با سلام خدمت شما دوستان
من دیشب یک پست مثل این پست تو بخش سیسکو زده بودم ولی مثل اینکه بدون اطلاع قبلی پاک شده .
اشکال نداره
حالا اگه امکان داره جواب سوال منو بدید
ایا این کانفگ برای as5300 برای pri درست است یا نه
Current configuration : 4845 bytes
!
version 12.3
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
enable password ***
!
spe 1/0 1/9
firmware location system:/ucode/mica_port_firmware
!
!
resource-pool disable
!
aaa new-model
!
!
aaa authentication login default group radius local
aaa authentication ppp default group radius
aaa authorization exec default group radius local
aaa authorization network default group radius local
aaa accounting exec default start-stop group radius
aaa accounting network default start-stop group radius
aaa session-id common
ip subnet-zero
ip name-server ***.***.***.**
ip name-server ***
ip name-server ****
!
!
isdn switch-type primary-net5
!
!
!
!
!
!
!
!
!
!
!
!
controller E1 0
framing NO-CRC4
clock source line primary
pri-group timeslots 1-31
!
controller E1 1
clock source line secondary 1
!
controller E1 2
clock source line secondary 2
!
controller E1 3
clock source line secondary 3
!
controller E1 4
clock source line secondary 4
!
controller E1 5
clock source line secondary 5
!
controller E1 6
clock source line secondary 6
!
controller E1 7
clock source line secondary 7
!
!
interface Ethernet0
no ip address
shutdown
!
interface Serial0
no ip address
shutdown
clockrate 2015232
no fair-queue
!
interface Serial1
no ip address
shutdown
clockrate 2015232
no fair-queue
!
interface Serial2
no ip address
shutdown
clockrate 2015232
no fair-queue
!
interface Serial3
no ip address
shutdown
clockrate 2015232
no fair-queue
!
interface Serial0:15
no ip address
encapsulation ppp
isdn switch-type primary-net5
isdn incoming-voice modem 56
!
interface FastEthernet0
ip address **.**.**.2 255.255.255.0 secondary
ip address ***.***.***.** 255.255.255.0
ip access-group 115 in
ip access-group 115 out
duplex auto
speed auto
!
interface Group-Async0
ip unnumbered FastEthernet0
ip access-group 115 in
ip access-group 115 out
encapsulation ppp
ip tcp header-compression
no ip mroute-cache
ip policy route-map cache
async mode interactive
peer default ip address pool dialup
ppp authentication pap chap
group-range 1 120
!
ip local pool dialup ***.***.**.*** ***.***.*.***
ip classless
no ip http server
!
!
access-list 50 permit **.***.***.***
access-list 101 permit ip ***.**.***.0 0.0.0.127 any
access-list 115 deny tcp any any range 3127 3198
access-list 115 deny tcp any range 3127 3198 any
access-list 115 deny icmp any any echo
access-list 115 deny icmp any any echo-reply
access-list 115 deny tcp any any range 133 139
access-list 115 deny tcp any range 133 139 any
access-list 115 deny udp any any range 133 netbios-ss
access-list 115 deny udp any range 133 netbios-ss any
access-list 115 deny tcp any any eq 445
access-list 115 deny tcp any eq 445 any
access-list 115 deny udp any any eq tftp
access-list 115 deny udp any eq tftp any
access-list 115 deny udp any any eq 593
access-list 115 deny udp any eq 593 any
access-list 115 deny tcp any any eq 593
access-list 115 deny tcp any eq 593 any
access-list 115 deny tcp any any eq 4444
access-list 115 deny tcp any eq 4444 any
access-list 115 deny udp any eq 3333 any
access-list 115 deny udp any any eq 3333
access-list 115 deny udp any any range 666 765
access-list 115 deny udp any range 666 765 any
access-list 115 deny udp any eq ntp any
access-list 115 deny udp any any eq ntp
access-list 115 deny udp any eq 8998 any
access-list 115 deny udp any any eq 8998
access-list 115 deny udp any any range 995 999
access-list 115 deny udp any range 995 999 any
access-list 115 deny tcp any eq 3333 any
access-list 115 deny tcp any any eq 3333
access-list 115 deny tcp any any range 666 765
access-list 115 deny tcp any range 666 765 any
access-list 115 deny tcp any eq 123 any
access-list 115 deny tcp any any eq 123
access-list 115 deny tcp any eq 8998 any
access-list 115 deny tcp any any eq 8998
access-list 115 deny tcp any any range 995 999
access-list 115 deny tcp any range 995 999 any
access-list 115 deny udp any any eq 1433
access-list 115 deny udp any any eq 1434
access-list 115 deny tcp any any eq 1433
access-list 115 deny tcp any any eq 1434
access-list 115 permit ip any any
!
route-map cache permit 10
match ip address 101
set ip next-hop ***.***.**.00
!
snmp-server community masoud123 RW
snmp-server enable traps tty
!
radius-server host **.**.**.** auth-port 1645 acct-port 1646
radius-server key nttac
!
!
!
!
line con 0
line 1 120
session-timeout 30
exec-timeout 0 0
no flush-at-activation
absolute-timeout 480
modem Dialin
autocommand ppp
transport preferred none
transport input all
transport output none
autoselect ppp
line aux 0
line vty 0 4
access-class 50 in
password ****
!
end
ممنون از شما
موضوعات مشابه:
- پریدن config as5300
- config router as5300
- یک مشکل با Config روتر AS5300
- Config AS5300
- config cas for as5300