SSH@ICX7250-48P Router>show run
Current configuration:
!
ver 09.0.10j_cd2T213
!
stack unit 1
module 1 icx7250-48p-poe-port-management-module
module 2 icx7250-sfp-plus-8port-80g-module
!
!
!
global-stp
!
!
vlan 1 name DEFAULT-VLAN by port
!
vlan 33 name PVEBYP by port
tagged ethe 1/2/1
untagged ethe 1/1/11
!
vlan 50 name VL50-Users by port
tagged ethe 1/2/1 to 1/2/2
untagged ethe 1/1/1 ethe 1/1/25 to 1/1/36
!
vlan 77 name Transit by port
untagged ethe 1/2/1
!
vlan 99 name Transit2 by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
!
vlan 100 name VL100 by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
untagged ethe 1/1/7
!
vlan 198 name DMZ5 by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
!
vlan 199 name DMZ1-VL by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
untagged ethe 1/1/39
!
vlan 200 name VL200 by port
tagged ethe 1/1/1 ethe 1/2/2
untagged ethe 1/1/2 to 1/1/6
!
vlan 399 name DMZ3 by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
untagged ethe 1/1/37 to 1/1/38
!
vlan 500 name Voice-VL by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
untagged ethe 1/1/13
!
vlan 876 name VPN1 by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/1/25 ethe 1/2/2
!
vlan 1551 name MGMT-VL by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/1 to 1/2/2
!
vlan 3227 by port
tagged ethe 1/1/1 to 1/1/2 ethe 1/2/2
!
!
!
!
system-max ip-static-route 2048
system-max ip-route-default-vrf 9000
system-max ip6-route-default-vrf 256
system-max ip-route-vrf 500
!
!
!
vrf USER-VRF
rd 693:50
ip router-id 172.31.1.1
address-family ipv4
ip route 0.0.0.0/0 next-hop-vrf default-vrf 172.25.100.1
ip route 10.5.0.0/23 172.31.0.1
ip route 10.5.2.0/24 next-hop-vrf SERVER-VRF 172.30.10.1
ip route 10.5.3.0/24 172.31.7.1
ip route 10.55.0.0/24 ve 3227 tag 50
ip route 10.64.0.0/24 172.31.3.1
ip route 10.82.0.0/23 next-hop-vrf SERVER-VRF 172.30.10.82
ip route 10.82.10.0/24 next-hop-vrf default-vrf 172.25.100.1
ip route 10.124.0.0/16 172.31.3.1
ip route 10.200.0.0/22 ve 199 tag 50
ip route 10.250.0.0/24 ve 1551 tag 50
ip route 172.17.0.0/16 172.31.0.2
--More--, next page: Space, next line: Return key, quit: Control-c
ip route 172.20.0.0/22 172.31.0.2
ip route 172.21.0.0/22 172.31.7.1
ip route 172.23.0.0/22 next-hop-vrf SERVER-VRF 172.30.10.1
ip route 172.25.100.0/29 ve 77 tag 50
ip route 172.27.0.0/24 ve 99 tag 50
ip route 172.30.8.0/21 ve 100 tag 50
!
vrf SERVER-VRF
rd 693:100
ip router-id 172.30.9.1
address-family ipv4
ip route 0.0.0.0/0 next-hop-vrf default-vrf 172.25.100.1
ip route 10.5.0.0/22 172.30.10.1
ip route 10.36.8.0/22 ve 399 tag 100
ip route 10.64.0.0/24 172.30.13.100
ip route 10.82.10.0/24 next-hop-vrf default-vrf 172.25.100.1
ip route 10.124.0.0/16 172.30.13.100
ip route 10.250.0.0/24 ve 1551 tag 100
ip route 11.200.32.0/21 ve 200
ip route 172.20.50.0/24 172.30.15.1
ip route 172.25.100.0/29 ve 77 tag 100
ip route 172.27.0.0/24 ve 99 tag 100
ip route 172.31.0.0/21 ve 50 tag 100
ip route 172.31.31.0/24 ve 876 tag 100
ip route 198.19.2.0/24 172.30.12.1
ip route 198.19.3.0/24 172.30.10.1
ip route 198.19.4.0/24 172.30.14.1
address-family ipv6
ipv6 route ::/0 ve 100 fe80::44:e6ff:fe77:76bb
!
vrf DMZ-VRF
rd 693:999
ip router-id 10.99.0.1
address-family ipv4
ip route 0.0.0.0/0 next-hop-vrf default-vrf 172.27.0.40
ip route 172.27.0.0/24 ve 99 tag 199
address-family ipv6
ipv6 route ::/0 ve 199 fe80::c5:34ff:fefd:5767
!
vrf SECURE-VRF
rd 693:732
ip router-id 10.55.0.254
address-family ipv4
ip route 0.0.0.0/0 next-hop-vrf default-vrf 172.25.100.1
ip route 10.82.0.0/23 next-hop-vrf SERVER-VRF 172.30.10.82
ip route 172.17.17.0/24 next-hop-vrf SERVER-VRF 172.30.10.82
ip route 172.17.50.0/23 next-hop-vrf SERVER-VRF 172.30.10.82
ip route 172.20.0.0/22 next-hop-vrf SERVER-VRF 172.30.12.1
ip route 172.21.0.0/22 next-hop-vrf SERVER-VRF 172.30.14.1
ip route 172.23.0.0/22 next-hop-vrf SERVER-VRF 172.30.10.1
--More--, next page: Space, next line: Return key, quit: Control-c
ip route 172.25.100.0/29 ve 77 tag 3227
ip route 172.27.0.0/24 ve 99 tag 3227
--More--, next page: Space, next line: Return key, quit: Control-c
ip route 172.30.8.0/21 ve 100 tag 3227
ip route 172.31.6.200/29 ve 50 tag 3227
!
vrf SERVER2-VRF
rd 693:200
ip router-id 172.29.20.1
address-family ipv4
ip route 0.0.0.0/0 next-hop-vrf default-vrf 172.27.0.55
ip route 10.82.0.0/23 next-hop-vrf SERVER-VRF 172.30.10.82
ip route 10.82.10.0/24 next-hop-vrf default-vrf 172.25.100.1
ip route 172.30.8.0/21 ve 100 tag 200
!
vrf VPN-VRF
rd 693:876
ip router-id 172.31.31.1
address-family ipv4
ip route 0.0.0.0/0 next-hop-vrf default-vrf 172.27.0.4
ip route 172.27.0.0/24 ve 99 tag 876
ip route 172.30.8.0/21 ve 100 tag 876
address-family ipv6
ipv6 route 2001:db8:a:999::/64 ve 99
!
ip route 0.0.0.0/0 172.25.100.1
ip route 10.5.0.0/22 next-hop-vrf SERVER-VRF 172.30.10.1
ip route 10.36.8.0/22 ve 399
ip route 10.55.0.0/24 ve 3227
ip route 10.82.0.0/23 next-hop-vrf SERVER-VRF 172.30.10.82
ip route 10.82.10.0/24 172.25.100.1
ip route 10.200.0.0/22 ve 199
ip route 10.250.0.0/24 ve 1551
ip route 11.200.32.0/21 ve 200
ip route 172.30.8.0/21 ve 100
ip route 172.31.0.0/21 ve 50
ip route 172.31.31.0/24 ve 876
ip route 198.19.2.0/24 next-hop-vrf SERVER-VRF 172.30.12.1
ip route 198.19.3.0/24 next-hop-vrf SERVER-VRF 172.30.10.1
ip route 198.19.4.0/24 next-hop-vrf SERVER-VRF 172.30.14.1
optical-monitor
optical-monitor non-ruckus-optic-enable
ipv6 route ::/0 ve 99 fe80::be24:11ff:fefd:fdea
ipv6 route 2001:db8:a:1::/60 ve 876
!
!
!
clock summer-time
clock timezone gmt GMT-05
ip tftp blocksize 8192
ipv6 unicast-routing
!
!
ntp
disable serve
server 162.159.200.1
--More--, next page: Space, next line: Return key, quit: Control-c
server 162.159.200.123
!
!
!
!
!
--More--, next page: Space, next line: Return key, quit: Control-c
!
!
!
!
--More--, next page: Space, next line: Return key, quit: Control-c
interface management 1
ip address 10.166.72.50 255.255.255.0
no ip dhcp-client enable
!
interface ethernet 1/2/1
no optical-monitor
!
interface ethernet 1/2/2
no optical-monitor
!
interface ve 50
vrf forwarding USER-VRF
ip address 172.31.1.1 255.255.248.0
--More--, next page: Space, next line: Return key, quit: Control-c
ipv6 nd suppress-ra
!
interface ve 77
ip address 172.25.100.2 255.255.255.248
!
interface ve 99
ip address 172.27.0.1 255.255.255.0
ipv6 address fe80::d0c0:7ff:fe2a:5b9f link-local
ipv6 address 2001:db8:a:999::2/64
ipv6 enable
ipv6 nd suppress-ra
!
interface ve 100
--More--, next page: Space, next line: Return key, quit: Control-c
vrf forwarding SERVER-VRF
ip address 172.30.9.1 255.255.248.0
--More--, next page: Space, next line: Return key, quit: Control-c
ipv6 address fe80::215:5dff:fe68:9a3f link-local
ipv6 address 2001:db8:a:1ff::/56
ipv6 address 2001:db8:a:114::/59
ipv6 address 2001:db8:a:511::/59
ipv6 address f001:db8:a:ff::/56
ipv6 enable
--More--, next page: Space, next line: Return key, quit: Control-c
ipv6 nd suppress-ra
!
interface ve 198
vrf forwarding DMZ-VRF
ip address 100.101.98.1 255.255.254.0
ipv6 nd suppress-ra
!
interface ve 199
vrf forwarding DMZ-VRF
ip address 10.200.1.1 255.255.252.0
ipv6 address fe80::91a6:8150:2195:1912 link-local
ipv6 enable
ipv6 nd suppress-ra
!
--More--, next page: Space, next line: Return key, quit: Control-c
interface ve 200
vrf forwarding SERVER2-VRF
ip address 11.200.32.1 255.255.248.0
ipv6 address fe80::21e:c9ff:fe48:6e8c link-local
ipv6 nd suppress-ra
!
interface ve 399
vrf forwarding DMZ-VRF
ip address 10.36.9.1 255.255.252.0
ipv6 address fe80::3f10:6fca:aa3a:2a60 link-local
ipv6 enable
ipv6 nd suppress-ra
!
interface ve 500
ip address 10.80.0.1 255.255.255.0
ip helper-address 1 172.27.0.53
ipv6 nd suppress-ra
!
interface ve 876
vrf forwarding VPN-VRF
ip address 172.31.31.1 255.255.255.0
ipv6 address fe80::8ae3:7ff:fe94:1a2b link-local
ipv6 address 2001:db8:a:444::1/60
--More--, next page: Space, next line: Return key, quit: Control-c
ipv6 enable
!
interface ve 1551
vrf forwarding SECURE-VRF
ip address 10.250.0.2 255.255.255.0
--More--, next page: Space, next line: Return key, quit: Control-c
ipv6 nd suppress-ra
!
interface ve 3227
vrf forwarding SECURE-VRF
--More--, next page: Space, next line: Return key, quit: Control-c
ip address 10.55.0.254 255.255.255.0
ipv6 nd suppress-ra
!
!
--More--, next page: Space, next line: Return key, quit: Control-c
!
!
!
!
--More--, next page: Space, next line: Return key, quit: Control-c
!
!
username super password .....
username management password .....
!
aaa authentication login default local
!
aaa authentication web-server default local
!
aaa authentication snmp-server default local
!
!
!
--More--, next page: Space, next line: Return key, quit: Control-c
!
no telnet server
!
--More--, next page: Space, next line: Return key, quit: Control-c
manager disable
manager port-list 987
!
--More--, next page: Space, next line: Return key, quit: Control-c
!
!
end