cnd-c3750ml-00#sh run Building configuration... Current configuration : 16503 bytes ! ! Last configuration change at 20:13:23 CDT Wed Oct 28 2009 by harrjx ! NVRAM config last updated at 07:30:14 CST Wed Nov 11 2009 by cwuser_west ! version 12.2 no service pad service timestamps debug datetime localtime service timestamps log datetime localtime service password-encryption ! hostname cnd-c3750ml-00 ! boot-start-marker boot-end-marker ! logging buffered 16384 informational no logging console enable secret 5 $1$vhyZ$JbQTVvuxSy2VfYso5qjcR. ! aaa new-model ! ! aaa authentication login default group tacacs+ enable aaa authentication login linmethod group tacacs+ enable aaa authentication login vtymethod group tacacs+ enable aaa authentication login conmethod enable aaa authentication enable default group tacacs+ enable aaa authorization exec default group tacacs+ if-authenticated aaa authorization commands 1 default group tacacs+ if-authenticated aaa authorization commands 15 default group tacacs+ if-authenticated aaa accounting exec default start-stop group tacacs+ aaa accounting commands 1 default start-stop group tacacs+ aaa accounting commands 15 default start-stop group tacacs+ aaa accounting network default start-stop group tacacs+ aaa accounting connection default start-stop group tacacs+ aaa accounting system default start-stop group tacacs+ ! --More--  ! ! aaa session-id common clock timezone CST -6 clock summer-time CDT recurring switch 1 provision ws-c3750g-24ts system mtu routing 1500 vtp domain CND-Domain vtp mode transparent udld enable ip subnet-zero no ip source-route ip routing ip domain-name ceco.com ip name-server 130.197.125.69 ip name-server 130.197.8.140 ! ip multicast-routing distributed ! mls qos map cos-dscp 0 8 16 26 34 46 48 56 mls qos map ip-prec-dscp 0 8 16 26 34 46 48 56 mls qos srr-queue input bandwidth 70 30 mls qos srr-queue input threshold 1 80 100 mls qos srr-queue input buffers 60 40 mls qos srr-queue input dscp-map queue 1 threshold 2 16 26 32 34 mls qos srr-queue input dscp-map queue 2 threshold 2 24 48 56 mls qos srr-queue output dscp-map queue 1 threshold 1 32 34 mls qos srr-queue output dscp-map queue 2 threshold 1 24 26 48 56 mls qos srr-queue output dscp-map queue 3 threshold 1 0 mls qos srr-queue output dscp-map queue 4 threshold 1 10 mls qos queue-set output 1 threshold 1 100 100 100 400 mls qos queue-set output 1 threshold 2 100 100 100 400 mls qos queue-set output 1 threshold 3 100 100 100 400 mls qos queue-set output 1 threshold 4 100 100 100 400 mls qos ! crypto pki trustpoint TP-self-signed-2826016128 enrollment selfsigned --More--   subject-name cn=IOS-Self-Signed-Certificate-2826016128 revocation-check none rsakeypair TP-self-signed-2826016128 ! ! crypto pki certificate chain TP-self-signed-2826016128 certificate self-signed 01 3082024F 308201B8 A0030201 02020101 300D0609 2A864886 F70D0101 04050030 31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274 69666963 6174652D 32383236 30313631 3238301E 170D3038 30383232 32323537 30345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649 4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D32 38323630 31363132 3830819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281 8100AE62 584F65EE 7F70F6B4 6F964D18 100509C5 9E84AE3B 72867343 CF2DD910 0A931C39 B125FC6E 1A93CD2D F8EDEC34 1B30EF24 02880FDC 4E342848 5F0B1A2D 88BD7FA6 E9C74C4D A8124464 9DF39E7B E339E450 A05C3688 789F3490 380FFF34 F55360E8 47EA26B9 E862ADAE 1C041CAA 7B5B901F E01B8B53 45BAF08B DE0B782F E54D0203 010001A3 77307530 0F060355 1D130101 FF040530 030101FF 30220603 551D1104 1B301982 17636E64 2D633337 35306D6C 2D30302E 6365636F 2E636F6D 301F0603 551D2304 18301680 14BD1BDE DEA27F24 6A7AA18A BA574805 46E88659 22301D06 03551D0E 04160414 BD1BDEDE A27F246A 7AA18ABA 57480546 E8865922 300D0609 2A864886 F70D0101 04050003 818100A0 D9A403B1 0D9BB15C 66C5EA9D 84B9EA37 EBF0DD0B 2A7B9732 EEB85C3B EF5F5FB5 B53CE3E9 84DBAB4A E9883837 79CF131C BB531F9D 62FA4AC9 9791C21A D32BC62F F9E55AB1 BEB6559C C0A54803 66D2A6A7 699D6BC1 C3D7206E 3B03C11D 9511EF3F 532C09E2 3195294B 29F90E8E B0759E3B 2D4F9A1A 26F627A7 6D66819D 844B7B quit ! ! ! ! ! spanning-tree mode pvst spanning-tree extend system-id ! vlan internal allocation policy ascending ! ! class-map match-all MARKBULK --More--   match access-group name BULK class-map match-all MARK_VOIPSIGNALING match access-group name VOIPSIGNALING class-map match-all MARKCRITICAL match access-group name CRITICALDATA class-map match-all MARKVOICE match access-group name VOICE class-map match-all MARKVIDEO match access-group name VIDEOCONFERENCING class-map match-all MARKROUTING match access-group name ROUTING class-map match-all MARKVOIPSIGNALING match access-group name VOIPSIGNALING class-map match-all MARKVIDEOSTREAM match access-group name VIDEOSTREAM class-map match-all MARKVIDEOCONFERENCING match access-group name VIDEOCONFERENCING ! ! policy-map EXELON-MARKING description Mark traffic with DSCP PHB Labels - EXELON v1.0 class MARKVOICE set ip dscp ef class MARKVIDEOSTREAM set ip dscp cs4 class MARKVIDEOCONFERENCING set ip dscp af41 class MARKVOIPSIGNALING set ip dscp cs3 class MARKCRITICAL set ip dscp af31 class MARKROUTING set ip dscp cs6 class MARKBULK set ip dscp af11 class class-default set ip dscp default ! ! --More--  ! ! interface Loopback0 description cnd-c3750ml-00 Loopback Interface ip address 10.121.128.2 255.255.255.255 ! interface GigabitEthernet1/0/1 description Link to cnd-c2821sag-00 gi0/0 no switchport ip address 10.121.8.205 255.255.255.252 no ip redirects ip pim sparse-mode speed 1000 duplex full srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/2 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/3 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/4 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/5 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/6 shutdown --More--   srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/7 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/8 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/9 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/10 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/11 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/12 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/13 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/14 --More--   shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/15 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/16 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/17 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/18 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/19 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/20 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/21 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! --More--  interface GigabitEthernet1/0/22 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/23 shutdown srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/24 description Link to cnd-C3750ml-01 no switchport ip address 10.121.8.213 255.255.255.252 no ip redirects ip pim sparse-mode srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/25 description to cnd-c6509rtr-00 gi4/13 no switchport ip address 10.121.8.217 255.255.255.252 ip pim sparse-mode srr-queue bandwidth share 20 15 50 15 udld port mls qos trust dscp ! interface GigabitEthernet1/0/26 no switchport ip address 10.121.10.182 255.255.255.252 no ip redirects no ip unreachables ip pim sparse-mode srr-queue bandwidth share 20 15 50 15 udld port ! interface GigabitEthernet1/0/27 shutdown --More--   srr-queue bandwidth share 20 15 50 15 service-policy input EXELON-MARKING ! interface GigabitEthernet1/0/28 description Link to eb1-c6509sw-01 no switchport ip address 130.197.123.82 255.255.255.252 no ip redirects ip pim sparse-mode srr-queue bandwidth share 20 15 50 15 udld port mls qos trust dscp ! interface Vlan1 no ip address shutdown ! ! router eigrp 1 redistribute connected no auto-summary network 10.0.0.0 network 130.197.0.0 ! ip classless no ip http server ip http secure-server ip pim rp-address 7.7.7.7 IPMC-GROUPS-ALLOWED ! ip tacacs source-interface Loopback0 ! ip access-list standard IPMC-GROUPS-ALLOWED permit 239.0.0.0 0.255.255.255 ip access-list standard standard_config_revision remark Used only for Configuration Revision Tracking remark Standard_Config_Revision: 11-DEC-07.00 ! ip access-list extended BULK remark Access list to mark Bulk traffic - Exelon Version 1.2 --More--   permit tcp any any eq ftp-data permit tcp any eq ftp-data any permit tcp any any eq ftp permit tcp any eq ftp any permit tcp any any eq smtp permit tcp any eq smtp any permit tcp any any eq 220 permit tcp any eq 220 any permit tcp any any eq 1352 permit tcp any eq 1352 any permit tcp any any eq pop2 permit tcp any eq pop2 any permit tcp any any eq pop3 permit tcp any eq pop3 any remark *** BEGIN SMS SERVERS *** permit ip host 130.197.106.189 any permit ip any host 130.197.106.189 permit ip host 130.197.135.19 any permit ip any host 130.197.135.19 permit ip host 130.197.222.53 any permit ip any host 130.197.222.53 permit ip host 130.197.48.58 any permit ip any host 130.197.48.58 permit ip host 130.197.64.64 any permit ip any host 130.197.64.64 permit ip host 130.197.31.125 any permit ip any host 130.197.31.125 permit ip host 130.197.80.36 any permit ip any host 130.197.80.36 permit ip host 130.197.35.106 any permit ip any host 130.197.35.106 permit ip host 130.197.194.27 any permit ip any host 130.197.194.27 permit ip host 130.197.119.33 any permit ip any host 130.197.119.33 permit ip host 130.197.152.48 any permit ip any host 130.197.152.48 permit ip host 130.197.179.25 any permit ip any host 130.197.179.25 --More--   permit ip host 130.197.227.33 any permit ip any host 130.197.227.33 permit ip host 130.197.166.28 any permit ip any host 130.197.166.28 permit ip host 10.125.97.21 any permit ip any host 10.125.97.21 permit ip host 159.214.4.72 any permit ip any host 159.214.4.72 permit ip host 159.214.147.209 any permit ip any host 159.214.147.209 permit ip host 159.214.147.229 any permit ip any host 159.214.147.229 permit ip host 172.30.80.16 any permit ip any host 172.30.80.16 permit ip host 10.248.195.14 any permit ip any host 10.248.195.14 permit ip host 172.30.253.43 any permit ip any host 172.30.253.43 permit ip host 130.197.106.215 any permit ip any host 130.197.106.215 permit ip host 130.197.106.216 any permit ip any host 130.197.106.216 permit ip host 130.197.106.190 any permit ip any host 130.197.106.190 permit ip host 130.197.106.191 any permit ip any host 130.197.106.191 permit ip host 159.214.149.91 any permit ip any host 159.214.149.91 permit ip host 159.214.149.92 any permit ip any host 159.214.149.92 remark *** END SMS SERVERS *** remark *** TMS Traffic *** permit ip 172.16.0.0 0.0.255.255 any permit ip any 172.16.0.0 0.0.255.255 remark *** END TMS Traffic *** ip access-list extended CRITICALDATA remark Access list to mark critical traffic - Exelon Version 1.0 ip access-list extended PRIORITYDATA remark Access list to mark critical traffic - Exelon Version 1.0 --More--  ip access-list extended ROUTING remark Access list to mark Routing - Version 1.1 permit tcp any any eq bgp permit eigrp any any permit ospf any any permit pim any any permit tcp any any eq 639 ip access-list extended VIDEOCONFERENCING remark Access list to mark videoconferencing traffic - Exelon Version 1.0 permit udp any any range 2326 6951 permit udp any range 2326 6951 any permit udp host 10.255.176.35 any range 50000 51199 ip access-list extended VIDEOSTREAM remark Access list to mark videostream traffic - Exelon Version 1.0 remark Tandberg Video Content Server Ports v1.0 permit udp any eq 970 any permit udp any any eq 970 permit udp any eq 971 any permit udp any any eq 971 permit udp any eq 972 any permit udp any any eq 972 permit udp any eq 973 any permit udp any any eq 973 permit udp any eq 974 any permit udp any any eq 974 permit udp any any eq 1755 permit udp any eq 1755 any ip access-list extended VOICE remark Access list to mark Voice Bearer traffic - Version 1.0 permit udp any any range 16384 32767 permit udp any range 16384 32767 any ip access-list extended VOIPSIGNALING remark Access list to mark VoIP/Video Signaling traffic - Exelon Version 1.0 permit tcp any any eq 1720 permit tcp any eq 1720 any permit tcp any any eq 1719 permit tcp any eq 1719 any permit udp any any eq 1718 permit udp any eq 1718 any --More--   permit udp any eq 1719 any permit udp any any eq 1719 permit tcp any any range 5555 5580 permit tcp any range 5555 5580 any permit tcp host 10.255.176.35 any range 15000 19000 ip access-list extended default remark Access list to define default traffic not found in other lists - Exelon Version 1.0 permit ip any any ! logging source-interface Loopback0 logging 130.197.101.200 access-list 5 permit 159.214.42.0 0.0.0.255 access-list 5 permit 130.197.175.0 0.0.0.255 access-list 5 permit 130.197.101.192 0.0.0.63 snmp-server engineID local 800000090300000BBE897201 snmp-server user public public v1 snmp-server user public public v2c snmp-server community ExelonROCS927 RO 5 snmp-server community ExelonRWCS927 RW 5 snmp-server trap-source Loopback0 snmp-server location Chicago North (CND) snmp-server contact NCC (815) 724-7359 snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart snmp-server enable traps entity snmp-server enable traps envmon fan shutdown supply temperature status snmp-server enable traps bgp snmp-server enable traps config snmp-server enable traps hsrp snmp-server enable traps stpx root-inconsistency loop-inconsistency snmp-server enable traps rtr snmp-server host 130.197.175.95 public snmp-server host 159.214.42.30 public tacacs-server host 130.197.101.207 tacacs-server host 159.214.42.77 tacacs-server directed-request tacacs-server key 7 00010B030854050506324F41 ! control-plane ! --More--  banner motd ^C ******************************************************************************** ---NOTICE--- THIS IS A PRIVATE COMPUTER FACILITY PROTECTED BY A SECURITY SYSTEM. ACCESS TO AND USE OF THIS FACILITY REQUIRES EXPLICIT AUTHORIZATION. UNAUTHORIZED ACCESS ATTEMPTS WILL BE PERSUED. VIOLATORS WILL BE PROSECUTED TO THE FULL EXTENT OF THE LAW. ******************************************************************************** ^C ! line con 0 exec-timeout 15 0 password 7 000A0055175E08140A3514 login authentication conmethod line vty 0 4 exec-timeout 15 0 privilege level 15 password 7 0505155C32494D1B1C114F login authentication vtymethod transport preferred telnet transport input telnet line vty 5 15 exec-timeout 15 0 privilege level 15 password 7 141901581F012939213C6B login authentication vtymethod transport preferred telnet transport input telnet ! ntp clock-period 36029034 ntp source Loopback0 ntp server 130.197.121.4 prefer ntp server 130.197.121.36 end cnd-c3750ml-00#  exit Connection to 10.121.128.2 closed.