! show version ! ! Cisco Nexus Operating System (NX-OS) Software ! TAC support: http://www.cisco.com/tac ! Copyright (C) 2002-2016, Cisco and/or its affiliates. ! All rights reserved. ! The copyrights to certain works contained in this software are ! owned by other third parties and used and distributed under their own ! licenses, such as open source. This software is provided "as is," and unless ! otherwise stated, there is no warranty, express or implied, including but not ! limited to warranties of merchantability and fitness for a particular purpose. ! Certain components of this software are licensed under ! the GNU General Public License (GPL) version 2.0 or ! GNU General Public License (GPL) version 3.0 or the GNU ! Lesser General Public License (LGPL) Version 2.1 or ! Lesser General Public License (LGPL) Version 2.0. ! A copy of each such license is available at ! http://www.opensource.org/licenses/gpl-2.0.php and ! http://opensource.org/licenses/gpl-3.0.html and ! http://www.opensource.org/licenses/lgpl-2.1.php and ! http://www.gnu.org/licenses/old-licenses/library.txt. ! ! Software ! BIOS: version 07.67 ! NXOS: version 7.0(3)I2(3) ! BIOS compile time: 01/30/2020 ! NXOS image file is: bootflash:///nxos.7.0.3.I2.3.bin ! NXOS compile time: 3/21/2016 21:00:00 [03/21/2016 21:04:39] ! ! ! Hardware ! cisco Nexus9000 C9372PX chassis ! Intel(R) Core(TM) i3- CPU @ 2.50GHz with 16401952 kB of memory. ! Processor Board ID SAL1935N8D7 ! ! Device name: SV6-AG38-PETAEXPRESS-LEAF6-35U ! bootflash: 51496280 kB ! show inventory ! ! NAME: "Chassis", DESCR: "Nexus9000 C9372PX chassis" ! PID: N9K-C9372PX , VID: V02 , SN: SAL1935N8D7 ! ! NAME: "Slot 1", DESCR: "48x1/10G SFP+ 6x40G Ethernet Module" ! PID: N9K-C9372PX , VID: V02 , SN: SAL1935N8D7 ! ! NAME: "Power Supply 1", DESCR: "Nexus9000 C9372PX chassis Power Supply" ! PID: N9K-PAC-650W-B , VID: V01 , SN: DCB2039Y1BZ ! ! NAME: "Power Supply 2", DESCR: "Nexus9000 C9372PX chassis Power Supply" ! PID: N9K-PAC-650W-B , VID: V01 , SN: DCB2102Y329 ! ! NAME: "Fan 1", DESCR: "Nexus9000 C9372PX chassis Fan Module" ! PID: NXA-FAN-30CFM-F , VID: V01 , SN: N/A ! ! NAME: "Fan 2", DESCR: "Nexus9000 C9372PX chassis Fan Module" ! PID: NXA-FAN-30CFM-F , VID: V01 , SN: N/A ! ! NAME: "Fan 3", DESCR: "Nexus9000 C9372PX chassis Fan Module" ! PID: NXA-FAN-30CFM-F , VID: V01 , SN: N/A ! ! NAME: "Fan 4", DESCR: "Nexus9000 C9372PX chassis Fan Module" ! PID: NXA-FAN-30CFM-F , VID: V01 , SN: N/A ! ! ! show running-config !Command: show running-config version 7.0(3)I2(3) hostname SV6-AG38-PETAEXPRESS-LEAF6-35U policy-map type network-qos jumbomtu class type network-qos class-default mtu 9018 vdc SV6-AG38-PETAEXPRESS-LEAF6-35U id 1 limit-resource vlan minimum 16 maximum 4094 limit-resource vrf minimum 2 maximum 4096 limit-resource port-channel minimum 0 maximum 256 limit-resource u4route-mem minimum 248 maximum 248 limit-resource u6route-mem minimum 96 maximum 96 limit-resource m4route-mem minimum 58 maximum 58 limit-resource m6route-mem minimum 8 maximum 8 feature privilege feature vrrp feature tacacs+ cfs eth distribute nv overlay evpn feature bgp feature pim feature interface-vlan feature vn-segment-vlan-based feature lacp feature dhcp feature vpc feature lldp feature nv overlay no password strength-check username admin password 5 $5$dnxPb43r$aBrFrcoDRCJPgLnikioTuRUDuJH2hvzHMcxLLLs.xhA role network-admin enable secret 5 $1$6e5551ac$fe8d53af974ab636 no ip domain-lookup ip domain-name SV6-leaf-sw6.n9372 ip tacacs source-interface mgmt0 tacacs-server host 199.180.100.29 key 7 "uwoxeamy123" tacacs-server host 64.71.150.196 key 7 "uwoxeamy123" aaa group server tacacs+ peg server 199.180.100.29 server 64.71.150.196 source-interface mgmt0 crypto key param rsa label SV6-leaf-sw6 modulus 1024 ip access-list acl4internal-access 10 permit ip 10.255.0.0/16 any 20 deny ip 64.71.150.215/32 any 30 deny ip 64.71.150.216/32 any 40 deny ip 64.71.150.217/32 any 50 permit ip 64.71.150.128/25 any 60 permit ip 198.47.96.0/24 any 70 deny ip 199.180.100.11/32 any 80 deny ip 199.180.100.12/32 any 90 deny ip 199.180.100.13/32 any 100 permit ip 199.180.100.0/27 any 110 permit ip 199.180.101.96/28 any 120 permit ip 137.175.10.64/27 any 130 permit ip 137.175.96.0/24 any 140 permit ip 142.4.110.64/27 any 150 permit ip 107.148.208.208/28 any 160 permit ip 198.2.211.160/27 any 170 permit ip 198.2.215.208/28 any 180 permit ip 137.175.43.128 0.0.0.63 any 190 permit udp 116.58.208.30/32 any eq snmp 200 permit udp 137.175.13.76/32 any eq snmp 210 permit ip 142.4.100.48 0.0.0.15 any 220 permit ip 10.2.0.0/16 any ip access-list acl4snmp 10 permit ip 104.192.85.96/28 any 20 permit ip 10.255.0.0/16 any 30 permit ip 64.71.150.128/25 any 40 permit ip 198.47.96.0/24 any 50 permit ip 199.180.100.0/27 any 60 permit ip 199.180.101.96/28 any 70 permit ip 137.175.10.64/27 any 80 permit ip 137.175.96.0/24 any 90 permit ip 142.4.110.64/27 any 100 permit ip 107.121.208.208/28 any 110 permit ip 198.2.211.160/27 any 120 permit ip 198.2.215.208/28 any 130 permit ip 142.4.100.48/28 any 140 permit ip 199.180.100.112 0.0.0.7 any 150 permit ip 192.74.224.59/32 any system qos service-policy type network-qos jumbomtu copp profile strict snmp-server user admin network-admin auth md5 0xacdb959852c081ce09409d47d2574a69 priv 0xacdb959852c081ce09409d47d2574a69 localizedkey rmon event 1 description FATAL(1) owner PMON@FATAL rmon event 2 description CRITICAL(2) owner PMON@CRITICAL rmon event 3 description ERROR(3) owner PMON@ERROR rmon event 4 description WARNING(4) owner PMON@WARNING rmon event 5 description INFORMATION(5) owner PMON@INFO snmp-server community raksmartv2 group network-operator ntp server 64.71.150.196 use-vrf default ntp server 199.180.100.29 use-vrf default aaa authentication login default group peg aaa authentication login console none aaa authorization config-commands default group peg aaa authorization commands default group peg aaa accounting default group peg vlan 1,11-12 vlan 11 name leaf5&6_global_communication vlan 12 name object_storage_gateway_public spanning-tree port type edge default ip prefix-list c2b seq 5 permit 199.180.101.112/28 ip prefix-list internal seq 5 permit 10.2.2.0/24 le 32 ip prefix-list internal seq 10 permit 10.2.4.0/24 le 32 ip prefix-list internal seq 15 permit 10.2.6.0/24 le 32 ip prefix-list internal seq 20 permit 10.2.8.0/24 le 32 ip prefix-list loopback1 seq 5 permit 10.2.241.0/24 le 32 ip prefix-list rs-networks seq 5 permit 172.16.0.0/16 ge 24 le 32 ip prefix-list rs-networks seq 10 permit 137.175.0.0/16 ge 24 le 32 ip prefix-list rs-networks seq 15 permit 104.233.0.0/16 ge 24 le 32 ip prefix-list rs-networks seq 20 permit 107.148.0.0/16 ge 24 le 32 ip prefix-list s2b seq 5 permit 137.175.33.0/24 ip prefix-list s2b seq 10 permit 142.0.136.176/28 ip prefix-list s2bCN2ONLY seq 5 permit 107.148.235.0/24 ip prefix-list s2bCTVRF01 seq 5 permit 107.148.252.0/24 ip prefix-list s2bSTREAM01 seq 5 permit 104.233.218.0/24 route-map any permit 10 route-map c2b permit 10 match ip address prefix-list loopback1 route-map c2b permit 20 match ip address prefix-list internal route-map c2b permit 30 match ip address prefix-list c2b route-map ebgp_loopback1 permit 10 match ip address prefix-list loopback1 route-map ebgp_loopback1 permit 20 match ip address prefix-list internal route-map none deny 10 route-map rs-networks permit 10 match ip address prefix-list rs-networks route-map rs-networks deny 100 route-map s2b permit 10 match ip address prefix-list s2b route-map s2bCN2ONLY permit 10 match ip address prefix-list s2bCN2ONLY route-map s2bCTVRF01 permit 10 match ip address prefix-list s2bCTVRF01 route-map s2bSTREAM01 permit 10 match ip address prefix-list s2bSTREAM01 route-map test permit 10 service dhcp ip dhcp relay ipv6 dhcp relay vrf context CN2ONLY ip route 107.148.235.0/24 Null0 190 vrf context CTVRF-01 ip route 107.148.252.0/24 Null0 190 vrf context STREAM-01 ip route 104.233.218.0/24 Null0 190 vrf context management ip route 0.0.0.0/0 10.0.128.254 vpc domain 1 peer-keepalive destination 10.0.128.214 source 10.0.128.215 interface Vlan1 interface Vlan11 description leaf5&6_global_gateway no shutdown no ip redirects ip address 10.2.2.252/24 ip address 10.2.3.252/24 secondary ip address 10.2.4.252/24 secondary ip address 10.2.6.252/24 secondary ip address 10.2.8.252/24 secondary vrrp 251 address 10.2.8.254 no shutdown vrrp 252 address 10.2.6.254 no shutdown vrrp 253 address 10.2.4.254 no shutdown vrrp 254 address 10.2.3.254 no shutdown vrrp 255 address 10.2.2.254 no shutdown interface Vlan12 no shutdown ip address 199.180.101.125/28 vrrp 250 address 199.180.101.126 no shutdown interface port-channel12 description SPINE-1-p12 no switchport ip address 10.2.240.3/31 interface port-channel14 description SPINE-2-p14 no switchport ip address 10.2.240.7/31 interface port-channel20 description SV6-AF38-LEAF-5-35U switchport mode trunk spanning-tree port type network vpc peer-link interface port-channel101 description Global_KS_server_1 switchport access vlan 11 vpc 101 interface port-channel102 description Global_KS_server_2 switchport access vlan 11 vpc 102 interface port-channel103 description Global_KS_server_3 switchport access vlan 11 vpc 103 interface port-channel201 description vbr_snapshot_server_1 switchport access vlan 11 vpc 201 interface port-channel202 description vbr_snapshot_server_2 switchport access vlan 11 vpc 202 interface port-channel301 description seed_server_1 switchport access vlan 11 vpc 301 interface port-channel302 description seed_server_2 switchport access vlan 11 vpc 302 interface port-channel401 description Hyper_server_1 switchport access vlan 11 vpc 401 interface port-channel402 description Hyper_server_2 switchport access vlan 11 vpc 402 interface port-channel403 description Hyper_server_3 switchport access vlan 11 vpc 403 interface port-channel404 description Hyper_server_3 switchport access vlan 11 vpc 404 interface port-channel501 description ObjectGateway_server_1 switchport mode trunk switchport access vlan 11 switchport trunk allowed vlan 11-12 vpc 501 interface port-channel502 description ObjectGateway_server_2 switchport mode trunk switchport access vlan 11 switchport trunk allowed vlan 11-12 vpc 502 interface port-channel503 description ObjectGateway_server_3 switchport mode trunk switchport access vlan 11 switchport trunk allowed vlan 11-12 vpc 503 interface port-channel601 description NeoSAN_server_1 switchport access vlan 11 vpc 601 interface port-channel602 description NeoSAN_server_2 switchport access vlan 11 vpc 602 interface port-channel603 description NeoSAN_server_3 switchport access vlan 11 vpc 603 interface Ethernet1/1 interface Ethernet1/2 interface Ethernet1/3 interface Ethernet1/4 interface Ethernet1/5 description SV6-AF38-SPINE-2-39U-E1/1 no switchport channel-group 14 mode active no shutdown interface Ethernet1/6 description SV6-AF38-SPINE-2-39U-E1/2 no switchport channel-group 14 mode active no shutdown interface Ethernet1/7 description SV6-AF38-SPINE-2-39U-E1/3 no switchport channel-group 14 mode active no shutdown interface Ethernet1/8 description SV6-AF38-SPINE-2-39U-E1/4 no switchport channel-group 14 mode active no shutdown interface Ethernet1/9 description SV6-AE38-SPINE-1-39U-E1/5 no switchport channel-group 12 mode active no shutdown interface Ethernet1/10 description SV6-AE38-SPINE-1-39U-E1/6 no switchport channel-group 12 mode active no shutdown interface Ethernet1/11 description SV6-AE38-SPINE-1-39U-E1/7 no switchport channel-group 12 mode active no shutdown interface Ethernet1/12 description SV6-AE38-SPINE-1-39U-E1/8 no switchport channel-group 12 mode active no shutdown interface Ethernet1/13 interface Ethernet1/14 interface Ethernet1/15 interface Ethernet1/16 interface Ethernet1/17 description SV6-AF38-LEAF-5-35U-E1/17 switchport mode trunk channel-group 20 mode active interface Ethernet1/18 description SV6-AF38-LEAF-5-35U-E1/18 switchport mode trunk channel-group 20 mode active interface Ethernet1/19 description SV6-AF38-LEAF-5-35U-E1/19 switchport mode trunk channel-group 20 mode active interface Ethernet1/20 description SV6-AF38-LEAF-5-35U-E1/20 switchport mode trunk channel-group 20 mode active interface Ethernet1/21 interface Ethernet1/22 interface Ethernet1/23 interface Ethernet1/24 interface Ethernet1/25 description Global KS-server1-Ten2 switchport access vlan 11 channel-group 101 mode active interface Ethernet1/26 description Global KS-server2-Ten2 switchport access vlan 11 channel-group 102 mode active interface Ethernet1/27 description Global KS-server3-Ten2 switchport access vlan 11 channel-group 103 mode active interface Ethernet1/28 description vbr_snapshot-server1-Ten2 switchport access vlan 11 channel-group 201 mode active interface Ethernet1/29 description vbr_snapshot-server2-Ten2 switchport access vlan 11 channel-group 202 mode active interface Ethernet1/30 description seed-server1-Ten2 switchport access vlan 11 channel-group 301 mode active interface Ethernet1/31 description seed-server2-Ten2 switchport access vlan 11 channel-group 302 mode active interface Ethernet1/32 description hyper-server1-Ten2 switchport access vlan 11 channel-group 401 mode active interface Ethernet1/33 description hyper-server2-Ten2 switchport access vlan 11 channel-group 402 mode active interface Ethernet1/34 description hyper-server3-Ten2 switchport access vlan 11 channel-group 403 mode active interface Ethernet1/35 description hyper-server4-Ten2 switchport access vlan 11 channel-group 404 mode active interface Ethernet1/36 description ObjectGateway-server1-Ten2 switchport mode trunk switchport access vlan 11 switchport trunk allowed vlan 11-12 channel-group 501 mode active interface Ethernet1/37 description ObjectGateway-server2-Ten2 switchport mode trunk switchport access vlan 11 switchport trunk allowed vlan 11-12 channel-group 502 mode active interface Ethernet1/38 description ObjectGateway-server3-Ten2 switchport mode trunk switchport access vlan 11 switchport trunk allowed vlan 11-12 channel-group 503 mode active interface Ethernet1/39 description NeonSAN-server1-Ten2 switchport access vlan 11 channel-group 601 mode active interface Ethernet1/40 description NeonSAN-server2-Ten2 switchport access vlan 11 channel-group 602 mode active interface Ethernet1/41 description NeonSAN-server3-Ten2 switchport access vlan 11 channel-group 603 mode active interface Ethernet1/42 interface Ethernet1/43 interface Ethernet1/44 interface Ethernet1/45 interface Ethernet1/46 interface Ethernet1/47 interface Ethernet1/48 interface Ethernet1/49 interface Ethernet1/50 interface Ethernet1/51 interface Ethernet1/52 interface Ethernet1/53 interface Ethernet1/54 interface mgmt0 vrf member management ip address 10.0.128.215/24 interface loopback1 ip address 10.2.241.9/32 clock timezone PST -8 0 line console exec-timeout 5 line vty exec-timeout 20 access-class acl4internal-access in boot nxos bootflash:/nxos.7.0.3.I2.3.bin ip route 137.175.33.0/24 Null0 190 ip route 142.0.136.176/28 Null0 190 ip route 142.0.136.177/32 10.2.2.208 ip route 142.0.136.178/32 10.2.2.209 ip route 142.0.136.179/32 10.2.4.203 ip route 142.0.136.180/32 10.2.4.204 ip route 142.0.136.181/32 10.2.4.206 ip route 142.0.136.182/32 10.2.4.207 ip route 142.0.136.183/32 10.2.4.11 ip access-list match-local-traffic router bgp 64900 router-id 10.2.241.9 bestpath as-path multipath-relax address-family ipv4 unicast redistribute direct route-map c2b redistribute static route-map s2b maximum-paths 16 template peer SPINE remote-as 64900 update-source loopback1 address-family ipv4 unicast route-map any in route-map any out template peer SPINE-eBGP local-as 64910 address-family ipv4 unicast allowas-in route-map any in route-map any out next-hop-self neighbor 10.2.4.220 remote-as 167904476 local-as 64910 update-source loopback1 ebgp-multihop 255 address-family ipv4 unicast route-map rs-networks in route-map none out next-hop-self soft-reconfiguration inbound always neighbor 10.2.4.221 remote-as 167904477 local-as 64910 update-source loopback1 ebgp-multihop 255 address-family ipv4 unicast route-map rs-networks in route-map none out next-hop-self soft-reconfiguration inbound always neighbor 10.2.4.222 remote-as 167904478 local-as 64910 update-source loopback1 ebgp-multihop 255 address-family ipv4 unicast route-map rs-networks in route-map none out next-hop-self soft-reconfiguration inbound always neighbor 10.2.4.223 remote-as 167904479 local-as 64910 update-source loopback1 ebgp-multihop 255 address-family ipv4 unicast route-map rs-networks in route-map none out next-hop-self soft-reconfiguration inbound always neighbor 10.2.240.2 inherit peer SPINE_eBGP remote-as 64901 local-as 64910 description SV6-AE38-SPINE-1-39U address-family ipv4 unicast allowas-in route-map any in route-map any out neighbor 10.2.240.6 inherit peer SPINE_eBGP remote-as 64902 local-as 64910 description SV6-AF38-SPINE-2-39U address-family ipv4 unicast allowas-in route-map any in route-map any out vrf CN2ONLY address-family ipv4 unicast redistribute static route-map s2bCN2ONLY vrf CTVRF-01 address-family ipv4 unicast redistribute static route-map s2bCTVRF01 vrf STREAM-01 address-family ipv4 unicast redistribute static route-map s2bSTREAM01