FastEthernet0/6
shutdown
!
interface FastEthernet0/7
shutdown
!
interface FastEthernet0/8
shutdown
!
interface FastEthernet0/9
shutdown
!
interface FastEthernet0/10
shutdown
!
interface FastEthernet0/11
shutdown
!
interface FastEthernet0/12
shutdown
!
interface FastEthernet0/13
shutdown
!
interface FastEthernet0/14
shutdown
!
interface FastEthernet0/15
shutdown
!
interface FastEthernet0/16
shutdown
!
interface FastEthernet0/17
shutdown
!
interface FastEthernet0/18
shutdown
!
interface FastEthernet0/19
shutdown
!
interface FastEthernet0/20
shutdown
!
interface FastEthernet0/21
shutdown
!
interface FastEthernet0/22
shutdown
!
interface FastEthernet0/23
description << To hqdist1 Fa0/23 >>
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 100,101
switchport mode trunk
channel-group 1 mode on
!
interface FastEthernet0/24
description << To hqdist1 Fa0/24 >>
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 100,101
switchport mode trunk
channel-group 1 mode on
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
!
interface Vlan1
no ip address
shutdown
!
interface Vlan100
description << Server Segment >>
ip address 192.168.100.48 255.255.255.0
standby 100 ip 192.168.100.50
standby 100 priority 120
standby 100 preempt
!
interface Vlan101
description << Client Segment >>
ip address 192.168.101.48 255.255.255.0
standby 101 ip 192.168.101.50
standby 101 priority 120
standby 101 preempt
!
interface Vlan201
description << border1 - dist2 Segment >>
ip address 192.168.200.6 255.255.255.252
!
interface Vlan203
description << border2 - dist2 Segment >>
ip address 192.168.200.14 255.255.255.252
!
router eigrp 1
passive-interface Vlan101
network 192.168.100.0
network 192.168.101.0
network 192.168.200.4 0.0.0.3
network 192.168.200.12 0.0.0.3
no auto-summary
!
ip classless
ip http server
!
!
logging 192.168.100.107
snmp-server community C1sc0 RO
snmp-server host 192.168.100.107 C1sc0
!
control-plane
!
banner login ^C
============NOTICE==============
| This is test device for demo |
================================
^C
!
line con 0
line vty 0 4
login local
line vty 5 15
login local
!
ntp server 192.168.100.44
end
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment