# Huawei Versatile Routing Platform Software # VRP (R) software, Version 5.170 (S5735 V200R019C10SPC500) # Copyright (C) 2000-2020 HUAWEI TECH Co., Ltd. # # DDR Memory Size : 1024 M bytes # FLASH Total Memory Size : 512 M bytes # FLASH Available Memory Size : 306 M bytes # Pcb Version : VER.B # BootROM(1st) Version : 0000.0121 # BootROM(2nd) Version : 0000.0200 # BootLoad Version : 0213.0000 # CPLD Version : 0105 # Software Version : VRP (R) Software, Version 5.170 (V200R019C10SPC500) # FLASH Version : 0000.0000 # S5735S-L48T4X-A's Device status: # Slot Sub Type Online Power Register Status Role # -------------------------------------------------------------------------------------- # 0 - S5735S-L48T4X-A Present PowerOn Registered Normal Master !Software Version V200R019C10SPC500 # sysname TY2-H04-TOR-S5735S-A-25U # vlan batch 27 to 30 # stp disable # authentication-profile name default_authen_profile authentication-profile name dot1x_authen_profile authentication-profile name dot1xmac_authen_profile authentication-profile name mac_authen_profile authentication-profile name multi_authen_profile authentication-profile name portal_authen_profile # clock timezone JP add 08:00:00 # diffserv domain default # radius-server template default # hwtacacs-server template peg hwtacacs-server authentication 104.233.160.2 hwtacacs-server authorization 104.233.160.2 hwtacacs-server accounting 104.233.160.2 hwtacacs-server shared-key cipher %^%#+@dWR7CHGD$-+(%XBMqE46[XIbPwl~U5L@8p-p^:%^%# # pki realm default certificate-check none # acl name acl4ssh 2998 rule 5 permit source 104.233.160.0 0.0.0.15 rule 10 permit source 10.0.19.0 0.0.0.255 acl name acl4snmp 2999 rule 5 permit source 104.233.160.0 0.0.0.15 rule 10 permit source 137.175.10.64 0.0.0.31 rule 20 permit source 199.180.101.101 0 rule 25 permit source 10.0.19.0 0.0.0.255 # acl name acl4outintGigabitEthernet0/0/44 3909 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/44 3910 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 275 permit ip source 104.233.172.13 0 rule 280 permit ip source 104.233.172.14 0 rule 285 permit ip source 104.233.172.20 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/30 3911 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/30 3912 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.165.2 0 rule 300 permit ip source 104.233.165.21 0 rule 305 permit ip source 104.233.165.28 0 rule 900 deny ip acl name acl4intg0/0/18 3915 acl name acl4outintGigabitEthernet0/0/33 3920 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/33 3921 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 275 permit ip source 104.233.171.224 0 rule 280 permit ip source 104.233.172.21 0 rule 285 permit ip source 104.233.172.22 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/27 3926 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/27 3927 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.166.131 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/19 3932 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4outintGigabitEthernet0/0/36 3933 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/36 3934 rule 1 deny ip source 10.0.0.0 0.255.255.255 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.168.24 0 rule 900 deny ip acl name acl4intGigabitEthernet0/0/19 3935 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.168.4 0 rule 605 permit ip source 104.233.169.49 0 rule 610 permit ip source 104.233.169.59 0 rule 615 permit ip source 104.233.169.60 0 rule 620 permit ip source 104.233.161.65 0 rule 625 permit ip source 38.6.26.32 0.0.0.31 rule 630 permit ip source 38.6.5.64 0.0.0.31 rule 635 permit ip source 38.6.3.96 0.0.0.31 rule 640 permit ip source 38.6.2.128 0.0.0.31 rule 645 permit ip source 38.6.25.32 0.0.0.31 rule 650 permit ip source 38.6.11.64 0.0.0.31 rule 655 permit ip source 38.6.55.0 0.0.0.31 rule 660 permit ip source 38.6.50.224 0.0.0.31 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/17 3938 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/17 3939 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.161.90 0 rule 605 permit ip source 104.233.161.91 0 rule 610 permit ip source 104.233.161.92 0 rule 615 permit ip source 104.233.161.93 0 rule 620 permit ip source 104.233.171.197 0 rule 625 permit ip source 38.173.73.0 0.0.0.255 rule 900 deny ip acl name acl4intG0/0/33 3940 acl name acl4outintGigabitEthernet0/0/32 3941 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/32 3942 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.174.98 0 rule 300 permit ip source 104.233.174.99 0 rule 305 permit ip source 104.233.174.101 0 rule 310 permit ip source 104.233.174.102 0 rule 315 permit ip source 104.233.174.103 0 rule 320 permit ip source 38.26.242.192 0.0.0.63 rule 325 permit ip source 107.148.103.192 0.0.0.63 rule 330 permit ip source 38.6.4.192 0.0.0.63 rule 335 permit ip source 38.26.245.0 0.0.0.63 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/38 3943 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/38 3944 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.166.139 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/14 3945 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/14 3946 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.165.1 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/26 3947 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/26 3948 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.165.24 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/13 3949 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/13 3950 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.165.3 0 rule 300 permit ip source 104.233.165.5 0 rule 305 permit ip source 104.233.165.6 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/12 3951 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/12 3952 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.161.70 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/34 3953 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/34 3954 rule 1 deny ip source 10.0.0.0 0.255.255.255 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.168.27 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/28 3955 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/28 3956 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.171.148 0 rule 605 permit ip source 104.233.171.153 0 rule 610 permit ip source 104.233.171.165 0 rule 615 permit ip source 104.233.171.175 0 rule 620 permit ip source 104.233.171.180 0 rule 625 permit ip source 38.173.90.64 0.0.0.63 rule 630 permit ip source 38.173.94.0 0.0.0.63 rule 635 permit ip source 38.173.82.192 0.0.0.63 rule 640 permit ip source 38.173.93.128 0.0.0.63 rule 900 deny ip acl name acl4intg0/0/1 3959 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 acl name acl4outintGigabitEthernet0/0/9 3960 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/9 3961 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.169.61 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/43 3962 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/43 3963 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.171.151 0 rule 300 permit ip source 104.233.171.166 0 rule 305 permit ip source 104.233.171.167 0 rule 310 permit ip source 104.233.171.169 0 rule 315 permit ip source 104.233.171.170 0 rule 320 permit ip source 107.148.121.192 0.0.0.63 rule 325 permit ip source 206.237.246.192 0.0.0.63 rule 330 permit ip source 206.237.247.192 0.0.0.63 rule 335 permit ip source 206.237.250.0 0.0.0.63 rule 340 permit ip source 38.6.1.128 0.0.0.63 rule 345 permit ip source 38.174.201.64 0.0.0.63 rule 350 permit ip source 38.174.202.64 0.0.0.63 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/4 3964 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/4 3965 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.168.8 0 rule 300 permit ip source 104.233.171.154 0 rule 305 permit ip source 104.233.171.176 0 rule 310 permit ip source 104.233.171.193 0 rule 315 permit ip source 104.233.171.194 0 rule 320 permit ip source 206.237.248.224 0.0.0.31 rule 325 permit ip source 38.6.26.160 0.0.0.31 rule 330 permit ip source 38.6.25.0 0.0.0.31 rule 335 permit ip source 38.6.11.96 0.0.0.31 rule 340 permit ip source 206.237.247.160 0.0.0.31 rule 345 permit ip source 38.6.55.32 0.0.0.31 rule 350 permit ip source 38.177.3.64 0.0.0.31 rule 355 permit ip source 38.177.46.64 0.0.0.31 rule 360 permit ip source 38.6.19.160 0.0.0.31 rule 365 permit ip source 38.6.34.128 0.0.0.31 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/31 3966 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/31 3967 rule 1 deny ip source 10.0.0.0 0.255.255.255 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.166.135 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/29 3968 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/29 3969 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 275 permit ip source 104.233.168.7 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/18 3974 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/18 3975 rule 1 deny ip source 10.0.0.0 0.255.255.255 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.166.134 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/10 3976 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/10 3977 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.168.23 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/11 3978 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/11 3979 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.171.184 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/6 3980 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/6 3981 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.171.152 0 rule 300 permit ip source 104.233.171.162 0 rule 305 permit ip source 104.233.171.163 0 rule 310 permit ip source 104.233.171.164 0 rule 315 permit ip source 104.233.171.168 0 rule 320 permit ip source 38.6.31.0 0.0.0.255 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/7 3982 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/7 3983 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.171.210 0 rule 605 permit ip source 104.233.171.211 0 rule 610 permit ip source 104.233.171.212 0 rule 615 permit ip source 104.233.171.213 0 rule 620 permit ip source 104.233.171.215 0 rule 625 permit ip source 38.6.4.128 0.0.0.31 rule 630 permit ip source 38.6.21.0 0.0.0.31 rule 645 permit ip source 38.177.7.0 0.0.0.31 rule 650 permit ip source 38.177.16.160 0.0.0.31 rule 655 permit ip source 38.177.57.96 0.0.0.31 rule 660 permit ip source 38.177.60.224 0.0.0.31 rule 665 permit ip source 38.174.193.64 0.0.0.31 rule 670 permit ip source 38.174.217.160 0.0.0.31 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/15 3984 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/15 3985 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.166.138 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/3 3986 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/3 3987 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.165.15 0 rule 605 permit ip source 104.233.165.19 0 rule 610 permit ip source 104.233.165.20 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/5 3988 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/5 3989 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.168.5 0 rule 605 permit ip source 104.233.168.6 0 rule 610 permit ip source 104.233.168.9 0 rule 615 permit ip source 104.233.168.11 0 rule 620 permit ip source 104.233.168.13 0 rule 625 permit ip source 107.148.119.128 0.0.0.63 rule 630 permit ip source 38.6.55.64 0.0.0.63 rule 635 permit ip source 38.6.59.0 0.0.0.63 rule 640 permit ip source 38.6.61.0 0.0.0.63 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/37 3990 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/37 3991 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny udp destination-port eq 500 rule 60 deny udp source-port eq 500 rule 70 deny udp destination-port eq 4500 rule 80 deny udp source-port eq 4500 rule 210 deny tcp destination-port eq 3372 rule 220 deny tcp destination-port eq smtp rule 230 deny tcp source-port eq smtp rule 240 deny tcp destination-port eq 465 rule 250 deny tcp source-port eq 465 rule 260 deny tcp destination-port eq 587 rule 270 deny tcp source-port eq 587 rule 280 deny tcp destination-port eq 1723 rule 290 deny tcp source-port eq 1723 rule 295 permit ip source 104.233.171.142 0 rule 300 permit ip source 104.233.171.145 0 rule 305 permit ip source 104.233.171.146 0 rule 310 permit ip source 104.233.171.149 0 rule 315 permit ip source 104.233.171.150 0 rule 320 permit ip source 38.177.44.64 0.0.0.63 rule 325 permit ip source 38.177.45.64 0.0.0.63 rule 330 permit ip source 38.177.48.192 0.0.0.63 rule 335 permit ip source 107.148.112.0 0.0.0.63 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/1 3992 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/1 3993 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.218.33 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/42 3994 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/42 3995 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.171.139 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/8 3996 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/8 3997 rule 1 deny ip source 10.0.0.0 0.255.255.255 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.171.133 0 rule 900 deny ip acl name acl4outintGigabitEthernet0/0/2 3998 rule 10 deny tcp destination-port eq 135 rule 20 deny tcp destination-port eq 137 rule 30 deny tcp destination-port eq 138 rule 40 deny tcp destination-port eq 139 rule 50 deny ip source 192.168.30.1 0 rule 810 permit ip acl name acl4intGigabitEthernet0/0/2 3999 rule 10 permit udp destination-port eq bootps rule 20 permit udp destination-port eq bootpc rule 30 deny udp destination-port eq 0 rule 40 deny udp destination-port eq 80 rule 50 deny tcp destination-port eq 3372 rule 570 deny tcp destination-port eq smtp rule 575 deny tcp source-port eq smtp rule 580 deny tcp destination-port eq 465 rule 585 deny tcp source-port eq 465 rule 590 deny tcp destination-port eq 587 rule 595 deny tcp source-port eq 587 rule 600 permit ip source 104.233.168.12 0 rule 605 permit ip source 104.233.168.19 0 rule 610 permit ip source 104.233.168.22 0 rule 900 deny ip # free-rule-template name default_free_rule # portal-access-profile name portal_access_profile # aaa authentication-scheme default authentication-mode local authentication-scheme peg authentication-mode hwtacacs local authentication-scheme radius authentication-mode radius authorization-scheme default authorization-mode local authorization-scheme peg authorization-mode hwtacacs local accounting-scheme default accounting-mode none accounting-scheme peg accounting-mode hwtacacs recording-scheme peg recording-mode hwtacacs peg cmd recording-scheme peg local-aaa-user password policy administrator password history record number 0 password expire 0 domain default authentication-scheme radius accounting-scheme default radius-server default domain default_admin authentication-scheme peg accounting-scheme peg authorization-scheme peg hwtacacs-server peg local-user admin password irreversible-cipher $1c$A@:[TL\m"%$yf$8&/~>17MW5_9/,SrGjuRXN06y[)bP-$5B3!Q#$ local-user admin privilege level 15 local-user admin service-type terminal http # ntp-service server disable ntp-service ipv6 server disable ntp-service unicast-server 104.233.160.2 # interface Vlanif1 # interface MEth0/0/1 ip address 10.0.19.36 255.255.255.0 # *interface MEth0/0/2 # interface Eth-Trunk16 description TY2-H03-BAS-CE6851-A-44U@lag11 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 27 to 30 mode lacp # interface GigabitEthernet0/0/1 auto speed 10 port link-type access port default vlan 30 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/1 port-isolate enable group 1 qos lr outbound cir 10000 cbs 65535 qos lr inbound cir 10000 cbs 65535 # interface GigabitEthernet0/0/2 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/2 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/2 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/3 auto speed 100 port link-type access port default vlan 29 traffic-filter inbound acl name acl4intGigabitEthernet0/0/3 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/3 port-isolate enable group 1 qos lr outbound cir 20000 cbs 65535 qos lr inbound cir 20000 cbs 65535 # interface GigabitEthernet0/0/4 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/4 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/4 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/5 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/5 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/5 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/6 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/6 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/6 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/7 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/7 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/7 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/8 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/8 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/8 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/9 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/9 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/9 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/10 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/10 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/10 port-isolate enable group 1 # interface GigabitEthernet0/0/11 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/11 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/11 port-isolate enable group 1 # interface GigabitEthernet0/0/12 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/12 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/12 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/13 auto speed 100 port link-type access port default vlan 29 traffic-filter inbound acl name acl4intGigabitEthernet0/0/13 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/13 qos lr outbound cir 20000 cbs 65535 qos lr inbound cir 20000 cbs 65535 # interface GigabitEthernet0/0/14 auto speed 100 port link-type access port default vlan 29 traffic-filter inbound acl name acl4intGigabitEthernet0/0/14 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/14 qos lr outbound cir 20000 cbs 65535 qos lr inbound cir 20000 cbs 65535 # interface GigabitEthernet0/0/15 auto speed 100 port link-type access port default vlan 28 traffic-filter inbound acl name acl4intGigabitEthernet0/0/15 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/15 port-isolate enable group 1 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/16 shutdown port link-type access port default vlan 30 # interface GigabitEthernet0/0/17 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/17 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/17 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/18 port link-type access port default vlan 28 traffic-filter inbound acl name acl4intGigabitEthernet0/0/18 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/18 port-isolate enable group 1 # interface GigabitEthernet0/0/19 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/19 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/19 port-isolate enable group 1 # interface GigabitEthernet0/0/20 shutdown port link-type access port default vlan 29 port-isolate enable group 1 # interface GigabitEthernet0/0/21 shutdown port link-type access port default vlan 30 port-isolate enable group 1 # interface GigabitEthernet0/0/22 shutdown port link-type access port default vlan 30 port-isolate enable group 1 # interface GigabitEthernet0/0/23 shutdown port link-type access port default vlan 30 port-isolate enable group 1 # interface GigabitEthernet0/0/24 shutdown port link-type access port default vlan 29 port-isolate enable group 1 # interface GigabitEthernet0/0/25 shutdown port link-type access port default vlan 30 port-isolate enable group 1 # interface GigabitEthernet0/0/26 auto speed 100 auto duplex full port link-type access port default vlan 29 traffic-filter inbound acl name acl4intGigabitEthernet0/0/26 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/26 port-isolate enable group 1 qos lr outbound cir 20000 cbs 65535 qos lr inbound cir 20000 cbs 65535 # interface GigabitEthernet0/0/27 auto speed 100 port link-type access port default vlan 28 traffic-filter inbound acl name acl4intGigabitEthernet0/0/27 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/27 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/28 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/28 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/28 port-isolate enable group 1 # interface GigabitEthernet0/0/29 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/29 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/29 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/30 auto speed 100 port link-type access port default vlan 29 traffic-filter inbound acl name acl4intGigabitEthernet0/0/30 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/30 qos lr outbound cir 20000 cbs 65535 qos lr inbound cir 20000 cbs 65535 # interface GigabitEthernet0/0/31 port link-type access port default vlan 28 traffic-filter inbound acl name acl4intGigabitEthernet0/0/31 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/31 port-isolate enable group 1 # interface GigabitEthernet0/0/32 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/32 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/32 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/33 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/33 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/33 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/34 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/34 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/34 port-isolate enable group 1 # interface GigabitEthernet0/0/35 shutdown port link-type access port default vlan 30 port-isolate enable group 1 # interface GigabitEthernet0/0/36 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/36 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/36 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/37 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/37 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/37 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/38 auto speed 100 port link-type access port default vlan 28 traffic-filter inbound acl name acl4intGigabitEthernet0/0/38 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/38 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/39 shutdown port link-type access port default vlan 30 port-isolate enable group 1 # interface GigabitEthernet0/0/40 shutdown port link-type access port default vlan 30 # interface GigabitEthernet0/0/41 shutdown port link-type access port default vlan 30 # interface GigabitEthernet0/0/42 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/42 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/42 port-isolate enable group 1 qos lr outbound cir 50000 cbs 65535 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/43 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/43 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/43 qos lr inbound cir 50000 cbs 65535 # interface GigabitEthernet0/0/44 auto speed 100 port link-type access port default vlan 30 traffic-filter inbound acl name acl4intGigabitEthernet0/0/44 traffic-filter outbound acl name acl4outintGigabitEthernet0/0/44 port-isolate enable group 1 qos lr outbound cir 100000 cbs 65535 qos lr inbound cir 100000 cbs 65535 # interface GigabitEthernet0/0/45 port trunk pvid vlan 30 port default vlan 30 # interface GigabitEthernet0/0/46 port trunk pvid vlan 30 port default vlan 30 # interface GigabitEthernet0/0/47 port trunk pvid vlan 30 port default vlan 30 # interface GigabitEthernet0/0/48 # interface XGigabitEthernet0/0/1 port default vlan 30 # interface XGigabitEthernet0/0/2 port default vlan 30 # interface XGigabitEthernet0/0/3 description lag16 eth-trunk 16 # interface XGigabitEthernet0/0/4 description lag16 eth-trunk 16 # interface NULL0 # undo icmp name timestamp-request receive # ip route-static 0.0.0.0 0.0.0.0 10.0.19.254 # snmp-agent snmp-agent local-engineid 800007DB03FC1BD1D88551 snmp-agent community read cipher %^%#j63{6=pT%9EvG8=V32|YQqSWLVNkI3$jGFN~YMu3]gg)PS&f;XB3Y/Jl