Sie sind auf Seite 1von 8

rtr1401700#sh run

building configuration...

current configuration : 8987 bytes


!
! last configuration change at 18:18:37 ind_wst wed apr 26 2006 by admin
! nvram config last updated at 18:27:20 ind_wst wed apr 26 2006 by admin
!
version 12.3
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec
service timestamps log datetime msec localtime show-timezone
service password-encryption
service compress-config
no service dhcp
!
hostname rtr1401700
!
boot-start-marker
boot system flash:c1700-adventerprisek9-mz.123-16a.bin
boot system flash:c1700-bk9no3r2sv8y7-mz.122-13.zh2.bin
boot-end-marker
!
logging buffered 16384 debugging
no logging console
enable secret 5 $1$blja$tnwnsqtzdlzbtckghilop0
enable password 7 01100f175804
!
clock timezone ind_wst 7
mmi polling-interval 60
no mmi auto-configure
no mmi pvc
mmi snmp-timeout 180
aaa new-model
!
!
aaa authentication login default group tacacs+ local-case
aaa authorization config-commands
aaa authorization exec default group tacacs+ local if-authenticated
aaa authorization commands 15 default group tacacs+ local if-authenticated
aaa accounting exec default start-stop group tacacs+
aaa accounting commands 15 default start-stop group tacacs+
aaa session-id common
ip subnet-zero
no ip source-route
ip cef
!
!
!
ip tftp source-interface loopback0
no ip bootp server
no ip domain lookup
ip domain name bankmandiri.co.id
ip audit po max-events 100
!
!
!
!
!
!
!
!
!
!
!
!
username mandiri password 7 1511021f0725
!
!
class-map match-any ip_critical
match access-group name ip-critical
!
!
policy-map mark_packets
class ip_critical
set precedence 5
class class-default
set precedence 0
policy-map pol1
class class-default
fair-queue
random-detect
!
!
!
!
!
!
interface loopback0
description loopback for remote-management
ip address 10.141.200.22 255.255.255.255
!
interface loopback1
description loopback for h323 voice source
no ip address
!
interface loopback10
description loopback simulating branch iptelephony network
no ip address
!
interface null0
no ip unreachables
!
interface fastethernet0/0
description connection to lan sby univ widya mandala
ip address 10.141.22.1 255.255.255.0
speed auto
!
interface serial0/0
description frame relay connection to hq
no ip address
encapsulation frame-relay
logging event subif-link-status
logging event dlci-status-change
no fair-queue
frame-relay traffic-shaping
frame-relay lmi-type ansi
!
interface serial0/0.1 point-to-point
description frame relay tlk 64/32
bandwidth 64
ip address 10.141.201.44 255.255.255.254
no ip unreachables
frame-relay class frts-32cir
frame-relay interface-dlci 291
!
interface serial0/1
no ip address
encapsulation frame-relay
logging event dlci-status-change
shutdown
no fair-queue
!
interface serial0/1.1 point-to-point
no ip unreachables
!
router bgp 64573
no synchronization
bgp log-neighbor-changes
network 10.141.22.0 mask 255.255.255.0
network 10.141.200.22 mask 255.255.255.255
neighbor 10.141.201.45 remote-as 64555
neighbor 10.141.201.45 timers 20 60
neighbor 10.141.201.45 prefix-list data-net out
neighbor 10.141.201.45 route-map data-in in
neighbor 218.34.51.236 remote-as 65535
neighbor 218.34.51.236 timers 20 60
neighbor 218.34.51.236 route-map voice-in in
neighbor 218.34.51.236 route-map voice-out out
no auto-summary
!
ip classless
ip route 10.204.10.0 255.255.255.0 null0 200
!
ip bgp-community new-format
ip community-list 1 permit 64555:200
ip community-list 2 permit 64555:100
no ip http server
ip http authentication local
no ip http secure-server
ip tacacs source-interface loopback0
!
ip access-list extended ip-critical
permit tcp any host 10.204.4.17
permit tcp any host 10.204.4.18
permit tcp any host 10.204.4.24
permit tcp any host 10.204.4.25
--more--
permit tcp any host 10.204.4.26
permit tcp host 10.204.4.17 any
permit tcp host 10.204.4.18 any
permit tcp host 10.204.4.24 any
permit tcp host 10.204.4.25 any
permit tcp host 10.204.4.26 any
ip access-list extended voip-control
permit tcp any 10.204.10.0 0.0.0.255 eq 1720
permit tcp any 10.204.10.0 0.0.0.255 range 11000 11999
permit udp any 10.204.10.0 0.0.0.255 eq 2427
permit tcp any 10.204.10.0 0.0.0.255 eq 2428
permit tcp 10.204.10.0 0.0.0.255 eq 1720 any
permit tcp 10.204.10.0 0.0.0.255 range 11000 11999 any
permit udp 10.204.10.0 0.0.0.255 eq 2427 any
permit tcp 10.204.10.0 0.0.0.255 eq 2428 any
permit icmp any host 10.204.9.51
permit icmp any host 10.204.9.52
permit tcp any eq telnet 10.204.1.0 0.0.0.255
permit udp any eq snmp host 10.204.9.51
permit udp any eq snmp host 10.204.9.52
permit udp any eq snmp host 10.204.9.22
ip access-list extended voip-data
permit udp any any range 16384 32767
permit udp any range 16384 32767 any
!
!
ip prefix-list data-net seq 10 permit 10.141.22.0/24
ip prefix-list data-net seq 20 permit 10.141.200.22/32
!
ip prefix-list default seq 10 permit 0.0.0.0/0
!
ip prefix-list default-prefix seq 10 permit 0.0.0.0/0
!
ip prefix-list voice-net seq 10 permit 10.141.122.0/24
ip prefix-list voice-net seq 20 permit 10.141.200.122/32
!
map-class frame-relay frts-32cir
frame-relay end-to-end keepalive mode bidirectional
frame-relay cir 30400
frame-relay bc 4000
frame-relay be 0
service-policy output pol1
!
map-class frame-relay frts_class
frame-relay end-to-end keepalive mode bidirectional
frame-relay cir 64000
frame-relay bc 8000
frame-relay be 8000
frame-relay mincir 32000
frame-relay adaptive-shaping becn
service-policy output fr_policy
logging trap debugging
logging source-interface loopback0
logging 10.204.9.21
logging 10.204.9.22
access-list 10 permit 10.204.9.27
access-list 10 permit 10.204.9.20
access-list 10 permit 10.204.9.55
access-list 10 permit 10.204.9.52
access-list 10 permit 10.204.9.51
access-list 11 permit 10.204.9.25
access-list 11 permit 10.204.9.22
access-list 21 permit 10.141.22.0 0.0.0.255
access-list 21 permit 10.141.201.44 0.0.0.1
access-list 21 permit 10.204.1.0 0.0.0.255
access-list 21 permit 10.205.1.0 0.0.0.255
access-list 21 permit 10.204.9.0 0.0.0.255
access-list 21 permit 10.204.12.0 0.0.1.255
access-list 21 permit 10.204.16.0 0.0.0.255
access-list 21 permit 10.204.17.0 0.0.0.255
access-list 21 permit 10.254.1.0 0.0.0.255
access-list 21 permit 10.254.12.0 0.0.0.255
--more--
access-list 21 permit 10.204.16.0 0.0.0.255
access-list 21 permit 10.204.17.0 0.0.0.255
access-list 21 permit 10.254.1.0 0.0.0.255
access-list 21 permit 10.254.12.0 0.0.0.255
access-list 21 permit 10.204.4.0 0.0.0.255
!
route-map internet permit 10
!
route-map voice-out permit 10
match ip address prefix-list data-net
set as-path prepend 64573 64573 64573
!
route-map voice-out permit 20
match ip address prefix-list voice-net
!
route-map data-in permit 10
match community 1
!
route-map data-callsetup permit 10
match community 1
!
route-map voice-in permit 10
match ip address prefix-list default-prefix
match community 2
!
route-map default permit 10
match ip address prefix-list default
match community 2
!
snmp-server community public ro
snmp-server community mandirinet rw 11
snmp-server community nms_mandiri ro 10
snmp-server trap-source loopback0
snmp-server location plaza mandiri
snmp-server contact it operation
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps frame-relay
snmp-server enable traps frame-relay subif
snmp-server host 10.204.9.22 mandirinet
snmp-server host 10.204.9.25 mandirinet
snmp-server host 10.204.9.20 nms_mandiri
snmp-server host 10.204.9.27 nms_mandiri
snmp-server host 10.204.9.51 nms_mandiri
snmp-server host 10.204.9.52 nms_mandiri
snmp-server host 10.204.9.55 nms_mandiri
snmp-server host 10.204.4.151 public
tacacs-server host 10.204.9.21
tacacs-server directed-request
tacacs-server key 7 04560a151b245e1a5c4f
!
!
dial-peer cor custom
!
!
!
banner login ^cauthorized access only!
disconnect immediately if you are not an authorized user!

there is a default user name and password . you must change it immediately
^c
banner motd ^c
**************************************************************
* this system is the property of bank mandiri tbk. *
* *
* access is restricted to authorized person only *
* unauthorized access is prohibited *
* all unauthorized attempt to access this system will be *
* logged and investigated. *
* violators will be prosecuted in conformance with local law *
**************************************************************

^c
!
line con 0
privilege level 15
password 7 045802150c2e
logging synchronous
line aux 0
line vty 0 4
access-class 21 in
exec-timeout 5 0
privilege level 15
password 7 060506324f41
logging synchronous
transport input telnet ssh
line vty 5 15
access-class 21 in
exec-timeout 5 0
privilege level 15
password 7 060506324f41
logging synchronous
transport input telnet ssh
!
scheduler interval 500
ntp clock-period 17207667
ntp source loopback0
ntp server 10.204.20.20
ntp server 10.141.201.45
end

rtr1401700#
rtr1401700#sh frame-relay pvc 291
pvc statistics for interface serial0/0 (frame relay dte)

dlci = 291, dlci usage = local, pvc status = active (eek up), interface = serial
0/0.1

input pkts 13030087 output pkts 13499902 in bytes 1191738974


out bytes 1663540653 dropped pkts 0 in pkts dropped 0
out pkts dropped 0 out bytes dropped 0
in fecn pkts 5819 in becn pkts 69 out fecn pkts 0
out becn pkts 0 in de pkts 1481254 out de pkts 0
out bcast pkts 214263 out bcast bytes 80562888
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 0 bits/sec, 0 packets/sec
pvc create time 25w4d, last time pvc status changed 00:20:57
cir 30400 bc 4000 be 0 byte limit 500 interval 131
mincir 15200 byte increment 497 adaptive shaping none
pkts 16216480 bytes 1995387407 pkts delayed 709124 bytes delayed 326814571
shaping active
traffic shaping drops 0
service policy pol1
serial0/0.1: dlci 291 -

service-policy output: pol1

class-map: class-default (match-any)


16216481 packets, 1995390115 bytes
5 minute offered rate 0 bps, drop rate 0 bps
match: any
queueing
flow based fair queueing
maximum number of hashed queues 16
(total queued/total drops/no-buffer drops) 0/0/0
exponential weight: 9

class transmitted random drop tail drop minimum maximum mark


pkts/bytes pkts/bytes pkts/bytes thresh thresh prob
0 14047096/1876627077 0/0 0/0 20 40 1/10
1 0/0 0/0 0/0 22 40 1/10
2 0/0 0/0 0/0 24 40 1/10
3 0/0 0/0 0/0 26 40 1/10
4 0/0 0/0 0/0 28 40 1/10
5 70386/6753536 0/0 0/0 30 40 1/10
6 2099006/112011363 0/0 0/0 32 40 1/10
7 0/0 0/0 0/0 34 40 1/10
rsvp 0/0 0/0 0/0 36 40 1/10

output queue size 0/max total 600/drops 0


rtr1401700#
rtr1401700#sh int s0/0.1
serial0/0.1 is up, line protocol is up
hardware is powerquicc serial
description: frame relay tlk 64/32
internet address is 10.141.201.44/31
mtu 1500 bytes, bw 64 kbit, dly 20000 usec,
reliability 255/255, txload 1/255, rxload 1/255
encapsulation frame-relay
last clearing of "show interface" counters never
rtr1401700#sh int s0/0
serial0/0 is up, line protocol is up
hardware is powerquicc serial
description: frame relay connection to hq
mtu 1500 bytes, bw 1544 kbit, dly 20000 usec,
reliability 255/255, txload 1/255, rxload 1/255
encapsulation frame-relay, loopback not set
keepalive set (10 sec)
lmi enq sent 1549863, lmi stat recvd 1547522, lmi upd recvd 0, dte lmi up
lmi enq recvd 0, lmi stat sent 0, lmi upd sent 0
lmi dlci 0 lmi type is ansi annex d frame relay dte
fr svc disabled, lapf state down
broadcast queue 0/64, broadcasts sent/dropped 214265/0, interface broadcasts 0
last input 00:00:00, output 00:00:00, output hang never
last clearing of "show interface" counters 25w4d
input queue: 0/75/0/0 (size/max/drops/flushes); total output drops: 3
queueing strategy: fifo
output queue: 0/40 (size/max)
5 minute input rate 1000 bits/sec, 3 packets/sec
5 minute output rate 1000 bits/sec, 2 packets/sec
17087257 packets input, 2275987060 bytes, 0 no buffer
received 0 broadcasts, 0 runts, 0 giants, 0 throttles
117 input errors, 1 crc, 81 frame, 0 overrun, 0 ignored, 35 abort
17766516 packets output, 2017108343 bytes, 0 underruns
0 output errors, 0 collisions, 1083 interface resets
0 output buffer failures, 0 output buffers swapped out
88 carrier transitions
dcd=up dsr=up dtr=up rts=up cts=up

Das könnte Ihnen auch gefallen