version 11.4R1.6; groups { snmp { snmp { location "Office"; contact "me@my.net"; community public { authorization read-only; clients { 10.0.1.0/24; 10.0.10.0/24; 0.0.0.0/0 restrict; } } trap-group managers { version v2; targets { 10.0.1.2; } } } } } apply-groups snmp; system { host-name ex2200c; domain-name my.net; backup-router 10.0.1.1; time-zone Australia/Brisbane; internet-options { tcp-drop-synfin-set; } authentication-order password; ports { console log-out-on-disconnect; auxiliary { disable; insecure; } } root-authentication { encrypted-password "There was one here"; ssh-rsa "ssh-rsa My-public-key-was-here me@my.net"; } name-server { 10.0.1.1; 10.0.1.2; } login { announcement "==============================\nAccess to authorised user granted.\nYour use of this service constitutes your acceptance of its terms.\n==============================\n"; message "******************************\n* This device is privately-owned and offers no public services.\n* Unauthorised access prohibited. Attempts tocircumvent, disable,\n* or otherwise interfere with normal operation will be prosecuted\n* to the fullest extent of applicable laws.\n******************************\n"; class super-user-local { idle-timeout 30; login-alarms; login-tip; permissions all; } user admin { full-name Administrator; uid 2000; class super-user-local; authentication { encrypted-password "There was one here also"; ssh-rsa "ssh-rsa My-public-key-was-here-too me@my.net"; } } } services { ssh { root-login deny-password; protocol-version v2; connection-limit 5; rate-limit 5; } } syslog { user * { any critical; } host 10.0.1.3 { any info; match "!mrvl_fdb_mac_entry_uc_set"; } file messages { any notice; authorization info; match "!mrvl_fdb_mac_entry_uc_set"; } file interactive-commands { interactive-commands any; } } ntp { boot-server 10.0.1.3; server 10.0.1.1; server 10.0.1.2; server 10.0.1.3; } } chassis { ## ## Warning: statement ignored: unsupported platform (ex2200-c-12t-2g) ## craft-lockout; aggregated-devices { ethernet { device-count 1; } } alarm { management-ethernet { link-down ignore; } } } interfaces { interface-range home { member ge-0/0/0; member ge-0/0/1; disable; unit 0 { family ethernet-switching { port-mode access; vlan { members home; } } } } interface-range voip { member ge-0/0/2; unit 0 { family ethernet-switching { port-mode access; vlan { members voip; } } } } interface-range homemgt { member-range ge-0/0/8 to ge-0/0/9; unit 0 { family ethernet-switching { port-mode trunk; vlan { members home; } native-vlan-id mgt; } } } interface-range isp1 { member ge-0/0/4; unit 0 { family ethernet-switching { port-mode access; vlan { members isp1; } } } } interface-range isp2 { member ge-0/0/6; disable; unit 0 { family ethernet-switching { port-mode access; vlan { members isp2; } } } } interface-range disabled { member ge-0/0/5; description unused; disable; unit 0 { family ethernet-switching { port-mode access; vlan { members default; } } } } interface-range test { member ge-0/1/0; unit 0 { family ethernet-switching { port-mode trunk; vlan { members [ isp1 isp2 ]; } native-vlan-id bb; } } } interface-range uplink { member ge-0/1/1; disable; unit 0 { family ethernet-switching { port-mode trunk; vlan { members [ bb dmz1 dmz2 dmz3 guest home isp1 isp2 voip ]; } native-vlan-id mgt; } } } interface-range wifiap { member ge-0/0/7; description "wireless access point"; unit 0 { family ethernet-switching { port-mode trunk; vlan { members [ guest home ]; } native-vlan-id mgt; } } } interface-range mgt { member ge-0/0/3; disable; unit 0 { family ethernet-switching { port-mode access; vlan { members mgt; } } } } ge-0/0/0 { unit 0 { family ethernet-switching; } } ge-0/0/1 { unit 0 { family ethernet-switching; } } ge-0/0/2 { unit 0 { family ethernet-switching; } } ge-0/0/3 { unit 0 { family ethernet-switching; } } ge-0/0/4 { unit 0 { family ethernet-switching; } } ge-0/0/5 { unit 0 { family ethernet-switching; } } ge-0/0/6 { unit 0 { family ethernet-switching; } } ge-0/0/7 { unit 0 { family ethernet-switching; } } ge-0/0/8 { unit 0 { family ethernet-switching; } } ge-0/0/9 { unit 0 { family ethernet-switching; } } ge-0/0/10 { ether-options { 802.3ad ae0; } } ge-0/0/11 { ether-options { 802.3ad ae0; } } ge-0/1/0 { unit 0 { family ethernet-switching; } } ge-0/1/1 { unit 0 { family ethernet-switching; } } ae0 { aggregated-ether-options { lacp { active; periodic slow; } } unit 0 { family ethernet-switching { port-mode trunk; vlan { members [ bb dmz1 dmz2 dmz3 guest home isp1 isp2 voip ]; } native-vlan-id mgt; } } } lo0 { unit 0 { family inet { address 127.0.0.1/32; } } } me0 { disable; } vlan { unit 1 { description "Management VLAN"; family inet { address 10.0.1.14/24; } } } } snmp { health-monitor; } routing-options { static { route 0.0.0.0/0 next-hop 10.0.1.1; } } protocols { igmp-snooping { vlan all; } rstp { bridge-priority 0; max-age 6; hello-time 1; forward-delay 4; interface ae0.0 { edge; no-root-port; } interface all { no-root-port; } interface disabled { edge; no-root-port; } interface home { edge; no-root-port; } interface homemgt { edge; no-root-port; } interface isp1 { disable; no-root-port; } interface isp2 { disable; no-root-port; } interface test { edge; no-root-port; } interface voip { edge; no-root-port; } } lldp { interface ge-0/0/4.0 { disable; } interface ge-0/0/6.0 { disable; } interface all; } lldp-med { interface all; interface ge-0/0/4.0 { disable; } interface ge-0/0/6.0 { disable; } } sflow { polling-interval 20; sample-rate { ingress 500; egress 500; } collector 10.0.10.10; interfaces ge-0/0/0.0; interfaces ge-0/0/1.0; interfaces ge-0/0/2.0; interfaces ge-0/0/3.0; interfaces ge-0/0/4.0; interfaces ge-0/0/5.0; interfaces ge-0/0/6.0; interfaces ge-0/0/7.0; interfaces ge-0/0/8.0; interfaces ge-0/0/9.0; interfaces ge-0/0/10.0; interfaces ge-0/0/11.0; interfaces ge-0/1/0.0; interfaces ge-0/1/1.0; } } ethernet-switching-options { storm-control { interface ge-0/0/4.0 { bandwidth 1000; } interface all { bandwidth 10000; } } bpdu-block { interface disabled; interface home; interface homemgt; interface voip; } } vlans { mgt { vlan-id 1; l3-interface vlan.1; } voip { vlan-id 2; } guest { vlan-id 3; } dmz1 { vlan-id 4; } dmz2 { vlan-id 5; } dmz3 { vlan-id 6; } isp1 { vlan-id 7; } isp2 { vlan-id 8; } bb { vlan-id 9; } home { vlan-id 10; } default { vlan-id 999; } }