hostname idc
logging console notifications
ip name-server 180.76.76.76 219.141.136.10 114.114.114.114
ip domain name bj
login on-success log
username xxx privilege 15 password 7 104F5F4Bx34F4B5D5A537A7E
username xxx privilege 15 password 7 08105D1F5C4Fx4424B585855
lldp run
cdp run
crypto isakmp policy 10
encr 3des
hash md5
authentication pre-share
group 14
crypto isakmp key xxxx address 0.0.0.0
crypto ipsec transform-set TS esp-3des esp-md5-hmac
mode tunnel
crypto ipsec profile PR
set transform-set TS
interface Tunnel0
description to zouxinquan-home
ip address 192.168.255.3 255.255.255.248
no ip redirects
ip mtu 1400
ip nat inside
ip nhrp network-id 1
ip nhrp nhs 192.168.255.2 nbma xxxx.f3322.net multicast
ip nhrp nhs 192.168.255.1 nbma xxxx.f3322.net multicast
ip tcp adjust-mss 1300
cdp enable
tunnel source GigabitEthernet1
tunnel mode gre multipoint
tunnel protection ipsec profile PR
interface GigabitEthernet1
ip address 192.168.78.203 255.255.254.0
ip nat outside
router bgp 64512
bgp router-id 192.168.255.3
bgp log-neighbor-changes
bgp graceful-restart
no bgp default ipv4-unicast
neighbor 192.168.255.1 remote-as 64512
neighbor 192.168.255.2 remote-as 64512
address-family ipv4
network 192.168.16.0 mask 255.255.252.0
redistribute static route-map RES
neighbor 192.168.255.1 activate
neighbor 192.168.255.2 activate
exit-address-family
ip http server
ip http authentication local
ip http secure-server
ip nat inside source static tcp 192.168.2.100 8118 interface GigabitEthernet1 8118
ip nat inside source static tcp 192.168.100.189 5000 interface GigabitEthernet1 5000
ip nat inside source list 1 interface GigabitEthernet1 overload
ip dns server
ip route 0.0.0.0 0.0.0.0 GigabitEthernet1 192.168.78.1
ip route 192.168.16.0 255.255.252.0 GigabitEthernet1 192.168.78.1
ip route 192.168.78.1 255.255.255.255 GigabitEthernet1
ip route 192.168.78.202 255.255.255.255 GigabitEthernet1
ip route 192.168.78.206 255.255.255.255 GigabitEthernet1
ip ssh version 2
ip prefix-list RES seq 5 permit 192.168.78.0/23 ge 32
access-list 1 deny 192.168.78.0 0.0.0.255
access-list 1 permit 192.168.0.0 0.0.255.255
route-map RES permit 10
match ip address prefix-list RES
snmp-server community idc@bj RW
snmp-server location Beijing China
line vty 0 4
transport input telnet ssh
end