init II
This commit is contained in:
264
CISCO acl parse/running.txt
Normal file
264
CISCO acl parse/running.txt
Normal file
@@ -0,0 +1,264 @@
|
||||
Building configuration...
|
||||
|
||||
Current configuration : 8122 bytes
|
||||
!
|
||||
! Last configuration change at 10:09:28 sommer Thu Jul 9 2009 by robin
|
||||
! NVRAM config last updated at 10:09:28 sommer Thu Jul 9 2009 by robin
|
||||
!
|
||||
version 12.4
|
||||
service tcp-keepalives-in
|
||||
service timestamps debug datetime localtime
|
||||
service timestamps log datetime localtime
|
||||
service password-encryption
|
||||
service linenumber
|
||||
!
|
||||
hostname RMT1-FR
|
||||
!
|
||||
boot-start-marker
|
||||
boot-end-marker
|
||||
!
|
||||
logging buffered 4096 informational
|
||||
logging console informational
|
||||
enable secret 5 $1$QFxG$fNejdJjAg/6SfrBoi1kAS1
|
||||
!
|
||||
no aaa new-model
|
||||
clock timezone utc+1 1
|
||||
clock summer-time sommer date Mar 29 2009 2:00 Oct 25 2009 2:00
|
||||
ip cef
|
||||
!
|
||||
!
|
||||
!
|
||||
!
|
||||
ip multicast-routing
|
||||
!
|
||||
username batman privilege 15 password 7 047727220A031F1D
|
||||
username robin privilege 0 password 7 13293B3618285572
|
||||
!
|
||||
!
|
||||
!
|
||||
!
|
||||
!
|
||||
interface FastEthernet0/0
|
||||
description connected to EthernetLAN_ICF
|
||||
ip address 10.10.10.25 255.255.255.0
|
||||
ip access-group NO_IGMP_PIM in
|
||||
ip pim sparse-dense-mode
|
||||
ip route-cache flow
|
||||
no ip mroute-cache
|
||||
speed 100
|
||||
full-duplex
|
||||
keepalive 30
|
||||
no cdp enable
|
||||
!
|
||||
interface FastEthernet0/1
|
||||
description connected to RMT1-FR Telekom 51X/2926
|
||||
bandwidth 2500
|
||||
ip address 170.45.1.2 255.255.255.0
|
||||
ip access-group NO_IGMP_2 in
|
||||
ip access-group LIST_F0/1 out
|
||||
ip accounting output-packets
|
||||
ip pim sparse-dense-mode
|
||||
ip route-cache flow
|
||||
no ip mroute-cache
|
||||
load-interval 30
|
||||
speed 10
|
||||
full-duplex
|
||||
keepalive 2
|
||||
standby 100 ip 170.45.1.1
|
||||
standby 100 timers 1 3
|
||||
standby 100 priority 110
|
||||
standby 100 preempt
|
||||
standby 100 track FastEthernet0/0
|
||||
!
|
||||
router eigrp 1000
|
||||
redistribute static
|
||||
network 10.10.10.0 0.0.0.255
|
||||
network 170.45.1.0 0.0.0.255
|
||||
no auto-summary
|
||||
!
|
||||
ip route 10.10.0.0 255.255.0.0 10.10.10.1
|
||||
ip route 10.10.12.42 255.255.255.255 10.10.10.1
|
||||
ip route 62.80.98.0 255.255.255.0 10.10.10.1
|
||||
ip route 69.184.0.0 255.255.0.0 10.10.10.1
|
||||
ip route 130.35.0.0 255.255.255.0 10.10.10.1
|
||||
ip route 192.165.211.56 255.255.255.255 10.10.10.1
|
||||
ip route 192.169.1.0 255.255.255.0 10.10.10.1
|
||||
ip route 193.154.172.0 255.255.255.0 10.10.10.1
|
||||
ip route 199.105.0.0 255.255.0.0 10.10.10.1
|
||||
ip route 205.183.246.0 255.255.255.0 10.10.10.1
|
||||
ip route 208.134.161.0 255.255.255.0 10.10.10.1
|
||||
ip flow-export source FastEthernet0/0
|
||||
ip flow-export version 5
|
||||
ip flow-export destination 10.10.12.36 8887
|
||||
!
|
||||
no ip http server
|
||||
!
|
||||
ip access-list extended LIST_F0/1
|
||||
permit ip 170.45.1.0 0.0.0.255 any
|
||||
remark >> Tradesignal
|
||||
permit tcp 62.206.134.0 0.0.0.255 eq www any
|
||||
permit tcp 62.206.134.0 0.0.0.255 eq 443 any
|
||||
permit tcp 193.154.172.0 0.0.0.255 eq 2088 any
|
||||
remark << Tradesignal
|
||||
permit tcp host 10.10.10.32 any
|
||||
permit tcp host 10.10.10.33 any
|
||||
permit ip host 10.10.10.32 host 239.10.10.13
|
||||
permit ip host 10.10.10.32 host 239.10.10.14
|
||||
permit ip host 10.10.10.33 host 239.10.10.13
|
||||
permit ip host 10.10.10.33 host 239.10.10.14
|
||||
permit icmp any any
|
||||
permit tcp host 130.35.0.95 eq 8080 any
|
||||
permit tcp host 130.35.0.11 eq 8080 any
|
||||
permit ip host 130.35.0.77 any
|
||||
permit tcp host 10.10.10.77 any
|
||||
permit ip host 130.35.0.205 any
|
||||
permit ip host 130.35.0.92 any
|
||||
permit tcp host 130.35.0.222 any
|
||||
permit tcp host 10.10.30.61 any
|
||||
permit tcp host 10.10.30.68 any
|
||||
permit tcp host 130.35.0.114 any
|
||||
permit tcp host 130.35.0.44 any eq 22
|
||||
permit tcp host 213.68.166.28 any
|
||||
permit tcp host 130.35.0.223 any
|
||||
permit ip host 130.35.0.104 any
|
||||
permit ip host 130.35.0.85 any
|
||||
permit tcp 212.162.51.0 0.0.0.255 any
|
||||
permit ip host 10.10.10.67 any
|
||||
permit tcp host 130.35.0.208 any
|
||||
permit tcp host 130.35.0.170 eq 3128 any
|
||||
permit tcp 199.105.181.0 0.0.0.255 any
|
||||
permit tcp 199.105.176.0 0.0.0.255 any
|
||||
permit tcp 199.105.184.0 0.0.0.255 any
|
||||
permit tcp 208.22.56.0 0.0.0.255 any
|
||||
permit tcp 160.43.0.0 0.0.0.255 any
|
||||
permit tcp 206.156.53.0 0.0.0.255 any
|
||||
permit tcp 205.216.112.0 0.0.0.255 any
|
||||
permit udp 208.134.161.0 0.0.0.255 any
|
||||
permit tcp host 130.35.0.134 any
|
||||
permit tcp host 10.10.30.67 any
|
||||
permit ip host 10.10.30.79 any
|
||||
permit ip host 10.10.30.80 any
|
||||
permit ip host 10.10.30.185 any
|
||||
permit tcp host 217.110.39.0 eq smtp any
|
||||
permit tcp host 217.110.39.0 eq pop3 any
|
||||
permit tcp 62.80.98.64 0.0.0.63 eq smtp any
|
||||
permit tcp 62.80.98.64 0.0.0.63 eq pop3 any
|
||||
permit tcp host 212.47.180.32 eq 4800 any
|
||||
permit tcp host 212.118.231.91 eq 4800 any
|
||||
permit tcp host 212.47.180.32 eq 4720 any
|
||||
permit ip 69.184.0.0 0.0.255.255 any
|
||||
permit ip 199.105.0.0 0.0.255.255 any
|
||||
permit ip 205.183.246.0 0.0.0.255 any
|
||||
permit ip 208.134.161.0 0.0.0.255 any
|
||||
permit tcp 217.5.135.0 0.0.0.255 host 170.45.1.41
|
||||
permit tcp 217.68.149.0 0.0.0.255 host 170.45.1.41
|
||||
permit tcp 193.201.94.0 0.0.0.255 host 170.45.1.41
|
||||
permit tcp 192.165.211.0 0.0.0.255 host 170.45.1.87
|
||||
permit tcp 192.165.211.0 0.0.0.255 host 170.45.1.22
|
||||
permit tcp 192.165.211.0 0.0.0.255 host 170.45.1.65
|
||||
permit tcp host 130.35.0.42 eq ftp any
|
||||
permit tcp host 130.35.0.43 eq ftp any
|
||||
permit tcp host 130.35.0.45 eq ftp any
|
||||
permit tcp host 130.35.0.44 eq 22 any
|
||||
permit tcp host 130.35.0.130 eq 8080 any
|
||||
permit ip 10.10.12.32 0.0.0.15 any
|
||||
permit tcp host 130.35.0.84 any
|
||||
permit tcp host 10.10.20.40 eq www any
|
||||
permit ip host 130.35.0.103 any
|
||||
permit tcp host 130.35.0.160 eq domain any
|
||||
permit tcp host 130.35.0.161 eq domain any
|
||||
permit tcp host 130.35.0.162 eq domain any
|
||||
permit udp host 130.35.0.160 eq domain any
|
||||
permit udp host 130.35.0.161 eq domain any
|
||||
permit udp host 130.35.0.162 eq domain any
|
||||
permit tcp host 130.35.0.35 any range 1024 65535
|
||||
permit udp host 130.35.0.35 any range 1024 65535
|
||||
permit tcp host 130.35.0.36 any range 1024 65535
|
||||
permit udp host 130.35.0.36 any range 1024 65535
|
||||
permit udp host 130.35.0.35 eq ntp any
|
||||
permit udp host 130.35.0.36 eq ntp any
|
||||
permit tcp host 10.10.10.110 any
|
||||
permit tcp host 10.10.30.90 any
|
||||
permit tcp host 130.35.0.75 any
|
||||
permit ip host 10.10.10.71 host 170.45.1.22
|
||||
permit tcp host 10.10.10.71 host 170.45.1.51 eq 9100
|
||||
ip access-list extended NO_IGMP_2
|
||||
permit ip 170.45.1.0 0.0.0.255 host 239.10.10.13
|
||||
permit ip 170.45.1.0 0.0.0.255 host 239.10.10.14
|
||||
permit ip host 170.45.1.4 any
|
||||
deny ip any 224.0.0.0 15.255.255.255
|
||||
permit ip any any
|
||||
ip access-list extended NO_IGMP_PIM
|
||||
permit ip 10.10.10.0 0.0.0.255 host 239.10.10.13
|
||||
permit ip 10.10.10.0 0.0.0.255 host 239.10.10.14
|
||||
deny ip any 224.0.0.0 15.255.255.255
|
||||
permit ip any any
|
||||
!
|
||||
logging history informational
|
||||
logging trap notifications
|
||||
logging facility local1
|
||||
logging source-interface FastEthernet0/0
|
||||
logging 10.10.12.36
|
||||
logging 10.10.12.42
|
||||
access-list 99 remark ---- Solarwinds
|
||||
access-list 99 permit 10.10.12.42
|
||||
access-list 99 remark ---- skripte
|
||||
access-list 99 permit 10.10.12.36
|
||||
access-list 99 remark ---- WUP
|
||||
access-list 99 permit 10.10.12.33
|
||||
access-list 99 remark ---- SA
|
||||
access-list 99 permit 10.10.12.34
|
||||
access-list 99 remark ---- Zugang ueber Bismarck, Barschel, Hades
|
||||
access-list 99 permit 62.80.98.68
|
||||
access-list 99 permit 62.80.98.69
|
||||
access-list 99 permit 62.80.98.81
|
||||
access-list 99 remark ---- AW
|
||||
access-list 99 permit 130.35.0.205
|
||||
access-list 99 remark ---- ML
|
||||
access-list 99 permit 130.35.0.77
|
||||
access-list 99 remark ---- AB
|
||||
access-list 99 permit 130.35.0.84
|
||||
access-list 99 remark ---- MN
|
||||
access-list 99 permit 130.35.0.92
|
||||
access-list 99 remark ---- Zugriff aus dem Netz in dem Router ist 248 - 254
|
||||
access-list 99 permit 0.0.0.248 255.255.255.7
|
||||
access-list 99 remark ---- Zugriff vom DGW
|
||||
access-list 99 permit 0.0.0.1 255.255.255.0
|
||||
access-list 99 remark ---- Zugriff aus Transfernetz ueber DDV vom anderen Router
|
||||
access-list 99 permit 192.168.20.0 0.0.0.255
|
||||
access-list 99 permit 192.168.21.0 0.0.0.255
|
||||
snmp-server community public RO
|
||||
!
|
||||
control-plane
|
||||
!
|
||||
banner login ^CC
|
||||
*********************************************************************
|
||||
****
|
||||
**** Property of ICF Systems AG
|
||||
**** phone +49(0) 69 - 299 25 - 666
|
||||
****
|
||||
****
|
||||
**** Unauthorized access is prohibited
|
||||
****
|
||||
**** You are connected to $(hostname) in Bad Vilbel via line $(line)
|
||||
****
|
||||
*********************************************************************
|
||||
^C
|
||||
!
|
||||
line con 0
|
||||
exec-timeout 0 0
|
||||
password 7 141B1D080D08
|
||||
login local
|
||||
line aux 0
|
||||
line vty 0 4
|
||||
session-timeout 60
|
||||
access-class 99 in
|
||||
exec-timeout 60 0
|
||||
password 7 1042061A041B
|
||||
login local
|
||||
!
|
||||
scheduler allocate 20000 1000
|
||||
ntp clock-period 17178232
|
||||
ntp server 10.10.30.254
|
||||
end
|
||||
|
||||
Reference in New Issue
Block a user