# version 5.20.99, Release 2220P02 # sysname HP # clock timezone Taipei add 08:00:00 # irf mac-address persistent timer irf auto-update enable undo irf link-delay irf member 1 priority 32 irf member 2 priority 30 # domain default enable system # telnet server enable # loopback-detection enable loopback-detection interval-time 15 # password-recovery enable # acl number 3000 name Wireless rule 0 permit ip source 192.168.1.30 0 destination 192.168.1.4 0 rule 5 permit ip source 192.168.1.30 0 destination 192.168.1.6 0 rule 10 deny ip source 192.168.1.30 0 destination 192.168.0.0 0.0.255.255 rule 15 permit ip source 192.168.1.30 0 rule 18 permit ip source 192.168.1.28 0 destination 192.168.1.4 0 rule 19 permit ip source 192.168.1.28 0 destination 192.168.1.6 0 rule 20 deny ip source 192.168.1.28 0 destination 192.168.0.0 0.0.255.255 rule 21 permit ip source 192.168.1.28 0 rule 23 permit ip source 192.168.1.31 0 destination 192.168.1.4 0 rule 24 permit ip source 192.168.1.31 0 destination 192.168.1.6 0 rule 25 deny ip source 192.168.1.31 0 destination 192.168.0.0 0.0.255.255 rule 26 permit ip source 192.168.1.31 0 # acl number 4001 description Block Mac table # vlan 1 # vlan 10 # vlan 99 to 100 # radius scheme system primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domain # domain system access-limit disable state active idle-cut disable self-service-url disable # user-group system group-attribute allow-guest # local-user admin password cipher $c$3$e7perW9GGBC+9j7qcut2e+Bw/xqCmdQrIXCOpt4= authorization-attribute level 3 service-type ssh telnet terminal service-type ftp service-type web local-user manager password cipher $c$3$nmBMe/uKDpkC4Xtv6LT2J38neyfbe5mbt0I= authorization-attribute level 2 service-type ssh telnet terminal service-type web local-user monitor password cipher $c$3$xwQerkLRnNejWOuUGcohWGTHEy1XXTdPZwc= authorization-attribute level 1 service-type ssh telnet terminal service-type web # interface Bridge-Aggregation1 # interface Bridge-Aggregation2 # interface Bridge-Aggregation4 link-aggregation mode dynamic # interface Bridge-Aggregation5 link-aggregation mode dynamic # interface Bridge-Aggregation6 link-aggregation mode dynamic # interface Bridge-Aggregation7 link-aggregation mode dynamic # interface Bridge-Aggregation8 link-aggregation mode dynamic # interface Bridge-Aggregation9 link-aggregation mode dynamic # interface Bridge-Aggregation10 link-aggregation mode dynamic # interface Bridge-Aggregation101 port access vlan 100 # interface NULL0 # interface Vlan-interface1 ip address dhcp-alloc client-identifier mac Vlan-interface1 # interface Vlan-interface10 ip address 192.168.10.254 255.255.255.0 # interface Vlan-interface100 ip address 192.168.0.254 255.255.255.0 ip address 192.168.1.254 255.255.255.0 sub ip address 192.168.2.254 255.255.255.0 sub ip address 192.168.4.254 255.255.255.0 sub ip address 192.168.11.254 255.255.255.0 sub packet-filter name Wireless inbound packet-filter 4001 inbound # interface GigabitEthernet1/0/1 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/2 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/3 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/4 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/5 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/6 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/7 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/8 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/9 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/10 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/11 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/12 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/13 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/14 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/15 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/16 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/17 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/18 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/19 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/20 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/21 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/22 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/23 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/24 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet1/0/25 port link-mode bridge shutdown # interface GigabitEthernet1/0/26 port link-mode bridge shutdown # interface GigabitEthernet1/0/27 port link-mode bridge shutdown # interface GigabitEthernet1/0/28 port link-mode bridge shutdown # interface GigabitEthernet2/0/1 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/2 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/3 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/4 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/5 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/6 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/7 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/8 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/9 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/10 port link-mode bridge port access vlan 10 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/11 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/12 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/13 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/14 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/15 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/16 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/17 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/18 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/19 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/20 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/21 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/22 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/23 port link-mode bridge port access vlan 100 loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/24 port link-mode bridge port access vlan 100 shutdown loopback-detection enable loopback-detection action semi-block # interface GigabitEthernet2/0/25 port link-mode bridge shutdown # interface GigabitEthernet2/0/26 port link-mode bridge # interface GigabitEthernet2/0/27 port link-mode bridge shutdown # interface GigabitEthernet2/0/28 port link-mode bridge shutdown # interface Ten-GigabitEthernet1/2/1 port link-mode bridge port access vlan 100 port link-aggregation group 101 # interface Ten-GigabitEthernet1/2/2 port link-mode bridge port access vlan 100 port link-aggregation group 101 # interface Ten-GigabitEthernet2/2/1 port link-mode bridge port access vlan 100 port link-aggregation group 101 # interface Ten-GigabitEthernet2/2/2 port link-mode bridge port access vlan 100 port link-aggregation group 101 # interface Ten-GigabitEthernet1/1/1 # interface Ten-GigabitEthernet1/1/2 # interface Ten-GigabitEthernet2/1/1 # interface Ten-GigabitEthernet2/1/2 # nqa entry imclinktopologypleaseignore ping type icmp-echo destination ip 192.168.1.253 frequency 270000 # ip route-static 0.0.0.0 0.0.0.0 192.168.10.253 ip route-static 192.168.3.0 255.255.255.0 192.168.1.248 ip route-static 192.168.5.0 255.255.255.0 192.168.1.248 # info-center loghost 192.168.0.34 info-center security-logfile enable # snmp-agent snmp-agent local-engineid 800063A203B8AF67FB4E39 snmp-agent community read public snmp-agent community write private snmp-agent sys-info contact KAO8 snmp-agent sys-info location Ding snmp-agent sys-info version all snmp-agent target-host trap address udp-domain 192.168.0.57 params securityname public v2c # nqa schedule imclinktopologypleaseignore ping start-time now lifetime 630720000 # ntp-service source-interface Vlan-interface100 ntp-service unicast-server 192.168.1.1 ntp-service unicast-server 192.168.1.2 # arp anti-attack source-mac filter # telnet client source ip 192.168.1.247 # load xml-configuration # load tr069-configuration # user-interface aux 0 1 user-interface vty 0 4 authentication-mode scheme user-interface vty 5 15 # irf-port 1/1 port group interface Ten-GigabitEthernet1/1/1 mode normal # irf-port 1/2 port group interface Ten-GigabitEthernet1/1/2 mode normal # irf-port 2/1 port group interface Ten-GigabitEthernet2/1/1 mode normal # irf-port 2/2 port group interface Ten-GigabitEthernet2/1/2 mode normal # return