rtr1401700#sh run building configuration... current configuration : 8987 bytes ! ! last configuration change at 18:18:37 ind_wst wed apr 26 2006 by admin ! nvram config last updated at 18:27:20 ind_wst wed apr 26 2006 by admin ! version 12.3 service nagle no service pad service tcp-keepalives-in service tcp-keepalives-out service timestamps debug datetime msec service timestamps log datetime msec localtime show-timezone service password-encryption service compress-config no service dhcp ! hostname rtr1401700 ! boot-start-marker boot system flash:c1700-adventerprisek9-mz.123-16a.bin boot system flash:c1700-bk9no3r2sv8y7-mz.122-13.zh2.bin boot-end-marker ! logging buffered 16384 debugging no logging console enable secret 5 $1$blja$tnwnsqtzdlzbtckghilop0 enable password 7 01100f175804 ! clock timezone ind_wst 7 mmi polling-interval 60 no mmi auto-configure no mmi pvc mmi snmp-timeout 180 aaa new-model ! ! aaa authentication login default group tacacs+ local-case aaa authorization config-commands aaa authorization exec default group tacacs+ local if-authenticated aaa authorization commands 15 default group tacacs+ local if-authenticated aaa accounting exec default start-stop group tacacs+ aaa accounting commands 15 default start-stop group tacacs+ aaa session-id common ip subnet-zero no ip source-route ip cef ! ! ! ip tftp source-interface loopback0 no ip bootp server no ip domain lookup ip domain name bankmandiri.co.id ip audit po max-events 100 !
! ! ! ! ! ! ! ! ! ! ! username mandiri password 7 1511021f0725 ! ! class-map match-any ip_critical match access-group name ip-critical ! ! policy-map mark_packets class ip_critical set precedence 5 class class-default set precedence 0 policy-map pol1 class class-default fair-queue random-detect ! ! ! ! ! ! interface loopback0 description loopback for remote-management ip address 10.141.200.22 255.255.255.255 ! interface loopback1 description loopback for h323 voice source no ip address ! interface loopback10 description loopback simulating branch iptelephony network no ip address ! interface null0 no ip unreachables ! interface fastethernet0/0 description connection to lan sby univ widya mandala ip address 10.141.22.1 255.255.255.0 speed auto ! interface serial0/0 description frame relay connection to hq no ip address encapsulation frame-relay logging event subif-link-status
logging event dlci-status-change no fair-queue frame-relay traffic-shaping frame-relay lmi-type ansi
! interface serial0/0.1 point-to-point description frame relay tlk 64/32 bandwidth 64 ip address 10.141.201.44 255.255.255.254 no ip unreachables frame-relay class frts-32cir frame-relay interface-dlci 291 ! interface serial0/1 no ip address encapsulation frame-relay logging event dlci-status-change shutdown no fair-queue ! interface serial0/1.1 point-to-point no ip unreachables ! router bgp 64573 no synchronization bgp log-neighbor-changes network 10.141.22.0 mask 255.255.255.0 network 10.141.200.22 mask 255.255.255.255 neighbor 10.141.201.45 remote-as 64555 neighbor 10.141.201.45 timers 20 60 neighbor 10.141.201.45 prefix-list data-net out neighbor 10.141.201.45 route-map data-in in neighbor 218.34.51.236 remote-as 65535 neighbor 218.34.51.236 timers 20 60 neighbor 218.34.51.236 route-map voice-in in neighbor 218.34.51.236 route-map voice-out out no auto-summary ! ip classless ip route 10.204.10.0 255.255.255.0 null0 200 ! ip bgp-community new-format ip community-list 1 permit 64555:200 ip community-list 2 permit 64555:100 no ip http server ip http authentication local no ip http secure-server ip tacacs source-interface loopback0 ! ip access-list extended ip-critical permit tcp any host 10.204.4.17 permit tcp any host 10.204.4.18 permit tcp any host 10.204.4.24 permit tcp any host 10.204.4.25 --more-permit tcp any host 10.204.4.26 permit tcp host 10.204.4.17 any permit tcp host 10.204.4.18 any
permit tcp host 10.204.4.24 any permit tcp host 10.204.4.25 any permit tcp host 10.204.4.26 any ip access-list extended voip-control permit tcp any 10.204.10.0 0.0.0.255 eq 1720 permit tcp any 10.204.10.0 0.0.0.255 range 11000 11999 permit udp any 10.204.10.0 0.0.0.255 eq 2427 permit tcp any 10.204.10.0 0.0.0.255 eq 2428 permit tcp 10.204.10.0 0.0.0.255 eq 1720 any permit tcp 10.204.10.0 0.0.0.255 range 11000 11999 any permit udp 10.204.10.0 0.0.0.255 eq 2427 any permit tcp 10.204.10.0 0.0.0.255 eq 2428 any permit icmp any host 10.204.9.51 permit icmp any host 10.204.9.52 permit tcp any eq telnet 10.204.1.0 0.0.0.255 permit udp any eq snmp host 10.204.9.51 permit udp any eq snmp host 10.204.9.52 permit udp any eq snmp host 10.204.9.22 ip access-list extended voip-data permit udp any any range 16384 32767 permit udp any range 16384 32767 any ! ! ip prefix-list data-net seq 10 permit 10.141.22.0/24 ip prefix-list data-net seq 20 permit 10.141.200.22/32 ! ip prefix-list default seq 10 permit 0.0.0.0/0 ! ip prefix-list default-prefix seq 10 permit 0.0.0.0/0 ! ip prefix-list voice-net seq 10 permit 10.141.122.0/24 ip prefix-list voice-net seq 20 permit 10.141.200.122/32 ! map-class frame-relay frts-32cir frame-relay end-to-end keepalive mode bidirectional frame-relay cir 30400 frame-relay bc 4000 frame-relay be 0 service-policy output pol1 ! map-class frame-relay frts_class frame-relay end-to-end keepalive mode bidirectional frame-relay cir 64000 frame-relay bc 8000 frame-relay be 8000 frame-relay mincir 32000 frame-relay adaptive-shaping becn service-policy output fr_policy logging trap debugging logging source-interface loopback0 logging 10.204.9.21 logging 10.204.9.22 access-list 10 permit 10.204.9.27 access-list 10 permit 10.204.9.20 access-list 10 permit 10.204.9.55 access-list 10 permit 10.204.9.52 access-list 10 permit 10.204.9.51 access-list 11 permit 10.204.9.25
access-list 11 permit 10.204.9.22 access-list 21 permit 10.141.22.0 0.0.0.255 access-list 21 permit 10.141.201.44 0.0.0.1 access-list 21 permit 10.204.1.0 0.0.0.255 access-list 21 permit 10.205.1.0 0.0.0.255 access-list 21 permit 10.204.9.0 0.0.0.255 access-list 21 permit 10.204.12.0 0.0.1.255 access-list 21 permit 10.204.16.0 0.0.0.255 access-list 21 permit 10.204.17.0 0.0.0.255 access-list 21 permit 10.254.1.0 0.0.0.255 access-list 21 permit 10.254.12.0 0.0.0.255 --more-access-list 21 permit 10.204.16.0 0.0.0.255 access-list 21 permit 10.204.17.0 0.0.0.255 access-list 21 permit 10.254.1.0 0.0.0.255 access-list 21 permit 10.254.12.0 0.0.0.255 access-list 21 permit 10.204.4.0 0.0.0.255 ! route-map internet permit 10 ! route-map voice-out permit 10 match ip address prefix-list data-net set as-path prepend 64573 64573 64573 ! route-map voice-out permit 20 match ip address prefix-list voice-net ! route-map data-in permit 10 match community 1 ! route-map data-callsetup permit 10 match community 1 ! route-map voice-in permit 10 match ip address prefix-list default-prefix match community 2 ! route-map default permit 10 match ip address prefix-list default match community 2 ! snmp-server community public ro snmp-server community mandirinet rw 11 snmp-server community nms_mandiri ro 10 snmp-server trap-source loopback0 snmp-server location plaza mandiri snmp-server contact it operation snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart snmp-server enable traps config-copy snmp-server enable traps config snmp-server enable traps frame-relay snmp-server enable traps frame-relay subif snmp-server host 10.204.9.22 mandirinet snmp-server host 10.204.9.25 mandirinet snmp-server host 10.204.9.20 nms_mandiri snmp-server host 10.204.9.27 nms_mandiri snmp-server host 10.204.9.51 nms_mandiri snmp-server host 10.204.9.52 nms_mandiri
snmp-server host 10.204.9.55 nms_mandiri snmp-server host 10.204.4.151 public tacacs-server host 10.204.9.21 tacacs-server directed-request tacacs-server key 7 04560a151b245e1a5c4f ! ! dial-peer cor custom ! ! ! banner login ^cauthorized access only! disconnect immediately if you are not an authorized user! there is a default user name and password . you must change it immediately ^c banner motd ^c ************************************************************** * this system is the property of bank mandiri tbk. * * * * access is restricted to authorized person only * * unauthorized access is prohibited * * all unauthorized attempt to access this system will be * * logged and investigated. * * violators will be prosecuted in conformance with local law * ************************************************************** ^c ! line con 0 privilege level 15 password 7 045802150c2e logging synchronous line aux 0 line vty 0 4 access-class 21 in exec-timeout 5 0 privilege level 15 password 7 060506324f41 logging synchronous transport input telnet ssh line vty 5 15 access-class 21 in exec-timeout 5 0 privilege level 15 password 7 060506324f41 logging synchronous transport input telnet ssh ! scheduler interval 500 ntp clock-period 17207667 ntp source loopback0 ntp server 10.204.20.20 ntp server 10.141.201.45 end rtr1401700# rtr1401700#sh frame-relay pvc 291
pvc statistics for interface serial0/0 (frame relay dte) dlci = 291, dlci usage = local, pvc status = active (eek up), interface = serial 0/0.1 input pkts 13030087 output pkts 13499902 in bytes 1191738974 out bytes 1663540653 dropped pkts 0 in pkts dropped 0 out pkts dropped 0 out bytes dropped 0 in fecn pkts 5819 in becn pkts 69 out fecn pkts 0 out becn pkts 0 in de pkts 1481254 out de pkts 0 out bcast pkts 214263 out bcast bytes 80562888 5 minute input rate 0 bits/sec, 0 packets/sec 5 minute output rate 0 bits/sec, 0 packets/sec pvc create time 25w4d, last time pvc status changed 00:20:57 cir 30400 bc 4000 be 0 byte limit 500 interval 131 mincir 15200 byte increment 497 adaptive shaping none pkts 16216480 bytes 1995387407 pkts delayed 709124 bytes delayed 326814571 shaping active traffic shaping drops 0 service policy pol1 serial0/0.1: dlci 291 service-policy output: pol1 class-map: class-default (match-any) 16216481 packets, 1995390115 bytes 5 minute offered rate 0 bps, drop rate 0 bps match: any queueing flow based fair queueing maximum number of hashed queues 16 (total queued/total drops/no-buffer drops) 0/0/0 exponential weight: 9 class 0 1 2 3 4 5 6 7 rsvp
transmitted random drop pkts/bytes pkts/bytes 14047096/1876627077 0/0 0/0 0/0 0/0 0/0 0/0 0/0 0/0 0/0 70386/6753536 0/0 2099006/112011363 0/0 0/0 0/0 0/0 0/0
tail drop pkts/bytes 0/0 0/0 0/0 0/0 0/0 0/0 0/0 0/0 0/0
output queue size 0/max total 600/drops 0 rtr1401700# rtr1401700#sh int s0/0.1 serial0/0.1 is up, line protocol is up hardware is powerquicc serial description: frame relay tlk 64/32 internet address is 10.141.201.44/31 mtu 1500 bytes, bw 64 kbit, dly 20000 usec, reliability 255/255, txload 1/255, rxload 1/255 encapsulation frame-relay last clearing of "show interface" counters never
minimum maximum thresh thresh 20 40 22 40 24 40 26 40 28 40 30 40 32 40 34 40 36 40
mark prob 1/10 1/10 1/10 1/10 1/10 1/10 1/10 1/10 1/10
rtr1401700#sh int s0/0 serial0/0 is up, line protocol is up hardware is powerquicc serial description: frame relay connection to hq mtu 1500 bytes, bw 1544 kbit, dly 20000 usec, reliability 255/255, txload 1/255, rxload 1/255 encapsulation frame-relay, loopback not set keepalive set (10 sec) lmi enq sent 1549863, lmi stat recvd 1547522, lmi upd recvd 0, dte lmi up lmi enq recvd 0, lmi stat sent 0, lmi upd sent 0 lmi dlci 0 lmi type is ansi annex d frame relay dte fr svc disabled, lapf state down broadcast queue 0/64, broadcasts sent/dropped 214265/0, interface broadcasts 0 last input 00:00:00, output 00:00:00, output hang never last clearing of "show interface" counters 25w4d input queue: 0/75/0/0 (size/max/drops/flushes); total output drops: 3 queueing strategy: fifo output queue: 0/40 (size/max) 5 minute input rate 1000 bits/sec, 3 packets/sec 5 minute output rate 1000 bits/sec, 2 packets/sec 17087257 packets input, 2275987060 bytes, 0 no buffer received 0 broadcasts, 0 runts, 0 giants, 0 throttles 117 input errors, 1 crc, 81 frame, 0 overrun, 0 ignored, 35 abort 17766516 packets output, 2017108343 bytes, 0 underruns 0 output errors, 0 collisions, 1083 interface resets 0 output buffer failures, 0 output buffers swapped out 88 carrier transitions dcd=up dsr=up dtr=up rts=up cts=up