You are on page 1of 37

exit all

#--------------------------------------------------

echo "REGION <7>"

echo "<CONCEPCION MALPAIS>"

#--------------------------------------------------

configure

#--------------------------------------------------

echo "System Configuration"

#--------------------------------------------------

system

name "<R07PU1169R7705M-01>"

snmp

packet-size 9216

no shutdown

exit

login-control

idle-timeout 5

pre-login-message "*****************************************************************\n* _
*\n* | |_ ___ _ ___ ___ _ *\n* | __| | _.) | | / _/ | _.) | | *\n* | |_ | |_ | |_. : (_ | |_ | |_.
*\n* |_._| |_._| |___| \\__\\ |___| |___| *\n* *\n* EL ACCESO A ESTE EQUIPO ES
RESTRINGIDO A USUARIOS DE LA *\n* DIRECCION DE OPERACION Y MANTENIMIENTO Y ES SUJETO A *\n* AUDITORIAS. EL ACCESO, USO
O MODIFICACION, SIN PREVIA *\n* AUTORIZACION, ES VIOLACION DE LEYES FEDERALES Y ESTATALES *\n*
*\n*****************************************************************"

exit

time

ntp

authentication-check

server 10.192.254.1

server 10.208.254.1

no shutdown

exit

sntp

shutdown

exit

dst-zone MEX

start first sunday april 02:00

end last sunday october 02:00

offset 60

exit

zone CST

exit
thresholds

rmon

exit

exit

qos

access-ingress-aggregate-rate 1000000

network-ingress-aggregate-rate 1000000

exit

exit

#--------------------------------------------------

echo "System Security Configuration"

#--------------------------------------------------

system

security

ftp-server

user "admin"

password "admin"

access console ftp snmp

console

member "administrative"
exit

exit

tacplus

accounting record-type start-stop

authorization

timeout 10

server 1 address 10.119.248.18 secret "secret123"

server 2 address 10.119.248.19 secret "secret123"

server 3 address 10.211.6.237 secret "secret123"

exit

user "Telcel"

password "admin"

access console ftp snmp

home-directory "cf3:/"

snmp

authentication hash md5 eb0d7c545dedb49798cd2f44a47dd648 privacy des e5f5fc03e1ab81ed4f97b75aab2d724d

group "Telcel_Gpo"

exit

exit

password
authentication-order tacplus local

no aging

attempts 5 time 5 lockout 1

complexity

exit

exit

exit all

#--------------------------------------------------

echo "Log Configuration"

#--------------------------------------------------

configure

log

snmp-trap-group 98

description "5620sam"

trap-target "10.208.27.125:162" address 10.208.27.125 snmpv2 notify-community "alu_oam_IPRAN" security-level privacy

trap-target "10.211.5.98:162" address 10.211.5.98 snmpv2 notify-community "alu_oam_IPRAN" security-level privacy

exit

log-id 98

from main security

to snmp 1024
exit

exit

#--------------------------------------------------

echo "System Security Cpm Hw Filters Configuration"

#--------------------------------------------------

system

security

exit

exit

#--------------------------------------------------

echo "Eth-CFM Configuration"

#--------------------------------------------------

eth-cfm

domain 1 name "UNINET" level 7

exit

exit

#--------------------------------------------------

echo "QoS Policy Configuration"

#--------------------------------------------------

qos
network-queue "ipranetw_300-L3" create

description "Telcel network queue QoS policy."

queue 1 create

high-prio-only 10

exit

queue 2 create

rate 6 cir 6

exit

queue 3 create

rate 30 cir 3

exit

queue 4 create

rate 30

exit

queue 5 create

exit

queue 6 create

exit

queue 7 create

exit
queue 8 create

exit

queue 9 multipoint create

high-prio-only 10

exit

fc af create

multicast-queue 9

queue 4

exit

fc be create

multicast-queue 9

queue 4

exit

fc ef create

multicast-queue 9

queue 4

exit

fc h1 create

multicast-queue 9

queue 2
exit

fc h2 create

multicast-queue 9

queue 3

exit

fc l1 create

multicast-queue 9

queue 4

exit

fc l2 create

multicast-queue 9

queue 7

exit

fc nc create

multicast-queue 9

queue 3

exit

exit

exit

#--------------------------------------------------
echo "QoS Policy Configuration"

#--------------------------------------------------

qos

sap-ingress 10 create

description "SAP-ingress-policy Telcel"

queue 1 create

exit

queue 2 create

exit

queue 3 create

exit

queue 4 create

exit

queue 5 create

exit

queue 6 create

exit

queue 7 create

exit

queue 8 create
exit

fc "be" create

queue 1

exit

fc "ef" create

queue 6

exit

fc "h1" create

queue 7

exit

fc "h2" create

queue 5

exit

fc "l1" create

queue 4

exit

dscp be fc "be"

dscp cs1 fc "ef"

dscp ef af31 fc "h1"

dscp af41 fc "h2"


dscp af21 fc "l1"

exit

sap-egress 10 create

description "SAP-egress-policy-Telcel"

queue 1 create

exit

queue 2 create

exit

queue 3 create

exit

queue 4 create

exit

queue 5 create

exit

queue 6 create

exit

queue 7 create

exit

fc af create

queue 3
exit

fc be create

queue 1

exit

fc ef create

queue 6

exit

fc h1 create

queue 7

exit

fc h2 create

queue 5

exit

fc l1 create

queue 4

exit

exit

mc-mlppp

exit

network 10 create
description "Network Policy Telcel"

ingress

dscp be fc be profile in

dscp ef fc h1 profile in

dscp cs2 fc h2 profile in

dscp cs4 fc ef profile in

dscp cs5 fc h1 profile in

dscp nc2 fc nc profile in

dscp af11 fc af profile in

dscp af12 fc af profile in

dscp af21 fc l1 profile in

dscp af22 fc l1 profile in

dscp af23 fc l1 profile out

dscp af31 fc ef profile in

dscp af32 fc ef profile in

lsp-exp 0 fc be profile out

lsp-exp 1 fc l2 profile in

lsp-exp 2 fc af profile out

lsp-exp 3 fc af profile in

lsp-exp 4 fc h2 profile in
lsp-exp 5 fc ef profile in

lsp-exp 6 fc h1 profile in

lsp-exp 7 fc nc profile in

exit

egress

fc af

dot1p-in-profile 1

dot1p-out-profile 1

exit

fc ef

dot1p-in-profile 4

dot1p-out-profile 4

exit

fc h1

dot1p-in-profile 5

dot1p-out-profile 5

exit

fc h2

dot1p-in-profile 3

dot1p-out-profile 3
exit

fc l1

dot1p-in-profile 2

dot1p-out-profile 2

exit

fc nc

dot1p-in-profile 6

dot1p-out-profile 6

exit

exit

exit

exit

#--------------------------------------------------

echo "Card Configuration"

#--------------------------------------------------

card 1

card-type iom-sar

mda 1

mda-type i7-1gb

network
ingress

queue-policy ipranetw_300-L3

exit

exit

no shutdown

exit

mda 2

mda-type i16-chds1

network

ingress

queue-policy ipranetw_300-L3

exit

exit

no shutdown

exit

no shutdown

exit

#--------------------------------------------------

echo "Port Configuration"

#--------------------------------------------------
port <1/1/1>

shutdown

description To_<C30-2106-0092>

ethernet

mode hybrid

encap-type qinq

mtu 1530

network

queue-policy ipranetw_300-L3

exit

no autonegotiate

exit

no shutdown

exit

port <1/1/5>

shutdown

description "To_NB-<<CONCEPCION_MALPAIS>>"

ethernet

encap-type dot1q

speed 1000
no autonegotiate

exit

no shutdown

exit

port <1/1/6>

shutdown

description "To_eNB-<<CONCEPCION_MALPAIS>>"

ethernet

encap-type dot1q

speed 1000

no autonegotiate

exit

no shutdown

exit

#--------------------------------------------------

echo "External Alarm Configuration"

#--------------------------------------------------

external-alarms

exit

#--------------------------------------------------
echo "Management Router Configuration"

#--------------------------------------------------

router management

exit

#--------------------------------------------------

echo "Router (Network Side) Configuration"

#--------------------------------------------------

router

interface "system"

address <10.131.32.51>/32

no shutdown

exit

autonomous-system 65000

#--------------------------------------------------

echo "SGT Mapping Configuration"

#--------------------------------------------------

sgt-qos

application icmp dscp nc2

application ssh dscp nc2

application telnet dscp nc2


exit

exit

#--------------------------------------------------

echo "IUB Service Configuration"

#--------------------------------------------------

service

vprn 530501 customer 1 create

autonomous-system 65000

route-distinguisher 65000:5351

interface "To_NB-<CONCEPCION_MALPAIS>" create

address <10.247.252.177>/29

sap <1/1/6>:<722> create

ingress

qos 10

exit

egress

qos 10

exit

exit

exit
interface "to-PE-UNINET-IUB" create

address <10.139.156.45>/31

sap <1/1/1>:<626>.100 create

exit

exit

bgp

group "Qinq_IUB"

local-as 65000

peer-as 8151

bfd-enable

neighbor <10.139.156.44>

local-address <10.139.156.45>

export "IUB_100"

import "import_bgp_PRINCIPAL"

bfd-enable

exit

exit

no shutdown

exit

no shutdown
exit

exit

#--------------------------------------------------

echo "LTE Service Configuration"

#--------------------------------------------------

service

vprn 530505 customer 1 create

autonomous-system 65000

route-distinguisher 65000:535

interface "To_eNB-<CONCEPCION_MALPAIS>" create

address <10.141.12.41>/29

sap <1/1/6>:<833> create

ingress

qos 10

exit

egress

qos 10

exit

exit

exit
interface "to-PE-UNINET-GN" create

address <10.139.164.45>/31

sap <1/1/1>:<626>.101 create

exit

exit

bgp

group "Qinq_GN"

local-as 65000

peer-as 8151

bfd-enable

neighbor <10.139.164.44>

local-address <10.139.164.45>

export "GN_101"

import "import_bgp_PRINCIPAL"

bfd-enable

exit

exit

no shutdown

exit

no shutdown
exit

exit

#--------------------------------------------------

echo "LTE OAM Service Configuration"

#--------------------------------------------------

service

ies 1 customer 1 create

interface "To_eNB-<CONCEPCION_MALPAIS>-OAM" create

address <10.131.156.241>/29

sap <1/1/6>:<762> create

exit

exit

interface "To_NB-<CONCEPCION_MALPAIS>-OAM" create

address <10.131.156.241>/29

sap <1/1/6>:<762> create

exit

exit

interface "To_CO-UNINET" create

address <10.139.172.45>/31

bfd 150 receive 150 multiplier 3


sap <1/1/1>:<626>.106 create

exit

exit

bgp

group "to-PE-UNINET"

family ipv4

local-as 65000

peer-as 8151

bfd-enable

neighbor <10.139.172.44>

local-address <10.139.172.45>

export "OYM_106"

import "import_bgp_PRINCIPAL"

bfd-enable

exit

exit

no shutdown

exit all

no shutdown

exit
exit

#--------------------------------------------------

echo "ABIS Service Configuration"

#--------------------------------------------------

service

vprn 530519 customer 1 create

autonomous-system 65000

route-distinguisher 65000:5359

interface "To_BTS-<CONCEPCION_MALPAIS>" create

address <10.131.29.137>/29

sap <1/1/6>:<905> create

ingress

qos 10

exit

egress

qos 10

exit

exit

exit

interface "to-PE_UNINET_ABIS" create


address <10.139.148.45>/31

sap <1/1/1>:<626>.103 create

exit

exit

bgp

group "Qinq_ABIS"

local-as 65000

peer-as 8151

bfd-enable

neighbor <10.139.148.44>

local-address <10.139.148.45>

export "ABIS_103"

import "import_bgp_PRINCIPAL"

bfd-enable

exit

exit

no shutdown

exit

no shutdown

exit
exit

#--------------------------------------------------

echo "CFE Service Configuration"

#--------------------------------------------------

service

vprn 530520 customer 1 create

autonomous-system 65000

route-distinguisher 65000:5320

interface "to-PE_UNINET-CFE" create

address <10.139.132.45>/31

sap <1/1/1>:<626>.104 create

exit

exit

bgp

group "Qinq_CFE"

local-as 65000

peer-as 8151

bfd-enable

neighbor <10.139.132.44>

local-address <110.139.132.45>
export "CFE_104"

import "import_bgp_PRINCIPAL"

bfd-enable

exit

exit

no shutdown

exit

no shutdown

exit

exit

#--------------------------------------------------

echo "Router (Service Side) Configuration"

#--------------------------------------------------

router

#--------------------------------------------------

echo "Policy Configuration"

#--------------------------------------------------

policy-options

begin

prefix-list "Default_route"
prefix 0.0.0.0/0 exact

exit

prefix-list "IUB_VLAN_100"

prefix <10.247.252.176>/29 exact

exit

prefix-list "GN_VLAN_101"

prefix <10.141.12.40>/29 exact

exit

prefix-list "ABIS_VLAN_103"

prefix <10.131.29.136>/30 exact

exit

prefix-list "CFE_VLAN_104"

exit

prefix-list "OYM_VLAN_106"

prefix <10.131.32.51>/32 exact

prefix <10.131.156.240>/29 exact

exit

community GN members 8151:285 8151:375 64800:1 65000:3

community IUB members 8151:285 8151:376 64800:1 65000:3


community OYM members 8151:285 8151:377 64800:1 65000:3

community WIFI members 8151:285 8151:380 64800:1 65000:3

community ABIS members 8151:285 8151:379 64800:1 65000:3

community CFE members 8151:285 8151:391 64800:1 65000:3

community FEMTO members 8151:285 8151:378 64800:1 65000:3

policy-statement "IUB_100"

entry 10

from

protocol direct

prefix-list "IUB_VLAN_100"

exit

action accept

community add "IUB"

exit

exit

default-action reject

exit

policy-statement "GN_101"

entry 10

from
protocol direct

prefix-list "GN_VLAN_101"

exit

action accept

community add "GN"

exit

exit

default-action reject

exit

policy-statement "ABIS_103"

entry 10

from

protocol direct

prefix-list "ABIS_VLAN_103"

exit

action accept

community add "ABIS"

exit

exit

default-action reject
exit

policy-statement "CFE_104"

entry 10

from

protocol direct

prefix-list "CFE_VLAN_104"

exit

action accept

community add "CFE"

exit

exit

default-action reject

exit

policy-statement "OYM_106"

entry 10

from

protocol direct

prefix-list "OYM_VLAN_106"

exit

action accept
community add "OYM"

exit

exit

default-action reject

exit

policy-statement "import_bgp_PRINCIPAL"

entry 10

from

protocol bgp

prefix-list "Default_route"

exit

action accept

local-preference 200

exit all

configure

router

#--------------------------------------------------

echo "Router (Service Side) Configuration"

#--------------------------------------------------

policy-options
begin

prefix-list Default_route

prefix 0.0.0.0/0 exact

exit

policy-statement import_bgp

entry 10

from

protocol bgp

prefix-list Default_route

exit

action accept

exit

exit

default-action reject

exit

commit

exit

#--------------------------------------------------

echo "System Sync-If-Timing Configuration"


#--------------------------------------------------

configure

system

sync-if-timing

begin

commit

exit

exit

#--------------------------------------------------

echo "System Time Configuration"

#--------------------------------------------------

system

time

ntp

exit

exit

exit

exit all

bof persist on

You might also like