#
sysname XXXXX
#
snmp-agent local-engineid 800007DB033400A3D8F350
undo snmp-agent community complexity-check disable
snmp-agent sys-info contact XXXXXX
snmp-agent sys-info location XXXXXX
snmp-agent
#
http timeout 60
http secure-server ssl-policy default_policy
http server enable
http secure-server enable
#
info-center timestamp log format-date
#
vlan batch 2 to 50
#
wlan ac-global country-code ES
wlan ac-global carrier id other ac id 1
#
dhcp enable
#
diffserv domain default
#
vlan 1
description Vlan Gestion
name admin_vlan
vlan 2
description Conexipn internet
vlan 3
description Red entre cortafuegos
vlan 5
description Wifi invitados
vlan 10
description Servidores
vlan 20
description Lan de usuarios
#
pki realm default
enrollment self-signed
#
ssl policy default_policy type server
pki-realm default
#
ip pool APs
gateway-list 192.168.40.1
network 192.168.40.0 mask 255.255.255.0
excluded-ip-address 192.168.40.2 192.168.40.199
#
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher %@%@Th%z+af#^!pbyy!}cT72*)S&%@%@
local-user admin privilege level 15
local-user admin service-type telnet http
local-user soporteit password cipher %@%@Ga39:UpVMUT5^r#DnItAGm\_%@%@
local-user soporteit privilege level 15
local-user soporteit service-type ssh ftp http
#
interface Vlanif1
ip address 192.168.40.210 255.255.255.0
dhcp select global
#
interface GigabitEthernet0/0/1
port hybrid tagged vlan 2 to 50
#
interface GigabitEthernet0/0/2
port hybrid tagged vlan 2 to 50
#
interface GigabitEthernet0/0/3
port hybrid tagged vlan 2 to 50
#
interface GigabitEthernet0/0/4
port hybrid tagged vlan 2 to 50
#
interface GigabitEthernet0/0/5
port hybrid tagged vlan 2 to 50
#
interface GigabitEthernet0/0/6
port hybrid tagged vlan 2 to 50
#
interface GigabitEthernet0/0/7
port link-type trunk
port trunk allow-pass vlan 2 to 50
#
interface GigabitEthernet0/0/8
port link-type trunk
port trunk allow-pass vlan 2 to 50
#
interface Wlan-Ess1
#
interface Wlan-Ess16
undo port hybrid vlan 1
port hybrid untagged vlan 16
mac-authen
mac-authen username macaddress format without-hyphen
#
interface Wlan-Ess17
port hybrid untagged vlan 17
#
interface NULL0
#
stelnet server enable
#
ip route-static 0.0.0.0 0.0.0.0 192.168.40.1
#
user-interface con 0
authentication-mode password
set authentication password cipher %@%@A*g$V/CXH,SZ2[HUUk5J,.@ZqSBc8$.rVE9]$@Q\|p8B.@],%@%@
user-interface vty 0 4
authentication-mode aaa
user privilege level 15
protocol inbound all
user-interface vty 16 20
authentication-mode aaa
#
port-group asd
#
port-group hybrid
#
port-group tru
#
wlan
wlan ac source interface vlanif1
ap-type type AP5030DN id 200
ap-region id 0
country-code ES
ap-auth-mode no-auth
ap id 0 type-id 200 mac 9017-acbb-4c80 sn 210235810810EA000500
lineate-port mode endpoint
lineate-port pvid vlan 1
lineate-port user-isolate enable
ap id 1 type-id 200 mac 9017-acbb-4dc0 sn 210235810810EA000510
ap id 2 type-id 200 mac 9017-acbb-4da0 sn 210235810810EA000509
ap id 3 type-id 200 mac 9017-acbb-4c40 sn 210235810810EA000498
wmm-profile name genera-ap1 id 0
wmm-profile name genera-ap2 id 1
wmm-profile name default id 2
traffic-profile name Genera-AP id 0
traffic-profile name default id 1
security-profile name Genera-AP id 0
security-profile name default id 1
calibrate enable auto interval 60
calibrate policy rogue-ap
calibrate 2.4g 20mhz channel-set 1,6,11
calibrate 5g 20mhz channel-set 36,40,44,48,52,56,60,64,100,104,108,112,116,120,124,128,132,136,140
#
ntp-service unicast-server 150.214.94.5
#
return