User Tools

Site Tools


office

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
office [2023/07/19 07:48] sysadmoffice [2024/05/05 16:51] (current) sysadm
Line 1: Line 1:
 +  * 
 +  * RP/0/RP0/CPU0:JASSDRCR-02#show controllers TenGigE0/0/0/16 phy
 +
 +
   * Destination IP table:   * Destination IP table:
   *     *  
Line 293: Line 297:
  
 HUTRCLSW-01(config)# no spanning-tree vlan 1467,1565,1933,2389,2463,3029,3442,3826 HUTRCLSW-01(config)# no spanning-tree vlan 1467,1565,1933,2389,2463,3029,3442,3826
 +
 +----------------------------------------Cisco Nexus L2 Switch port-channel configure ---switchport-- 
 +
 +  * DHDHNCLSW-02# show running-config interface port-channel 1
 +  * 
 +  * !Command: show running-config interface port-channel1
 +  * !Running configuration last done at: Wed Jul 19 12:58:46 2023
 +  * !Time: Wed Jul 19 13:53:30 2023
 +  * 
 +  * version 9.3(4) Bios:version 07.66 
 +  * 
 +  * interface port-channel1
 +  *   description TO-PALTAN SW1
 +  *   switchport
 +  *   switchport mode trunk
 +  *   switchport trunk allowed vlan 9,12-14
 +  * 
 +  * DHDHNCLSW-02# 
 +  * DHDHNCLSW-02# show running-config interface Eth1/53
 +  * 
 +  * !Command: show running-config interface Ethernet1/53
 +  * !Running configuration last done at: Wed Jul 19 12:58:46 2023
 +  * !Time: Wed Jul 19 13:54:01 2023
 +  * 
 +  * version 9.3(4) Bios:version 07.66 
 +  * 
 +  * interface Ethernet1/53
 +  *   description TO-PALTAN SW1-port-100GE1/4/8,siig_230521_003_ic&siig_230521_004_ic#-DHN-ODF-03-T-1-P-9&10
 +  *   switchport
 +  *   switchport mode trunk
 +  *   switchport trunk allowed vlan 9,12-14
 +  *   channel-group 1 mode active
 +  *   no shutdown
 +  * 
 +  * DHDHNCLSW-02# 
 +  * DHDHNCLSW-02# show running-config interface Eth1/54
 +  * 
 +  * !Command: show running-config interface Ethernet1/54
 +  * !Running configuration last done at: Wed Jul 19 12:58:46 2023
 +  * !Time: Wed Jul 19 13:54:08 2023
 +  * 
 +  * version 9.3(4) Bios:version 07.66 
 +  * 
 +  * interface Ethernet1/54
 +  *   description TO-PALTAN SW1-port-100GE1/4/7,siig_230521_001_ic&&siig_230521_002_ic-DHN-ODF-03-T-1-P-7,8
 +  *   switchport
 +  *   switchport mode trunk
 +  *   switchport trunk allowed vlan 9,12-14
 +  *   channel-group 1 mode active
 +  *   no shutdown
 +  *   
 +----------------------
 +
 +
 +
 +  * [*DHUTRAGGR-01]display cur
 +  * [*DHUTRAGGR-01]display current-configuration | in 10.56.79.30
 +  * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break.
 +  *  peer 10.56.79.30 as-number 134371
 +  *  peer 10.56.79.30 description CIRCLE_NETWORK
 +  *   peer 10.56.79.30 enable
 +  *   peer 10.56.79.30 route-policy CIRCLE_NETWORK import
 +  *   peer 10.56.79.30 route-policy ALL-ROUTE export
 +  *   peer 10.56.79.30 route-limit accept-prefix 100
 +  *   peer 10.56.79.30 advertise-community
 +  * [*DHUTRAGGR-01]
 +  * [*DHUTRAGGR-01]display current-configuration | in 10.56.79.50
 +  * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break.
 +  *  peer 10.56.79.50 as-number 134371
 +  *  peer 10.56.79.50 description @@CIRCL-NETWORk-SAVAR-2
 +  *   peer 10.56.79.50 enable
 +  *   peer 10.56.79.50 route-policy CIRCLE_NETWORK import
 +  *   peer 10.56.79.50 route-policy CIRCLE-OUT export
 +  *   peer 10.56.79.50 route-limit accept-prefix 100
 +  *   peer 10.56.79.50 advertise-community
 +  * [*DHUTRAGGR-01]
 +  * [*DHUTRAGGR-01]display current-configuration | in 10.123.235.46
 +  * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break.
 +  *  peer 10.123.235.46 as-number 134371
 +  *  peer 10.123.235.46 description @@CIRCLE-DDOS-BLACKHOLE@@
 +  *   peer 10.123.235.46 enable
 +  *   peer 10.123.235.46 route-policy CIRCLE-DDOS import
 +  *   peer 10.123.235.46 route-policy BLACKHOLE-OUT export
 +  *   peer 10.123.235.46 route-limit accept-prefix 100
 +  *   peer 10.123.235.46 advertise-community
 +  * [*DHUTRAGGR-01]
 +  * [*DHUTRAGGR-01]dis
 +  * [*DHUTRAGGR-01]display cur
 +  * [*DHUTRAGGR-01]display current-configuration | in CIRCLE-OUT
 +  * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break.
 +  *   peer 10.56.79.50 route-policy CIRCLE-OUT export
 +  *   peer 10.56.79.54 route-policy CIRCLE-OUT export
 +  * route-policy CIRCLE-OUT permit node 10
 +  * route-policy CIRCLE-OUT permit node 20
 +  * route-policy CIRCLE-OUT permit node 30
 +  * route-policy CIRCLE-OUT deny node 40
 +  * [*DHUTRAGGR-01]
 +  * [*DHUTRAGGR-01]dis
 +  * [*DHUTRAGGR-01]display route-policy CIRCLE-OUT
 +  * Route-policy: CIRCLE-OUT
 +  *   permit : 10 (matched counts: 0)
 +  *     Match clauses: 
 +  *       if-match ip-prefix CIRCLE-PREFIX-BLOCK
 +  *   permit : 20 (matched counts: 4405712)
 +  *     Match clauses: 
 +  *       if-match as-path-filter CIRCLE-AS-OUT
 +  *   permit : 30 (matched counts: 242)
 +  *     Match clauses: 
 +  *       if-match ip-prefix DEFAULT-ONLY
 +  *   deny : 40 (matched counts: 510466528)
 +  * [*DHUTRAGGR-01]
 +  * [*DHUTRAGGR-01]dis
 +  * [*DHUTRAGGR-01]display cur
 +  * [*DHUTRAGGR-01]display current-configuration | in CIRCLE-AS-OUT
 +  * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break.
 +  *  if-match as-path-filter CIRCLE-AS-OUT
 +  * ip as-path-filter CIRCLE-AS-OUT index 10 permit ^15169_
 +  * ip as-path-filter CIRCLE-AS-OUT index 20 permit ^32934_
 +  * ip as-path-filter CIRCLE-AS-OUT index 30 permit ^132203_
 +  * ip as-path-filter CIRCLE-AS-OUT index 40 permit ^13335_
 +  * ip as-path-filter CIRCLE-AS-OUT index 50 permit ^9498 32934_
 +  * ip as-path-filter CIRCLE-AS-OUT index 60 permit ^9498 15169_
 +  * ip as-path-filter CIRCLE-AS-OUT index 70 permit ^2914 10075 13335_
 +  * ip as-path-filter CIRCLE-AS-OUT index 80 permit ^9498 132203_
 +  * ip as-path-filter CIRCLE-AS-OUT index 90 permit ^16509_
 +  * [*DHUTRAGGR-01]
 +  * [*DHUTRAGGR-01]display current-configuration | in CIRCLE-PREFIX-BLOCK
 +  * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break.
 +  *  if-match ip-prefix CIRCLE-PREFIX-BLOCK
 +  * ip ip-prefix CIRCLE-PREFIX-BLOCK index 10 permit 192.168.29.1 32
 +
 +---------------------
 +  * 
 +  * 
 +  * [~DHUTRAGGR-01-route-policy]display this 
 +  * #
 +  * route-policy SPEED-PLUS-TANGAIL permit node 10
 +  *  if-match ip-prefix SPEED-PLUS-TANGAIL-IPv4
 +  *  apply local-preference 1000
 +  *  apply community 58717:100 58717:830 58717:1100
 +  * #
 +  * route-policy SPEED-PLUS-TANGAIL deny node 20
 +  * #
 +  * return
 +
 +
 +
 +violate-action drop to avoid P2P loss issue in cisco ASR9K
 +
 +policy-map 689mb
 + class POLICER
 +  police rate 689 mbps 
 +   exceed-action drop
 +  ! 
 + 
 + class class-default
 + 
 + end-policy-map
 +
 +
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02#conf terminal        
 +Sun May  5 22:41:21.508 UTC
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02(config)#policy-map 689mb
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02(config-pmap)# class POLICER
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02(config-pmap-c)#  police rate 689 mbps
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02(config-pmap-c-police)#no  exceed-action drop
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02(config-pmap-c-police)#**violate-action drop** 
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02(config-pmap-c-police)#commit 
 +
 +RP/0/RSP0/CPU0:CTGSDRAGGR-02#show  running-config policy-map 689mb  
 +Sun May  5 22:41:44.708 UTC
 +policy-map 689mb
 + class POLICER
 +  police rate 689 mbps 
 +   violate-action drop
 +  ! 
 + 
 + class class-default
 + 
 + end-policy-map
 +!
 +
 +=======================
office.1689752935.txt.gz · Last modified: 2023/07/19 07:48 by sysadm