!
!
interface GigabitEthernet1/0/1
switchport access vlan 10
switchport mode access
!
interface GigabitEthernet1/0/2
switchport access vlan 10
switchport mode access
!
interface GigabitEthernet1/0/3
switchport access vlan 2
switchport trunk encapsulation dot1q
switchport mode access
!
interface GigabitEthernet1/0/4
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/5
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/6
switchport access vlan 10
switchport mode access
!
interface GigabitEthernet1/0/7
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/8
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/9
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/10
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/11
switchport access vlan 15
switchport mode access
!
interface GigabitEthernet1/0/12
switchport access vlan 2
switchport mode access
!
interface GigabitEthernet1/0/13
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/14
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/15
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/16
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/17
switchport access vlan 2
switchport trunk encapsulation dot1q
switchport mode access
!
interface GigabitEthernet1/0/18
switchport access vlan 15
switchport mode access
!
interface GigabitEthernet1/0/19
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/20
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/21
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/22
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/23
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/24
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/25
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/26
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/27
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/0/28
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface Vlan1
ip address 10.0.253.254 255.255.255.0 secondary
ip address 10.0.253.1 255.255.255.0
!
interface Vlan2
ip address 10.0.0.254 255.255.254.0
!
interface Vlan8
ip address 10.0.8.254 255.255.255.0
ip access-group 108 in
ip access-group 108 out
ip helper-address 10.0.0.3
ip helper-address 10.0.0.1
!
interface Vlan9
ip address 10.0.9.254 255.255.255.0
ip helper-address 10.0.0.3
ip helper-address 10.0.0.21
!
interface Vlan10
ip address 10.0.10.254 255.255.255.0
ip helper-address 10.0.0.3
ip helper-address 10.0.0.1
!
interface Vlan15
ip address 10.0.15.254 255.255.255.0
ip helper-address 10.0.0.1
ip helper-address 10.0.0.3
!
interface Vlan254
ip address 10.0.254.253 255.255.255.0
!
ip classless
ip route 0.0.0.0 0.0.0.0 10.0.254.254
ip http server
ip http authentication aaa login-authentication default
ip http secure-server
!
!
!
ip sla 1
icmp-echo 10.0.254.201
ip sla schedule 1 life forever start-time now
ip sla 2
icmp-echo 10.0.254.254
ip sla schedule 2 life forever start-time now
ip sla 3
http get
http://www.google.com proxy
http://10.0.254.201:80
ip sla schedule 3 life forever start-time now
ip sla 4
http get
http://www.google.com proxy
http://10.0.254.254:80
ip sla schedule 4 life forever start-time now
logging 10.0.9.2
access-list 108 permit ip 10.0.8.0 0.0.0.255 host 10.0.10.5
access-list 108 permit ip 10.0.8.0 0.0.0.255 host 10.0.0.51
access-list 108 permit ip 10.0.8.0 0.0.0.255 host 10.0.0.81
access-list 108 deny ip 10.0.8.0 0.0.0.255 10.0.0.0 0.0.0.255
access-list 108 deny ip 10.0.8.0 0.0.0.255 10.0.1.0 0.0.0.255
access-list 108 deny ip 10.0.8.0 0.0.0.255 10.0.10.0 0.0.0.255
access-list 108 deny ip 10.0.8.0 0.0.0.255 10.0.253.0 0.0.0.255
access-list 108 deny ip 10.0.8.0 0.0.0.255 10.0.9.0 0.0.0.255
access-list 108 permit ip any any
access-list 130 deny tcp any any neq www
access-list 130 deny tcp host 10.0.254.201 any
access-list 130 deny tcp host 10.0.0.44 any
access-list 130 permit tcp any any
route-map 130 permit 10
!
route-map alpha permit 10
match ip address 130
set ip next-hop verify-availability 10.0.254.201 10 track 123
set ip next-hop verify-availability 10.0.254.254 20 track 124
!
snmp-server community FSPMP RO
snmp-server community FSPMP@es0 RO
snmp-server location Perseides
snmp-server enable traps license
radius-server host 10.0.0.51 auth-port 1645 acct-port 1646
radius-server host 10.0.0.40 auth-port 1645 acct-port 1646
radius-server key tYSt^LsVT+3My43$v9Fj
!
control-plane
!
privilege exec level 2 enable
!
line con 0
privilege level 2
login authentication if_needed
line vty 0 4
*********
length 0
line vty 5 15
*********
!
!
monitor session 2 source interface Gi1/0/18
monitor session 2 destination interface Gi1/0/12
ntp clock-period 36029268
ntp server 10.0.0.71 key 0 prefer
end