[HPE]dis current-configuration
#
 version 7.1.045, Release 2432P06-US
#
 sysname HPE
#
 clock timezone Bogota minus 05:00:00
 clock protocol none
#
 irf mac-address persistent timer
 irf auto-update enable
 undo irf link-delay
 irf member 1 priority 1
 irf member 2 priority 1
 irf mode normal
#
 ip unreachables enable
 ip ttl-expires enable
#
igmp-snooping
#
 udp-helper enable
 udp-helper port 123
 udp-helper port 167
 udp-helper port 168
#
 dhcp enable
#
 dns domain ams.hpecore.net
 dns server 16.110.135.51
 dns server 16.110.135.52
#
 lldp global enable
 lldp compliance cdp
#
 system-working-mode standard
 fan prefer-direction slot 1 port-to-power
 fan prefer-direction slot 2 port-to-power
 password-recovery enable
#
vlan 1
 name Default
 description Default
 igmp-snooping enable
 igmp-snooping querier
#
vlan 2 to 31
#
vlan 32
 name Devices
 description Devices
 igmp-snooping enable
 igmp-snooping querier
#
vlan 33
 description Conexion MPLS
#
vlan 34
 name Wireless
 description Wireless
 igmp-snooping enable
 igmp-snooping querier
#
vlan 35
#
vlan 36
 name Servers
 description Servers
 igmp-snooping enable
 igmp-snooping querier
#
vlan 37
#
vlan 38
 name Usuarios
 description Usuarios
 igmp-snooping enable
 igmp-snooping querier
#
vlan 39
#
vlan 40
 name Printers
 description Printers
 igmp-snooping enable
 igmp-snooping querier
#
vlan 41
#
vlan 42
 name VoIP
 description VoIP
 igmp-snooping enable
 igmp-snooping querier
#
vlan 43
#
vlan 44
 name CCTV
 description CCTV
 igmp-snooping enable
 igmp-snooping querier
#
vlan 45
#
vlan 46
 name DMZ
 description DMZ
 igmp-snooping enable
 igmp-snooping querier
#
vlan 47
#
vlan 48
 name Internet1
 description Internet1
 igmp-snooping enable
 igmp-snooping querier
#
vlan 49
#
vlan 50
 name Internet2
 description Internet2
 igmp-snooping enable
 igmp-snooping querier
#
vlan 51
#
vlan 52
 name Cuarentena
 description Cuarentena
 igmp-snooping enable
 igmp-snooping querier
#
vlan 53
#
vlan 54
 name Radius-LAN
 description Radius-LAN
 igmp-snooping enable
 igmp-snooping querier
#
vlan 55
#
vlan 56
 name Radius-UTM
 description Radius-UTM
 igmp-snooping enable
 igmp-snooping querier
#
vlan 57
#
vlan 58
 name Pretoria
 description Pretoria
 igmp-snooping enable
 igmp-snooping querier
#
vlan 59
 description Produccion
#
vlan 60
 name Invitados
 description Invitados No AAA
 igmp-snooping enable
 igmp-snooping querier
#
vlan 61 to 69
#
vlan 70
 name Contratistas
 description Vlan Produccion Aislada
 igmp-snooping enable
 igmp-snooping querier
#
vlan 71 to 79
#
vlan 80
 name Moviles
 description Moviles
 igmp-snooping enable
 igmp-snooping querier
#
vlan 81 to 89
#
vlan 90
 description ServidorAD2022
#
vlan 91 to 1000
#
vlan 1001
 name Vlan_Internet_GC
 description Vlan_Internet_GC
 igmp-snooping enable
#
vlan 1002
 name Vlan_Datos_GC
 description Vlan_Datos_GC
 igmp-snooping enable
#
vlan 1003
 name Vlan_Internet_ETB
 description Vlan_Internet_ETB
 igmp-snooping enable
#
vlan 1004
 name Vlan_Datos_UNE
 description Vlan_Datos_UNE
 igmp-snooping enable
#
vlan 1005
 name HA_Fortinet
 description HA_Fortinet
 igmp-snooping enable
#
vlan 1006
 name Vlan_Invitados_Radius
 description Vlan_Invitados_Radius
 igmp-snooping enable
#
vlan 1007
 name Vlan_TRUNK_VOIP_ET
 description VLAN 1007 MPLS CLARO
 igmp-snooping enable
 igmp-snooping querier
#
vlan 1008
 name vlan 1008
 description Vlan_1008_Troncal_SIP_ETB
 igmp-snooping enable
 igmp-snooping querier
#
vlan 1009
 description Vlan_Internet_Movistar
#
vlan 1010 to 4094
#
irf-port 1/1
 port group interface FortyGigE1/0/49
 port group interface FortyGigE1/0/50
#
irf-port 2/2
 port group interface FortyGigE2/0/49
 port group interface FortyGigE2/0/50
#
stp region-configuration
 region-name CSL
 revision-level 1
 instance 1 vlan 32 to 1008
 active region-configuration
#
 stp instance 0 to 2 root primary
 stp mode rstp
 stp bpdu-protection
 stp pathcost-standard dot1t
 stp global enable
#
interface Bridge-Aggregation1
 description CONEXION STACK 5500 IP:  10.245.32.23
 port link-type trunk
 port trunk permit vlan all
#
interface Bridge-Aggregation2
 description CONEXION SWITCH FORMATO LOAD SHARING CRITERIO DESTINATION MAC
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 link-aggregation load-sharing mode destination-mac
#
interface Bridge-Aggregation3
 description CONEXION SWITCH FORMATO LAYER 2 LINK AGGREGATION.  CRITERIO FUENTE Y DESTINO.
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 link-aggregation mode dynamic
 link-aggregation load-sharing mode destination-mac source-mac
#
interface Bridge-Aggregation4
 description CONEXION SWITCH X.X.X.X
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
#
interface NULL0
#
interface LoopBack0
 ip address 10.255.255.254 255.255.255.255
#
interface Vlan-interface32
 description INT VLAN 32 Devices
 ip address 10.245.32.1 255.255.255.0
#
interface Vlan-interface33
 description INT VLAN 33 Conexion MPLS
 ip address 10.245.33.2 255.255.255.248
#
interface Vlan-interface34
 description INT VLAN 34 Wireless
 ip address 10.245.34.1 255.255.255.0
 dhcp select relay
 dhcp relay server-address 10.245.36.116
#
interface Vlan-interface36
 description INT VLAN 36 Servers
 ip address 10.245.36.1 255.255.255.128
#
interface Vlan-interface38
 description INT VLAN 38 Usuarios
 ip address 10.245.38.1 255.255.255.0
 dhcp select relay
 dhcp relay server-address 10.245.36.116
#
interface Vlan-interface40
 description INT VLAN 40 Printers
 ip address 10.245.40.1 255.255.255.128
#
interface Vlan-interface42
 description INT VLAN 42 VoIP
 ip address 10.245.42.1 255.255.255.0
 dhcp select relay
 dhcp relay server-address 10.245.36.116
#
interface Vlan-interface44
 description INT VLAN 44 CCTV
 ip address 10.245.44.1 255.255.255.0
 packet-filter 3002 outbound
#
interface Vlan-interface54
 description INT VLAN 54 Radius-LAN
 ip address 10.245.54.1 255.255.255.252
#
interface Vlan-interface58
 description INT VLAN 58 Pretoria
 ip address 10.245.58.1 255.255.255.0
 packet-filter 3003 outbound
#
interface Vlan-interface59
 description INT VLAN 59 Produccion
 ip address 10.250.59.1 255.255.255.192
 dhcp select relay
 dhcp relay server-address 10.245.36.116
#
interface Vlan-interface60
#
interface Vlan-interface70
 ip address 10.250.70.1 255.255.255.0
 dhcp select relay
 dhcp relay server-address 10.245.36.116
#
interface Vlan-interface1001
#
interface Vlan-interface1002
#
interface Vlan-interface2400
#
interface FortyGigE1/0/51
 port link-mode bridge
#
interface FortyGigE1/0/52
 port link-mode bridge
#
interface FortyGigE2/0/51
 port link-mode bridge
#
interface FortyGigE2/0/52
 port link-mode bridge
#
interface FortyGigE1/0/49
#
interface FortyGigE1/0/50
#
interface FortyGigE2/0/49
#
interface FortyGigE2/0/50
#
interface M-GigabitEthernet0/0/0
 ip address 10.255.255.253 255.255.255.0
#
interface Ten-GigabitEthernet1/0/1
 port link-mode bridge
 description Vlan_Internet_ETB
 port access vlan 1003
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/2
 port link-mode bridge
 description CONEXION OPERADOR MOVISTAR
 port access vlan 1009
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/3
 port link-mode bridge
 description CONEXION ZONA WAN 1 FORTINET
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 1003 untagged
 port hybrid pvid vlan 1003
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/4
 port link-mode bridge
 description Vlan_Internet_ETB
 port access vlan 1003
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/5
 port link-mode bridge
 description CONEXION MOVISTART WAN 2
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 1009 untagged
 port hybrid pvid vlan 1009
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/6
 port link-mode bridge
 description CONEXION MOVISTART WAN 2
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 1009 untagged
 port hybrid pvid vlan 1009
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/7
 port link-mode bridge
 description CONEXION PORT LAN CONTROLLER IP: 10.245.32.130
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 34 36 38 60 80 90 tagged
 port hybrid vlan 32 untagged
 port hybrid pvid vlan 32
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/8
 port link-mode bridge
 description CONEXION DMZ
 port access vlan 1001
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/9
 port link-mode bridge
 description CONEXION DMZ
 port access vlan 1002
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/10
 port link-mode bridge
 description CONEXION ILO 10.245.36.81
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 32 34 38 40 42 44 46 48 50 52 tagged
 port hybrid vlan 54 56 58 1007 to 1008 tagged
 port hybrid vlan 36 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/11
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/12
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/13
 port link-mode bridge
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 59 untagged
 port hybrid pvid vlan 59
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/14
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/15
 port link-mode bridge
 port access vlan 32
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/16
 port link-mode bridge
 port access vlan 32
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/17
 port link-mode bridge
 port access vlan 33
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/18
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/19
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/20
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/21
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/22
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/23
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/24
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/25
 port link-mode bridge
 description CONEXION SWITCH 5500G ADMINISTRATIVO IP: 10.245.32.23
 port link-type trunk
 port trunk permit vlan all
 broadcast-suppression pps 3000
 port link-aggregation group 1
#
interface Ten-GigabitEthernet1/0/26
 port link-mode bridge
 description conexion switch 10.245.32.48 administracion 2
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/27
 port link-mode bridge
 description CONEXION SWITCH A5500G 24 PORT IP: 10.245.32.151
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/28
 port link-mode bridge
 description CONEXION CC PATIO PRODUCTO TERMINADO 01 IP: 10.245.32.55
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/29
 port link-mode bridge
 description CONEXION CC PATIO PRODUCTO TERMINADO 02 IP: 10.245.32.56
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/30
 port link-mode bridge
 description CONEXION CC PATIO PRODUCTO TERMINADO 03 IP: 10.245.32.54
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 flow-control receive enable
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/31
 port link-mode bridge
 description CONEXION CC PATIO PRODUCTO TERMINADO 04 IP: 10.245.32.58
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/32
 port link-mode bridge
 description CONEXION CC PATIO PRODUCTO TERMINADO 05 IP: 10.245.32.59
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/33
 port link-mode bridge
 description CONEXION CC PRENSAS IP: 10.245.32.44
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/34
 port link-mode bridge
 description CONEXION CC FASE2 IP: 10.245.32.33
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/35
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/36
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/37
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/38
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/39
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/40
 port link-mode bridge
 description CONEXION SWITCH A5500G 24 PORT IP: 10.245.32.151
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/41
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/42
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/43
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/44
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/45
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/46
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/47
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet1/0/48
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/1
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/2
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/3
 port link-mode bridge
 description CONEXION ILO IP:  10.245.36.80
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 32 34 38 40 42 44 46 48 50 52 tagged
 port hybrid vlan 54 56 1007 to 1008 tagged
 port hybrid vlan 36 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/4
 port link-mode bridge
 description CONEXION ZONA INVITADOS - UTM
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 60 untagged
 port hybrid pvid vlan 60
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/5
 port link-mode bridge
 description CONEXION PUERTO 1 CCTV
 port access vlan 44
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/6
 port link-mode bridge
 description CONEXION AUTOLOADER
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 32 34 38 40 42 44 46 48 50 52 tagged
 port hybrid vlan 54 56 1007 to 1008 tagged
 port hybrid vlan 36 1009 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/7
 port link-mode bridge
 description CONEXION ILO 1 FILE SERVER
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 1008 untagged
 port hybrid pvid vlan 1008
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/8
 port link-mode bridge
 description CONEXION PUERTO1-->FORTIGATE1 PUERTO8 --->SWCORE2
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 80 90 tagged
 port hybrid vlan 33 36 70 1001 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/9
 port link-mode bridge
 description CONEXION PUERTO1-->FORTIGATE2 PUERTO9 --->SWCORE2
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 80 90 tagged
 port hybrid vlan 36 70 1001 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/10
 port link-mode bridge
 description CONEXION PUERTO 1 FILE SERVER
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 32 34 38 40 42 44 46 48 50 52 tagged
 port hybrid vlan 54 56 1007 to 1008 tagged
 port hybrid vlan 36 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/11
 port link-mode bridge
 description CONEXION ZONA INVITADOS - UTM
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 60 untagged
 port hybrid pvid vlan 60
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/12
 port link-mode bridge
 description CONEXION VEEAM BACKUP
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 32 34 38 40 42 44 46 48 50 52 tagged
 port hybrid vlan 54 56 1007 to 1008 tagged
 port hybrid vlan 36 untagged
 port hybrid pvid vlan 36
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/13
 port link-mode bridge
 description VLAN VOIP INTERNA
 port link-type hybrid
 undo port hybrid vlan 1
 port hybrid vlan 42 untagged
 port hybrid pvid vlan 42
 flow-control
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/14
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/15
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/16
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/17
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/18
 port link-mode bridge
 port access vlan 33
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/19
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/20
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/21
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/22
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/23
 port link-mode bridge
 description ENLACE FO RACK DE MANTENIMIENTO
 port link-type trunk
 undo port trunk permit vlan 1
 port trunk permit vlan 2 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/24
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/25
 port link-mode bridge
 description CONEXION SWITCH 5500G ADMINISTRATIVO IP: 10.245.32.23
 port link-type trunk
 port trunk permit vlan all
 broadcast-suppression pps 3000
 port link-aggregation group 1
#
interface Ten-GigabitEthernet2/0/26
 port link-mode bridge
 description CONEXION SWITCH 4800G SERVICIOS IP: 10.245.32.46
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/27
 port link-mode bridge
 description CONEXION SWITCH 4800G HORNOS IP: 10.245.32.34
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/28
 port link-mode bridge
 description CONEXION SWITCH 4800G MATRICERIA IP: 10.245.32.39
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/29
 port link-mode bridge
 description CONEXION SWITCH 4800G ESMALTADO IP :10.245.32.31
 port link-type trunk
 port trunk permit vlan all
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/30
 port link-mode bridge
 description CONEXION SWITCH 5500G DESPACHOS IP: 10.245.32.35
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
#
interface Ten-GigabitEthernet2/0/31
 port link-mode bridge
 description CONEXION SWITCH 4800G MOLIENDA IP: 10.245.32.43
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/32
 port link-mode bridge
 description CONEXION SWITCH PORTERIA 5500G-24POE IP:10.245.32.29
 port link-type trunk
 port trunk permit vlan 1 to 69 71 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/33
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/34
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/35
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/36
 port link-mode bridge
 port link-type trunk
 undo port trunk permit vlan 1
 port trunk permit vlan 2 to 4094
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/37
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/38
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/39
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/40
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/41
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/42
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/43
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/44
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/45
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/46
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/47
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
interface Ten-GigabitEthernet2/0/48
 port link-mode bridge
 broadcast-suppression pps 3000
 lldp admin-status rx
#
 scheduler logfile size 16
#
line class aux
 user-role network-admin
#
line class vty
 user-role network-operator
#
line aux 0 1
 authentication-mode scheme
 user-role network-admin
#
line vty 0 63
 authentication-mode scheme
 user-role network-operator
 protocol inbound ssh
#
 ip route-static 0.0.0.0 0 10.245.36.21 preference 10
 ip route-static 10.0.21.0 24 10.245.36.21 preference 10
 ip route-static 10.1.21.0 24 10.245.36.21 preference 10
 ip route-static 10.101.119.0 24 10.245.36.21 preference 10 description IP Servidor Recuperacion via UTM
 ip route-static 10.213.135.0 24 10.245.36.21 preference 10
 ip route-static 10.250.70.0 24 10.245.36.21 preference 10 description Ruta Migracion
 ip route-static 172.17.10.0 24 10.245.36.21 preference 10
 ip route-static 172.18.1.0 24 10.245.36.21 preference 10 description VPN_SAP
 ip route-static 192.168.1.0 24 10.245.36.21 preference 10
 ip route-static 192.168.6.0 24 10.245.36.21 preference 10
 ip route-static 192.168.11.0 24 10.245.36.21 preference 10
 ip route-static 192.168.12.0 24 10.245.36.21 preference 10
 ip route-static 192.168.16.0 24 10.245.36.21 preference 10
 ip route-static 192.168.19.0 24 10.245.36.21 preference 10
 ip route-static 192.168.24.0 24 10.245.36.21 preference 10
 ip route-static 192.168.41.0 24 10.245.36.21 preference 10
 ip route-static 192.168.42.0 24 10.245.36.21 preference 10
 ip route-static 192.168.43.0 24 10.245.36.21 preference 10
 ip route-static 192.168.44.0 24 10.245.36.21 preference 10
 ip route-static 192.168.45.0 24 10.245.36.21 preference 10
 ip route-static 192.168.47.0 24 10.245.36.21 preference 10
 ip route-static 192.168.48.0 24 10.245.36.21 preference 10
 ip route-static 192.168.150.0 24 10.245.36.150 preference 10
#
 info-center loghost 10.245.36.39
#
 snmp-agent
 snmp-agent local-engineid 8000002B000FCBB87D406877
 snmp-agent community write SWCSLI2019
 snmp-agent community write private
 snmp-agent community write public
 snmp-agent log all
 snmp-agent sys-info contact XXXXX
 snmp-agent sys-info location all
 snmp-agent sys-info version all
 snmp-agent group v3 admin read-view admin write-view admin
 snmp-agent group v3 managev3group write-view internet
 snmp-agent mib-view included admin iso
 snmp-agent mib-view included internet internet
 snmp-agent usm-user v3 admin admin
 snmp-agent usm-user v3 managev3user managev3group
 snmp-agent trap enable arp
 snmp-agent trap enable radius
 snmp-agent trap enable stp
 snmp-agent inform source Vlan-interface32
#
 ssh server enable
 ssh user admin service-type all authentication-type password
 ssh user aperez service-type all authentication-type password
 ssh user manager service-type all authentication-type password
 ssh user monitor service-type all authentication-type password
#
 undo arp check enable
#
 ntp-service refclock-master
#
acl number 3000
 rule 1 permit ip destination 10.245.32.0 0.0.0.255
 rule 2 permit ip destination 10.245.36.0 0.0.0.128
 rule 3 deny ip
#
acl number 3002
 rule 0 permit ip source 10.245.36.95 0 destination 10.245.44.0 0.0.0.255
 rule 5 permit ip source 10.245.34.23 0 destination 10.245.44.0 0.0.0.255
 rule 10 permit ip source 10.245.34.67 0 destination 10.245.44.0 0.0.0.255
 rule 15 permit ip source 10.245.38.32 0 destination 10.245.44.0 0.0.0.255
 rule 20 permit ip source 10.245.38.50 0 destination 10.245.44.0 0.0.0.255
 rule 25 permit ip source 10.245.38.105 0 destination 10.245.44.0 0.0.0.255
 rule 30 deny ip source 10.245.36.0 0.0.0.127 destination 10.245.44.0 0.0.0.255
 rule 35 deny ip source 10.245.32.0 0.0.0.255 destination 10.245.44.0 0.0.0.255
 rule 40 deny ip source 10.245.34.0 0.0.0.255 destination 10.245.44.0 0.0.0.255
 rule 45 deny ip source 10.245.38.0 0.0.0.255 destination 10.245.44.0 0.0.0.255
 rule 50 deny ip source 10.245.40.0 0.0.0.127 destination 10.245.44.0 0.0.0.255
 rule 55 deny ip source 10.245.42.0 0.0.0.255 destination 10.245.44.0 0.0.0.255
 rule 60 deny ip source 10.245.58.0 0.0.0.255 destination 10.245.44.0 0.0.0.255
#
acl number 3003
 rule 0 permit ip source 10.245.34.26 0 destination 10.245.58.0 0.0.0.255
 rule 5 permit ip source 10.245.34.134 0 destination 10.245.58.0 0.0.0.255
 rule 10 permit ip source 10.245.38.16 0 destination 10.245.58.0 0.0.0.255
 rule 15 permit ip source 10.245.38.81 0 destination 10.245.58.0 0.0.0.255
 rule 20 permit ip source 10.245.38.112 0 destination 10.245.58.0 0.0.0.255
 rule 25 deny ip source 10.245.36.0 0.0.0.127 destination 10.245.58.0 0.0.0.255
 rule 30 deny ip source 10.245.32.0 0.0.0.255 destination 10.245.58.0 0.0.0.255
 rule 35 deny ip source 10.245.34.0 0.0.0.255 destination 10.245.58.0 0.0.0.255
 rule 40 deny ip source 10.245.38.0 0.0.0.255 destination 10.245.58.0 0.0.0.255
 rule 45 deny ip source 10.245.40.0 0.0.0.127 destination 10.245.58.0 0.0.0.255
 rule 50 deny ip source 10.245.42.0 0.0.0.255 destination 10.245.58.0 0.0.0.255
 rule 55 deny ip source 10.245.44.0 0.0.0.255 destination 10.245.58.0 0.0.0.255
#
acl number 3997
 rule 0 permit ip dscp ef
 rule 1 permit tcp destination-port eq www
 rule 2 permit udp destination-port eq snmp
 rule 3 permit udp destination-port eq snmptrap
 rule 4 permit ip dscp cs6
 rule 5 permit ip dscp cs7
#
acl number 4999
 rule 0 permit type 8868 ffff
 rule 1 permit source-mac 00e0-bb00-0000 ffff-ff00-0000
 rule 2 permit source-mac 0003-6b00-0000 ffff-ff00-0000
 rule 3 permit source-mac 00e0-7500-0000 ffff-ff00-0000
 rule 4 permit source-mac 00d0-1e00-0000 ffff-ff00-0000
 rule 5 permit source-mac 0001-e300-0000 ffff-ff00-0000
 rule 6 permit source-mac 000f-e200-0000 ffff-ff00-0000
 rule 7 permit source-mac 0060-b900-0000 ffff-ff00-0000
 rule 8 deny dest-mac 0000-0000-0000 ffff-ffff-ffff
#
 tftp client source interface Vlan-interface32
#
 header motd %

This computing system is a CSL owned asset and provided for the exclusive use of authorized personnel and I.T.Corporation for technical purposes.

All information and data created, accessed, processed, or stored using this system (including personal information) are subject to monitoring, auditing, or review to the extent permitted by applicable law.

Unauthorized use or abuse of this system may lead to corrective action including termination of employment, civil and/or criminal penalties

%
 header login %************************************ATENCION************************************


* Unidad informatica soportada por  I.T.Corporation.

* Este es un recursos informatico de uso exclusivo de XXXXX.

* Si usted no es un usuario autorizado para ingresar a este dispositivo

* abstengase de hacerlo, ya que todas las actividades pueden ser monitoreadas

* o grabadas. Y en caso de descubrirse evidencia de accesos no autorizados,

* modificaciones a la informacion, atentados contra la integridad de la

* informacion como de la entidad , entre otros, seran denunciadas ante  las

* autoridades competentes.

********************************************************************************

%
#
 undo password-control aging enable
 undo password-control length enable
 undo password-control history enable
 password-control login-attempt 3 exceed lock-time 120
#
 super authentication-mode local scheme
 super password role network-admin hash fsdsyhtreuerttrUxQpuKyXCWozwQpQ==
#
radius scheme system
 user-name-format without-domain
#
domain csl
#
domain csl.com
#
domain system
#
 domain default enable system
#
role name level-0
 description Predefined level-0 role
#
role name level-1
 description Predefined level-1 role
#
role name level-2
 description Predefined level-2 role
#
role name level-3
 description Predefined level-3 role
#
role name level-4
 description Predefined level-4 role
#
role name level-5
 description Predefined level-5 role
#
role name level-6
 description Predefined level-6 role
#
role name level-7
 description Predefined level-7 role
#
role name level-8
 description Predefined level-8 role
#
role name level-9
 description Predefined level-9 role
#
role name level-10
 description Predefined level-10 role
#
role name level-11
 description Predefined level-11 role
#
role name level-12
 description Predefined level-12 role
#
role name level-13
 description Predefined level-13 role
#
role name level-14
 description Predefined level-14 role
#
user-group system
#
local-user admin class manage
 password hash asdagthgZh5LApBjhX4TTFxw2quax5YCJmyZzNLdjaKy1nerQOR72ujaZ5Meazsw==
 service-type ssh telnet terminal http https
 authorization-attribute user-role level-15
 authorization-attribute user-role network-admin
 authorization-attribute user-role network-operator
#
local-user aperez class manage
 password hash sdhsdgasdfvah45AC3m6K1GZ0IcTr9UQgxPatw==
 service-type ssh telnet terminal
 authorization-attribute user-role level-15
 authorization-attribute user-role network-operator
#
local-user lcorrea class manage
 password hash dfgsjdgfjhgj36vZi3nlQkePRtdViI2sn0FPSbHAuGC5KYgoqLjxkOemPNHA==
 service-type ssh telnet terminal
 authorization-attribute user-role level-15
 authorization-attribute user-role network-operator
#
 ip http enable
 ip https enable
#
return
