Boston T1 Boston PRI Menlo Park Gateway Boston Route Group

advertisement
Boston T1
Boston PRI
Menlo Park Gateway
Boston Route Group
Menlo Park Route Group
Boston Route List
Menlo Park Route List
Router Config
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname BOSRT01
!
boot-start-marker
boot-end-marker
!
card type t1 1 0
logging buffered 51200 warnings
enable secret 5 $1$fn/I$KXiKp28i/R6JQsmzPQg1S0
!
aaa new-model
!
!
aaa authentication login default group tacacs+ local
aaa authorization exec default group tacacs+ local
!
aaa session-id common
!
resource policy
!
clock timezone EST -5
clock summer-time SUMMER recurring
network-clock-participate slot 1
network-clock-participate wic 0
network-clock-participate aim 1
network-clock-select 1 T1 0/0/0
network-clock-select 2 T1 0/0/1
ip subnet-zero
ip cef
!
!
!
!
ip host bos01 90.0.200.242
ip host bos02 90.0.200.243
ip host stack 90.0.50.2
ip host BOSCCM01 90.0.0.240
ip host BOSCCM02 90.0.0.241
ip sla monitor 1
type echo protocol ipIcmpEcho 4.2.2.2 source-interface GigabitEthernet0/0
ip sla monitor schedule 1 life forever start-time now
isdn switch-type primary-ni
voice-card 0
no dspfarm
dsp services dspfarm
!
!
!
!
!
!
!
!
!
!
!
!
!
!
application
global
service alternate default
!
!
!
crypto pki trustpoint TP-self-signed-3141526505
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3141526505
revocation-check none
rsakeypair TP-self-signed-3141526505
!
!
crypto pki certificate chain TP-self-signed-3141526505
certificate self-signed 01
30820240 308201A9 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 33313431 35323635 3035301E 170D3036 30323134 32323037
34305A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 31343135
32363530 3530819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100C763 4142F446 2A4DCC78 43063AB6 64D85EDF E9127C7B 7CD01C11
F16DAA88
BC07D053 6917AA54 BFE16BFF 33263E7A 51CD85AC 557A681A EF397248
3B986FDA
B0E03797 6016C8B2 52E1259D 60ED6374 F8938B61 9422C3BB 91BEB140
3A7E7F8C
92F2AAA7 9BEDC2F5 ED9D561E 61AAF3F4 B080377E 48F8936B B04344A9
1C6E1C46
83050203 010001A3 68306630 0F060355 1D130101 FF040530 030101FF 30130603
551D1104 0C300A82 08424F53 52543031 2E301F06 03551D23 04183016 8014DAF8
D900B373 D56AC9E6 BD9CBD4C 9419E140 956A301D 0603551D 0E041604
14DAF8D9
00B373D5 6AC9E6BD 9CBD4C94 19E14095 6A300D06 092A8648 86F70D01
01040500
03818100 5303B966 078627A2 75030A01 B5B62B68 D1D23BFD 44F47333
38DC91BF
5069747A 0E56232E A2C8522B 3FFB3970 7F20C9E9 A6977EE1 18AC3ACD
142610B6
09829B34 9D80B0DA 648B54B3 899C11DF F168C513 B30C11D3 29282D73
3290BB0E
1CD705CB 1CAE0E96 BD9FB290 50EAF9EC 43A94525 6EA5E5EF B9B969E8
BD2D238C 4EEA65FA
quit
username tjm privilege 15 password 7 04780307012645400E4A
username nsk password 7 083F621B0258
username allianttech privilege 15 password 7 072F2D401F081752
!
!
controller T1 0/0/0
framing esf
linecode b8zs
ds0-group 1 timeslots 1-24 type e&m-wink-start
!
controller T1 0/0/1
framing esf
linecode b8zs
pri-group timeslots 1-24 service mgcp
!
controller T1 1/0/0
mode atm aim 1
framing esf
linecode b8zs
!
controller T1 1/0/1
mode atm aim 1
framing esf
linecode b8zs
!
controller T1 1/1/0
mode atm aim 1
framing esf
linecode b8zs
!
controller T1 1/1/1
framing esf
linecode b8zs
!
track 123 rtr 1 reachability
!
class-map match-any VoIP-CTRL
match access-group 110
class-map match-any VoIP
match access-group 111
class-map match-all VIDEO
match access-group 112
!
!
policy-map MPLS2Inside
class VoIP
priority 10000
set precedence 5
class VoIP-CTRL
bandwidth 1000
class class-default
fair-queue
random-detect
policy-map Out2MPLS
class VoIP
priority 1088
set ip dscp ef
class VoIP-CTRL
bandwidth 218
set ip dscp af31
class VIDEO
set dscp af31
bandwidth 2304
class class-default
set ip dscp default
fair-queue
random-detect
!
!
!
!
interface Loopback0
ip address 90.0.50.1 255.255.255.255
!
interface GigabitEthernet0/0
description To-Local-Lan-VLAN 200
ip address 90.0.200.250 255.255.255.0
duplex auto
speed auto
media-type rj45
negotiation auto
service-policy output MPLS2Inside
!
interface GigabitEthernet0/1
description To-Local-Lan-VLAN 200
ip address 90.0.0.239 255.255.255.0
duplex auto
speed auto
media-type rj45
negotiation auto
service-policy output MPLS2Inside
!
interface ATM0/IMA1
description 6 MB ATM port
bandwidth 6124
no ip address
atm vc-per-vp 1024
no atm ilmi-keepalive
service-policy output Out2MPLS
!
interface ATM0/IMA1.1 point-to-point
ip address 10.161.254.189 255.255.255.252
pvc 1/777
!
!
interface Serial0/0/1:23
no ip address
isdn switch-type primary-ni
isdn incoming-voice voice
isdn bind-l3 ccm-manager
no cdp enable
!
interface ATM1/0/0
no ip address
no scrambling-payload
ima-group 1
no atm ilmi-keepalive
!
interface ATM1/0/1
no ip address
no scrambling-payload
ima-group 1
no atm ilmi-keepalive
!
interface ATM1/1/0
no ip address
no scrambling-payload
ima-group 1
no atm ilmi-keepalive
!
router rip
version 2
redistribute connected metric 2 route-map connected
redistribute bgp 65161 metric 4
passive-interface default
no passive-interface GigabitEthernet0/0
no passive-interface GigabitEthernet0/1
network 90.0.0.0
no auto-summary
!
router bgp 65161
no synchronization
bgp log-neighbor-changes
network 90.0.50.1 mask 255.255.255.255
redistribute static
redistribute rip
neighbor 10.161.254.190 remote-as 13979
default-information originate
no auto-summary
!
ip classless
ip route 0.0.0.0 0.0.0.0 90.0.200.2 track 123
ip route 4.2.2.2 255.255.255.255 90.0.200.2 permanent
!
!
ip http server
ip http authentication local
ip http secure-server
ip http timeout-policy idle 5 life 86400 requests 10000
!
ip access-list standard default
deny 90.0.201.0 0.0.0.255
deny 90.0.50.0 0.0.0.255
deny 90.0.1.0 0.0.0.255
deny 90.0.101.0 0.0.0.255
deny 90.0.111.0 0.0.0.255
deny 90.0.203.0 0.0.0.255
deny 90.0.3.0 0.0.0.255
deny 90.0.103.0 0.0.0.255
deny 90.0.113.0 0.0.0.255
permit any
ip access-list standard default-only
deny 4.2.2.2
permit any
!
access-list 89 permit 216.141.32.0 0.0.3.255
access-list 110 permit tcp any range 2000 2002 any
access-list 110 permit tcp any any eq 1720
access-list 110 permit tcp any eq 1720 any
access-list 110 permit udp any any eq 2427
access-list 110 permit udp any eq 2427 any
access-list 110 permit tcp any any eq 2428
access-list 110 permit udp any eq 2428 any
access-list 110 remark ACL for Voice CONTROL Traffic
access-list 110 permit ip any any dscp af31
access-list 110 permit tcp any any range 2000 2002
access-list 110 permit tcp any any eq 2748
access-list 110 permit tcp any eq 2748 any
access-list 110 remark ACL for Voice CONTROL Traffic
access-list 111 remark ACL for Voice BEARER Traffic
access-list 111 permit udp any any dscp ef
access-list 111 permit udp any any range 16384 32767
access-list 111 permit udp any range 16384 32767 any
access-list 111 remark ACL for Voice BEARER Traffic
access-list 111 permit udp any any precedence critical
access-list 112 remark Video
access-list 112 permit tcp host 90.0.0.253 eq 389 any
access-list 112 permit tcp host 90.0.0.253 any eq 389
access-list 112 permit tcp host 90.0.0.253 eq 1002 any
access-list 112 permit tcp host 90.0.0.253 any eq 1002
access-list 112 permit tcp host 90.0.0.253 eq 1503 any
access-list 112 permit tcp host 90.0.0.253 any eq 1503
access-list 112 permit tcp host 90.0.0.253 range 1718 1720 any
access-list 112 permit tcp host 90.0.0.253 any range 1718 1720
access-list 112 permit tcp host 90.0.0.253 eq 1731 any
access-list 112 permit tcp host 90.0.0.253 eq 22136 any
access-list 112 permit tcp host 90.0.0.253 any eq 22136
access-list 112 permit tcp host 90.0.0.253 eq 26505 any
access-list 112 permit tcp host 90.0.0.253 any eq 26505
access-list 112 permit tcp host 90.0.0.253 range 1024 65535 any
access-list 112 permit tcp host 90.0.0.253 any range 1024 65535
access-list 112 permit udp host 90.0.0.253 range 1024 65535 any
access-list 112 permit udp host 90.0.0.253 any range 1024 65535
access-list 112 permit tcp host 90.0.0.253 any eq 1731
access-list 112 permit tcp host 90.0.0.254 eq 389 any
access-list 112 permit tcp host 90.0.0.254 any eq 389
access-list 112 permit tcp host 90.0.0.254 eq 1002 any
access-list 112 permit tcp host 90.0.0.254 any eq 1002
access-list 112 permit tcp host 90.0.0.254 eq 1503 any
access-list 112 permit tcp host 90.0.0.254 any eq 1503
access-list 112 permit tcp host 90.0.0.254 range 1718 1720 any
access-list 112 permit tcp host 90.0.0.254 any range 1718 1720
access-list 112 permit tcp host 90.0.0.254 eq 1731 any
access-list 112 permit tcp host 90.0.0.254 eq 22136 any
access-list 112 permit tcp host 90.0.0.254 any eq 22136
access-list 112 permit tcp host 90.0.0.254 eq 26505 any
access-list 112 permit tcp host 90.0.0.254 any eq 26505
access-list 112 permit tcp host 90.0.0.254 range 1024 65535 any
access-list 112 permit tcp host 90.0.0.254 any range 1024 65535
access-list 112 permit udp host 90.0.0.254 range 1024 65535 any
access-list 112 permit udp host 90.0.0.254 any range 1024 65535
access-list 112 permit tcp host 90.0.0.254 any eq 1731
snmp-server community <TAAssociate> RW 99
snmp-server community public RO 99
snmp-server community tAr34D0nLy RO 89
snmp-server community W4r98t31p0d RW 89
snmp-server ifindex persist
no snmp-server sparse-tables
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps xgcp
snmp-server enable traps dsp card-status
snmp-server enable traps ipmulticast
snmp-server enable traps msdp
snmp-server enable traps rsvp
route-map connected permit 10
!
!
!
tacacs-server host 216.141.33.66
tacacs-server host 216.141.33.72
tacacs-server directed-request
tacacs-server key 7 0836494C100D00
!
control-plane
!
!
!
voice-port 0/0/0:1
timing wait-wink 5000
!
voice-port 0/0/1:23
!
voice-port 0/2/0
timing hookflash-out 500
!
voice-port 0/2/1
timing hookflash-out 500
!
voice-port 0/2/2
timing hookflash-out 500
!
voice-port 0/2/3
timing hookflash-out 500
!
voice-port 0/3/0
timing hookflash-out 500
!
voice-port 0/3/1
!
voice-port 0/3/2
!
voice-port 0/3/3
!
ccm-manager fallback-mgcp
ccm-manager redundant-host 90.0.0.240
ccm-manager mgcp
no ccm-manager fax protocol cisco
ccm-manager music-on-hold
ccm-manager config server 90.0.0.241 90.0.0.240
ccm-manager config
!
mgcp
mgcp call-agent 90.0.0.241 2427 service-type mgcp version 0.1
mgcp dtmf-relay voip codec all mode out-of-band
mgcp rtp unreachable timeout 1000 action notify
mgcp modem passthrough voip mode nse
mgcp package-capability rtp-package
no mgcp package-capability res-package
mgcp package-capability sst-package
no mgcp package-capability fxr-package
mgcp package-capability pre-package
no mgcp timer receive-rtcp
mgcp sdp simple
mgcp fax t38 inhibit
no mgcp explicit hookstate
mgcp rtp payload-type g726r16 static
mgcp bind control source-interface Loopback0
mgcp bind media source-interface Loopback0
!
mgcp profile default
!
sccp local Loopback0
sccp ccm 90.0.0.240 identifier 1 version 4.1
sccp ccm 90.0.0.241 identifier 2 version 4.1
sccp
!
sccp ccm group 1
associate ccm 1 priority 2
associate ccm 2 priority 1
associate profile 6 register MTP0015629ABA40
associate profile 10 register CFB0015629ABA40
keepalive retries 5
switchover method immediate
switchback method immediate
switchback interval 15
!
dspfarm profile 6 transcode
codec g711ulaw
codec g711alaw
codec g729ar8
codec g729abr8
codec gsmfr
codec g729r8
codec g729br8
maximum sessions 2
associate application SCCP
!
dspfarm profile 10 conference
codec g711ulaw
codec g711alaw
codec g729ar8
codec g729abr8
codec g729r8
codec g729br8
associate application SCCP
shutdown
!
!
dial-peer voice 999020 pots
service mgcpapp
port 0/2/0
!
dial-peer voice 999021 pots
service mgcpapp
port 0/2/1
!
dial-peer voice 999022 pots
service mgcpapp
port 0/2/2
!
dial-peer voice 999023 pots
service mgcpapp
port 0/2/3
!
dial-peer voice 100 pots
service mgcpapp
port 0/0/0:1
!
dial-peer voice 101 pots
service mgcpapp
port 0/0/1:23
!
dial-peer voice 999030 pots
service mgcpapp
port 0/3/0
!
dial-peer voice 1000 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 1
destination-pattern 9T
port 0/0/1:23
!
dial-peer voice 1001 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 2
destination-pattern 9T
port 0/3/0
!
dial-peer voice 1002 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 3
destination-pattern 9T
port 0/3/1
!
dial-peer voice 1003 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 4
destination-pattern 9T
port 0/3/2
!
dial-peer voice 1004 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 5
destination-pattern 9T
port 0/3/3
!
dial-peer voice 1005 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 6
destination-pattern 9T
port 0/2/0
!
dial-peer voice 1006 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 7
destination-pattern 9T
port 0/2/1
!
dial-peer voice 1007 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 8
destination-pattern 9T
port 0/2/2
!
dial-peer voice 1008 pots
description ** dial-peer for outgoing Local and LongDistance Calls for SRST
preference 9
destination-pattern 9T
port 0/2/3
!
dial-peer voice 1009 pots
description ** dial-peer for outgoing 911 **
preference 1
destination-pattern 911
port 0/3/0
!
dial-peer voice 1010 pots
description ** dial-peer for outgoing 411 **
preference 1
destination-pattern 411
port 0/3/0
!
!
!
call-manager-fallback
secondary-dialtone 9
max-conferences 8 gain -6
transfer-system full-consult
timeouts interdigit 7
timeouts ringing 15
ip source-address 90.0.203.1 port 2000
max-ephones 42
max-dn 144
system message primary "Backup Mode"
keepalive 10
voicemail 5500
no huntstop
call-forward pattern .T
call-forward busy 5500
call-forward noan 5500 timeout 15
moh music-on-hold.au
multicast moh 239.1.1.1 port 16484
!
banner exec ^C
You are accessing a TA Associates computer system. If you are not
authorized to access this system, disconnect now!
^C
banner login ^C
This is a private computer system. These computer systems are provided
for the processing of Official Company information only. All data
contained on these computer systems is owned by the COMPANY, and may
be monitored, intercepted, recorded, read, copied, or captured in any
manner and disclosed in any manner, by authorized personnel.
THERE IS NO RIGHT OF PRIVACY IN THIS SYSTEM. Systems personnel may give
to law enforcement officials any potential evidence of crime found on
this system. USE OF THIS SYSTEM BY ANY USER, AUTHORIZED OR
UNAUTHORIZED, CONSTITUTES EXPRESS CONSENT TO THIS MONITORING,
INTERCEPTION,
RECORDING, READING, COPYING, or CAPTURING and DISCLOSURE.
IF YOU DO NOT CONSENT, DISCONNECT NOW.
^C
!
line con 0
exec-timeout 30 0
logging synchronous
stopbits 1
line aux 0
stopbits 1
line vty 0 4
exec-timeout 30 0
privilege level 15
logging synchronous
transport input telnet ssh
line vty 5 15
exec-timeout 30 0
privilege level 15
logging synchronous
transport input telnet ssh
!
scheduler allocate 20000 1000
ntp source Loopback0
ntp master 3
!
end
BOSRT01#
Download