sysname CODSWT011
undo password-control aging enable
undo password-control length enable
undo password-control history enable
password-control login-attempt 3 exceed lock-time 120
local-server nas-ip 127.0.0.1 key cipher <SenhaEncriptada>
domain default enable nps2
lldp enable
lldp compliance cdp
igmp-snooping enable
radius scheme system
radius scheme nps
server-type extended
primary authentication 172.22.16.75
primary accounting 172.22.16.75
accounting optional
key authentication cipher <SenhaEncriptada>
key accounting cipher <SenhaEncriptada>
timer realtime-accounting 15
timer response-timeout 5
retry 5
user-name-format without-domain
calling-station-id mode mode2 uppercase
radius scheme nps2
server-type extended
primary authentication 172.20.20.171
primary accounting 172.20.20.171
accounting optional
key authentication cipher <SenhaEncriptada>
key accounting cipher <SenhaEncriptada>
timer realtime-accounting 15
timer response-timeout 5
retry 5
user-name-format without-domain
domain nps
scheme radius-scheme nps
authentication radius-scheme nps local
access-limit enable 60
idle-cut enable 20 20000
domain nps2
scheme radius-scheme nps2
authentication radius-scheme nps2 local
access-limit enable 60
idle-cut enable 20 20000
domain system
local-user admin
password cipher <SenhaEncriptada>
service-type ssh telnet terminal
level 3
stp mode rstp
vlan 1
description VLAN_ADM
name VLAN_ADM
igmp-snooping enable
vlan 2010
name Gerenciamento
vlan 2040
name Rede-2
vlan 2050
name Telefonia_IP
vlan 2051
name Rede-1
vlan 2101
description Telefonia-VoIP
name Telefonia-VoIP
vlan 2110
name WLAN_AP
interface Vlan-interface1
ip address 172.20.16.104 255.255.252.0
interface Vlan-interface2010
ip address 172.25.142.135 255.255.255.128
ntp-service unicast-server <IP_SERVER_NTP> priority
interface Aux1/0/0
interface Ethernet1/0/1
stp edged-port enable
port link-type hybrid
port hybrid vlan 2051 untagged
undo port hybrid vlan 1
port hybrid pvid vlan 2051
voice vlan enable
interface Ethernet1/0/17
stp edged-port enable
port link-type hybrid
port hybrid vlan 2040 untagged
undo port hybrid vlan 1
port hybrid pvid vlan 2040
voice vlan enable
interface Ethernet1/0/47
stp edged-port enable
port link-type hybrid
port hybrid vlan 2110 untagged
undo port hybrid vlan 1
port hybrid pvid vlan 2110
description AP - <CODAP011>
interface Ethernet1/0/48
stp edged-port enable
port access vlan 2040
interface GigabitEthernet1/0/49
port link-type trunk
port trunk permit vlan all
description UPLINK - <CODSWT015> - Gi 0/2
interface GigabitEthernet1/0/50
interface GigabitEthernet1/0/51
port link-type trunk
port trunk permit vlan all
shutdown
interface GigabitEthernet1/0/52
shutdown
fabric-port GigabitEthernet1/0/50 enable
undo xrn-fabric authentication-mode
ntp-service unicast-server <IP_SERVER_NTP> priority
interface Aux2/0/0
interface Ethernet2/0/1
stp edged-port enable
port link-type hybrid
port hybrid vlan 2051 untagged
undo port hybrid vlan 1
port hybrid pvid vlan 2051
voice vlan enable
interface Ethernet2/0/24
stp edged-port enable
port access vlan 2040
interface GigabitEthernet2/0/26
shutdown
fabric-port GigabitEthernet2/0/27 enable
fabric-port GigabitEthernet2/0/28 enable
undo xrn-fabric authentication-mode
interface NULL0
info-center source default channel 2 log level debugging
info-center loghost 172.20.20.135
info-center synchronous
voice vlan mac-address 0001-e300-0000 mask ffff-ff00-0000 description Siemens AG phone
voice vlan mac-address 0004-0d00-0000 mask ffff-ff00-0000 description Avaya phone
voice vlan mac-address 000b-8200-0000 mask ffff-ff00-0000 description GrandStream GXP1405
voice vlan mac-address 0013-1900-0000 mask ffff-ff00-0000 description Cisco 7960 phone
voice vlan mac-address 0015-2b00-0000 mask ffff-ff00-0000 description Cisco 7940 phone
voice vlan mac-address 0060-b900-0000 mask ffff-ff00-0000 description Philips and NEC AG phone
voice vlan mac-address 4cbc-4800-0000 mask ffff-ff00-0000 description Cisco 3905 Phone IV
voice vlan mac-address 7802-b100-0000 mask ffff-ff00-0000 description Cisco 3905 Phone V
voice vlan mac-address dca5-f400-0000 mask ffff-ff00-0000 description Cisco 3905 Phone II
voice vlan mac-address ece1-a900-0000 mask ffff-ff00-0000 description Cisco 3905 Phone III
voice vlan mac-address f84f-5700-0000 mask ffff-ff00-0000 description Cisco 3905 Phone I
voice vlan 2050 enable
ip route-static 0.0.0.0 0.0.0.0 <IP_GW> preference 60
snmp-agent
snmp-agent local-engineid 8000002B001EC188CC806877
snmp-agent community read <Community>
snmp-agent sys-info contact TI-Redes
snmp-agent sys-info location Predio Anexo
snmp-agent sys-info version all
ssh authentication-type default all
ssh server authentication-retries 5
header login %
####################################################################
# SUPORTE - TI - (xx-xxxx-xxxx) #
####################################################################
# Acesso autorizado apenas para administradores de rede #
# Todas as conexoes sao monitoradas e auditadas #
# Desconecte imediatamente !!! #
####################################################################
%
user-interface aux 0 7
authentication-mode password
set authentication password cipher <SenhaEncriptada>
user-interface vty 0 4
authentication-mode scheme
protocol inbound ssh
return