This commit is contained in:
2024-10-13 23:32:58 +02:00
parent 30627b25b3
commit dbfba56f66
38 changed files with 3897 additions and 0 deletions

264
CISCO acl parse/running.txt Normal file
View File

@@ -0,0 +1,264 @@
Building configuration...
Current configuration : 8122 bytes
!
! Last configuration change at 10:09:28 sommer Thu Jul 9 2009 by robin
! NVRAM config last updated at 10:09:28 sommer Thu Jul 9 2009 by robin
!
version 12.4
service tcp-keepalives-in
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
service linenumber
!
hostname RMT1-FR
!
boot-start-marker
boot-end-marker
!
logging buffered 4096 informational
logging console informational
enable secret 5 $1$QFxG$fNejdJjAg/6SfrBoi1kAS1
!
no aaa new-model
clock timezone utc+1 1
clock summer-time sommer date Mar 29 2009 2:00 Oct 25 2009 2:00
ip cef
!
!
!
!
ip multicast-routing
!
username batman privilege 15 password 7 047727220A031F1D
username robin privilege 0 password 7 13293B3618285572
!
!
!
!
!
interface FastEthernet0/0
description connected to EthernetLAN_ICF
ip address 10.10.10.25 255.255.255.0
ip access-group NO_IGMP_PIM in
ip pim sparse-dense-mode
ip route-cache flow
no ip mroute-cache
speed 100
full-duplex
keepalive 30
no cdp enable
!
interface FastEthernet0/1
description connected to RMT1-FR Telekom 51X/2926
bandwidth 2500
ip address 170.45.1.2 255.255.255.0
ip access-group NO_IGMP_2 in
ip access-group LIST_F0/1 out
ip accounting output-packets
ip pim sparse-dense-mode
ip route-cache flow
no ip mroute-cache
load-interval 30
speed 10
full-duplex
keepalive 2
standby 100 ip 170.45.1.1
standby 100 timers 1 3
standby 100 priority 110
standby 100 preempt
standby 100 track FastEthernet0/0
!
router eigrp 1000
redistribute static
network 10.10.10.0 0.0.0.255
network 170.45.1.0 0.0.0.255
no auto-summary
!
ip route 10.10.0.0 255.255.0.0 10.10.10.1
ip route 10.10.12.42 255.255.255.255 10.10.10.1
ip route 62.80.98.0 255.255.255.0 10.10.10.1
ip route 69.184.0.0 255.255.0.0 10.10.10.1
ip route 130.35.0.0 255.255.255.0 10.10.10.1
ip route 192.165.211.56 255.255.255.255 10.10.10.1
ip route 192.169.1.0 255.255.255.0 10.10.10.1
ip route 193.154.172.0 255.255.255.0 10.10.10.1
ip route 199.105.0.0 255.255.0.0 10.10.10.1
ip route 205.183.246.0 255.255.255.0 10.10.10.1
ip route 208.134.161.0 255.255.255.0 10.10.10.1
ip flow-export source FastEthernet0/0
ip flow-export version 5
ip flow-export destination 10.10.12.36 8887
!
no ip http server
!
ip access-list extended LIST_F0/1
permit ip 170.45.1.0 0.0.0.255 any
remark >> Tradesignal
permit tcp 62.206.134.0 0.0.0.255 eq www any
permit tcp 62.206.134.0 0.0.0.255 eq 443 any
permit tcp 193.154.172.0 0.0.0.255 eq 2088 any
remark << Tradesignal
permit tcp host 10.10.10.32 any
permit tcp host 10.10.10.33 any
permit ip host 10.10.10.32 host 239.10.10.13
permit ip host 10.10.10.32 host 239.10.10.14
permit ip host 10.10.10.33 host 239.10.10.13
permit ip host 10.10.10.33 host 239.10.10.14
permit icmp any any
permit tcp host 130.35.0.95 eq 8080 any
permit tcp host 130.35.0.11 eq 8080 any
permit ip host 130.35.0.77 any
permit tcp host 10.10.10.77 any
permit ip host 130.35.0.205 any
permit ip host 130.35.0.92 any
permit tcp host 130.35.0.222 any
permit tcp host 10.10.30.61 any
permit tcp host 10.10.30.68 any
permit tcp host 130.35.0.114 any
permit tcp host 130.35.0.44 any eq 22
permit tcp host 213.68.166.28 any
permit tcp host 130.35.0.223 any
permit ip host 130.35.0.104 any
permit ip host 130.35.0.85 any
permit tcp 212.162.51.0 0.0.0.255 any
permit ip host 10.10.10.67 any
permit tcp host 130.35.0.208 any
permit tcp host 130.35.0.170 eq 3128 any
permit tcp 199.105.181.0 0.0.0.255 any
permit tcp 199.105.176.0 0.0.0.255 any
permit tcp 199.105.184.0 0.0.0.255 any
permit tcp 208.22.56.0 0.0.0.255 any
permit tcp 160.43.0.0 0.0.0.255 any
permit tcp 206.156.53.0 0.0.0.255 any
permit tcp 205.216.112.0 0.0.0.255 any
permit udp 208.134.161.0 0.0.0.255 any
permit tcp host 130.35.0.134 any
permit tcp host 10.10.30.67 any
permit ip host 10.10.30.79 any
permit ip host 10.10.30.80 any
permit ip host 10.10.30.185 any
permit tcp host 217.110.39.0 eq smtp any
permit tcp host 217.110.39.0 eq pop3 any
permit tcp 62.80.98.64 0.0.0.63 eq smtp any
permit tcp 62.80.98.64 0.0.0.63 eq pop3 any
permit tcp host 212.47.180.32 eq 4800 any
permit tcp host 212.118.231.91 eq 4800 any
permit tcp host 212.47.180.32 eq 4720 any
permit ip 69.184.0.0 0.0.255.255 any
permit ip 199.105.0.0 0.0.255.255 any
permit ip 205.183.246.0 0.0.0.255 any
permit ip 208.134.161.0 0.0.0.255 any
permit tcp 217.5.135.0 0.0.0.255 host 170.45.1.41
permit tcp 217.68.149.0 0.0.0.255 host 170.45.1.41
permit tcp 193.201.94.0 0.0.0.255 host 170.45.1.41
permit tcp 192.165.211.0 0.0.0.255 host 170.45.1.87
permit tcp 192.165.211.0 0.0.0.255 host 170.45.1.22
permit tcp 192.165.211.0 0.0.0.255 host 170.45.1.65
permit tcp host 130.35.0.42 eq ftp any
permit tcp host 130.35.0.43 eq ftp any
permit tcp host 130.35.0.45 eq ftp any
permit tcp host 130.35.0.44 eq 22 any
permit tcp host 130.35.0.130 eq 8080 any
permit ip 10.10.12.32 0.0.0.15 any
permit tcp host 130.35.0.84 any
permit tcp host 10.10.20.40 eq www any
permit ip host 130.35.0.103 any
permit tcp host 130.35.0.160 eq domain any
permit tcp host 130.35.0.161 eq domain any
permit tcp host 130.35.0.162 eq domain any
permit udp host 130.35.0.160 eq domain any
permit udp host 130.35.0.161 eq domain any
permit udp host 130.35.0.162 eq domain any
permit tcp host 130.35.0.35 any range 1024 65535
permit udp host 130.35.0.35 any range 1024 65535
permit tcp host 130.35.0.36 any range 1024 65535
permit udp host 130.35.0.36 any range 1024 65535
permit udp host 130.35.0.35 eq ntp any
permit udp host 130.35.0.36 eq ntp any
permit tcp host 10.10.10.110 any
permit tcp host 10.10.30.90 any
permit tcp host 130.35.0.75 any
permit ip host 10.10.10.71 host 170.45.1.22
permit tcp host 10.10.10.71 host 170.45.1.51 eq 9100
ip access-list extended NO_IGMP_2
permit ip 170.45.1.0 0.0.0.255 host 239.10.10.13
permit ip 170.45.1.0 0.0.0.255 host 239.10.10.14
permit ip host 170.45.1.4 any
deny ip any 224.0.0.0 15.255.255.255
permit ip any any
ip access-list extended NO_IGMP_PIM
permit ip 10.10.10.0 0.0.0.255 host 239.10.10.13
permit ip 10.10.10.0 0.0.0.255 host 239.10.10.14
deny ip any 224.0.0.0 15.255.255.255
permit ip any any
!
logging history informational
logging trap notifications
logging facility local1
logging source-interface FastEthernet0/0
logging 10.10.12.36
logging 10.10.12.42
access-list 99 remark ---- Solarwinds
access-list 99 permit 10.10.12.42
access-list 99 remark ---- skripte
access-list 99 permit 10.10.12.36
access-list 99 remark ---- WUP
access-list 99 permit 10.10.12.33
access-list 99 remark ---- SA
access-list 99 permit 10.10.12.34
access-list 99 remark ---- Zugang ueber Bismarck, Barschel, Hades
access-list 99 permit 62.80.98.68
access-list 99 permit 62.80.98.69
access-list 99 permit 62.80.98.81
access-list 99 remark ---- AW
access-list 99 permit 130.35.0.205
access-list 99 remark ---- ML
access-list 99 permit 130.35.0.77
access-list 99 remark ---- AB
access-list 99 permit 130.35.0.84
access-list 99 remark ---- MN
access-list 99 permit 130.35.0.92
access-list 99 remark ---- Zugriff aus dem Netz in dem Router ist 248 - 254
access-list 99 permit 0.0.0.248 255.255.255.7
access-list 99 remark ---- Zugriff vom DGW
access-list 99 permit 0.0.0.1 255.255.255.0
access-list 99 remark ---- Zugriff aus Transfernetz ueber DDV vom anderen Router
access-list 99 permit 192.168.20.0 0.0.0.255
access-list 99 permit 192.168.21.0 0.0.0.255
snmp-server community public RO
!
control-plane
!
banner login ^CC
*********************************************************************
****
**** Property of ICF Systems AG
**** phone +49(0) 69 - 299 25 - 666
****
****
**** Unauthorized access is prohibited
****
**** You are connected to $(hostname) in Bad Vilbel via line $(line)
****
*********************************************************************
^C
!
line con 0
exec-timeout 0 0
password 7 141B1D080D08
login local
line aux 0
line vty 0 4
session-timeout 60
access-class 99 in
exec-timeout 60 0
password 7 1042061A041B
login local
!
scheduler allocate 20000 1000
ntp clock-period 17178232
ntp server 10.10.30.254
end