User Tools

Site Tools


hpe:switch:5500:configuration:script:acl-ssh_aclssh-usb
#
 sysname ENTERPRISE_NAME
#
 undo password-control aging enable 
 undo password-control length enable 
 undo password-control history enable 
 password-control login-attempt 3 exceed lock-time 120
#
 super password level 1 simple 1234567890
 super password level 2 simple 1234567890
 super password level 3 simple 1234567890
#
 local-server nas-ip 127.0.0.1 key 3com 
#
 igmp-snooping enable
#
radius scheme system
#
domain system 
#
local-user admin
 password simple 1234567890
 service-type ssh telnet terminal
 level 3
local-user manager
 password simple 1234567890
 service-type ssh telnet terminal
 level 2
local-user monitor
 password simple 1234567890
 service-type ssh telnet terminal
 level 1
#
 stp disable
#
acl number 2000
 description 
 rule 2 permit source 192.168.3.102 0 
 rule 3 permit source 192.168.3.3 0 
#
acl number 3997 
 rule 0 permit IP dscp ef 
 rule 1 permit TCP destination-port eq www 
 rule 2 permit UDP destination-port eq snmp 
 rule 3 permit UDP destination-port eq snmptrap 
 rule 4 permit IP dscp cs6 
 rule 5 permit IP dscp cs7 
#
acl number 4999 
 rule 0 permit type 8868 ffff
 rule 1 permit source 00e0-bb00-0000 ffff-ff00-0000
 rule 2 permit source 0003-6b00-0000 ffff-ff00-0000
 rule 3 permit source 00e0-7500-0000 ffff-ff00-0000
 rule 4 permit source 00d0-1e00-0000 ffff-ff00-0000
 rule 5 permit source 0001-e300-0000 ffff-ff00-0000
 rule 6 permit source 000f-e200-0000 ffff-ff00-0000
 rule 7 permit source 0060-b900-0000 ffff-ff00-0000
 rule 8 deny dest 0000-0000-0000 ffff-ffff-ffff
#
qos-profile default
 packet-filter inbound link-group 4999 rule 8 
 traffic-priority inbound ip-group 3997 rule 0 cos voice 
 traffic-priority inbound ip-group 3997 rule 4 cos network-management 
 traffic-priority inbound ip-group 3997 rule 5 cos network-management 
 traffic-priority inbound link-group 4999 rule 0 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 1 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 2 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 3 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 4 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 5 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 6 dscp ef cos voice 
 traffic-priority inbound link-group 4999 rule 7 dscp ef cos voice 
#
vlan 1
 description Default
 name Default
 igmp-snooping enable
#
vlan 2
 description 
 name 
 igmp-snooping enable
#
vlan 3
 description 
 name 
 igmp-snooping enable
#
vlan 4
 description 
 name 
 igmp-snooping enable
#
vlan 5
 description 
 name 
 igmp-snooping enable
#
vlan 7
 description 
 name 
 igmp-snooping enable
#
vlan 16
 description 
 name 
 igmp-snooping enable
#
vlan 80
 description 
 name 
 igmp-snooping enable
#
interface Vlan-interface1
 description Default
 ip address 192.168.1.10 255.255.255.0 
#LOCCFG. MUST NOT DELETE
#
interface Aux1/0/0
#
interface Ethernet1/0/1
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/2
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/3
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/4
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/5
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/6
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/7
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/8
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/9
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/10
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/11
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/12
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/13
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/14
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/15
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/16
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/17
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/18
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/19
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/20
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/21
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/22
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/23
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/24
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 7 tagged
 port hybrid vlan 3 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/25
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/26
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/27
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/28
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/29
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/30
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
# 
interface Ethernet1/0/31
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/32
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/33
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/34
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/35
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/36
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/37
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/38
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/39
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/40
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/41
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/42
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/43
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/44
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/45
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/46
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/47
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface Ethernet1/0/48
 poe enable
 stp edged-port enable
 port link-type hybrid
 port hybrid vlan 3 7 untagged
 undo port hybrid vlan 1
 port hybrid pvid vlan 3
 broadcast-suppression pps 3000
 undo jumboframe enable
 apply qos-profile default
#
interface GigabitEthernet1/0/49
 port link-type trunk
 port trunk permit vlan all
 broadcast-suppression pps 3000
 undo jumboframe enable
 description 
 lacp enable
 apply qos-profile default
#
interface GigabitEthernet1/0/50
 port link-type trunk
 port trunk permit vlan all
 broadcast-suppression pps 3000
 undo jumboframe enable
 description 
 lacp enable
 apply qos-profile default
#
interface GigabitEthernet1/0/51
#
interface GigabitEthernet1/0/52
#TOPOLOGYCFG. MUST NOT DELETE
#
 undo xrn-fabric authentication-mode
#GLBCFG. MUST NOT DELETE
#
interface NULL0
#
 voice vlan 7 enable
#
 ip route-static 0.0.0.0 0.0.0.0 192.168.1.1 preference 60
#
 snmp-agent
 snmp-agent local-engineid 8000002B001AC12BD4806877
 snmp-agent community read public 
 snmp-agent community write private 
 snmp-agent sys-info contact JHON JAIRO PARRA
 snmp-agent sys-info location EDIFICIO DIEGO BARROSO
 snmp-agent sys-info version all
#
user-interface aux 0 7
 authentication-mode scheme 
 super authentication-mode scheme 
user-interface vty 0 4
 acl 2000 inbound
 authentication-mode scheme 
 super authentication-mode scheme 
 protocol inbound ssh
#
return

David Gonzalez 2021/03/29 17:11

hpe/switch/5500/configuration/script/acl-ssh_aclssh-usb.txt · Last modified: 2021/03/29 17:11 by dgonzalez

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki