ubr7114#sh run
Building configuration...
Building configuration...
Current configuration : 5253 bytes
!
! Last configuration change at 09:01:20 UTC Thu Apr 20 2006
! NVRAM config last updated at 08:07:12 UTC Thu Apr 20 2006
!
version 12.2
service timestamps debug datetime
service timestamps log datetime
service password-encryption
service udp-small-servers max-servers no-limit
!
hostname ubr7114
!
boot system flash disk0:ubr7100-ik8s-mz.122-15.BC2i.bin
boot system flash disk0:ubr7100-ik1s-mz.121-12c.EC1.bin
logging queue-limit 100
enable secret 5 $1$chU6$CuqPAdnc69yBZnBe5axzT0
enable password 7 02050D480809
!
cable flap-list power-adjust threshold 6
cable modem remote-query 5 private
cable spectrum-group 1 hop period 120
cable spectrum-group 1 hop threshold 50
cable spectrum-group 1 band 26000000 42000000 5
cable spectrum-group 2 hop period 120
cable spectrum-group 2 hop threshold 50
cable spectrum-group 2 band 26000000 42000000 3
cable spectrum-group 3 hop period 120
cable spectrum-group 3 hop threshold 50
cable spectrum-group 3 band 26000000 42000000 5
cable spectrum-group 4 hop period 120
cable spectrum-group 4 hop threshold 50
cable spectrum-group 4 band 26000000 42000000 8
no cable qos permission create
no cable qos permission update
cable qos permission modems
cable time-server
ip subnet-zero
!
!
ip cef
no ip domain lookup
!
ip multicast-routing
ip address-pool dhcp-proxy-client
ip dhcp-server 10.65.156.1
mpls ldp logging neighbor-changes
!
!
!
!
!
!
interface FastEthernet0/0
ip address 10.65.150.2 255.255.128.0
ip access-group 115 in
ip access-group 115 out
ip helper-address 10.65.156.1
ip directed-broadcast
ip pim dense-mode
no ip mroute-cache
ip policy route-map nachi-worm
duplex full
speed auto
rmon collection stats 1 owner " root@ciscoworks [1066776211953]"
rmon collection history 1 owner " root@ciscoworks [1066776212000]" buckets 50 interval 30
rmon collection history 2 owner " root@ciscoworks [1066776212015]" buckets 50 interval 1800
no keepalive
!
interface FastEthernet0/1
ip address 61.167.117.226 255.255.255.0
shutdown
duplex auto
speed auto
rmon collection stats 16 owner " root@ciscoworks [1066776211906]"
rmon collection history 16 owner " root@ciscoworks [1066776211937]" buckets 50 interval 30
rmon collection history 17 owner " root@ciscoworks [1066776211953]" buckets 50 interval 1800
!
interface Cable1/0
ip address 10.2.1.0 255.255.0.0 secondary
ip address 10.1.1.0 255.255.0.0
ip access-group 115 in
ip access-group 115 out
no ip unreachables
ip directed-broadcast
ip helper-address 10.65.156.1
no ip mroute-cache
ip policy route-map nachi-worm
cable max-hosts 15
cable insertion-interval 500
cable downstream annex B
cable downstream modulation 256qam
cable downstream interleave-depth 32
cable downstream frequency 717000000
cable downstream channel-id 0
no cable downstream rf-shutdown
cable upstream 0 frequency 41008000
cable upstream 0 power-level 5
cable upstream 0 channel-width 800000
cable upstream 0 minislot-size 8
cable upstream 0 modulation-profile 1
cable upstream 0 s160-atp-workaround
no cable upstream 0 shutdown
cable upstream 1 frequency 41008000
cable upstream 1 power-level 15
cable upstream 1 channel-width 1600000
cable upstream 1 minislot-size 4
cable upstream 1 modulation-profile 1
cable upstream 1 s160-atp-workaround
no cable upstream 1 shutdown
cable upstream 2 spectrum-group 3
cable upstream 2 power-level 15
cable upstream 2 channel-width 1600000
cable upstream 2 minislot-size 4
cable upstream 2 modulation-profile 1
no cable upstream 2 shutdown
cable upstream 3 spectrum-group 4
cable upstream 3 power-level 15
cable upstream 3 channel-width 1600000
cable upstream 3 minislot-size 4
cable upstream 3 modulation-profile 1
no cable upstream 3 shutdown
cable dhcp-giaddr policy
!
ip classless
ip route 0.0.0.0 0.0.0.0 10.65.155.0
ip route 10.10.0.0 255.255.128.0 10.65.150.0
ip route 10.11.0.0 255.255.128.0 10.65.150.0
ip route 10.61.0.0 255.255.0.0 10.65.150.0
ip route 10.62.0.0 255.255.0.0 10.65.150.0
ip route 10.65.0.0 255.255.128.0 10.65.150.4
ip route 10.68.0.0 255.255.0.0 10.65.150.4
no ip http server
no ip http secure-server
!
!
!
logging 10.65.156.101
access-list 90 permit 10.65.150.0 0.0.0.255
access-list 90 permit 10.65.156.0 0.0.0.255
access-list 90 permit 10.65.128.0 0.0.0.255
access-list 115 deny tcp anyany eq 135
access-list 115 deny udp anyany eq 135
access-list 115 deny udp anyany eq netbios-ns
access-list 115 deny udp anyany eq netbios-dgm
access-list 115 deny tcp anyany eq 139
access-list 115 deny udp anyany eq netbios-ss
access-list 115 deny tcp anyany eq 445
access-list 115 deny tcp anyany eq 593
access-list 115 permit ip any any
access-list 199 permit icmp any any echo
access-list 199 permit icmp any any echo-reply
cdp run
!
route-map nachi-worm permit 10
match ip address 199
match length 92 92
set interface Null0
!
snmp-server community private RO
snmp-server community dqytv RW
snmp-server chassis-id 7246
snmp-server enable traps tty
snmp-server manager
!
banner motd ^CCWelcome to cisco7114!^C
!
line con 0
exec-timeout 5 0
password 7 104D000A0618
login
line aux 0
exec-timeout 5 0
password 7 104D000A0618
login
line vty 0 4
access-class 90 in
exec-timeout 20 0
password 7 104D000A0618
login
line vty 5 15
login
!
end
!
! Last configuration change at 09:01:20 UTC Thu Apr 20 2006
! NVRAM config last updated at 08:07:12 UTC Thu Apr 20 2006
!
version 12.2
service timestamps debug datetime
service timestamps log datetime
service password-encryption
service udp-small-servers max-servers no-limit
!
hostname ubr7114
!
boot system flash disk0:ubr7100-ik8s-mz.122-15.BC2i.bin
boot system flash disk0:ubr7100-ik1s-mz.121-12c.EC1.bin
logging queue-limit 100
enable secret 5 $1$chU6$CuqPAdnc69yBZnBe5axzT0
enable password 7 02050D480809
!
cable flap-list power-adjust threshold 6
cable modem remote-query 5 private
cable spectrum-group 1 hop period 120
cable spectrum-group 1 hop threshold 50
cable spectrum-group 1 band 26000000 42000000 5
cable spectrum-group 2 hop period 120
cable spectrum-group 2 hop threshold 50
cable spectrum-group 2 band 26000000 42000000 3
cable spectrum-group 3 hop period 120
cable spectrum-group 3 hop threshold 50
cable spectrum-group 3 band 26000000 42000000 5
cable spectrum-group 4 hop period 120
cable spectrum-group 4 hop threshold 50
cable spectrum-group 4 band 26000000 42000000 8
no cable qos permission create
no cable qos permission update
cable qos permission modems
cable time-server
ip subnet-zero
!
!
ip cef
no ip domain lookup
!
ip multicast-routing
ip address-pool dhcp-proxy-client
ip dhcp-server 10.65.156.1
mpls ldp logging neighbor-changes
!
!
!
!
!
!
interface FastEthernet0/0
ip address 10.65.150.2 255.255.128.0
ip access-group 115 in
ip access-group 115 out
ip helper-address 10.65.156.1
ip directed-broadcast
ip pim dense-mode
no ip mroute-cache
ip policy route-map nachi-worm
duplex full
speed auto
rmon collection stats 1 owner " root@ciscoworks [1066776211953]"
rmon collection history 1 owner " root@ciscoworks [1066776212000]" buckets 50 interval 30
rmon collection history 2 owner " root@ciscoworks [1066776212015]" buckets 50 interval 1800
no keepalive
!
interface FastEthernet0/1
ip address 61.167.117.226 255.255.255.0
shutdown
duplex auto
speed auto
rmon collection stats 16 owner " root@ciscoworks [1066776211906]"
rmon collection history 16 owner " root@ciscoworks [1066776211937]" buckets 50 interval 30
rmon collection history 17 owner " root@ciscoworks [1066776211953]" buckets 50 interval 1800
!
interface Cable1/0
ip address 10.2.1.0 255.255.0.0 secondary
ip address 10.1.1.0 255.255.0.0
ip access-group 115 in
ip access-group 115 out
no ip unreachables
ip directed-broadcast
ip helper-address 10.65.156.1
no ip mroute-cache
ip policy route-map nachi-worm
cable max-hosts 15
cable insertion-interval 500
cable downstream annex B
cable downstream modulation 256qam
cable downstream interleave-depth 32
cable downstream frequency 717000000
cable downstream channel-id 0
no cable downstream rf-shutdown
cable upstream 0 frequency 41008000
cable upstream 0 power-level 5
cable upstream 0 channel-width 800000
cable upstream 0 minislot-size 8
cable upstream 0 modulation-profile 1
cable upstream 0 s160-atp-workaround
no cable upstream 0 shutdown
cable upstream 1 frequency 41008000
cable upstream 1 power-level 15
cable upstream 1 channel-width 1600000
cable upstream 1 minislot-size 4
cable upstream 1 modulation-profile 1
cable upstream 1 s160-atp-workaround
no cable upstream 1 shutdown
cable upstream 2 spectrum-group 3
cable upstream 2 power-level 15
cable upstream 2 channel-width 1600000
cable upstream 2 minislot-size 4
cable upstream 2 modulation-profile 1
no cable upstream 2 shutdown
cable upstream 3 spectrum-group 4
cable upstream 3 power-level 15
cable upstream 3 channel-width 1600000
cable upstream 3 minislot-size 4
cable upstream 3 modulation-profile 1
no cable upstream 3 shutdown
cable dhcp-giaddr policy
!
ip classless
ip route 0.0.0.0 0.0.0.0 10.65.155.0
ip route 10.10.0.0 255.255.128.0 10.65.150.0
ip route 10.11.0.0 255.255.128.0 10.65.150.0
ip route 10.61.0.0 255.255.0.0 10.65.150.0
ip route 10.62.0.0 255.255.0.0 10.65.150.0
ip route 10.65.0.0 255.255.128.0 10.65.150.4
ip route 10.68.0.0 255.255.0.0 10.65.150.4
no ip http server
no ip http secure-server
!
!
!
logging 10.65.156.101
access-list 90 permit 10.65.150.0 0.0.0.255
access-list 90 permit 10.65.156.0 0.0.0.255
access-list 90 permit 10.65.128.0 0.0.0.255
access-list 115 deny tcp anyany eq 135
access-list 115 deny udp anyany eq 135
access-list 115 deny udp anyany eq netbios-ns
access-list 115 deny udp anyany eq netbios-dgm
access-list 115 deny tcp anyany eq 139
access-list 115 deny udp anyany eq netbios-ss
access-list 115 deny tcp anyany eq 445
access-list 115 deny tcp anyany eq 593
access-list 115 permit ip any any
access-list 199 permit icmp any any echo
access-list 199 permit icmp any any echo-reply
cdp run
!
route-map nachi-worm permit 10
match ip address 199
match length 92 92
set interface Null0
!
snmp-server community private RO
snmp-server community dqytv RW
snmp-server chassis-id 7246
snmp-server enable traps tty
snmp-server manager
!
banner motd ^CCWelcome to cisco7114!^C
!
line con 0
exec-timeout 5 0
password 7 104D000A0618
login
line aux 0
exec-timeout 5 0
password 7 104D000A0618
login
line vty 0 4
access-class 90 in
exec-timeout 20 0
password 7 104D000A0618
login
line vty 5 15
login
!
end
转载于:https://blog.51cto.com/sunrc/254749