#-------------------------------------------------------------------------------
#                      DGS-3627G Gigabit Ethernet Switch
#                                Configuration
#
#                           Firmware: Build 2.87.B10
#           Copyright(C) 2010 D-Link Corporation. All rights reserved.
#-------------------------------------------------------------------------------
 
# STACK
config stacking force_master_role state disable
# DOUBLE_VLAN
disable double_vlan
# BASIC
# ACCOUNT LIST
# ACCOUNT END
# PASSWORD ENCRYPTION
disable password encryption 
config serial_port auto_logout 10_minutes
enable telnet 23
enable web 80
enable clipaging
enable password_recovery
# DEBUG
debug config state disable
debug config error_reboot enable
# STORM
config traffic control auto_recover_time 0
config traffic trap none
config traffic control  1-17,19-20 broadcast enable multicast disable unicast disable action drop threshold 256 countdown 0 time_interval 5
config traffic control  18,21-27 broadcast disable multicast disable unicast disable action drop threshold 131072 countdown 0 time_interval 5
# LOOP_DETECT
config loopdetect ports 1-17,19-20 state enabled
# GM
config sim candidate
disable sim
config sim dp_interval 30
config sim hold_time 100
# GM_H
# SYSLOG
disable syslog
config system_severity log information
config system_severity trap information
config log_save_timing on_demand
# QOS
enable hol_prevention
config dscp trust all state disable
config dscp map dscp_dscp 0 to 0 
config dscp map dscp_dscp 1 to 1 
config dscp map dscp_dscp 2 to 2 
config dscp map dscp_dscp 3 to 3 
config dscp map dscp_dscp 4 to 4 
config dscp map dscp_dscp 5 to 5 
config dscp map dscp_dscp 6 to 6 
config dscp map dscp_dscp 7 to 7 
config dscp map dscp_dscp 8 to 8 
config dscp map dscp_dscp 9 to 9 
config dscp map dscp_dscp 10 to 10 
config dscp map dscp_dscp 11 to 11 
config dscp map dscp_dscp 12 to 12 
config dscp map dscp_dscp 13 to 13 
config dscp map dscp_dscp 14 to 14 
config dscp map dscp_dscp 15 to 15 
config dscp map dscp_dscp 16 to 16 
config dscp map dscp_dscp 17 to 17 
config dscp map dscp_dscp 18 to 18 
config dscp map dscp_dscp 19 to 19 
config dscp map dscp_dscp 20 to 20 
config dscp map dscp_dscp 21 to 21 
config dscp map dscp_dscp 22 to 22 
config dscp map dscp_dscp 23 to 23 
config dscp map dscp_dscp 24 to 24 
config dscp map dscp_dscp 25 to 25 
config dscp map dscp_dscp 26 to 26 
config dscp map dscp_dscp 27 to 27 
config dscp map dscp_dscp 28 to 28 
config dscp map dscp_dscp 29 to 29 
config dscp map dscp_dscp 30 to 30 
config dscp map dscp_dscp 31 to 31 
config dscp map dscp_dscp 32 to 32 
config dscp map dscp_dscp 33 to 33 
config dscp map dscp_dscp 34 to 34 
config dscp map dscp_dscp 35 to 35 
config dscp map dscp_dscp 36 to 36 
config dscp map dscp_dscp 37 to 37 
config dscp map dscp_dscp 38 to 38 
config dscp map dscp_dscp 39 to 39 
config dscp map dscp_dscp 40 to 40 
config dscp map dscp_dscp 41 to 41 
config dscp map dscp_dscp 42 to 42 
config dscp map dscp_dscp 43 to 43 
config dscp map dscp_dscp 44 to 44 
config dscp map dscp_dscp 45 to 45 
config dscp map dscp_dscp 46 to 46 
config dscp map dscp_dscp 47 to 47 
config dscp map dscp_dscp 48 to 48 
config dscp map dscp_dscp 49 to 49 
config dscp map dscp_dscp 50 to 50 
config dscp map dscp_dscp 51 to 51 
config dscp map dscp_dscp 52 to 52 
config dscp map dscp_dscp 53 to 53 
config dscp map dscp_dscp 54 to 54 
config dscp map dscp_dscp 55 to 55 
config dscp map dscp_dscp 56 to 56 
config dscp map dscp_dscp 57 to 57 
config dscp map dscp_dscp 58 to 58 
config dscp map dscp_dscp 59 to 59 
config dscp map dscp_dscp 60 to 60 
config dscp map dscp_dscp 61 to 61 
config dscp map dscp_dscp 62 to 62 
config dscp map dscp_dscp 63 to 63 
config dscp map dscp_priority 0-7 to 0
config dscp map dscp_priority 8-15 to 1
config dscp map dscp_priority 16-23 to 2
config dscp map dscp_priority 24-31 to 3
config dscp map dscp_priority 32-39 to 4
config dscp map dscp_priority 40-47 to 5
config dscp map dscp_priority 48-55 to 6
config dscp map dscp_priority 56-63 to 7
config 802.1p default_priority 1-27 0
config bandwidth_control 1-27 rx_rate no_limit tx_rate no_limit
config per_queue bandwidth_control ports 1-27 0 min_rate  no_limit  max_rate no_limit
config per_queue bandwidth_control ports 1-27 1 min_rate  no_limit  max_rate no_limit
config per_queue bandwidth_control ports 1-27 2 min_rate  no_limit  max_rate no_limit
config per_queue bandwidth_control ports 1-27 3 min_rate  no_limit  max_rate no_limit
config per_queue bandwidth_control ports 1-27 4 min_rate  no_limit  max_rate no_limit
config per_queue bandwidth_control ports 1-27 5 min_rate  no_limit  max_rate no_limit
config per_queue bandwidth_control ports 1-27 6 min_rate  no_limit  max_rate no_limit
config scheduling_mechanism ports 1-27 strict
config scheduling ports 1-27 0  max_packet  1
config scheduling ports 1-27 1  max_packet  2
config scheduling ports 1-27 2  max_packet  3
config scheduling ports 1-27 3  max_packet  4
config scheduling ports 1-27 4  max_packet  5
config scheduling ports 1-27 5  max_packet  6
config scheduling ports 1-27 6  max_packet  7
config 802.1p user_priority ports 1-27 0  2
config 802.1p user_priority ports 1-27 1  0
config 802.1p user_priority ports 1-27 2  1
config 802.1p user_priority ports 1-27 3  3
config 802.1p user_priority ports 1-27 4  4
config 802.1p user_priority ports 1-27 5  5
config 802.1p user_priority ports 1-27 6  6
config 802.1p user_priority ports 1-27 7  6
# MIRROR
disable mirror
# TRAF-SEGMENTATION
config traffic_segmentation 1-27 forward_list all
# SSL
disable ssl 
enable ssl ciphersuite RSA_with_RC4_128_MD5 
enable ssl ciphersuite RSA_with_3DES_EDE_CBC_SHA 
enable ssl ciphersuite DHE_DSS_with_3DES_EDE_CBC_SHA 
enable ssl ciphersuite RSA_EXPORT_with_RC4_40_MD5 
config ssl cachetimeout 600 
# PORT
disable jumbo_frame
config jumbo_frame ports 1-27 state enable
config ports 1-20 speed auto capability_advertised 1000_full flow_control disable learning enable state enable
config ports 21-24 medium_type copper speed auto capability_advertised 10_half 10_full 100_half 100_full 1000_full flow_control disable learning enable state enable
config ports 21-24 medium_type fiber speed auto capability_advertised 1000_full flow_control disable learning enable state enable
config ports 25-27 speed auto  flow_control disable learning enable state enable
# OAM
# DDM
config ddm trap disable
config ddm log enable
config ddm ports 1-17,19-20,24-27 state enable shutdown none
config ddm ports 18,21-23 state disable shutdown none
config ddm ports 18 temperature_threshold high_alarm 90
# PORT_LOCK
config port_security ports 1-27 admin_state disable max_learning_addr 1 lock_address_mode DeleteOnReset
# SNMPv3
delete snmp community public
delete snmp community private
delete snmp user initial
delete snmp group initial
delete snmp group ReadGroup
delete snmp group WriteGroup
delete snmp view restricted all
delete snmp view CommunityView all
config snmp engineID 800000ab03001cf0200000
create snmp view restricted 1.3.6.1.2.1.1 view_type included
create snmp view restricted 1.3.6.1.2.1.11 view_type included
create snmp view restricted 1.3.6.1.6.3.10.2.1 view_type included
create snmp view restricted 1.3.6.1.6.3.11.2.1 view_type included
create snmp view restricted 1.3.6.1.6.3.15.1.1 view_type included
create snmp view luxtvcommunity 1 view_type included
create snmp view luxtvcommunity 1.3.6.1.6.3 view_type excluded
create snmp view luxtvcommunity 1.3.6.1.6.3.1 view_type included
create snmp group public v1 read_view CommunityView notify_view CommunityView 
create snmp group public v2c read_view CommunityView notify_view CommunityView 
create snmp group ReadLux v1 read_view luxtvcommunity notify_view luxtvcommunity 
create snmp group ReadLux v2c read_view luxtvcommunity notify_view luxtvcommunity 
create snmp group luxinit v3  noauth_nopriv read_view restricted notify_view restricted 
create snmp group private v1 read_view CommunityView write_view CommunityView notify_view CommunityView 
create snmp group private v2c read_view CommunityView write_view CommunityView notify_view CommunityView 
create snmp group WriteLux v1 read_view luxtvcommunity write_view luxtvcommunity notify_view luxtvcommunity 
create snmp group WriteLux v2c read_view luxtvcommunity write_view luxtvcommunity notify_view luxtvcommunity 
create snmp group luxpublic v1 read_view luxtvcommunity notify_view luxtvcommunity 
create snmp group luxpublic v2c read_view luxtvcommunity notify_view luxtvcommunity 
create snmp group traps_lux v1 read_view luxtvcommunity notify_view luxtvcommunity 
create snmp group traps_lux v2c read_view luxtvcommunity notify_view luxtvcommunity 
create snmp group luxprivate v1 read_view luxtvcommunity write_view luxtvcommunity notify_view luxtvcommunity 
create snmp group luxprivate v2c read_view luxtvcommunity write_view luxtvcommunity notify_view luxtvcommunity 
create snmp community luxprivate view luxtvcommunity read_write
create snmp community luxpublic view luxtvcommunity read_only
create snmp community traps_lux view luxtvcommunity read_only
create snmp user luxinit luxinit 
create snmp host 172.18.1.3 v2c  traps_lux 
create snmp host 172.18.1.42 v2c  traps_lux 
disable community_encryption
# MANAGEMENT
enable snmp traps 
enable snmp authenticate_traps 
enable snmp
enable snmp linkchange_traps 
disable rmon 
config snmp linkchange_traps ports 1-27 enable
# VLAN
enable pvid auto_assign
config vlan default delete 1-27
config vlan default advertisement enable
create vlan servers_vlan tag 99
config vlan servers_vlan add tagged 1-23,25
config vlan servers_vlan add untagged 26 advertisement disable
create vlan admin_vlan tag 100
config vlan admin_vlan add tagged 1-17,19-20,24-25 advertisement disable
create vlan IPTV_dest tag 201
config vlan IPTV_dest add tagged 1-17,19-20,24 advertisement disable
create vlan int_1 tag 301
config vlan int_1 add tagged 1-17,19-20,25 advertisement disable
create vlan int_2 tag 302
config vlan int_2 add tagged 1-17,19-20,25 advertisement disable
create vlan int_3 tag 303
config vlan int_3 add tagged 1-17,19-20,25 advertisement disable
create vlan int_4 tag 304
config vlan int_4 add tagged 1-17,19-20,25 advertisement disable
create vlan int_5 tag 305
config vlan int_5 add tagged 1-17,19-20,25 advertisement disable
create vlan int_6 tag 306
config vlan int_6 add tagged 1-17,19-20,25 advertisement disable
create vlan int_7 tag 307
config vlan int_7 add tagged 1-17,19-20,25 advertisement disable
create vlan int_8 tag 308
config vlan int_8 add tagged 1-17,19-20,25 advertisement disable
create vlan int_9 tag 309
config vlan int_9 add tagged 1-17,19-20,25 advertisement disable
create vlan int_10 tag 310
config vlan int_10 add tagged 1-17,19-20,25 advertisement disable
create vlan int_11 tag 311
config vlan int_11 add tagged 1-17,19-20,25 advertisement disable
create vlan int_12 tag 312
config vlan int_12 add tagged 1-17,19-20,25 advertisement disable
create vlan int_13 tag 313
config vlan int_13 add tagged 1-17,19-20,25 advertisement disable
create vlan cam tag 500
config vlan cam add tagged 1-17,19-20,24-25 advertisement disable
create vlan TV_cifra tag 999
config vlan TV_cifra add tagged 9,19 advertisement disable
create vlan gor_sud tag 3037
config vlan gor_sud add tagged 4 advertisement disable
create vlan domru tag 3307
config vlan domru add tagged 1-23 advertisement disable
create vlan domru1 tag 3308
config vlan domru1 add tagged 1-23 advertisement disable
create vlan domru2 tag 3309
config vlan domru2 add tagged 1-23 advertisement disable
create vlan domru3 tag 3310
config vlan domru3 add tagged 1-23 advertisement disable
disable qinq
disable gvrp
disable vlan_trunk
config gvrp 1-25,27 state disable ingress_checking enable acceptable_frame admit_all pvid 1
config gvrp 26 state disable ingress_checking enable acceptable_frame admit_all pvid 99
# PROTOCOL_VLAN
# QINQ
# SUBNETVLAN
config vlan_precedence port 1-27 mac_based_vlan 
# SUPERVLAN
# RSPAN
disable rspan
# MEF
# 8021X
disable 802.1x
config 802.1x auth_mode port_based
config 802.1x auth_protocol radius_eap
config 802.1x fwd_pdu system disable
config 802.1x max_users 4000
config 802.1x authorization network radius  enable
config 802.1x capability ports 1-27 none
config 802.1x auth_parameter ports 1-27 direction both port_control auto quiet_period 60 tx_period 30 supp_timeout 30 server_timeout 30 max_req 2 reauth_period 3600 enable_reauth disable 
config 802.1x auth_parameter ports 1-27 max_users 16 
# guestvlan
# TR
# ACL
create access_profile profile_id 1 ethernet vlan source_mac 04-18-D6-0C-E8-36 
disable cpu_interface_filtering 
# NLB
# LIMITED_MULTICAST_RANGE
create multicast_range CTC from 224.255.2.1 to 224.255.2.254 
create multicast_range IPTV from 239.255.200.1 to 239.255.200.254 
create multicast_range IPTV2 from 239.0.100.1 to 239.0.100.255 
create multicast_range IPTV3 from 239.255.201.1 to 239.255.201.254 
create multicast_range NEW from 224.255.1.1 to 224.255.1.254 
create multicast_range Ryb40 from 224.244.244.1 to 224.244.244.254 
# MULTICAST_VLAN
# FDB
config fdb aging_time 300
# ADDRBIND
config address_binding ip_mac ports 1-27 forward_dhcppkt enable
disable address_binding dhcp_snoop
disable address_binding dhcp_snoop ipv6
disable address_binding nd_snoop
disable address_binding trap_log
config address_binding dhcp_snoop max_entry ports 1-27 limit no_limit
# DHCPV6_SNOOPING
# ND_SNOOPING
# DhcpServerScreening
config filter dhcp_server port all state disable
config filter dhcp_server illegal_server_log_suppress_duration 5min
config filter dhcp_server trap_log disable
# ARPSpoofingPrevention
# MAC_ADDRESS_TABLE_NOTIFICATION
disable mac_notification
config mac_notification interval 1 historysize 1
config mac_notification ports 1-27 disable
# STP
config stp version rstp
config stp maxage 20 maxhops 20 forwarddelay 15 txholdcount 6 fbpdu disable hellotime 2 lbd enable lbd_recover_timer 60 nni_bpdu_addr dot1ad
config stp priority 32768 instance_id 0 
config stp mst_config_id name 00:1E:58:57:8F:00 revision_level 0
disable stp
config stp ports 1-27 externalCost auto  edge false p2p auto state enable restricted_role false restricted_tcn false lbd disable
config stp mst_ports 1-27 instance_id 0 internalCost auto priority 128
config stp ports 1-27 fbpdu disable
# BPDU_TUNNEL
config bpdu_tunnel ports all type none
disable bpdu_tunnel
# BPDU_PROTECTION
config bpdu_protection ports 1-27 mode shutdown
# SAFEGUARD_ENGINE
config safeguard_engine state enable utilization rising 75 falling 45 trap_log enable mode fuzzy
# BANNER_PROMP
config command_prompt default
config greeting_message default
# SSH
 config ssh algorithm 3DES enable
 config ssh algorithm AES128 enable
 config ssh algorithm AES192 enable
 config ssh algorithm AES256 enable
 config ssh algorithm arcfour enable
 config ssh algorithm blowfish enable
 config ssh algorithm cast128 enable
 config ssh algorithm twofish128 enable
 config ssh algorithm twofish192 enable
 config ssh algorithm twofish256 enable
 config ssh algorithm MD5 enable
 config ssh algorithm SHA1 enable
 config ssh algorithm RSA enable
 config ssh algorithm DSA enable
 config ssh authmode password enable
 config ssh authmode publickey enable
 config ssh authmode hostbased enable
 config ssh server maxsession 8
 config ssh server contimeout 120
 config ssh server authfail 2
 config ssh server rekey never
 config ssh server port 22
 config ssh user admin authmode password
 disable ssh
# SERVER_PROFILE
# DNSRESOLVER
disable dns_resolver
config name_server timeout 3
# CMDLOG
disable command logging
# BCPING
enable broadcast_ping_reply
# SNTP
enable sntp
config time_zone operator + hour 4 min 0
config sntp primary 172.18.1.3 poll-interval 720
config dst disable
# LACP
config link_aggregation algorithm ip_source
create link_aggregation group_id 1 type lacp
config link_aggregation group_id 1 master_port 23 ports 21,23 state enable
config lacp_port 1-20,22,24-27 mode passive
config lacp_port 21,23 mode active
# IP
config ipif_mac_mapping ipif System mac_offset 0
config ipif System ipaddress 12.0.255.3/16 vlan admin_vlan
config ipif System proxy_arp disable local disable
config ipif_mac_mapping ipif TV_cifra mac_offset 1
create ipif TV_cifra 192.168.2.1/24 TV_cifra state enable 
config ipif TV_cifra proxy_arp disable local disable
config ipif_mac_mapping ipif IPTV_dest mac_offset 7
create ipif IPTV_dest 192.168.254.1/23 IPTV_dest state enable 
config ipif IPTV_dest proxy_arp disable local disable
config ipif System ip_mtu 1500
config ipif TV_cifra ip_mtu 1500
config ipif IPTV_dest ip_mtu 1500
config ipif System dhcpv6_client disable
config ipif TV_cifra dhcpv6_client disable
config ipif IPTV_dest dhcpv6_client disable
config ipif System  ip_directed_broadcast  disable
config ipif TV_cifra  ip_directed_broadcast  disable
config ipif IPTV_dest  ip_directed_broadcast  disable
disable autoconfig 
# ip_tunnel
# VOICEVLAN
# ERPS
disable erps
config erps log disable 
config erps trap disable 
# DHCP_SERVER
config dhcp ping_packets 2 
config dhcp ping_timeout 500 
disable dhcp_server
# WAC
config wac switch_http_port 80
config wac method local
config wac authorization attributes local enable
config wac authorization attributes radius enable
disable wac
config wac ports 1-27 aging_time 1440 idle_time infinite block_time 60
# JWAC
config jwac switch_http_port 80
config jwac clear_quarantine_server_url
config jwac radius_protocol pap
disable jwac quarantine_server_monitor
config jwac quarantine_server_error_timeout 60
enable jwac forcible_logout
enable jwac udp_filtering
enable jwac redirect
config jwac redirect destination quarantine_server delay_time 1
disable jwac
config jwac authenticate_page english
config jwac authorization attributes radius enable
config jwac authorization attributes local enable
config jwac ports 1-27 auth_mode host_based max_authenticating_host 50 aging_time 1440 idle_time infinite block_time 60
# CFM
# SFLOW
# LLDP
disable lldp
config lldp message_tx_interval 30
config lldp tx_delay 2
config lldp message_tx_hold_multiplier 4
config lldp reinit_delay 2
config lldp notification_interval 5
config lldp ports 1-27 notification disable
config lldp ports 1-27 admin_status tx_and_rx
# MBA
disable mac_based_access_control
config mac_based_access_control authorization network radius enable local enable
config mac_based_access_control ports 1-27 state disable
config mac_based_access_control method local
config mac_based_access_control password default
config mac_based_access_control max_users 1024
# MCFILTER
config multicast filtering_mode default filter_unregistered_groups
config multicast filtering_mode servers_vlan filter_unregistered_groups
config multicast filtering_mode admin_vlan filter_unregistered_groups
config multicast filtering_mode IPTV_dest filter_unregistered_groups
config multicast filtering_mode int_1 filter_unregistered_groups
config multicast filtering_mode int_2 filter_unregistered_groups
config multicast filtering_mode int_3 filter_unregistered_groups
config multicast filtering_mode int_4 filter_unregistered_groups
config multicast filtering_mode int_5 filter_unregistered_groups
config multicast filtering_mode int_6 filter_unregistered_groups
config multicast filtering_mode int_7 filter_unregistered_groups
config multicast filtering_mode int_8 filter_unregistered_groups
config multicast filtering_mode int_9 filter_unregistered_groups
config multicast filtering_mode int_10 filter_unregistered_groups
config multicast filtering_mode int_11 filter_unregistered_groups
config multicast filtering_mode int_12 filter_unregistered_groups
config multicast filtering_mode int_13 filter_unregistered_groups
config multicast filtering_mode cam filter_unregistered_groups
config multicast filtering_mode TV_cifra forward_all_groups
config multicast filtering_mode gor_sud filter_unregistered_groups
# COMPOUND_AUTHENTICATION
config authentication ports 1-27 auth_mode host_based
config authentication ports 1-27 multi_authen_methods none
enable authorization attributes
config authentication server failover block
# SNOOP
enable igmp_snooping
config igmp_snooping vlan default report_suppression disable
config igmp_snooping vlan default state disable fast_leave disable
config igmp_snooping querier vlan default query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan servers_vlan report_suppression disable
config igmp_snooping vlan servers_vlan state disable fast_leave disable
config igmp_snooping querier vlan servers_vlan query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan admin_vlan report_suppression disable
config igmp_snooping vlan admin_vlan state disable fast_leave disable
config igmp_snooping querier vlan admin_vlan query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan IPTV_dest report_suppression disable
config igmp_snooping vlan IPTV_dest state enable fast_leave disable
config igmp_snooping querier vlan IPTV_dest query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan int_1 report_suppression disable
config igmp_snooping vlan int_1 state enable fast_leave disable
config igmp_snooping querier vlan int_1 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_2 report_suppression disable
config igmp_snooping vlan int_2 state enable fast_leave disable
config igmp_snooping querier vlan int_2 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_3 report_suppression disable
config igmp_snooping vlan int_3 state enable fast_leave disable
config igmp_snooping querier vlan int_3 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_4 report_suppression disable
config igmp_snooping vlan int_4 state enable fast_leave disable
config igmp_snooping querier vlan int_4 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_5 report_suppression disable
config igmp_snooping vlan int_5 state enable fast_leave disable
config igmp_snooping querier vlan int_5 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_6 report_suppression disable
config igmp_snooping vlan int_6 state enable fast_leave disable
config igmp_snooping querier vlan int_6 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_7 report_suppression disable
config igmp_snooping vlan int_7 state enable fast_leave disable
config igmp_snooping querier vlan int_7 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_8 report_suppression disable
config igmp_snooping vlan int_8 state enable fast_leave disable
config igmp_snooping querier vlan int_8 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_9 report_suppression disable
config igmp_snooping vlan int_9 state enable fast_leave disable
config igmp_snooping querier vlan int_9 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan int_10 report_suppression disable
config igmp_snooping vlan int_10 state enable fast_leave disable
config igmp_snooping querier vlan int_10 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan int_11 report_suppression disable
config igmp_snooping vlan int_11 state enable fast_leave disable
config igmp_snooping querier vlan int_11 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan int_12 report_suppression disable
config igmp_snooping vlan int_12 state enable fast_leave disable
config igmp_snooping querier vlan int_12 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan int_13 report_suppression disable
config igmp_snooping vlan int_13 state enable fast_leave disable
config igmp_snooping querier vlan int_13 query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 2
config igmp_snooping vlan cam report_suppression disable
config igmp_snooping vlan cam state disable fast_leave disable
config igmp_snooping querier vlan cam query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan TV_cifra report_suppression disable
config igmp_snooping vlan TV_cifra state enable fast_leave disable
config igmp_snooping querier vlan TV_cifra query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan gor_sud report_suppression disable
config igmp_snooping vlan gor_sud state disable fast_leave disable
config igmp_snooping querier vlan gor_sud query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config limited_multicast_addr ports 1-23 add multicast_range CTC 
config limited_multicast_addr ports 1-24 add multicast_range IPTV 
config limited_multicast_addr ports 1-24 add multicast_range IPTV3 
config limited_multicast_addr ports 1-23 add multicast_range Ryb40 
config limited_multicast_addr ports 21,23-24 add multicast_range IPTV2 
config limited_multicast_addr ports 1-20,22,25-27 access permit state enable 
config limited_multicast_addr ports 21,23-24 access deny state enable 
# MLDSNP
# ACCESS_AUTHENTICATION_CONTROL
config authen_login default method local
config authen_enable default method  local_enable
config authen application console login default
config authen application console enable default
config authen application telnet login default
config authen application telnet enable default
config authen application ssh login default
config authen application ssh enable default
config authen application http login default
config authen application http enable default
config authen parameter response_timeout 30
config authen parameter attempt 3
disable authen_policy
config accounting service network state disable
config accounting service shell state disable
config accounting service system state disable
# AAA_LOCAL_ENABLE_PASSWORD
# AAA ADMIN PWD LIST
config admin local_enable
# AAA ADMIN PWD END
# NDP
config ipv6 nd ns ipif System retrans_time 0
config ipv6 nd ra ipif System state disable life_time 1800 reachable_time 1200000 retrans_time 0 hop_limit 64 managed_flag disable other_config_flag disable min_rtr_adv_interval 198 max_rtr_adv_interval 600
config ipv6 nd ns ipif TV_cifra retrans_time 0
config ipv6 nd ra ipif TV_cifra state disable life_time 1800 reachable_time 1200000 retrans_time 0 hop_limit 64 managed_flag disable other_config_flag disable min_rtr_adv_interval 198 max_rtr_adv_interval 600
config ipv6 nd ns ipif IPTV_dest retrans_time 0
config ipv6 nd ra ipif IPTV_dest state disable life_time 1800 reachable_time 1200000 retrans_time 0 hop_limit 64 managed_flag disable other_config_flag disable min_rtr_adv_interval 198 max_rtr_adv_interval 600
# RIPng
disable ripng
config ripng method split_horizon
config ripng update 30
config ripng expire 180
config ripng garbage_collection 120
# ARP
config arp_aging time 20
config arp_retry times 4
config gratuitous_arp send ipif_status_up disable
config gratuitous_arp send dup_ip_detected disable
config gratuitous_arp learning disable
# ROUTEFILTER
# ROUTE
config route preference static 60
config route preference default 1
config route preference rip 100
config route preference ospfIntra 80
config route preference ospfInter 90
config route preference ospfExt1 110
config route preference ospfExt2 115
config route preference ebgp 70
config route preference ibgp 130
disable ipv6_route_longprefix
disable ipv6_route_longprefix log
create iproute default 12.0.255.1 1 primary
config ecmp algorithm ip_destination   crc_low   
enable ecmp ospf
# PROUTE
# RELAY6
config dhcpv6_relay hop_count  4 
disable dhcpv6_relay 
# DHCPv6_SERVER
disable dhcpv6_server
config dhcpv6_server ipif System state enable
config dhcpv6_server ipif TV_cifra state enable
config dhcpv6_server ipif IPTV_dest state enable
# IGMP
config igmp ipif System version 2 query_interval 125 max_response_time 10 robustness_variable 2 state disable
config igmp ipif System last_member_query_interval 1  
config igmp check_subscriber_source_network ipif System enable  
config igmp ipif TV_cifra version 2 query_interval 125 max_response_time 10 robustness_variable 2 state enable
config igmp ipif TV_cifra last_member_query_interval 1  
config igmp check_subscriber_source_network ipif TV_cifra enable  
config igmp ipif IPTV_dest version 2 query_interval 125 max_response_time 10 robustness_variable 2 state enable
config igmp ipif IPTV_dest last_member_query_interval 1  
config igmp check_subscriber_source_network ipif IPTV_dest enable  
# PIMSM
disable pim
config pim cbsr hash_masklen 30
config pim cbsr bootstrap_period 60
config pim register_suppression_time 60
config pim register_probe_time 5
config pim last_hop_spt_switchover never
config pim crp holdtime 150 priority 192 
config pim crp wildcard_prefix_cnt 0
config pim ipif System state disable hello 30 jp_interval 60 mode dm dr_priority 1 
config pim cbsr ipif System priority -1
config pim ipif TV_cifra state disable hello 30 jp_interval 60 mode dm dr_priority 1 
config pim cbsr ipif TV_cifra priority -1
config pim ipif IPTV_dest state disable hello 30 jp_interval 60 mode dm dr_priority 1 
config pim cbsr ipif IPTV_dest priority -1
config pim-ssm state disable group_range 232.0.0.0/8
# DVMRP
disable dvmrp
config dvmrp ipif System metric 1 probe 10 neighbor_timeout 35 state disable 
config dvmrp ipif TV_cifra metric 1 probe 10 neighbor_timeout 35 state disable 
config dvmrp ipif IPTV_dest metric 1 probe 10 neighbor_timeout 35 state disable 
# IPMROUTE
# RIP
disable rip
config rip ipif System tx_mode disable state disable
config rip ipif System rx_mode disable state disable 
config rip ipif TV_cifra tx_mode disable state disable
config rip ipif TV_cifra rx_mode disable state disable 
config rip ipif IPTV_dest tx_mode disable state disable
config rip ipif IPTV_dest rx_mode disable state disable 
# MD5
# OSPF
config ospf ipif System area 0.0.0.0 priority 1 hello_interval 10 dead_interval 40
config ospf ipif System authentication none metric 1 state disable passive disable
config ospf ipif TV_cifra area 0.0.0.0 priority 1 hello_interval 10 dead_interval 40
config ospf ipif TV_cifra authentication none metric 1 state disable passive disable
config ospf ipif IPTV_dest area 0.0.0.0 priority 1 hello_interval 10 dead_interval 40
config ospf ipif IPTV_dest authentication none metric 1 state disable passive disable
config ospf router_id 0.0.0.0
disable ospf
# BGP
# OSPFv3
config ospfv3 router_id 0.0.0.0
disable ospfv3
# DNSR
disable dnsr
config dnsr primary nameserver 0.0.0.0
config dnsr secondary nameserver 0.0.0.0
disable dnsr cache
disable dnsr static
# MLD
config mld ipif System query_interval 125 max_response_time 10 robustness_variable 2 last_listener_query_interval 1 version 2 state disable 
config mld ipif TV_cifra query_interval 125 max_response_time 10 robustness_variable 2 last_listener_query_interval 1 version 2 state disable 
config mld ipif IPTV_dest query_interval 125 max_response_time 10 robustness_variable 2 last_listener_query_interval 1 version 2 state disable 
# DHCP_RELAY
enable dhcp_relay
config dhcp_relay hops 4 time 0 
config dhcp_relay option_82 state disable
config dhcp_relay option_82 check disable
config dhcp_relay option_82 policy replace
config dhcp_relay option_60 state disable
config dhcp_relay option_61 state disable
config dhcp_relay add ipif System 172.18.1.3
config dhcp_relay option_60 default mode drop
config dhcp_relay option_61 default drop
disable dhcp_local_relay
# VRRP
config vrrp ipif System authtype none
config vrrp ipif TV_cifra authtype none
config vrrp ipif IPTV_dest authtype none
disable vrrp
disable vrrp ping
#-------------------------------------------------------------------
#             End of configuration file for DGS-3627G
#-------------------------------------------------------------------