version 17.13 service timestamps debug datetime msec service timestamps log datetime msec platform qfp utilization monitor load 80 platform punt-keepalive disable-kernel-core platform hardware throughput level 50M ! hostname Router131 ! boot-start-marker boot-end-marker ! ! no aaa new-model clock timezone CET 1 0 ! canbus baudrate 125000 ! ignition off-timer 300 ! ignition undervoltage threshold 9 000 ! ignition battery-type 12v ! ignition sense-voltage threshold 13 000 ! no ignition sense ! no ignition enable ! ip domain name DASD.com ! ! ! ! ! ! ! ! ! login block-for 60 attempts 3 within 30 login delay 3 login on-success log ! ! ! ! ! ! ! subscriber templating ! ! ! ! ! ! ! ! ! ! ! ! ! ! crypto pki trustpoint TP-self-signed-126360883 enrollment selfsigned subject-name cn=IOS-Self-Signed-Certificate-126360883 revocation-check none rsakeypair TP-self-signed-126360883 hash sha256 ! crypto pki trustpoint SLA-TrustPoint enrollment pkcs12 revocation-check crl hash sha256 ! crypto pki trustpoint TP-self-signed-3312987740 enrollment selfsigned subject-name cn=IOS-Self-Signed-Certificate-3312987740 revocation-check none rsakeypair TP-self-signed-3312987740 hash sha256 ! crypto pki trustpoint TP-self-signed-1797018295 enrollment selfsigned subject-name cn=IOS-Self-Signed-Certificate-1797018295 revocation-check none rsakeypair TP-self-signed-1797018295 hash sha256 ! ! crypto pki certificate chain TP-self-signed-126360883 crypto pki certificate chain SLA-TrustPoint crypto pki certificate chain TP-self-signed-3312987740 crypto pki certificate chain TP-self-signed-1797018295 ! ! ! ! ! ! ! ! ! diagnostic bootup level minimal ! no license feature hseck9 license udi pid IR1833-K9 sn FCW2827Y5VR memory free low-watermark processor 43704 ! spanning-tree extend system-id ! enable secret 9 $9$T6/MVPnxx/.s0E$Zaj8uSsru3CgKX5InGHpyKcpL6Qcknj0zzRhHgzVQ.Y enable password ------ ! username admin privilege 15 password 0 ----- ! redundancy mode none ! ! ! ! controller Cellular 0/4/0 ! controller Cellular 0/5/0 ! ! vlan internal allocation policy ascending ! ! track 1 ip sla 1 reachability ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! interface GigabitEthernet0/0/0 no ip address shutdown negotiation auto ! interface GigabitEthernet0/1/0 switchport mode access ! interface GigabitEthernet0/1/1 switchport trunk allowed vlan 1,10 switchport mode access ! interface GigabitEthernet0/1/2 switchport trunk allowed vlan 1,10 switchport mode access ! interface GigabitEthernet0/1/3 switchport trunk allowed vlan 1,10 switchport mode access ! interface Wlan-GigabitEthernet0/1/4 ! interface Cellular0/4/0 description Secondary_SIM ip address negotiated ip nat outside ip tcp adjust-mss 1460 dialer in-band dialer-group 1 ipv6 enable pulse-time 1 ! interface Cellular0/4/1 no ip address shutdown ! interface Cellular0/5/0 description Primary_SIM ip address negotiated ip nat outside ip tcp adjust-mss 1460 dialer in-band dialer-group 1 ipv6 enable pulse-time 1 ! interface Cellular0/5/1 no ip address shutdown ! interface Vlan1 ip address 192.168.2.1 255.255.255.0 ip nat inside no mop enabled ! interface Async0/2/0 no ip address encapsulation scada ! interface Async0/2/1 no ip address encapsulation scada ! ip forward-protocol nd ip ftp username -- ip ftp password ---- ip http server ip http auth-retry 3 time-window 1 ip http authentication local ip http secure-server ! ip nat inside source static tcp 192.168.2.10 22 10.20.0.17 2222 extendable ip nat inside source static udp 192.168.2.10 14000 10.20.0.17 14000 extendable ip nat inside source static udp 192.168.2.10 14001 10.20.0.17 14001 extendable ip nat inside source static tcp 192.168.2.10 22 10.21.0.17 2222 extendable ip nat inside source static udp 192.168.2.10 14000 10.21.0.17 14000 extendable ip nat inside source static udp 192.168.2.10 14001 10.21.0.17 14001 extendable ip nat inside source route-map 4G interface Cellular0/4/0 overload ip nat inside source route-map 5G interface Cellular0/5/0 overload ip route 0.0.0.0 0.0.0.0 10.20.0.17 track 1 ip route 0.0.0.0 0.0.0.0 10.21.0.17 10 ip ssh bulk-mode 131072 ip scp server enable ! ! ip sla 1 icmp-echo 10.20.0.17 frequency 10 ip sla schedule 1 life forever start-time now ip access-list standard 1 10 permit 192.168.2.0 0.0.0.255 dialer-list 1 protocol ip permit ! route-map 4G permit 10 match ip address 1 match interface Cellular0/4/0 ! route-map 5G permit 10 match ip address 1 match interface Cellular0/5/0 ! ! ! ! control-plane ! ! ! ! ! ! ! ! line con 0 stopbits 1 line 0/0/0 0/0/1 line 0/2/0 0/2/1 line vty 0 4 login local transport input ssh line vty 5 14 login transport input ssh ! no acc-gyro enable acc-gyro frequency one/sec ! ! ! ! ! ! ! ! ! ! ! ! ! end