# DEBUG
# STORM
# LOOP_DETECT
enable loopdetect
config loopdetect ports 1-16 state enable
config loopdetect trap loop_detected
# GM
# GM_H
# MIRROR
# QOS
# SYSLOG
# TRAF-SEGMENTATION
config traffic_segmentation 1-16,18 forward_list 17
# SSL
# PORT
config ports 3,11 state disable
# SFLOW
# OAM
# DDM
# MANAGEMENT
create trusted_host network 10.77.0.0/16 snmp telnet ssh http https ping
enable snmp
# TRAP
# TR
# IGMP_MULTICAST_VLAN
# VLAN
config vlan default delete 1-18
config vlan default advertisement disable
create vlan VLAN148 tag 148
config vlan VLAN148 add tagged 17-18
config vlan VLAN148 add untagged 1,3,5-6,8-9,11-13 advertisement disable
create vlan user tag 235
config vlan user add tagged 17-18
config vlan user add untagged 2,4,7,10,14-16 advertisement disable
create vlan core tag 777
config vlan core add tagged 17-18 advertisement disable
config port_vlan 1,3,5-6,8-9,11-13 gvrp_state disable ingress_checking enable acceptable_frame admit_all pvid 148
config port_vlan 2,4,7,10,14-16 gvrp_state disable ingress_checking enable acceptable_frame admit_all pvid 235
# PORT_SECURITY
# ACL
#CPU Interface Filter
# PROTOCOL_VLAN
# QINQ
# 8021X
# GUEST_VLAN
# NLB
# FDB
# ADDRBIND
config address_binding dhcp_snoop max_entry ports 2 limit 2
config address_binding dhcp_snoop max_entry ports 4 limit 2
config address_binding dhcp_snoop max_entry ports 7 limit 2
config address_binding dhcp_snoop max_entry ports 10 limit 2
config address_binding dhcp_snoop max_entry ports 13 limit 2
config address_binding dhcp_snoop max_entry ports 14 limit 2
config address_binding dhcp_snoop max_entry ports 15 limit 2
config address_binding dhcp_snoop max_entry ports 16 limit 2
config address_binding ip_mac ports 2,4,7,10,13-16 protocol ipv4
config address_binding ip_mac ports 2,4,7,10,14-16 ip_inspection enable
config address_binding ip_mac ports 2,4,7,10,14-16 arp_inspection strict
config address_binding ip_mac ports 2,4,7,10,13-16 allow_zeroip enable
enable address_binding dhcp_snoop
enable address_binding trap_log
disable address_binding roaming
# NetBiosFilter
config filter netbios 1-18 state enable
config filter extensive_netbios 1-18 state enable
# DoS
# RADIUS
# DhcpServerScreening
config filter dhcp_server ports 1 state enable
config filter dhcp_server ports 2 state enable
config filter dhcp_server ports 3 state enable
config filter dhcp_server ports 4 state enable
config filter dhcp_server ports 5 state enable
config filter dhcp_server ports 6 state enable
config filter dhcp_server ports 7 state enable
config filter dhcp_server ports 8 state enable
config filter dhcp_server ports 9 state enable
config filter dhcp_server ports 10 state enable
config filter dhcp_server ports 11 state enable
config filter dhcp_server ports 12 state enable
config filter dhcp_server ports 13 state enable
config filter dhcp_server ports 14 state enable
config filter dhcp_server ports 15 state enable
config filter dhcp_server ports 16 state enable
config filter dhcp_server trap_log enable
# PPPoE
# sRED
# ARPSpoofingPrevention
# MAC_ADDRESS_TABLE_NOTIFICATION
# STP
config stp fbpdu disable
config stp ports 1-18 fbpdu disable
config stp mst_config_id name EC:22:80:23:5A:50 revision_level 0
# L2PT
# BPDU_PROTECTION
# SAFEGUARD_ENGINE
config safeguard_engine state enable utilization rising 100 falling 80 trap_log enable
# CPUPROTECT
# BANNER_PROMP
# SSH
config ssh user zdan authmode password
config ssh user zeleniy authmode password
# TELNETS
# BCPING
# SMTP
# SNTP
config time_zone operator + hour 3 min 0
enable sntp
config sntp poll-interval 30
config sntp primary 10.77.0.6
config sntp secondary 10.77.0.5
# MULTICAST_FILTER
# LACP
# IP
config ipif System ipaddress 10.77.78.121/16
config ipif System vlan core
# SNMPv3
config snmp engineID 800000ab03ec2280235a50
# VOICEVLAN
# ERPS
config erps version g.8032v1
# FLEX_LINK
# CFM
# LLDP
# MAC-based_Access_Control
# MCFILTER
config multicast vlan_filtering_mode vlanid 1 filter_unregistered_groups
config multicast vlan_filtering_mode vlanid 148 filter_unregistered_groups
config multicast vlan_filtering_mode vlanid 235 filter_unregistered_groups
config multicast vlan_filtering_mode vlanid 777 filter_unregistered_groups
# COMPOUND_AUTHENTICATION
# LLDP-MED
# IGMP_SNOOPING
# MLDSNP
# ACCESS_AUTHENTICATION_CONTROL
# DHCP_LOCAL_RELAY
# AAA_LOCAL_ENABLE_PASSWORD
config admin local_enable encrypt sha_1 *@&2jmj7l5rSw0yVb/vlWAYkK/YBwmwMs6D
# DHCP_RELAY
enable dhcp_relay
config dhcp_relay add ipif System 10.77.0.5
config dhcp_relay option_82 state enable
config dhcp_relay ports 1,3,5-6,8-9,11-13,17-18 state disable
# Firm
# NDP
# ARP
# SNP_AUTH
# ROUTE
create iproute default 10.77.0.254 1 primary
# DHCPV6_LOCAL_RELAY
# RELAY6
#-------------------------------------------------------------------
# End of configuration file for DES-3200-18
#-------------------------------------------------------------------