sd-ar2.router.fr.clara.net spawn ssh -c 3des -x -l rancid_user sd-ar2.router.fr.clara.net rancid_user@sd-ar2.router.fr.clara.net's password: ####################################### ### Unauthorised access prohibited ### ####################################### ### Disconnect now if you are not ### ### an authorised user. ### ####################################### ### All connection attempts are ### ### logged. ### ####################################### sd-ar2>enable Password: sd-ar2# sd-ar2#term length 0 sd-ar2#sh run Building configuration... Current configuration : 27683 bytes ! ! Last configuration change at 21:52:11 CET Fri Jan 16 2009 by karim ! NVRAM config last updated at 21:52:30 CET Fri Jan 16 2009 by karim ! upgrade fpd auto version 12.2 service nagle no service pad service tcp-keepalives-in service tcp-keepalives-out service timestamps debug datetime msec localtime show-timezone service timestamps log datetime msec localtime show-timezone service password-encryption service counters max age 10 no service dhcp ! hostname sd-ar2 ! boot system disk0:s72033-advipservicesk9_wan-mz.122-18.SXF6.bin boot system sup-bootflash:s72033-psv-mz.122-18.SXD7.bin logging snmp-authfail logging rate-limit all 200 no logging console enable secret 5 $1$9Xwm$PE5vUdnSHZXK9aVRvQmQ2/ ! aaa new-model aaa authentication login default group tacacs+ enable aaa authentication enable default group tacacs+ enable aaa accounting commands 15 default start-stop group tacacs+ ! aaa session-id common clock timezone CET 1 ip subnet-zero no ip source-route ! ! ! ip tftp source-interface Loopback0 no ip bootp server ip multicast-routing ip tcp path-mtu-discovery ip scp server enable ip domain-name router.fr.clara.net ip name-server 212.43.194.3 ip name-server 212.43.194.2 ipv6 unicast-routing ipv6 mfib hardware-switching replication-mode ingress vtp mode transparent mpls label protocol ldp mpls traffic-eng tunnels mpls traffic-eng logging tunnel path change tag-switching tdp router-id Loopback0 force no dss interface-purge no dss range-purge no dss mac-purge mls ip multicast flow-stat-timer 9 mls aging fast time 10 threshold 128 mls aging long 240 mls aging normal 48 mls netflow usage notify 90 120 no mls netflow no mls flow ip no mls flow ipv6 no mls acl tcam share-global mls cef error action freeze ! key chain is-is-key-chain key 1 key-string 7 1043080B0B12435F ! ! ! ! ! ! ! ! redundancy mode sso main-cpu auto-sync running-config spanning-tree mode pvst no spanning-tree optimize bpdu transmission spanning-tree extend system-id diagnostic cns publish cisco.cns.device.diag_results diagnostic cns subscribe cisco.cns.device.diag_commands ! vlan internal allocation policy ascending vlan access-log ratelimit 2000 ! vlan 30,33,2301-2302 ! vlan 3200 name Primary_VLAN_APC_NETWORK private-vlan primary private-vlan association 3201 ! vlan 3201 name Isolated_VLAN_APC_NETWORK private-vlan isolated ! ! ! ! interface Loopback0 ip address 212.43.193.50 255.255.255.255 ! interface Loopback2 description IPv6 Loopback ip address 62.240.250.11 255.255.255.255 ipv6 address 2001:A70:FF::12/128 ! interface Null0 no ip unreachables ! interface Port-channel1 description SD-CR1 dampening mtu 4470 ip address 62.240.250.226 255.255.255.252 no ip redirects no ip proxy-arp ip router isis mpls traffic-eng tunnels tag-switching ip isis network point-to-point isis hello-interval minimal ! interface Port-channel2 description SD-CR2 dampening mtu 4470 ip address 62.240.250.234 255.255.255.252 no ip redirects no ip proxy-arp ip router isis mpls traffic-eng tunnels tag-switching ip isis network point-to-point isis hello-interval minimal ! interface Port-channel3 description CR2-IX.ARTFUL ip address 212.43.225.13 255.255.255.252 ip access-group artful20080903 out ! interface GigabitEthernet1/1 description CR2-IX.ARTFUL LACP1 no ip address no ip redirects no ip proxy-arp no ipv6 redirects channel-group 3 mode active ! interface GigabitEthernet1/2 description CR2-IX.ARTFUL LACP2 no ip address no ip redirects no ip proxy-arp no ipv6 redirects channel-group 3 mode active ! interface GigabitEthernet1/3 description SD-CR2 LACP1 mtu 4470 no ip address channel-group 2 mode passive ! interface GigabitEthernet1/4 description SD-CR2 LACP2 mtu 4470 no ip address channel-group 2 mode passive ! interface GigabitEthernet1/5 description SD-CR1 LACP1 mtu 4470 no ip address channel-group 1 mode passive ! interface GigabitEthernet1/6 description SD-CR1 LACP2 mtu 4470 no ip address channel-group 1 mode passive ! interface GigabitEthernet1/7 description CORE1.AMEN ip address 212.43.225.5 255.255.255.252 no ip redirects no ip proxy-arp ipv6 address 2001:A70:F0::5/126 ipv6 enable no ipv6 redirects ipv6 cef ! interface GigabitEthernet1/7.62 encapsulation dot1Q 62 no ipv6 redirects ! interface GigabitEthernet1/8 description CR2-IX.ARTFUL no ip address ip access-group artful20080903 out shutdown ! interface GigabitEthernet5/1 no ip address shutdown ! interface GigabitEthernet5/2 no ip address shutdown ! interface GigabitEthernet6/1 no ip address shutdown no cdp enable ! interface GigabitEthernet6/2 no ip address shutdown no cdp enable ! interface GigabitEthernet6/3 no ip address shutdown no cdp enable ! interface GigabitEthernet6/4 no ip address shutdown no cdp enable ! interface GigabitEthernet6/5 no ip address shutdown no cdp enable ! interface GigabitEthernet6/6 no ip address shutdown no cdp enable ! interface GigabitEthernet6/7 no ip address shutdown no cdp enable ! interface GigabitEthernet6/8 no ip address shutdown no cdp enable ! interface GigabitEthernet6/9 no ip address shutdown no cdp enable ! interface GigabitEthernet6/10 no ip address shutdown no cdp enable ! interface GigabitEthernet6/11 no ip address shutdown no cdp enable ! interface GigabitEthernet6/12 no ip address shutdown no cdp enable ! interface GigabitEthernet6/13 no ip address shutdown no cdp enable ! interface GigabitEthernet6/14 no ip address shutdown no cdp enable ! interface GigabitEthernet6/15 switchport switchport mode access no ip address shutdown no cdp enable ! interface GigabitEthernet6/16 no ip address shutdown no cdp enable ! interface GigabitEthernet6/17 no ip address shutdown no cdp enable ! interface GigabitEthernet6/18 no ip address shutdown no cdp enable ! interface GigabitEthernet6/19 no ip address shutdown no cdp enable ! interface GigabitEthernet6/20 no ip address shutdown no cdp enable ! interface GigabitEthernet6/21 no ip address shutdown no cdp enable ! interface GigabitEthernet6/22 no ip address shutdown no cdp enable ! interface GigabitEthernet6/23 no ip address shutdown no cdp enable ! interface GigabitEthernet6/24 no ip address shutdown no cdp enable ! interface GigabitEthernet6/25 no ip address shutdown no cdp enable ! interface GigabitEthernet6/26 no ip address shutdown no cdp enable ! interface GigabitEthernet6/27 no ip address shutdown no cdp enable ! interface GigabitEthernet6/28 no ip address shutdown no cdp enable ! interface GigabitEthernet6/29 no ip address shutdown no cdp enable ! interface GigabitEthernet6/30 no ip address shutdown no cdp enable ! interface GigabitEthernet6/31 no ip address shutdown no cdp enable ! interface GigabitEthernet6/32 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/33 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/34 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/35 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/36 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/37 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/38 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/39 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/40 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/41 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/42 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/43 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/44 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/45 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/46 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/47 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet6/48 description APC switchport switchport private-vlan host-association 3200 3201 switchport mode private-vlan host no ip address no cdp enable ! interface GigabitEthernet7/1 description SPARE 6500 switchport switchport access vlan 2400 switchport mode access no ip address shutdown ! interface GigabitEthernet7/2 description RASPAIL (NEW 2007/08/02) switchport switchport access vlan 2302 switchport mode access no ip address shutdown ! interface GigabitEthernet7/3 no ip address shutdown ! interface GigabitEthernet7/4 no ip address shutdown ! interface GigabitEthernet7/5 no ip address shutdown ! interface GigabitEthernet7/6 no ip address shutdown ! interface GigabitEthernet7/7 no ip address shutdown ! interface GigabitEthernet7/8 no ip address shutdown ! interface GigabitEthernet7/9 no ip address shutdown ! interface GigabitEthernet7/10 no ip address shutdown ! interface GigabitEthernet7/11 no ip address shutdown ! interface GigabitEthernet7/12 no ip address shutdown ! interface GigabitEthernet7/13 no ip address shutdown ! interface GigabitEthernet7/14 no ip address shutdown ! interface GigabitEthernet7/15 no ip address shutdown ! interface GigabitEthernet7/16 no ip address shutdown ! interface GigabitEthernet7/17 no ip address shutdown ! interface GigabitEthernet7/18 no ip address shutdown ! interface GigabitEthernet7/19 no ip address shutdown ! interface GigabitEthernet7/20 no ip address shutdown ! interface GigabitEthernet7/21 no ip address shutdown ! interface GigabitEthernet7/22 no ip address shutdown ! interface GigabitEthernet7/23 no ip address shutdown ! interface GigabitEthernet7/24 no ip address shutdown ! interface GigabitEthernet7/25 no ip address shutdown ! interface GigabitEthernet7/26 no ip address shutdown ! interface GigabitEthernet7/27 no ip address shutdown ! interface GigabitEthernet7/28 no ip address shutdown ! interface GigabitEthernet7/29 no ip address shutdown ! interface GigabitEthernet7/30 no ip address shutdown ! interface GigabitEthernet7/31 no ip address shutdown ! interface GigabitEthernet7/32 no ip address shutdown ! interface GigabitEthernet7/33 no ip address shutdown ! interface GigabitEthernet7/34 no ip address shutdown ! interface GigabitEthernet7/35 no ip address shutdown ! interface GigabitEthernet7/36 no ip address shutdown ! interface GigabitEthernet7/37 no ip address shutdown ! interface GigabitEthernet7/38 no ip address shutdown ! interface GigabitEthernet7/39 no ip address shutdown ! interface GigabitEthernet7/40 no ip address shutdown ! interface GigabitEthernet7/41 no ip address shutdown ! interface GigabitEthernet7/42 no ip address shutdown ! interface GigabitEthernet7/43 no ip address shutdown ! interface GigabitEthernet7/44 no ip address shutdown ! interface GigabitEthernet7/45 no ip address shutdown ! interface GigabitEthernet7/46 no ip address shutdown ! interface GigabitEthernet7/47 no ip address shutdown ! interface GigabitEthernet7/48 no ip address shutdown ! interface Vlan1 no ip address shutdown ! interface Vlan2301 description SD Server subnet 2 (NEW 2007/11/12) ip address 89.185.48.130 255.255.255.224 ip verify unicast source reachable-via rx allow-self-ping no ip redirects no ip proxy-arp shutdown vrrp 1 ip 89.185.48.129 ! interface Vlan2302 description SD Server subnet 3 (NEW 2007/11/12) ip address 89.185.48.162 255.255.255.224 ip verify unicast source reachable-via rx allow-self-ping no ip redirects no ip proxy-arp shutdown vrrp 1 ip 89.185.48.161 ! interface Vlan3200 description APC NETWORK ip address 62.240.231.65 255.255.255.192 no ip redirects no ip proxy-arp private-vlan mapping 3201 ! router isis mpls traffic-eng router-id Loopback0 mpls traffic-eng level-2 net 49.8975.0000.2120.4319.3050.00 is-type level-2-only authentication mode md5 authentication key-chain is-is-key-chain ispf level-1-2 metric-style wide set-overload-bit on-startup wait-for-bgp spf-interval 5 5 50 prc-interval 5 5 50 lsp-gen-interval 5 5 50 no hello padding log-adjacency-changes all passive-interface Loopback0 passive-interface Loopback2 ! router bgp 8975 template peer-policy RR-IPv4 inherit peer-policy RR 10 exit-peer-policy ! template peer-policy AS-28677 route-map amen-in in route-map amen-out out filter-list 401 in prefix-list AS-28677 in prefix-list bogons out remove-private-as maximum-prefix 5 send-community exit-peer-policy ! template peer-policy AS-15489 route-map artful-in in route-map artful-out out filter-list 402 in prefix-list AS-15489 in prefix-list bogons out remove-private-as maximum-prefix 10 send-community exit-peer-policy ! template peer-policy RR next-hop-self send-community both exit-peer-policy ! template peer-policy RR-IPv6 next-hop-self send-community send-label exit-peer-policy ! template peer-session Internal remote-as 8975 password 7 011E0716550E575A exit-peer-session ! template peer-session Internal-IPv4 update-source Loopback0 inherit peer-session Internal exit-peer-session ! template peer-session AS-28677 remote-as 28677 exit-peer-session ! template peer-session AS-15489 remote-as 15489 exit-peer-session ! template peer-session Internal-IPv6 password 7 121404051C0E5D51 update-source Loopback2 inherit peer-session Internal exit-peer-session ! bgp router-id 212.43.193.50 no bgp default ipv4-unicast bgp log-neighbor-changes bgp confederation identifier 8426 bgp confederation peers 8426 bgp deterministic-med bgp bestpath compare-routerid bgp maxas-limit 50 timers bgp 30 90 neighbor 2001:A70:F0::6 remote-as 28677 neighbor 2001:A70:F0::6 description AMEN neighbor 62.240.250.3 inherit peer-session Internal-IPv6 neighbor 62.240.250.8 inherit peer-session Internal-IPv6 neighbor 212.43.193.49 inherit peer-session Internal-IPv4 neighbor 212.43.193.51 inherit peer-session Internal-IPv4 neighbor 212.43.225.6 inherit peer-session AS-28677 neighbor 212.43.225.6 description Amen 2 neighbor 212.43.225.14 inherit peer-session AS-15489 neighbor 212.43.225.14 description Artful 2 ! address-family ipv4 redistribute connected route-map ipv4-bgp-redistributed-out redistribute static route-map ipv4-bgp-redistributed-out neighbor 212.43.193.49 activate neighbor 212.43.193.49 inherit peer-policy RR-IPv4 neighbor 212.43.193.51 activate neighbor 212.43.193.51 inherit peer-policy RR-IPv4 neighbor 212.43.225.6 activate neighbor 212.43.225.6 soft-reconfiguration inbound neighbor 212.43.225.6 inherit peer-policy AS-28677 neighbor 212.43.225.14 activate neighbor 212.43.225.14 inherit peer-policy AS-15489 no auto-summary no synchronization bgp dampening exit-address-family ! address-family ipv6 neighbor 2001:A70:F0::6 activate neighbor 2001:A70:F0::6 next-hop-self neighbor 2001:A70:F0::6 send-community neighbor 2001:A70:F0::6 soft-reconfiguration inbound neighbor 2001:A70:F0::6 inherit peer-policy AS-28677 neighbor 62.240.250.3 activate neighbor 62.240.250.3 inherit peer-policy RR-IPv6 neighbor 62.240.250.8 activate neighbor 62.240.250.8 inherit peer-policy RR-IPv6 no synchronization redistribute connected redistribute static exit-address-family ! ip default-gateway 194.146.173.22 ip classless ip route 10.66.66.66 255.255.255.255 Null0 ! ip extcommunity-list 99 permit rt 8426:1 ip extcommunity-list 99 permit rt 8426:9998 ip extcommunity-list 99 permit rt 8975:100 ip extcommunity-list 99 permit rt 8426:10018 ip extcommunity-list 99 permit rt 8196:100 ip extcommunity-list 99 permit rt 8196:200 ip extcommunity-list 99 permit rt 8426:10031 ip extcommunity-list 99 permit rt 8426:10044 ip extcommunity-list 99 permit rt 8426:10040 ip extcommunity-list 99 permit rt 8196:3900 ip extcommunity-list 99 permit rt 8483:14200 ip extcommunity-list 99 permit rt 8196:4300 ip extcommunity-list 99 permit rt 20869:10001 ip extcommunity-list 99 permit rt 8426:10099 ip extcommunity-list 99 permit rt 8426:10106 ip extcommunity-list 99 permit rt 5533:20000 ip extcommunity-list 99 permit rt 5533:20001 ip extcommunity-list 99 permit rt 5533:20002 ip extcommunity-list 99 permit rt 5533:20003 ip extcommunity-list 99 permit rt 5533:20004 ip extcommunity-list 99 permit rt 5533:20005 ip extcommunity-list 99 permit rt 5533:20006 ip extcommunity-list 99 permit rt 5533:20007 ip extcommunity-list 99 permit rt 5533:20008 ip extcommunity-list 99 permit rt 5533:20009 ip bgp-community new-format ip community-list standard FR:artful permit 8975:50054 ip community-list standard UK:UK permit 8426:100 ip community-list standard UK:UK-peerings permit 8426:799 ip community-list standard UK:UK-transit permit 8426:599 ip community-list standard ES:ES permit 20869:100 ip community-list standard ES:ES-peerings permit 20869:799 ip community-list standard NL:NL permit 8483:100 ip community-list standard NL:NL-peerings permit 8483:799 ip community-list standard DE:DE permit 8196:14010 ip community-list standard DE:DE-peerings permit 8196:13000 ip community-list standard DE:DE-peerings permit 8196:15000 ip community-list standard DE:DE-transit permit 8196:12000 ip community-list standard DE:UK permit 8196:14020 ip community-list standard FR:FR permit 8975:14010 ip community-list standard FR:FR-transit permit 8975:12000 ip community-list standard FR:FR-peerings permit 8975:13000 ip community-list standard FR:UK permit 8975:14020 ip community-list standard FR:UK-peerings permit 8975:15020 ip community-list standard FR:DE permit 8975:14030 ip community-list standard FR:DE-peerings permit 8975:15030 ip community-list standard FR:ES permit 8975:14040 ip community-list standard FR:ES-peerings permit 8975:15040 ip community-list standard FR:NL permit 8975:14050 ip community-list standard FR:NL-peerings permit 8975:15050 ip community-list standard FR:CLARANET permit 8975:14000 ip community-list standard FR:CLARANET-confederation permit 8426:101 8975:14000 ip community-list standard FR:CLARANET-peerings permit 8975:15000 ip community-list standard FR:CLARANET-confederation-peerings permit 8426:101 8975:15000 ip community-list standard EU:FR-AS permit 8975:1 ip community-list standard EU:FR-other-AS permit 8975:2000 ip community-list standard EU:FR permit 8975:100 ip community-list standard EU:FR-peerings permit 8975:799 ip community-list standard EU:FR-transit permit 8975:599 ip community-list standard EU:AMEN-AS permit 28677:1 ip community-list standard EU:AMEN-other-AS permit 28677:2000 ip community-list standard EU:AMEN permit 28677:100 ip community-list standard EU:AMEN-peerings permit 28677:799 ip community-list standard EU:AMEN-transit permit 28677:599 ip community-list standard EU:UK-AS permit 8426:1 ip community-list standard EU:UK-other-AS permit 8426:2000 ip community-list standard EU:UK permit 8426:100 ip community-list standard EU:UK-peerings permit 8426:799 ip community-list standard EU:UK-transit permit 8426:599 ip community-list standard EU:CONFEDERATION permit 8426:101 ip community-list standard EU:DE-AS permit 8196:1 ip community-list standard EU:DE-other-AS permit 8196:2000 ip community-list standard EU:DE permit 8196:100 ip community-list standard EU:DE-peerings permit 8196:799 ip community-list standard EU:DE-transit permit 8196:599 ip community-list standard FR:internal permit 8975:50000 ip community-list standard AMEN:internal permit 28677:50000 ip community-list standard FR:neuf-bas-radius permit 8975:50051 ip community-list standard FR:sfr-claranet-lns-radius permit 8975:50052 ip community-list standard FR:sfr-customers permit 8975:50053 ip community-list standard FR:hosting-customers permit 8975:50055 ip community-list standard FR:fb-hosting-customers permit 8975:50056 ip community-list standard FR:sd-hosting-customers permit 8975:50057 ip as-path access-list 401 permit ^28677$ ip as-path access-list 402 permit ^15489$ no ip http server ip pim rp-address 212.43.247.132 override ip tacacs source-interface Loopback0 ! ip access-list standard noc-access permit 212.43.194.38 permit 212.43.194.17 permit 213.253.16.104 permit 195.157.6.1 permit 62.193.206.162 permit 62.193.206.153 permit 212.43.195.0 0.0.0.31 permit 212.43.232.64 0.0.0.31 permit 212.43.232.96 0.0.0.7 permit 212.43.232.32 0.0.0.31 permit 212.43.232.104 0.0.0.7 permit 212.43.193.0 0.0.0.255 permit 212.43.247.0 0.0.0.255 permit 212.43.225.0 0.0.0.3 permit 212.43.225.4 0.0.0.3 permit 212.43.225.8 0.0.0.3 permit 212.43.225.12 0.0.0.3 permit 195.8.68.0 0.0.0.255 permit 195.8.69.0 0.0.0.255 permit 195.8.70.0 0.0.0.255 permit 195.157.3.0 0.0.0.255 permit 212.82.224.0 0.0.1.255 permit 80.67.96.64 0.0.0.31 permit 62.193.207.192 0.0.0.31 permit 62.193.223.0 0.0.0.255 deny any log ip access-list standard snmp-access permit 212.43.194.38 permit 212.43.194.17 permit 212.43.194.117 permit 213.253.16.104 permit 195.8.69.211 permit 89.185.48.165 permit 195.8.71.57 permit 212.43.195.0 0.0.0.31 deny any log ! ip access-list extended artful20080816_02-out permit tcp any host 89.185.33.53 eq www deny icmp any host 89.185.33.53 log deny udp any host 89.185.33.53 permit ip any any ip access-list extended artful20080816_03 deny udp any host 89.185.33.53 permit tcp any host 89.185.33.53 eq www deny ip any host 89.185.33.53 permit ip any any ip access-list extended artful20080903 deny udp any host 89.185.33.53 permit tcp any host 89.185.33.53 eq www permit tcp any host 89.185.33.53 eq ftp permit tcp any host 89.185.33.53 eq 3389 deny ip any host 89.185.33.53 permit ip any any ip access-list extended deny_artful_20080418_01 deny ip host 89.185.33.42 any deny ip any host 89.185.33.42 permit ip any any ! ! ip prefix-list AS-15489 seq 5 permit 89.185.32.0/23 ip prefix-list AS-15489 seq 10 permit 193.111.14.0/23 ip prefix-list AS-15489 seq 15 permit 194.146.172.0/22 ip prefix-list AS-15489 seq 20 permit 89.185.34.0/24 ip prefix-list AS-15489 seq 25 permit 89.185.36.0/23 ip prefix-list AS-15489 seq 30 permit 89.185.38.0/24 ! ip prefix-list AS-15489-customer seq 10 permit 193.111.14.0/23 ip prefix-list AS-15489-customer seq 15 permit 194.146.172.0/22 ! ip prefix-list AS-15489-internal seq 5 permit 89.185.32.0/23 ip prefix-list AS-15489-internal seq 10 permit 89.185.34.0/24 ip prefix-list AS-15489-internal seq 15 permit 89.185.36.0/23 ip prefix-list AS-15489-internal seq 20 permit 89.185.38.0/24 ! ip prefix-list AS-28677 seq 5 permit 62.193.192.0/18 ! ip prefix-list cyrealis seq 5 permit 193.22.143.0/24 ! ip prefix-list ipv4-assignment seq 20 permit 212.43.192.0/18 ge 19 ip prefix-list ipv4-assignment seq 40 permit 62.240.224.0/19 ge 20 ip prefix-list ipv4-assignment seq 60 permit 89.185.32.0/19 ge 20 ! ip prefix-list ipv4-network-infra seq 20 permit 212.43.193.0/24 le 32 ip prefix-list ipv4-network-infra seq 40 permit 212.43.247.0/24 le 32 ip prefix-list ipv4-network-infra seq 60 permit 62.240.250.0/24 le 32 logging history informational logging facility local3 logging source-interface Loopback0 logging 212.43.194.17 access-list 2 permit 212.43.194.38 access-list 2 permit 212.43.194.17 access-list 2 permit 212.43.194.117 access-list 2 permit 213.253.16.104 access-list 2 permit 212.43.194.108 access-list 2 permit 195.8.69.211 access-list 2 permit 89.185.48.165 access-list 2 permit 195.8.71.57 access-list 2 permit 212.43.195.0 0.0.0.31 access-list 2 deny any log access-list 10 deny 62.193.208.61 access-list 10 deny 62.193.204.123 access-list 10 deny 62.193.204.110 access-list 10 deny 62.193.206.133 access-list 10 deny 62.193.199.236 access-list 10 permit any access-list 100 deny udp any eq 80 any access-list 100 deny udp any any eq 80 access-list 100 permit ip any any access-list dynamic-extended no cdp run ! ! ipv6 prefix-list AS-28677 seq 5 permit 2A02:2B8::/32 route-map ipv4-bgp-redistributed-out deny 20 match ip address prefix-list ipv4-network-infra ! route-map ipv4-bgp-redistributed-out permit 40 match ip address prefix-list ipv4-assignment set local-preference 10000 set community 8975:50000 8975:50055 8975:50057 no-export local-AS ! route-map ipv6-bgp-redistributed-out permit 40 set local-preference 10000 set community 8975:50000 8975:50055 8975:50057 no-export local-AS ! route-map amen-in permit 10 set local-preference 10000 set community 8975:100 8975:2000 8975:10000 8975:14000 8975:14010 ! route-map artful-in permit 10 match ip address prefix-list AS-15489-internal set local-preference 10000 set community 8975:50000 8975:50054 no-export local-AS ! route-map artful-in permit 20 match ip address prefix-list AS-15489-customer set local-preference 10000 set community 8975:100 8975:2000 8975:10000 8975:14000 8975:14010 ! route-map amen-out permit 10 ! route-map artful-out permit 50 ! route-map BGP-Customer-in permit 10 set community 8975:100 8975:2000 8975:10000 8975:14000 8975:14010 ! snmp-server community passwordsnmp RO 2 snmp-server community ilmppIII RO snmp-server trap-source Loopback0 snmp-server enable traps tty snmp-server enable traps sonet snmp-server host 212.43.194.17 passwordsnmp tty bgp config envmon tacacs-server host 212.43.194.17 tacacs-server directed-request tacacs-server key 7 121A0916000A02573E ! radius-server source-ports 1645-1646 ! control-plane ! ! ! dial-peer cor custom ! ! ! banner motd ^C ####################################### ### Unauthorised access prohibited ### ####################################### ### Disconnect now if you are not ### ### an authorised user. ### ####################################### ### All connection attempts are ### ### logged. ### ####################################### ^C ! line con 0 line vty 0 4 access-class noc-access in exec-timeout 35791 0 logging synchronous transport input telnet ssh line vty 5 10 access-class noc-access in exec-timeout 35791 0 logging synchronous transport input telnet ssh ! ntp clock-period 17180056 ntp server 212.43.194.2 no cns aaa enable end sd-ar2#exit Connection to sd-ar2.router.fr.clara.net closed.