=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2022.11.10 10:18:22 =~=~=~=~=~=~=~=~=~=~=~= Both links down, not waiting for other switches Switch number is 1 Restricted Rights Legend Use, duplication, or disclosure by the Government is subject to restrictions as set forth in subparagraph (c) of the Commercial Computer Software - Restricted Rights clause at FAR sec. 52.227-19 and subparagraph (c) (1) (ii) of the Rights in Technical Data and Computer Software clause at DFARS sec. 252.227-7013. cisco Systems, Inc. 170 West Tasman Drive San Jose, California 95134-1706 Cisco IOS Software [Denali], Catalyst L3 Switch Software (CAT3K_CAA-UNIVERSALK9-M), Version 16.03.11, RELEASE SOFTWARE (fc2) Technical Support: http://www.cisco.com/techsupport Copyright (c) 1986-2020 by Cisco Systems, Inc. Compiled Mon 17-Aug-20 04:07 by mcpre Cisco IOS-XE software, Copyright (c) 2005-2020 by cisco Systems, Inc. All rights reserved. Certain components of Cisco IOS-XE software are licensed under the GNU General Public License ("GPL") Version 2.0. The software code licensed under GPL Version 2.0 is free software that comes with ABSOLUTELY NO WARRANTY. You can redistribute and/or modify such GPL code under the terms of GPL Version 2.0. For more details, see the documentation or "License Notice" file accompanying the IOS-XE software, or the applicable URL provided on the flyer accompanying the IOS-XE software. FIPS: Flash Key Check : Begin FIPS: Flash Key Check : End, Not Found, FIPS Mode Not Enabled This product contains cryptographic features and is subject to United States and local country laws governing import, export, transfer and use. Delivery of Cisco cryptographic products does not imply third-party authority to import, export, distribute or use encryption. Importers, exporters, distributors and users are responsible for compliance with U.S. and local country laws. By using this product you agree to comply with applicable laws and regulations. If you are unable to comply with U.S. and local laws, return this product immediately. A summary of U.S. laws governing Cisco cryptographic products may be found at: http://www.cisco.com/wwl/export/crypto/tool/stqrg.html If you require further assistance please contact us by sending email to export@cisco.com. cisco WS-C3650-48PD (MIPS) processor (revision K0) with 865684K/6147K bytes of memory. Processor board ID FDO2033Q09L 2048K bytes of non-volatile configuration memory. 4194304K bytes of physical memory. 252000K bytes of Crash Files at crashinfo:. 1611414K bytes of Flash at flash:. 0K bytes of at webui:. Base Ethernet MAC Address : 00:a2:ee:4c:ee:80 Motherboard Assembly Number : 73-15897-06 Motherboard Serial Number : FDO20330Y6G Model Revision Number : K0 Motherboard Revision Number : B0 Model Number : WS-C3650-48PD System Serial Number : FDO2033Q09L %INIT: waited 0 seconds for NVRAM to be available % There may not be enough space available to collect the complete crashinfo % It would be advisable to have 283008 bytes free space on crashinfo:crashinfo_RP_00_00 Press RETURN to get started! *Nov 10 15:19:36.571: dev_pluggable_optics_selftest attribute table internally inconsistent @ 0x125 *Nov 10 15:19:37.371: %NBAR-6-CACHE_SYNC_INFO: Cache synchronization. Initialized. *Nov 10 15:19:40.969: %SPANTREE-5-EXTENDED_SYSID: Extended SysId enabled for type vlan *Nov 10 15:19:41.525: %LINK-3-UPDOWN: Interface Lsmpi18/0/3, changed state to up *Nov 10 15:19:41.526: %LINK-3-UPDOWN: Interface EOBC18/0/1, changed state to up *Nov 10 15:19:41.526: %LINK-3-UPDOWN: Interface GigabitEthernet0/0, cha chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001#nged state to down *Nov 10 15:19:41.526: %LINK-3-UPDOWN: Interface LIIN18/0/2, changed state to up *Nov 10 15:19:42.014: %HMANRP-6-HMAN_IOS_CHANNEL_INFO: HMAN-IOS channel event for switch 1: EMP_RELAY: Channel UP! *Nov 10 15:19:42.037: %HMANRP-6-EMP_NO_ELECTION_INFO: Could not elect active EMP switch, setting emp active switch to 0: EMP_RELAY: Could not elect switch with mgmt port UP *Nov 10 15:19:21.448: %STACKMGR-1-STACK_LINK_CHANGE:Switch 1 R0/0: stack_mgr: Stack port 1 on switch 1 is nocable *Nov 10 15:19:21.448: %STACKMGR-1-STACK_LINK_CHANGE:Switch 1 R0/0: stack_mgr: Stack port 2 on switch 1 is down *Nov 10 15:19:21.448: %STACKMGR-1-STACK_LINK_CHANGE:Switch 1 R0/0: stack_mgr: Stack port 2 on switch 1 is nocable *Nov 10 15:19:21.448: %STACKMGR-6-SWITCH_ADDED:Switch 1 R0/0: stack_mgr: Switch 1 has been added to the stack. *Nov 10 15:19:21.448: %STACKMGR-6-SWITCH_ADDED:Switch 1 R0/0: stack_mgr: Switch 1 has been added to the stack. *Nov 10 15:19:21.448: %STACKMGR-6-SWITCH_ADDED:Switch 1 R0/0: stack_mgr: Switch 1 has been added to the stack. *Nov 10 15:19:21.448: %STACKMGR-6-ACTIVE_ELECTED:Switch 1 R0/0: stack_mgr: Switch 1 has been elected ACTIVE. *Nov 10 15:19:42.067: %HMANRP-6-EMP_NO_ELECTION_INFO: Could not elect active EMP switch, setting emp active switch to 0: EMP_RELAY: Could not elect switch with mgmt port UP *Nov 10 15:19:42.566: %LINEPROTO-5-UPDOWN: Line protocol on Interface Lsmpi18/0/3, changed state to up *Nov 10 15:19:42.566: %LINEPROTO-5-UPDOWN: Line protocol on Interface EOBC18/0/1, changed state to up *Nov 10 15:19:42.566: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0, changed state to down *Nov 10 15:19:42.567: %LINEPROTO-5-UPDOWN: Line protocol on Interface LIIN18/0/2, changed state to up *Nov 10 15:19:45.124: %IOSXE_MGMTVRF-6-CREATE_SUCCESS_INFO: Management vrf Mgmt-vrf created with ID 1, ipv4 table-id 0x1, ipv6 table-id 0x1E000001 *Nov 10 15:19:48.342: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down *Nov 10 15:19:51.703: %BTRACE_ROTATE-3-ARCHIVE_FAIL:Switch 1 R0/0: btrace_rotate.sh: Error archiving trace file - fed_F0-0.15428_0.20221110151732.bin(error:'' for file) *Nov 10 15:19:55.614: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0/48, changed state to down *Nov 10 15:19:55.976: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 10.101.6.75 port 0 CLI Request Triggered *Nov 10 15:19:55.979: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 10.100.6.50 port 0 CLI Request Triggered *Nov 10 15:19:56.670: %LINK-5-CHANGED: Interface GigabitEthernet0/0, changed state to administratively down *Nov 10 15:19:56.723: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan96, changed state to down *Nov 10 15:19:56.734: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan172, changed state to down *Nov 10 15:19:56.785: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan999, changed state to down *Nov 10 15:19:57.686: %LINK-3-UPDOWN: Interface GigabitEthernet1/0/48, changed state to down *Nov 10 15:19:57.707: %LINK-5-CHANGED: Interface Vlan1, changed state to administratively down *Nov 10 15:19:58.566: %SYS-5-CONFIG_I: Configured from memory by console *Nov 10 15:19:58.713: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0/48, changed state to down *Nov 10 15:20:03.328: %SYS-5-RESTART: System restarted -- Cisco IOS Software [Denali], Catalyst L3 Switch Software (CAT3K_CAA-UNIVERSALK9-M), Version 16.03.11, RELEASE SOFTWARE (fc2) Technical Support: http://www.cisco.com/techsupport Copyright (c) 1986-2020 by Cisco Systems, Inc. Compiled Mon 17-Aug-20 04:07 by mcpre *Nov 10 15:20:03.498: %SSH-5-ENABLED: SSH 2.0 has been enabled *Nov 10 15:20:03.970: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 10.101.6.75 port 514 started - CLI initiated *Nov 10 15:20:03.971: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 10.100.6.50 port 514 started - CLI initiated *Nov 10 15:20:04.930: %HMANRP-6-EMP_NO_ELECTION_INFO: Could not elect active EMP switch, setting emp active switch to 0: EMP_RELAY: Could not elect switch with mgmt port UP *Nov 10 15:20:05.624: %SNMP-5-COLDSTART: SNMP agent on host chncrs001 is undergoing a cold start *Nov 10 15:20:08.318: %BTRACE_ROTATE-3-ARCHIVE_FAIL:Switch 1 R0/0: btrace_rotate.sh: Error archiving trace file - pvp_R0-0.7735_0.20221110151636.bin(error:'' for file) *Nov 10 15:20:09.297: %PNP-6-PNP_DISCOVERY_STOPPED: PnP Discovery stopped (Startup Config Present) chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001# chncrs001#show ver Cisco IOS Software [Denali], Catalyst L3 Switch Software (CAT3K_CAA-UNIVERSALK9-M), Version 16.03.11, RELEASE SOFTWARE (fc2) Technical Support: http://www.cisco.com/techsupport Copyright (c) 1986-2020 by Cisco Systems, Inc. Compiled Mon 17-Aug-20 04:07 by mcpre Cisco IOS-XE software, Copyright (c) 2005-2020 by cisco Systems, Inc. All rights reserved. Certain components of Cisco IOS-XE software are licensed under the GNU General Public License ("GPL") Version 2.0. The software code licensed under GPL Version 2.0 is free software that comes with ABSOLUTELY NO WARRANTY. You can redistribute and/or modify such GPL code under the terms of GPL Version 2.0. For more details, see the documentation or "License Notice" file accompanying the IOS-XE software, or the applicable URL provided on the flyer accompanying the IOS-XE software. ROM: IOS-XE ROMMON BOOTLDR: CAT3K_CAA Boot Loader (CAT3K_CAA-HBOOT-M) Version 4.66, RELEASE SOFTWARE (P) chncrs001 uptime is 1 minute --More--  Uptime for this control processor is 4 minutes System returned to ROM by Power Failure at 15:23:07 UTC Tue Nov 8 2022 System image file is "flash:packages.conf" Last reload reason: Power Failure This product contains cryptographic features and is subject to United States and local country laws governing import, export, transfer and use. Delivery of Cisco cryptographic products does not imply third-party authority to import, export, distribute or use encryption. Importers, exporters, distributors and users are responsible for compliance with U.S. and local country laws. By using this product you agree to comply with applicable laws and regulations. If you are unable to comply with U.S. and local laws, return this product immediately. A summary of U.S. laws governing Cisco cryptographic products may be found at: http://www.cisco.com/wwl/export/crypto/tool/stqrg.html If you require further assistance please contact us by sending email to export@cisco.com. --More--  Technology Package License Information: ----------------------------------------------------------------- Technology-package Technology-package Current Type Next reboot ------------------------------------------------------------------ lanbasek9 Permanent lanbasek9 cisco WS-C3650-48PD (MIPS) processor (revision K0) with 865684K/6147K bytes of memory. Processor board ID FDO2033Q09L 4 Virtual Ethernet interfaces 50 Gigabit Ethernet interfaces 2 Ten Gigabit Ethernet interfaces 2048K bytes of non-volatile configuration memory. 4194304K bytes of physical memory. 252000K bytes of Crash Files at crashinfo:. 1611414K bytes of Flash at flash:. 0K bytes of at webui:. Base Ethernet MAC Address : 00:a2:ee:4c:ee:80 Motherboard Assembly Number : 73-15897-06 Motherboard Serial Number : FDO20330Y6G --More--  Model Revision Number : K0 Motherboard Revision Number : B0 Model Number : WS-C3650-48PD System Serial Number : FDO2033Q09L Switch Ports Model SW Version SW Image Mode ------ ----- ----- ---------- ---------- ---- * 1 52 WS-C3650-48PD 16.03.11 CAT3K_CAA-UNIVERSALK9 INSTALL Configuration register is 0x102 chncrs001#show run ^ % Invalid input detected at '^' marker. chncrs001#en Password: chncrs001#show run Building configuration... Current configuration : 24475 bytes ! ! Last configuration change at 15:20:08 UTC Thu Nov 10 2022 ! version 16.3 no service pad service timestamps debug datetime msec service timestamps log datetime msec no platform punt-keepalive disable-kernel-core ! hostname chncrs001 ! ! vrf definition Mgmt-vrf ! address-family ipv4 exit-address-family ! address-family ipv6 exit-address-family ! aaa new-model ! ! aaa authentication login default group radius none aaa authentication login console none aaa authentication login ISE group radius none aaa authorization exec ISE group radius none aaa accounting exec default start-stop group radius ! ! ! ! ! ! aaa session-id common boot system switch all flash:packages.conf switch 1 provision ws-c3650-48pd ! ! ! ! ip routing --More--  ! ! ! ip domain name *removed for security* ! ! ! ! ! ! ! ! vtp mode off ! crypto *Removed for security* ! ! crypto *Removed for security* ! license boot level lanbasek9 diagnostic bootup level minimal spanning-tree mode rapid-pvst spanning-tree portfast default spanning-tree portfast bpduguard default spanning-tree extend system-id ! ! redundancy mode sso ! ! transceiver type all monitoring ! vlan 4 name Clients ! vlan 96 name User_Data ! vlan 112 ! vlan 172 name User_Voice ! vlan 999 name Guest ! ! class-map match-any system-cpp-police-topology-control description Topology control class-map match-any system-cpp-police-sw-forward description Sw forwarding, SGT Cache Full, LOGGING class-map match-any system-cpp-default description DHCP snooping, show forward and rest of traffic class-map match-any system-cpp-police-sys-data description Learning cache ovfl, Crypto Control, Exception, EGR Exception, NFL SAMPLED DATA, Gold Pkt, RPF Failed class-map match-any system-cpp-police-punt-webauth description Punt Webauth class-map match-any system-cpp-police-forus description Forus Address resolution and Forus traffic class-map match-any system-cpp-police-multicast-end-station description MCAST END STATION class-map match-any system-cpp-police-multicast description Transit Traffic and MCAST Data class-map match-any system-cpp-police-l2-control description L2 control class-map match-any system-cpp-police-dot1x-auth description DOT1X Auth class-map match-any system-cpp-police-data description ICMP_GEN and BROADCAST class-map match-any system-cpp-police-control-low-priority description ICMP redirect and general punt class-map match-any system-cpp-police-wireless-priority1 description Wireless priority 1 class-map match-any system-cpp-police-wireless-priority2 description Wireless priority 2 class-map match-any system-cpp-police-wireless-priority3-4-5 description Wireless priority 3,4 and 5 class-map match-any non-client-nrt-class class-map match-any system-cpp-police-routing-control description Routing control class-map match-any system-cpp-police-protocol-snooping description Protocol snooping ! policy-map port_child_policy class non-client-nrt-class bandwidth remaining ratio 10 policy-map VOIP policy-map system-cpp-policy class system-cpp-police-data police rate 200 pps class system-cpp-police-sys-data police rate 100 pps class system-cpp-police-sw-forward police rate 1000 pps class system-cpp-police-multicast police rate 500 pps class system-cpp-police-multicast-end-station police rate 2000 pps class system-cpp-police-punt-webauth class system-cpp-police-l2-control class system-cpp-police-routing-control police rate 1800 pps class system-cpp-police-control-low-priority class system-cpp-police-wireless-priority1 class system-cpp-police-wireless-priority2 class system-cpp-police-wireless-priority3-4-5 class system-cpp-police-topology-control class system-cpp-police-dot1x-auth class system-cpp-police-protocol-snooping class system-cpp-police-forus class system-cpp-default ! ! ! ! ! ! ! ! ! ! ! ! ! interface GigabitEthernet0/0 vrf forwarding Mgmt-vrf no ip address shutdown negotiation auto ! interface GigabitEthernet1/0/1 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/2 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/3 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/4 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/5 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/6 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/7 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/8 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/9 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/10 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/11 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/12 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/13 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/14 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/15 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/16 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/17 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/18 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/19 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root --More--  ! interface GigabitEthernet1/0/20 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/21 switchport trunk native vlan 96 switchport trunk allowed vlan 96,172,999 switchport mode trunk ! interface GigabitEthernet1/0/22 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/23 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/24 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/25 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/26 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/27 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/28 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/29 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/30 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root --More--  ! interface GigabitEthernet1/0/31 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/32 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! --More--  interface GigabitEthernet1/0/33 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/34 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/35 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/36 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/37 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/38 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/39 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/40 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/41 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/42 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/43 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/44 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/45 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/46 switchport access vlan 96 switchport mode access switchport voice vlan 172 switchport port-security maximum 10 switchport port-security violation restrict switchport port-security aging time 2 switchport port-security aging type inactivity spanning-tree portfast spanning-tree guard root ! interface GigabitEthernet1/0/47 switchport trunk native vlan 96 switchport trunk allowed vlan 96,172,999 switchport mode trunk ! interface GigabitEthernet1/0/48 no switchport ip address 10.117.7.226 255.255.255.248 ! interface GigabitEthernet1/1/1 ! interface GigabitEthernet1/1/2 ! interface TenGigabitEthernet1/1/3 ! interface TenGigabitEthernet1/1/4 ! interface Vlan1 no ip address shutdown ! interface Vlan96 ip address 10.117.7.1 255.255.255.192 ip helper-address 10.100.5.23 ! interface Vlan172 ip address 10.117.7.129 255.255.255.192 ip helper-address 10.100.5.23 ! interface Vlan999 ip address 10.117.7.65 255.255.255.192 ip helper-address 10.100.5.23 ip access-group 114 in ! ip forward-protocol nd no ip http server ip http authentication local no ip http secure-server ip route 0.0.0.0 0.0.0.0 10.117.7.225 ip ssh version 2 ! ip access-list extended AutoQos-4.0-wlan-Acl-Bulk-Data permit tcp any any eq 22 permit tcp any any eq 465 permit tcp any any eq 143 permit tcp any any eq 993 permit tcp any any eq 995 permit tcp any any eq 1914 permit tcp any any eq ftp permit tcp any any eq ftp-data permit tcp any any eq smtp permit tcp any any eq pop3 ip access-list extended AutoQos-4.0-wlan-Acl-MultiEnhanced-Conf permit udp any any range 16384 32767 permit tcp any any range 50000 59999 ip access-list extended AutoQos-4.0-wlan-Acl-Scavanger permit tcp any any range 2300 2400 permit udp any any range 2300 2400 permit tcp any any range 6881 6999 permit tcp any any range 28800 29100 permit tcp any any eq 1214 permit udp any any eq 1214 permit tcp any any eq 3689 permit udp any any eq 3689 permit tcp any any eq 11999 ip access-list extended AutoQos-4.0-wlan-Acl-Signaling permit tcp any any range 2000 2002 permit tcp any any range 5060 5061 permit udp any any range 5060 5061 ip access-list extended AutoQos-4.0-wlan-Acl-Transactional-Data permit tcp any any eq 443 permit tcp any any eq 1521 permit udp any any eq 1521 permit tcp any any eq 1526 permit udp any any eq 1526 permit tcp any any eq 1575 permit udp any any eq 1575 permit tcp any any eq 1630 permit udp any any eq 1630 permit tcp any any eq 1527 permit tcp any any eq 6200 permit tcp any any eq 3389 permit tcp any any eq 5985 permit tcp any any eq 8080 ! ip radius source-interface Vlan96 logging trap debugging logging source-interface Vlan96 logging host X.X.X.X logging host X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 10 permit X.X.X.X access-list 114 permit udp any eq bootpc any eq bootps access-list 114 permit tcp 10.117.7.64 0.0.0.63 host 10.100.7.2 eq 8443 access-list 114 permit tcp 10.117.7.64 0.0.0.63 host 10.130.7.2 eq 8443 access-list 114 deny ip 10.117.7.64 0.0.0.63 10.0.0.0 0.255.255.255 access-list 114 deny ip 10.117.7.64 0.0.0.63 172.16.0.0 0.15.255.255 access-list 114 deny ip 10.117.7.64 0.0.0.63 192.168.0.0 0.0.255.255 access-list 114 permit ip 10.117.7.64 0.0.0.63 any ! snmp-server community xxxxx RO 10 snmp-server community xxxxx RO 10 snmp-server enable traps port-security snmp-server enable traps license ! ! radius server ISE_Server address ipv4 X.X.X.X auth-port 1645 acct-port 1646 timeout 30 key xxxx ! radius server ISE_Server address ipv4 X.X.X.X auth-port 1645 acct-port 1646 timeout 30 key xxxx ! ! control-plane service-policy input system-cpp-policy ! privilege exec level 8 enable privilege exec level 15 show running-config full privilege exec level 15 show running-config view full privilege exec level 15 show running-config view privilege exec level 15 show running-config privilege exec level 7 show configuration privilege exec level 1 show banner login ^CCCC Example Banner ^C ! line con 0 privilege level 8 login authentication console stopbits 1 line aux 0 stopbits 1 line vty 0 4 authorization exec ISE login authentication ISE transport input ssh line vty 5 15 authorization exec ISE login authentication ISE transport input none ! ntp server X.X.X.X ! ! ! ! ! ap dot11 airtime-fairness policy-name Default 0 ap group default-group ap hyperlocation ble-beacon 0 ap hyperlocation ble-beacon 1 ap hyperlocation ble-beacon 2 ap hyperlocation ble-beacon 3 ap hyperlocation ble-beacon 4 end chncrs001# chncrs001# chncrs001# chncrs001# chncrs001#