<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco switch authentication problem with ISE in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197387#M591918</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1771571"&gt;@keith-mk-li&lt;/a&gt;&amp;nbsp; - just a few suggestions when providing show run output from devices. Your output is very long and hard to read because of the paging breaks. It's helpful to always issue this command when there is more than one page/screen of output involved&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;terminal length 0&lt;/LI-CODE&gt;
&lt;P&gt;Next, you can restrict the output just for your RADIUS config, by using the command&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;show run | section radius
show run | in aaa&lt;/LI-CODE&gt;
&lt;P&gt;That narrows it down a lot. But in fairness showing us the interface and additional lines of config is useful.&lt;/P&gt;
&lt;P&gt;From your output I can see that on switch 2 you didn't explicitly set an access VLAN on any of your interfaces. In a non-NAC configuration, the IOS would default to VLAN 1. Please set an access vlan (unless it's VLAN 1, which would be the implied default)&lt;/P&gt;
&lt;P&gt;Is the L3 address of&amp;nbsp;&lt;SPAN&gt;Vlan1 (10.12.118.230) the correct source interface to be used for RADIUS, and is this also the IP address configured in ISE for SW2?&amp;nbsp; It's messy - you are using that for users and for network management?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From the "show aaa servers" you can see a bunch of rejects from ISE. What is ISE reporting in the Live Logs details?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;RADIUS shared secret in switch2 and ISE match?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 22 Sep 2024 21:00:59 GMT</pubDate>
    <dc:creator>Arne Bier</dc:creator>
    <dc:date>2024-09-22T21:00:59Z</dc:date>
    <item>
      <title>Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197133#M591904</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; I have an issue with the following switches, switch 1 its could authenticate with ISE, whereas switch 2 its doesn't, when i run "sh authentication session" its has traffic in switch 1 and switch 2 no session show at all, and when i run aaa test command to verify connectivity in switch 1 its show success whereas 2 doesn't, can anyone take a look any issue found on the switch 2 compared with switch 1 ?&amp;nbsp;the configured was configured by former colleague, and i believe switch 1 is using ibns 2 whereas switch 1 did not, any help would be appreicated&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Switch 1&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Building configuration...&lt;/P&gt;&lt;P&gt;Current configuration : 119811 bytes&lt;BR /&gt;!&lt;BR /&gt;! Last configuration change at 15:01:38 HKG Fri Sep 20 2024 by adm_kli&lt;BR /&gt;! NVRAM config last updated at 10:57:09 HKG Mon Sep 16 2024 by adm_klam&lt;BR /&gt;!&lt;BR /&gt;version 17.9&lt;BR /&gt;service timestamps debug datetime msec localtime&lt;BR /&gt;service timestamps log datetime msec localtime&lt;BR /&gt;service password-encryption&lt;BR /&gt;service call-home&lt;BR /&gt;platform punt-keepalive disable-kernel-core&lt;BR /&gt;!&lt;BR /&gt;hostname SW&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vrf definition Mgmt-vrf&lt;BR /&gt;!&lt;BR /&gt;address-family ipv4&lt;BR /&gt;exit-address-family&lt;BR /&gt;!&lt;BR /&gt;address-family ipv6&lt;BR /&gt;exit-address-family&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;logging buffered 40960&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa group server radius ISE&lt;BR /&gt;server name ISE1&lt;BR /&gt;server name ISE2&lt;BR /&gt;deadtime 300&lt;BR /&gt;!&lt;BR /&gt;aaa authentication login default local&lt;BR /&gt;aaa authentication dot1x default group ISE&lt;BR /&gt;aaa authorization exec default local&lt;BR /&gt;aaa authorization network default group ISE&lt;BR /&gt;aaa accounting delay-start all&lt;BR /&gt;aaa accounting update newinfo&lt;BR /&gt;aaa accounting identity default start-stop group ISE&lt;BR /&gt;aaa accounting network default start-stop group ISE&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa server radius dynamic-author&lt;BR /&gt;client 10.121.102.215 server-key 7 062XXXXXXXXXXXXXXX&lt;BR /&gt;client 10.121.102.216 server-key 7 12XXXXXXXXXXXXXX&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;clock timezone HKG 8 0&lt;BR /&gt;switch 1 provision c9200-48p&lt;BR /&gt;switch 2 provision c9200-48p&lt;BR /&gt;switch 3 provision c9200-48p&lt;BR /&gt;switch 4 provision c9200-48p&lt;BR /&gt;switch 5 provision c9200-48p&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip domain name ABC.Com&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;login on-success log&lt;BR /&gt;vtp mode transparent&lt;BR /&gt;vtp version 1&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;flow exporter 10.12.101.76&lt;BR /&gt;destination 10.12.101.76&lt;BR /&gt;transport udp 6007&lt;BR /&gt;!&lt;BR /&gt;access-session mac-move deny&lt;BR /&gt;device-tracking tracking&lt;BR /&gt;!&lt;BR /&gt;device-tracking policy IPDT_POLICY&lt;BR /&gt;no protocol udp&lt;BR /&gt;tracking enable&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;enrollment terminal&lt;BR /&gt;revocation-check crl&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-6xxxxxxxx&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; enrollment selfsigned&lt;BR /&gt;subject-name cn=IOS-Self-Signed-Certificate-6xxxxxx&lt;BR /&gt;revocation-check none&lt;BR /&gt;rsakeypair TP-self-signed-6XXXXXXXXXXX&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint sdn-network-infra-iwan&lt;BR /&gt;enrollment url &lt;A href="http://10.12.101.76:80/ejbca/publicweb/apply/scep/sdnscep" target="_blank" rel="noopener"&gt;http://10.12.101.76:80/ejbca/publicweb/apply/scep/sdnscep&lt;/A&gt;&lt;BR /&gt;fqdn SW.ABC.Com&lt;BR /&gt;subject-name CN=C9200-48P_JAD23220QV9_sdn-network-infra-iwan&lt;BR /&gt;revocation-check crl&lt;BR /&gt;source interface Vlan505&lt;BR /&gt;rsakeypair sdn-network-infra-iwan&lt;BR /&gt;auto-enroll 80 regenerate&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint DNAC-CA&lt;BR /&gt;enrollment mode ra&lt;BR /&gt;enrollment terminal&lt;BR /&gt;usage ssl-client&lt;BR /&gt;revocation-check crl none&lt;BR /&gt;source interface Vlan505&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; certificate ca 01&lt;BR /&gt;30820321 30820209 A0030201 02020101 300D0609 2A864886 F70D0101 0B050030&lt;BR /&gt;32310E30 0C060355 040A1305 43697363 6F312030 1E060355 04031317 43697363&lt;BR /&gt;6F204C69 63656E73 696E6720 526F6F74 20434130 1E170D31 33303533 30313934&lt;BR /&gt;3834375A 170D3338 30353330 31393438 34375A30 32310E30 0C060355 040A1305&lt;BR /&gt;43697363 6F312030 1E060355 04031317 43697363 6F204C69 63656E73 696E6720&lt;BR /&gt;526F6F74 20434130 82012230 0D06092A 864886F7 0D010101 05000382 010F0030&lt;BR /&gt;82010A02 82010100 A6BCBD96 131E05F7 145EA72C 2CD686E6 17222EA1 F1EFF64D&lt;BR /&gt;CBB4C798 212AA147 C655D8D7 9471380D 8711441E 1AAF071A 9CAE6388 8A38E520&lt;BR /&gt;1C394D78 462EF239 C659F715 B98C0A59 5BBB5CBD 0CFEBEA3 700A8BF7 D8F256EE&lt;BR /&gt;4AA4E80D DB6FD1C9 60B1FD18 FFC69C96 6FA68957 A2617DE7 104FDC5F EA2956AC&lt;BR /&gt;7390A3EB 2B5436AD C847A2C5 DAB553EB 69A9A535 58E9F3E3 C0BD23CF 58BD7188&lt;BR /&gt;68E69491 20F320E7 948E71D7 AE3BCC84 F10684C7 4BC8E00F 539BA42B 42C68BB7&lt;BR /&gt;C7479096 B4CB2D62 EA2F505D C7B062A4 6811D95B E8250FC4 5D5D5FB8 8F27D191&lt;BR /&gt;C55F0D76 61F9A4CD 3D992327 A8BB03BD 4E6D7069 7CBADF8B DF5F4368 95135E44&lt;BR /&gt;DFC7C6CF 04DD7FD1 02030100 01A34230 40300E06 03551D0F 0101FF04 04030201&lt;BR /&gt;06300F06 03551D13 0101FF04 05300301 01FF301D 0603551D 0E041604 1449DC85&lt;BR /&gt;4B3D31E5 1B3E6A17 606AF333 3D3B4C73 E8300D06 092A8648 86F70D01 010B0500&lt;BR /&gt;03820101 00507F24 D3932A66 86025D9F E838AE5C 6D4DF6B0 49631C78 240DA905&lt;BR /&gt;604EDCDE FF4FED2B 77FC460E CD636FDB DD44681E 3A5673AB 9093D3B1 6C9E3D8B&lt;BR /&gt;D98987BF E40CBD9E 1AECA0C2 2189BB5C 8FA85686 CD98B646 5575B146 8DFC66A8&lt;BR /&gt;467A3DF4 4D565700 6ADF0F0D CF835015 3C04FF7C 21E878AC 11BA9CD2 55A9232C&lt;BR /&gt;7CA7B7E6 C1AF74F6 152E99B7 B1FCF9BB E973DE7F 5BDDEB86 C71E3B49 1765308B&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 5FB0DA06 B92AFE7F 494E8A9E 07B85737 F3A58BE1 1A48A229 C37C1E69 39F08678&lt;BR /&gt;80DDCD16 D6BACECA EEBC7CF9 8428787B 35202CDC 60E4616A B623CDBD 230E3AFB&lt;BR /&gt;418616A9 4093E049 4D10AB75 27E86F73 932E35B5 8862FDAE 0275156F 719BB2F0&lt;BR /&gt;D697DF7F 28&lt;BR /&gt;quit&lt;BR /&gt;crypto pki certificate chain TP-self-signed-6XXXXXXXXX&lt;BR /&gt;certificate self-signed 01&lt;BR /&gt;3082032E 30820216 A0030201 02020101 300D0609 2A864886 F70D0101 05050030&lt;BR /&gt;30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274&lt;BR /&gt;69666963 6174652D 36373632 36353333 32301E17 0D323430 33303130 39333334&lt;BR /&gt;385A170D 33343033 30313039 33333438 5A303031 2E302C06 03550403 1325494F&lt;BR /&gt;532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3637 36323635&lt;BR /&gt;33333230 82012230 0D06092A 864886F7 0D010101 05000382 010F0030 82010A02&lt;BR /&gt;82010100 B0AD4AA1 76EFDE80 421D2ECC 9B235E20 28DF875E 8FB7DF7A 020DE40A&lt;BR /&gt;6FA22A6E 49FC7C25 A94B7B7E 5D836147 B5AFD0C1 E31A6C6B 001BD128 0B8735C7&lt;BR /&gt;AD64442D EEBD4A5E 3D5466EF 7E874FCB ECB9777D 6DAF4B67 61812D3E 3C18B507&lt;BR /&gt;CF0AD58C 1DCB974C 784BA3BB 3E2C5C2E 6835C662 BB82FCCB 3787026F 96F377EF&lt;BR /&gt;839ADF72 9432D91B FC3DD26A 665DC3BF 1FC34676 1226CDE5 A6AD8F85 7CB82F5C&lt;BR /&gt;D6E04790 DF3872B0 9D084071 6455DC92 0D7BA79E ACF208DD 92F36057 5A0EE7EB&lt;BR /&gt;6C4C282E 0C13163A AD822826 2A6C26FC A9AFE7C6 4B27B80B 70415DA1 306778B1&lt;BR /&gt;D09F4CF2 63708DDB F2321C74 26751509 C13A0590 8B30BFD6 632C3652 8A7D7151&lt;BR /&gt;C4C4D237 02030100 01A35330 51300F06 03551D13 0101FF04 05300301 01FF301F&lt;BR /&gt;0603551D 23041830 1680145A 166E7255 7B6B7B03 9F1EFCB8 D94FE207 D2BFA730&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 1D060355 1D0E0416 04145A16 6E72557B 6B7B039F 1EFCB8D9 4FE207D2 BFA7300D&lt;BR /&gt;06092A86 4886F70D 01010505 00038201 01007102 B6F86DE8 C746857F 64265590&lt;BR /&gt;B2386F76 68647CB0 84A5C74A 10D09C32 366A2913 FB60ADBE D04076F1 9D474077&lt;BR /&gt;D2E19B78 E76F8924 61ED51D7 D396EF5D 6DB6156E 89BA6421 CFBEF115 C7DC3C7A&lt;BR /&gt;F2367DE2 4E3BF6CE 74230B1E 05389557 664E26C2 8EF3A0A9 D84535C9 51F10C79&lt;BR /&gt;E18B706C A6F44833 F1F9DE84 C8B9D1EB 18FACAC5 5D1D3C5E DBBAB9DC 56AACA56&lt;BR /&gt;B80E798C EFD11FEC DF0AE218 28AE6354 45E93764 5A22233F 90B409C5 CEBB4501&lt;BR /&gt;2133E476 ACD52F92 EC3BA863 3CAEF6E2 F72B7396 E3BADB1C 0EA25AD5 7DE8F607&lt;BR /&gt;6F57AD23 4B9CE430 A6DAAF10 9E6C8A48 6C8C9F89 A28387D4 59D821E4 DA8B72DE&lt;BR /&gt;D2D64C84 4165E722 C7C3C689 9B2D5F9A D2BF&lt;BR /&gt;quit&lt;BR /&gt;crypto pki certificate chain sdn-network-infra-iwan&lt;BR /&gt;certificate 2XXXXXXXXXXXXXXX&lt;BR /&gt;30820387 3082026F A0030201 02020822 AF4F5993 CB60FE30 0D06092A 864886F7&lt;BR /&gt;0D01010D 0500301F 311D301B 06035504 030C1473 646E2D6E 6574776F 726B2D69&lt;BR /&gt;6E667261 2D636130 1E170D32 34303532 32313530 3031395A 170D3235 30353232&lt;BR /&gt;31353030 31395A30 67312E30 2C06092A 864886F7 0D010902 0C1F4865 726D6573&lt;BR /&gt;5F343246 5F446174 615F5357 2E41746C 61732E48 65726D65 73313530 33060355&lt;BR /&gt;04030C2C 43393230 302D3438 505F4A41 44323332 32305156 395F7364 6E2D6E65&lt;BR /&gt;74776F72 6B2D696E 6672612D 6977616E 30820122 300D0609 2A864886 F70D0101&lt;BR /&gt;01050003 82010F00 3082010A 02820101 00B9BDCB FF09532F BD6F3C24 EDC96D0F&lt;BR /&gt;58307F9F A521832D AB6FC68E D3BF6359 F1EFA8A5 F7EBCFCE 6D47AEAB 87FFB7C3&lt;BR /&gt;1109D25E 88C09CA1 75CB43AC 6DD7B169 4ABD8A9F EA22CE00 4784BF3F CBA70117&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; ABDCA3E7 95DC8A8A C750E425 BAE8834B 1489F27F A8506CCD 0F5AE9E1 DAE2ACD7&lt;BR /&gt;FB0D8E46 4E823F3A E21B6587 16EC36F5 B22CE3FB 5B0C67EC 82479131 9A02E539&lt;BR /&gt;02DFFE24 5D281970 63C29C83 B8EFDE9E 26518FA4 F1A217EE A750C2AF D4CAA9C5&lt;BR /&gt;6C82AC39 2C5A5E07 4BFA6195 A7232319 C3543378 62285E20 83917D7F 71C8E7EB&lt;BR /&gt;C78F1E49 904216DF 5AF1AD5D 9E444C56 D4841E44 688DFC42 544017D6 CEBF84D8&lt;BR /&gt;F0CA1B5A 88C588A2 A734A42B 862938F6 A3020301 0001A37F 307D300C 0603551D&lt;BR /&gt;130101FF 04023000 301F0603 551D2304 18301680 14C006E4 73F7139F 0ED3230A&lt;BR /&gt;9B836D1D B99E4608 37301D06 03551D25 04163014 06082B06 01050507 03020608&lt;BR /&gt;2B060105 05070304 301D0603 551D0E04 16041430 CBA1C688 CF469958 05FBB8B2&lt;BR /&gt;AE086DAA E80C9A30 0E060355 1D0F0101 FF040403 0205E030 0D06092A 864886F7&lt;BR /&gt;0D01010D 05000382 0101001D 83EED128 280FE6DB 8AF403D9 B4695739 E3CEEE72&lt;BR /&gt;3C232130 75B88C21 4BACAF15 C14978BA B3E7D3F7 C9EC1263 20DCA649 ABEAFDDE&lt;BR /&gt;B4442E6F 11D048ED BBF27B5E CE9818EC 2F27935A DE1527EE D5F9EAF9 5DE9462F&lt;BR /&gt;92E25FA2 D05BD836 BA7542B7 EC00737E 1E051148 8C6F97FA 8A657D15 DF7C4097&lt;BR /&gt;1EB4B284 43D1135B 8A4A24C8 5152EDA8 9FC46C12 B8E11808 1725BABB D6D37AD3&lt;BR /&gt;2EF49576 27A4C8FB 1D607589 95B232CD 556C67C4 D88D0EF1 7F0BD04E AA89AE6D&lt;BR /&gt;33F531F1 BD553DC5 8244F229 CCB5C642 7D2D2329 185AF418 F3F0D00B 82359732&lt;BR /&gt;4BF10DFA 4965F819 6104A8C5 F0BC6E21 F8BCD5C9 FA251633 0DE414E2 92B3F9C7&lt;BR /&gt;BF2F99BD B9027424 24B646&lt;BR /&gt;quit&lt;BR /&gt;certificate ca 3XXXXXXXXXXXXXXXXX&lt;BR /&gt;30820323 3082020B A0030201 02020837 F3973A9E 07A82830 0D06092A 864886F7&lt;BR /&gt;0D01010D 0500301F 311D301B 06035504 030C1473 646E2D6E 6574776F 726B2D69&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 6E667261 2D636130 1E170D32 31303730 39303531 3832335A 170D3236 30373038&lt;BR /&gt;30353138 32335A30 1F311D30 1B060355 04030C14 73646E2D 6E657477 6F726B2D&lt;BR /&gt;696E6672 612D6361 30820122 300D0609 2A864886 F70D0101 01050003 82010F00&lt;BR /&gt;3082010A 02820101 0086D719 8B092105 706D2459 D5A5315A CA9395DC E8215847&lt;BR /&gt;2F8483FC DB3C9E33 F9852BB5 91422E91 54059093 319EBF69 38637D9E CB571680&lt;BR /&gt;F07544B0 78135D37 61694107 D2937940 F926535E A7EA22A5 DF40B6DC B06AC4D8&lt;BR /&gt;9A56F84F 1EF7AFF2 678E801F 002DC685 D283E0FF A4A00C69 CDC9629D 826DB043&lt;BR /&gt;05490FD5 72338425 A22E56B1 0D0AAB47 9DB253A3 21B73741 D1CE2951 B9508096&lt;BR /&gt;5AC4E35B 34CB3A6B BDEFB4C7 0F43411D 8FB96931 6B4D6BC3 73747D76 755715F6&lt;BR /&gt;C0420444 3B1B5482 C7FECB7A E38AAB1C 9C815208 46D137D3 784373E8 174B6874&lt;BR /&gt;DA1F2154 B7A9B25E F0D9C988 9E3D93BE EBA7EACE F787233A ABB46C4D 957DE518&lt;BR /&gt;F4B08C57 9C34C090 35020301 0001A363 3061300F 0603551D 130101FF 04053003&lt;BR /&gt;0101FF30 1F060355 1D230418 30168014 C006E473 F7139F0E D3230A9B 836D1DB9&lt;BR /&gt;9E460837 301D0603 551D0E04 160414C0 06E473F7 139F0ED3 230A9B83 6D1DB99E&lt;BR /&gt;46083730 0E060355 1D0F0101 FF040403 02018630 0D06092A 864886F7 0D01010D&lt;BR /&gt;05000382 0101001A 6F895C34 DCDBA5F0 5EC1A5EB 25933F58 35E8A11D B0B7B53C&lt;BR /&gt;2D25F4AD 7D80C727 A36DF067 B5D0E18B 668FA21A 5B5093F7 15521BCA B8DAAF48&lt;BR /&gt;60512976 981307CF D7E97B9D 7C671EF2 F5512C5D 7B1D41FC BF2002EA 495162B6&lt;BR /&gt;63EB998D 62EF34E0 269CA858 C238633C E0618864 FAE61636 A1CF40D3 39CAB298&lt;BR /&gt;36699FEF 42396EF6 A1C84E59 2E59E3DE D5DEDF72 E45C3477 85BD8798 7CC228E3&lt;BR /&gt;88719E33 64D98F1A 4072CB22 33CA9753 E45DB76D AC7B9B88 540A435C 930E9890&lt;BR /&gt;A2B5E6FA 0F753E71 85AC99FB BEFF1AFF 8FE7385B 56F4EF14 96621D91 26D0CFEB&lt;BR /&gt;2B740B94 560407D2 693A0A05 C3E33173 59BF0DDE 09CA2D98 5BA2DB2A A45DD031&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 4D5885EE F468A4&lt;BR /&gt;quit&lt;BR /&gt;crypto pki certificate chain DNAC-CA&lt;BR /&gt;certificate ca 00C56CXXXXXXXXXXXXXXXXXXXXXXXXXX&lt;BR /&gt;308203A5 3082028D A0030201 02021400 C56C5A21 DE24B023 61D38C07 9CA5AB02&lt;BR /&gt;673EB530 0D06092A 864886F7 0D01010B 05003062 312D302B 06035504 030C2439&lt;BR /&gt;35363363 3635652D 65373732 2D376363 372D3361 63662D38 66323937 36643538&lt;BR /&gt;63376631 16301406 0355040A 0C0D4369 73636F20 53797374 656D7331 19301706&lt;BR /&gt;0355040B 0C104369 73636F20 444E4120 43656E74 6572301E 170D3233 31323237&lt;BR /&gt;30323430 33305A17 0D323630 39323230 32343033 305A3062 312D302B 06035504&lt;BR /&gt;030C2439 35363363 3635652D 65373732 2D376363 372D3361 63662D38 66323937&lt;BR /&gt;36643538 63376631 16301406 0355040A 0C0D4369 73636F20 53797374 656D7331&lt;BR /&gt;19301706 0355040B 0C104369 73636F20 444E4120 43656E74 65723082 0122300D&lt;BR /&gt;06092A86 4886F70D 01010105 00038201 0F003082 010A0282 010100AF 59D66EA5&lt;BR /&gt;B702C823 4205DB7E FB6FBFFE 5AE6DC3D 5749ABFF 4326C055 504CF955 164A33C8&lt;BR /&gt;45ABEEED FDA24523 A227D3AA 14A52C28 C4798F50 D64C1B1A 5E20871F 30DFFC3A&lt;BR /&gt;71D290B0 8560DE40 BC4B5EF6 FA86D2AA FEC38E06 CACF684C FD7EBE9A D0DEE337&lt;BR /&gt;DD22C3C0 BA9A8AE2 CAD49389 B0F29C8A D67378A4 3E27FC0C 25FC37E6 B57231E8&lt;BR /&gt;01D83CDF DA7EFC54 41B750D8 2827FA49 5E0EF1F4 34026F6D ED73BF04 A7E0AB36&lt;BR /&gt;E2824F8A 85C4CF81 4D9ADCBD AFDE2B48 F43F31C7 ACB5CA88 4DF69F7B D666F0F2&lt;BR /&gt;33F15616 C50987C8 97726CDD 116E3742 E759727D 31598AC2 E6703960 277798D6&lt;BR /&gt;28007533 BE88284F 685D3000 22853502 C88DE29A B58300F3 713B1B02 03010001&lt;BR /&gt;A3533051 301D0603 551D0E04 160414F1 C3981A19 3035060E A8DF56AF F79DCA1D&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 11155630 1F060355 1D230418 30168014 F1C3981A 19303506 0EA8DF56 AFF79DCA&lt;BR /&gt;1D111556 300F0603 551D1301 01FF0405 30030101 FF300D06 092A8648 86F70D01&lt;BR /&gt;010B0500 03820101 0006FC51 4F99BFB8 230FB729 54F7EA5A 5C209F37 BDB7900D&lt;BR /&gt;FBD29CBB 7172C401 43DDDD6D BB87320E 4A4B48D5 FFEC2998 8555D282 71491594&lt;BR /&gt;6E7D11FC C18FF691 1DAD9842 C03E942E 346D3617 EE0C3A6F 28100A52 06EDE5EF&lt;BR /&gt;267B1DEA 2F0A5E9F CD79014F CFD869B7 EF5733F4 3CFA1128 C692F107 ED00CDF4&lt;BR /&gt;DA94A751 664A103A BE43C4CB BCB286FD 54A517C1 D815850C 4619F972 3A9012EA&lt;BR /&gt;49FA33FD 9D0304E4 B53B454F DEC9F394 F5114563 3214AD0A F77AB955 09B6646A&lt;BR /&gt;03D3CFA5 D7F451F4 EDEBED1F E3D19769 8441AC6F AFD7E75B 38D918A7 E86858C5&lt;BR /&gt;9103DC54 0493E1C2 817135BF 4876BB94 1993823B 67AD7336 9941A11B ECE9F32F&lt;BR /&gt;499BFAC3 46177B56 B3&lt;BR /&gt;quit&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate pool&lt;BR /&gt;cabundle nvram:ios_core.p7b&lt;BR /&gt;!&lt;BR /&gt;license boot level network-essentials addon dna-essentials&lt;BR /&gt;service-template DEFAULT_LINKSEC_POLICY_MUST_SECURE&lt;BR /&gt;linksec policy must-secure&lt;BR /&gt;service-template DEFAULT_LINKSEC_POLICY_SHOULD_SECURE&lt;BR /&gt;linksec policy should-secure&lt;BR /&gt;service-template DEFAULT_CRITICAL_VOICE_TEMPLATE&lt;BR /&gt;voice vlan&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;service-template DEFAULT_CRITICAL_DATA_TEMPLATE&lt;BR /&gt;service-template webauth-global-inactive&lt;BR /&gt;inactivity-timer 3600&lt;BR /&gt;dot1x system-auth-control&lt;BR /&gt;memory free low-watermark processor 22699&lt;BR /&gt;!&lt;BR /&gt;diagnostic bootup level minimal&lt;BR /&gt;!&lt;BR /&gt;spanning-tree mode rapid-pvst&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;enable secret 9 $9$mqcNJ9t3Bxxxxxxxxxxxxxxxxxx.5XvM1DvLp7c&lt;BR /&gt;!&lt;BR /&gt;username adm secret 9 $9$wWqmmTnA9tBuB.$1n1q/rtzUFxxxxxxxxxxxxxxxxxxxxxxx&lt;BR /&gt;username adm_ secret 9 $9$Fv4qQI8k613/RE$I//BU/Uxxxxxxxxxxxxxxxxxxxxxxxx&lt;BR /&gt;username cis_login privilege 15 secret 9 $9$xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx&lt;BR /&gt;username adm_secret 9 $9$ZbQw6QCoqLACqE$exxxxxxxxxxxxxxxxxxxxxxxxxx&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;redundancy&lt;BR /&gt;mode sso&lt;BR /&gt;crypto engine compliance shield disable&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;transceiver type all&lt;BR /&gt;monitoring&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vlan 3&lt;BR /&gt;name Adyen&lt;BR /&gt;!&lt;BR /&gt;vlan 55&lt;BR /&gt;name Door&lt;BR /&gt;!&lt;BR /&gt;vlan 100&lt;BR /&gt;name Voice&lt;BR /&gt;!&lt;BR /&gt;vlan 2&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; name WiFi&lt;BR /&gt;!&lt;BR /&gt;vlan 505&lt;BR /&gt;name Device&lt;BR /&gt;!&lt;BR /&gt;vlan 10&lt;BR /&gt;name User&lt;BR /&gt;!&lt;BR /&gt;vlan 535&lt;BR /&gt;name AccessPoint&lt;BR /&gt;!&lt;BR /&gt;vlan 29&lt;BR /&gt;name Guest&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all AAA_SVR_DOWN_AUTHD_HOST&lt;BR /&gt;match result-type aaa-timeout&lt;BR /&gt;match authorization-status authorized&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all AAA_SVR_DOWN_UNAUTHD_HOST&lt;BR /&gt;match result-type aaa-timeout&lt;BR /&gt;match authorization-status unauthorized&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all DOT1X&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; match method dot1x&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all DOT1X_FAILED&lt;BR /&gt;match method dot1x&lt;BR /&gt;match result-type method dot1x authoritative&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all DOT1X_MEDIUM_PRIO&lt;BR /&gt;match authorizing-method-priority gt 20&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all DOT1X_NO_RESP&lt;BR /&gt;match method dot1x&lt;BR /&gt;match result-type method dot1x agent-not-found&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all DOT1X_TIMEOUT&lt;BR /&gt;match method dot1x&lt;BR /&gt;match result-type method dot1x method-timeout&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all MAB&lt;BR /&gt;match method mab&lt;BR /&gt;!&lt;BR /&gt;class-map type control subscriber match-all MAB_FAILED&lt;BR /&gt;match method mab&lt;BR /&gt;match result-type method mab authoritative&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;!&lt;BR /&gt;class-map match-any system-cpp-police-ewlc-control&lt;BR /&gt;description EWLC Control&lt;BR /&gt;class-map match-any system-cpp-police-topology-control&lt;BR /&gt;description Topology control&lt;BR /&gt;class-map match-any system-cpp-police-sw-forward&lt;BR /&gt;description Sw forwarding, L2 LVX data packets, LOGGING, Transit Traffic&lt;BR /&gt;class-map match-any system-cpp-default&lt;BR /&gt;description EWLC data, Inter FED Traffic&lt;BR /&gt;class-map match-any system-cpp-police-sys-data&lt;BR /&gt;description Openflow, Exception, EGR Exception, NFL Sampled Data, RPF Failed&lt;BR /&gt;class-map match-any system-cpp-police-punt-webauth&lt;BR /&gt;description Punt Webauth&lt;BR /&gt;class-map match-any system-cpp-police-l2lvx-control&lt;BR /&gt;description L2 LVX control packets&lt;BR /&gt;class-map match-any system-cpp-police-forus&lt;BR /&gt;description Forus Address resolution and Forus traffic&lt;BR /&gt;class-map match-any system-cpp-police-multicast-end-station&lt;BR /&gt;description MCAST END STATION&lt;BR /&gt;class-map match-any system-cpp-police-high-rate-app&lt;BR /&gt;description High Rate Applications&lt;BR /&gt;class-map match-any system-cpp-police-multicast&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description MCAST Data&lt;BR /&gt;class-map match-any system-cpp-police-l2-control&lt;BR /&gt;description L2 control&lt;BR /&gt;class-map match-any system-cpp-police-dot1x-auth&lt;BR /&gt;description DOT1X Auth&lt;BR /&gt;class-map match-any system-cpp-police-data&lt;BR /&gt;description ICMP redirect, ICMP_GEN and BROADCAST&lt;BR /&gt;class-map match-any system-cpp-police-stackwise-virt-control&lt;BR /&gt;description Stackwise Virtual OOB&lt;BR /&gt;class-map match-any non-client-nrt-class&lt;BR /&gt;class-map match-any system-cpp-police-routing-control&lt;BR /&gt;description Routing control and Low Latency&lt;BR /&gt;class-map match-any system-cpp-police-protocol-snooping&lt;BR /&gt;description Protocol snooping&lt;BR /&gt;class-map match-any system-cpp-police-dhcp-snooping&lt;BR /&gt;description DHCP snooping&lt;BR /&gt;class-map match-any system-cpp-police-ios-routing&lt;BR /&gt;description L2 control, Topology control, Routing control, Low Latency&lt;BR /&gt;class-map match-any system-cpp-police-system-critical&lt;BR /&gt;description System Critical and Gold Pkt&lt;BR /&gt;class-map match-any system-cpp-police-ios-feature&lt;BR /&gt;description ICMPGEN,BROADCAST,ICMP,L2LVXCntrl,ProtoSnoop,PuntWebauth,MCASTData,Transit,DOT1XAuth,Swfwd,LOGGING,L2LVXData,ForusTraffic,ForusARP,McastEndStn,Openflow,Exception,EGRExcption,NflSampled,RpfFailed&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type control subscriber ISE_POLICY&lt;BR /&gt;event session-started match-all&lt;BR /&gt;10 class always do-until-failure&lt;BR /&gt;10 authenticate using mab priority 20&lt;BR /&gt;event authentication-failure match-first&lt;BR /&gt;5 class DOT1X_FAILED do-until-failure&lt;BR /&gt;10 terminate dot1x&lt;BR /&gt;20 authentication-restart 60&lt;BR /&gt;10 class MAB_FAILED do-until-failure&lt;BR /&gt;10 terminate mab&lt;BR /&gt;20 authenticate using dot1x retries 2 retry-time 0 priority 10&lt;BR /&gt;20 class DOT1X_NO_RESP do-until-failure&lt;BR /&gt;10 terminate dot1x&lt;BR /&gt;20 authentication-restart 60&lt;BR /&gt;40 class always do-until-failure&lt;BR /&gt;10 terminate mab&lt;BR /&gt;20 terminate dot1x&lt;BR /&gt;30 authentication-restart 60&lt;BR /&gt;event agent-found match-all&lt;BR /&gt;10 class always do-until-failure&lt;BR /&gt;10 terminate mab&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 20 authenticate using dot1x retries 2 retry-time 0 priority 10&lt;BR /&gt;event inactivity-timeout match-all&lt;BR /&gt;10 class always do-until-failure&lt;BR /&gt;10 clear-session&lt;BR /&gt;event authentication-success match-all&lt;BR /&gt;10 class always do-until-failure&lt;BR /&gt;10 activate service-template DEFAULT_LINKSEC_POLICY_SHOULD_SECURE&lt;BR /&gt;event violation match-all&lt;BR /&gt;10 class always do-until-failure&lt;BR /&gt;10 restrict&lt;BR /&gt;!&lt;BR /&gt;policy-map system-cpp-policy&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;interface Port-channel1&lt;BR /&gt;description *** PortChannel to 9500 ***&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;vrf forwarding Mgmt-vrf&lt;BR /&gt;no ip address&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/1&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface GigabitEthernet1/0/2&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/3&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/4&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;interface GigabitEthernet1/0/5&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/6&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/7&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/8&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/9&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/10&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/11&lt;BR /&gt;description *** User ***&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; switchport access vlan 510&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/12&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/13&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/14&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/15&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/16&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/17&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/18&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/19&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/20&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/21&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/22&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/23&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/24&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface GigabitEthernet1/0/25&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/26&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/27&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;interface GigabitEthernet1/0/28&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/29&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/30&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/31&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/32&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/33&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/34&lt;BR /&gt;description *** User ***&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; switchport access vlan 510&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/35&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/36&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/37&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/38&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/39&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/40&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/41&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/42&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/43&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/44&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface GigabitEthernet1/0/45&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/46&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/47&lt;BR /&gt;description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/48&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description *** User ***&lt;BR /&gt;switchport access vlan 10&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;access-session closed&lt;BR /&gt;access-session port-control auto&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;service-policy type control subscriber ISE_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/1&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/2&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/3&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/4&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/1&lt;BR /&gt;description *** UpLink_to_9500 ***&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;channel-group 1 mode active&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/2&lt;BR /&gt;description *** UpLink_to_9500 ***&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;channel-group 1 mode active&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/3&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/4&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; shutdown&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan5&lt;BR /&gt;description Door vlan&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan100&lt;BR /&gt;description Voice vlan&lt;BR /&gt;ip address 10.121.1.230 255.255.255.0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt;description WiFi Vlan&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan505&lt;BR /&gt;description Device Vlan&lt;BR /&gt;ip address 10.121.102.230 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan10&lt;BR /&gt;description User Vlan&lt;BR /&gt;ip address 10.121.100.250 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan35&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan29&lt;BR /&gt;description Guest&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;ip default-gateway 10.121.102.252&lt;BR /&gt;no ip http server&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;ip http client source-interface Vlan505&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;ip ssh time-out 60&lt;BR /&gt;ip ssh source-interface Vlan505&lt;BR /&gt;ip ssh version 2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;logging source-interface Vlan505&lt;BR /&gt;logging host 10.121.101.76&lt;BR /&gt;ip access-list standard 99&lt;BR /&gt;10 permit 10.12.100.211&lt;BR /&gt;20 permit 10.12.121.0 0.0.0.255&lt;BR /&gt;30 deny any&lt;BR /&gt;!&lt;BR /&gt;snmp-server community 84F6xxxxxxxxx RO 99&lt;BR /&gt;snmp-server community R4xxxxxxxxx RW 99&lt;BR /&gt;snmp-server trap-source Vlan505&lt;BR /&gt;snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart&lt;BR /&gt;snmp-server enable traps flowmon&lt;BR /&gt;snmp-server enable traps entity-perf throughput-notif&lt;BR /&gt;snmp-server enable traps call-home message-send-fail server-fail&lt;BR /&gt;snmp-server enable traps tty&lt;BR /&gt;snmp-server enable traps eigrp&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps ospf state-change&lt;BR /&gt;snmp-server enable traps ospf errors&lt;BR /&gt;snmp-server enable traps ospf retransmit&lt;BR /&gt;snmp-server enable traps ospf lsa&lt;BR /&gt;snmp-server enable traps ospf cisco-specific state-change nssa-trans-change&lt;BR /&gt;snmp-server enable traps ospf cisco-specific state-change shamlink interface&lt;BR /&gt;snmp-server enable traps ospf cisco-specific state-change shamlink neighbor&lt;BR /&gt;snmp-server enable traps ospf cisco-specific errors&lt;BR /&gt;snmp-server enable traps ospf cisco-specific retransmit&lt;BR /&gt;snmp-server enable traps ospf cisco-specific lsa&lt;BR /&gt;snmp-server enable traps bfd&lt;BR /&gt;snmp-server enable traps license&lt;BR /&gt;snmp-server enable traps smart-license&lt;BR /&gt;snmp-server enable traps auth-framework sec-violation&lt;BR /&gt;snmp-server enable traps rep&lt;BR /&gt;snmp-server enable traps memory bufferpeak&lt;BR /&gt;snmp-server enable traps config-copy&lt;BR /&gt;snmp-server enable traps config&lt;BR /&gt;snmp-server enable traps config-ctid&lt;BR /&gt;snmp-server enable traps energywise&lt;BR /&gt;snmp-server enable traps fru-ctrl&lt;BR /&gt;snmp-server enable traps entity&lt;BR /&gt;snmp-server enable traps flash insertion removal lowspace&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps power-ethernet group 1 threshold 80&lt;BR /&gt;snmp-server enable traps power-ethernet group 2 threshold 80&lt;BR /&gt;snmp-server enable traps power-ethernet group 3 threshold 80&lt;BR /&gt;snmp-server enable traps power-ethernet group 4 threshold 80&lt;BR /&gt;snmp-server enable traps power-ethernet group 5 threshold 80&lt;BR /&gt;snmp-server enable traps power-ethernet police&lt;BR /&gt;snmp-server enable traps cpu threshold&lt;BR /&gt;snmp-server enable traps syslog&lt;BR /&gt;snmp-server enable traps udld link-fail-rpt&lt;BR /&gt;snmp-server enable traps udld status-change&lt;BR /&gt;snmp-server enable traps vtp&lt;BR /&gt;snmp-server enable traps vlancreate&lt;BR /&gt;snmp-server enable traps vlandelete&lt;BR /&gt;snmp-server enable traps port-security&lt;BR /&gt;snmp-server enable traps envmon&lt;BR /&gt;snmp-server enable traps stackwise&lt;BR /&gt;snmp-server enable traps dhcp&lt;BR /&gt;snmp-server enable traps event-manager&lt;BR /&gt;snmp-server enable traps ike policy add&lt;BR /&gt;snmp-server enable traps ike policy delete&lt;BR /&gt;snmp-server enable traps ike tunnel start&lt;BR /&gt;snmp-server enable traps ike tunnel stop&lt;BR /&gt;snmp-server enable traps ipsec cryptomap add&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps ipsec cryptomap delete&lt;BR /&gt;snmp-server enable traps ipsec cryptomap attach&lt;BR /&gt;snmp-server enable traps ipsec cryptomap detach&lt;BR /&gt;snmp-server enable traps ipsec tunnel start&lt;BR /&gt;snmp-server enable traps ipsec tunnel stop&lt;BR /&gt;snmp-server enable traps ipsec too-many-sas&lt;BR /&gt;snmp-server enable traps ospfv3 state-change&lt;BR /&gt;snmp-server enable traps ospfv3 errors&lt;BR /&gt;snmp-server enable traps ipmulticast&lt;BR /&gt;snmp-server enable traps pimstdmib neighbor-loss invalid-register invalid-join-prune rp-mapping-change interface-election&lt;BR /&gt;snmp-server enable traps msdp&lt;BR /&gt;snmp-server enable traps pim neighbor-change rp-mapping-change invalid-pim-message&lt;BR /&gt;snmp-server enable traps bridge newroot topologychange&lt;BR /&gt;snmp-server enable traps stpx inconsistency root-inconsistency loop-inconsistency&lt;BR /&gt;snmp-server enable traps cef resource-failure peer-state-change peer-fib-state-change inconsistency&lt;BR /&gt;snmp-server enable traps bulkstat collection transfer&lt;BR /&gt;snmp-server enable traps mac-notification change move threshold&lt;BR /&gt;snmp-server enable traps errdisable&lt;BR /&gt;snmp-server enable traps vlan-membership&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps transceiver all&lt;BR /&gt;snmp-server enable traps vrfmib vrf-up vrf-down vnet-trunk-up vnet-trunk-down&lt;BR /&gt;snmp-server enable traps rf&lt;BR /&gt;snmp-server host 10.12.101.76 version 2c 84F6t{_=n@SJ&lt;BR /&gt;radius-server attribute 6 on-for-login-auth&lt;BR /&gt;radius-server attribute 8 include-in-access-req&lt;BR /&gt;radius-server attribute 25 access-request include&lt;BR /&gt;radius-server dead-criteria time 5 tries 3&lt;BR /&gt;!&lt;BR /&gt;radius server ISE1&lt;BR /&gt;address ipv4 10.121.102.215 auth-port 1812 acct-port 1813&lt;BR /&gt;timeout 10&lt;BR /&gt;key 7 080xxxxxxxxxxxxxxxxx&lt;BR /&gt;!&lt;BR /&gt;radius server ISE2&lt;BR /&gt;address ipv4 10.121.102.216 auth-port 1812 acct-port 1813&lt;BR /&gt;timeout 10&lt;BR /&gt;key 7 00xxxxxxxxxxxxxxxxxxxx&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;service-policy input system-cpp-policy&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;password 7 00xxxxxxxxxxxxxx&lt;BR /&gt;logging synchronous&lt;BR /&gt;stopbits 1&lt;BR /&gt;line aux 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt;logging synchronous&lt;BR /&gt;transport input ssh&lt;BR /&gt;line vty 5 15&lt;BR /&gt;logging synchronous&lt;BR /&gt;transport input ssh&lt;BR /&gt;!&lt;BR /&gt;call-home&lt;BR /&gt;! If contact email address in call-home is configured as sch@cisco.com&lt;BR /&gt;! the email address configured in Cisco Smart License Portal will be used as contact email address to send SCH notifications.&lt;BR /&gt;contact-email-addr sch-s@cisco.com&lt;BR /&gt;profile "Cisco-1"&lt;BR /&gt;active&lt;BR /&gt;destination transport-method http&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;ntp logging&lt;BR /&gt;ntp server 10.12.101.19&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;telemetry ietf subscription 500&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_port_detail&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 501&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_module&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 502&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_stack&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 503&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_switch&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 504&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter nested-uri /services;serviceName=ios_oper/platform_component;cname=0?platform_properties&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; stream native&lt;BR /&gt;update-policy periodic 30000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 550&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=smevent/sessionevent&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 551&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=sessmgr_oper/session_context_data&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 552&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/sisf_mac_oper_state&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 553&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/sisf_db_wired_mac&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 554&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/cdp_neighbor_detail&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 555&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/cdp_neighbor_detail&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 600&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=sessmgr_oper/tbl_aaa_servers_stat&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 601&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=sessmgr_oper/tbl_aaa_servers_stat&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 602&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; filter tdl-uri /services;serviceName=ios_emul_oper/lisp_routers;top_id=0/sessions&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 603&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/lisp_tcp_session_state&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 604&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter nested-uri /services;serviceName=ios_emul_oper/lisp_routers;top_id=0/instances;iid=0/af;iaftype=LISP_TDL_IAF_IPV4/lisp_publisher&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 605&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/lisp_pubsub_session_state&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 606&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter nested-uri /services;serviceName=ios_emul_oper/lisp_routers;top_id=0/remote_locator_sets;name=default-etr-locator-set-ipv4/rem_loc_set_rlocs_si&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 607&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/lisp_etr_si_type&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 608&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_emul_oper/cts_env_data&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 750&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_emul_oper/environment_sensor&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 30000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 751&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/platform_component&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 30000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 1020&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/install_status&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 8882&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-transform trustSecCounterDelta&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.121.102.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 90000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry receiver protocol DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;host ip-address 10.121.101.76 25103&lt;BR /&gt;protocol tls-native profile sdn-network-infra-iwan&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;telemetry transform trustSecCounterDelta&lt;BR /&gt;input table cts_rolebased_policy&lt;BR /&gt;field dst_sgt&lt;BR /&gt;field src_sgt&lt;BR /&gt;field sgacl_name&lt;BR /&gt;field monitor_mode&lt;BR /&gt;field num_of_sgacl&lt;BR /&gt;field policy_life_time&lt;BR /&gt;field total_deny_count&lt;BR /&gt;field last_updated_time&lt;BR /&gt;field total_permit_count&lt;BR /&gt;join-key cts_role_based_policy_key&lt;BR /&gt;logical-op and&lt;BR /&gt;type mandatory&lt;BR /&gt;uri /services;serviceName=ios_emul_oper/cts_rolebased_policy&lt;BR /&gt;operation 1&lt;BR /&gt;output-field 1&lt;BR /&gt;field cts_rolebased_policy.src_sgt&lt;BR /&gt;output-field 2&lt;BR /&gt;field cts_rolebased_policy.dst_sgt&lt;BR /&gt;output-field 3&lt;BR /&gt;field cts_rolebased_policy.total_permit_count&lt;BR /&gt;output-op type delta&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; output-field 4&lt;BR /&gt;field cts_rolebased_policy.total_deny_count&lt;BR /&gt;output-op type delta&lt;BR /&gt;output-field 5&lt;BR /&gt;field cts_rolebased_policy.sgacl_name&lt;BR /&gt;output-field 6&lt;BR /&gt;field cts_rolebased_policy.monitor_mode&lt;BR /&gt;output-field 7&lt;BR /&gt;field cts_rolebased_policy.num_of_sgacl&lt;BR /&gt;output-field 8&lt;BR /&gt;field cts_rolebased_policy.policy_life_time&lt;BR /&gt;output-field 9&lt;BR /&gt;field cts_rolebased_policy.last_updated_time&lt;BR /&gt;specified&lt;BR /&gt;netconf-yang&lt;BR /&gt;netconf-yang feature candidate-datastore&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;SW# &amp;#8; &amp;#8;exit&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;======================================================================================&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;SWITCH 2&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2024.09.21 16:40:22 =~=~=~=~=~=~=~=~=~=~=~=&lt;BR /&gt;login as: adm&lt;BR /&gt;Using keyboard-interactive authentication.&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;SW2&amp;gt;en&lt;BR /&gt;Password:&lt;BR /&gt;SW2#sh run&lt;BR /&gt;Building configuration...&lt;/P&gt;&lt;P&gt;Current configuration : 37022 bytes&lt;BR /&gt;!&lt;BR /&gt;! Last configuration change at 17:07:29 HKG Fri Sep 20 2024 by adm&lt;BR /&gt;! NVRAM config last updated at 11:08:23 HKG Fri Sep 20 2024 by adm&lt;BR /&gt;!&lt;BR /&gt;version 17.9&lt;BR /&gt;service timestamps debug datetime msec localtime&lt;BR /&gt;service timestamps log datetime msec localtime&lt;BR /&gt;service password-encryption&lt;BR /&gt;service call-home&lt;BR /&gt;no platform punt-keepalive disable-kernel-core&lt;BR /&gt;!&lt;BR /&gt;hostname SW&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vrf definition Mgmt-vrf&lt;BR /&gt;!&lt;BR /&gt;address-family ipv4&lt;BR /&gt;exit-address-family&lt;BR /&gt;!&lt;BR /&gt;address-family ipv6&lt;BR /&gt;exit-address-family&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;logging buffered 40960&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa group server radius ISE&lt;BR /&gt;server name ISE1&lt;BR /&gt;server name ISE2&lt;BR /&gt;deadtime 300&lt;BR /&gt;!&lt;BR /&gt;aaa group server radius HHK-ISE&lt;BR /&gt;server name HKRAD01&lt;BR /&gt;deadtime 5&lt;BR /&gt;!&lt;BR /&gt;aaa authentication login default local&lt;BR /&gt;aaa authentication login NO_AUTH none&lt;BR /&gt;aaa authentication login SSH-LOGIN local&lt;BR /&gt;aaa authentication dot1x default group ISE&lt;BR /&gt;aaa authorization exec default local&lt;BR /&gt;aaa authorization network default group ISE&lt;BR /&gt;aaa accounting delay-start all&lt;BR /&gt;aaa accounting update newinfo&lt;BR /&gt;aaa accounting auth-proxy default start-stop group ISE&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;aaa accounting dot1x default start-stop group ISE&lt;BR /&gt;aaa accounting network default start-stop group ISE&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa server radius dynamic-author&lt;BR /&gt;client 10.12.101.59 server-key 7 1XXXXXXXX&lt;BR /&gt;client 10.121.102.215 server-key 7 1XXXXXXXXX&lt;BR /&gt;client 10.121.102.216 server-key 7 0XXXXXXXXXXX&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;clock timezone HKG 8 0&lt;BR /&gt;boot system switch all flash:packages.conf&lt;BR /&gt;software auto-upgrade enable&lt;BR /&gt;!&lt;BR /&gt;switch 1 provision c9200-24p&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;ip domain name abc.com&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;login on-success log&lt;BR /&gt;vtp version 1&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;flow exporter 10.12.101.76&lt;BR /&gt;destination 10.12.101.76&lt;BR /&gt;transport udp 6007&lt;BR /&gt;!&lt;BR /&gt;device-tracking tracking&lt;BR /&gt;!&lt;BR /&gt;device-tracking policy IPDT_POLICY&lt;BR /&gt;no protocol udp&lt;BR /&gt;tracking enable&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;enrollment terminal&lt;BR /&gt;revocation-check crl&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-36XXXXXXXXX&lt;BR /&gt;enrollment selfsigned&lt;BR /&gt;subject-name cn=IOS-Self-Signed-Certificate-36XXXXXXXX&lt;BR /&gt;revocation-check none&lt;BR /&gt;rsakeypair TP-self-signed-362XXXXXXXXX&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint sdn-network-infra-iwan&lt;BR /&gt;enrollment url &lt;A href="http://10.12.101.76:80/ejbca/publicweb/apply/scep/sdnscep" target="_blank" rel="noopener"&gt;http://10.12.101.76:80/ejbca/publicweb/apply/scep/sdnscep&lt;/A&gt;&lt;BR /&gt;fqdn SW2.ABC.com&lt;BR /&gt;subject-name CN=C9200-24P_JAD23200XH1_sdn-network-infra-iwan&lt;BR /&gt;revocation-check crl&lt;BR /&gt;source interface Vlan1&lt;BR /&gt;rsakeypair sdn-network-infra-iwan&lt;BR /&gt;auto-enroll 80 regenerate&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;certificate ca 01&lt;BR /&gt;30820321 30820209 A0030201 02020101 300D0609 2A864886 F70D0101 0B050030&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 32310E30 0C060355 040A1305 43697363 6F312030 1E060355 04031317 43697363&lt;BR /&gt;6F204C69 63656E73 696E6720 526F6F74 20434130 1E170D31 33303533 30313934&lt;BR /&gt;3834375A 170D3338 30353330 31393438 34375A30 32310E30 0C060355 040A1305&lt;BR /&gt;43697363 6F312030 1E060355 04031317 43697363 6F204C69 63656E73 696E6720&lt;BR /&gt;526F6F74 20434130 82012230 0D06092A 864886F7 0D010101 05000382 010F0030&lt;BR /&gt;82010A02 82010100 A6BCBD96 131E05F7 145EA72C 2CD686E6 17222EA1 F1EFF64D&lt;BR /&gt;CBB4C798 212AA147 C655D8D7 9471380D 8711441E 1AAF071A 9CAE6388 8A38E520&lt;BR /&gt;1C394D78 462EF239 C659F715 B98C0A59 5BBB5CBD 0CFEBEA3 700A8BF7 D8F256EE&lt;BR /&gt;4AA4E80D DB6FD1C9 60B1FD18 FFC69C96 6FA68957 A2617DE7 104FDC5F EA2956AC&lt;BR /&gt;7390A3EB 2B5436AD C847A2C5 DAB553EB 69A9A535 58E9F3E3 C0BD23CF 58BD7188&lt;BR /&gt;68E69491 20F320E7 948E71D7 AE3BCC84 F10684C7 4BC8E00F 539BA42B 42C68BB7&lt;BR /&gt;C7479096 B4CB2D62 EA2F505D C7B062A4 6811D95B E8250FC4 5D5D5FB8 8F27D191&lt;BR /&gt;C55F0D76 61F9A4CD 3D992327 A8BB03BD 4E6D7069 7CBADF8B DF5F4368 95135E44&lt;BR /&gt;DFC7C6CF 04DD7FD1 02030100 01A34230 40300E06 03551D0F 0101FF04 04030201&lt;BR /&gt;06300F06 03551D13 0101FF04 05300301 01FF301D 0603551D 0E041604 1449DC85&lt;BR /&gt;4B3D31E5 1B3E6A17 606AF333 3D3B4C73 E8300D06 092A8648 86F70D01 010B0500&lt;BR /&gt;03820101 00507F24 D3932A66 86025D9F E838AE5C 6D4DF6B0 49631C78 240DA905&lt;BR /&gt;604EDCDE FF4FED2B 77FC460E CD636FDB DD44681E 3A5673AB 9093D3B1 6C9E3D8B&lt;BR /&gt;D98987BF E40CBD9E 1AECA0C2 2189BB5C 8FA85686 CD98B646 5575B146 8DFC66A8&lt;BR /&gt;467A3DF4 4D565700 6ADF0F0D CF835015 3C04FF7C 21E878AC 11BA9CD2 55A9232C&lt;BR /&gt;7CA7B7E6 C1AF74F6 152E99B7 B1FCF9BB E973DE7F 5BDDEB86 C71E3B49 1765308B&lt;BR /&gt;5FB0DA06 B92AFE7F 494E8A9E 07B85737 F3A58BE1 1A48A229 C37C1E69 39F08678&lt;BR /&gt;80DDCD16 D6BACECA EEBC7CF9 8428787B 35202CDC 60E4616A B623CDBD 230E3AFB&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 418616A9 4093E049 4D10AB75 27E86F73 932E35B5 8862FDAE 0275156F 719BB2F0&lt;BR /&gt;D697DF7F 28&lt;BR /&gt;quit&lt;BR /&gt;crypto pki certificate chain TP-self-signed-36XXXXXXXXXX&lt;BR /&gt;certificate self-signed 01&lt;BR /&gt;30820330 30820218 A0030201 02020101 300D0609 2A864886 F70D0101 05050030&lt;BR /&gt;31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274&lt;BR /&gt;69666963 6174652D 33363239 31323732 3235301E 170D3139 30383036 30363434&lt;BR /&gt;31335A17 0D333030 31303130 30303030 305A3031 312F302D 06035504 03132649&lt;BR /&gt;4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 36323931&lt;BR /&gt;32373232 35308201 22300D06 092A8648 86F70D01 01010500 0382010F 00308201&lt;BR /&gt;0A028201 0100B715 A9D79A86 8E89464D 3031E15F A3F24049 BA400B3F 92E7F2DF&lt;BR /&gt;3A61BCB0 9397ED84 828D0CC4 99F61E8C 18103EA5 2F9BE8A3 4899038B CF99DE15&lt;BR /&gt;C1FC62DB 18BDD626 3F1AE62E DCAE7D86 2E4040EB 7115A421 DCEE8A53 4ADF3493&lt;BR /&gt;DB1F37C9 B6F2AD11 420AE20C A3F5D436 26E94BF2 FD173593 4B6140F9 B2658948&lt;BR /&gt;F09C7F47 1E3F87F7 843766F7 E7FEE848 5BD616CB C57A3A31 9969248E 3A79E0F6&lt;BR /&gt;0906FCB4 4D247C4F 4AD1E81C 48B27360 C1F23640 E602C8F5 4BA52EBE A51934A4&lt;BR /&gt;88F1F5A7 BCCD568F 161E3506 E3D56B87 3F8309C8 06C5DBEE BEBE3A30 3CC57AA1&lt;BR /&gt;D22FA054 F19D337A 1A5E5335 8E5BB8FC 26F62F8B C67D2AC5 9EE233A3 A9744399&lt;BR /&gt;23AEFDD3 52050203 010001A3 53305130 0F060355 1D130101 FF040530 030101FF&lt;BR /&gt;301F0603 551D2304 18301680 142FB966 A9C51D02 BCF1A6B3 5487B25C 4180AB14&lt;BR /&gt;16301D06 03551D0E 04160414 2FB966A9 C51D02BC F1A6B354 87B25C41 80AB1416&lt;BR /&gt;300D0609 2A864886 F70D0101 05050003 82010100 94462828 67C7190E 860CD047&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; AA909108 C0692EBA 9FC042C8 887CA26B C6A2D252 A76E7A02 0025AACA C1C5D288&lt;BR /&gt;8EA2D467 2E81CF09 81FDEC3F 41FD166D 516B0034 9C665779 4BDAD54E AED76E91&lt;BR /&gt;27EA3C59 DBACDCFE 32609CFC 8EFCC899 8B12FF9B 4C9DBA8D C96E4694 CF6872B1&lt;BR /&gt;144EC296 80D2A8D3 7418DB1F A3D83A5B 71B8FD49 2C777AB2 9B502331 430DCA18&lt;BR /&gt;6ABC14EA 1B30E1F1 25FB23F4 603BC55B A71BF169 8F738251 0803FB53 B0D15DFF&lt;BR /&gt;AAD7F13A 7119431D 238DD6CD 97CE557F 7A94570D E7CC4CE9 47E19E49 28FCABF8&lt;BR /&gt;38B7AE50 CD7BCED4 D9E8F462 4AF4ACD4 BBCDEAE1 326C09CD B4D5C30B 22AF34CF&lt;BR /&gt;DAF365DC 28A63958 9A594DF0 7142F6D8 870B5025&lt;BR /&gt;quit&lt;BR /&gt;crypto pki certificate chain sdn-network-infra-iwan&lt;BR /&gt;certificate 02XXXXXXXXXXX&lt;BR /&gt;30820384 3082026C A0030201 02020802 162D0880 7EF62430 0D06092A 864886F7&lt;BR /&gt;0D01010D 0500301F 311D301B 06035504 030C1473 646E2D6E 6574776F 726B2D69&lt;BR /&gt;6E667261 2D636130 1E170D32 34303730 39303230 3433345A 170D3235 30373039&lt;BR /&gt;30323034 33345A30 64312B30 2906092A 864886F7 0D010902 0C1C4865 726D6573&lt;BR /&gt;5F536169 6E744C6F 7569732E 6865726D 65732E63 6F6D3135 30330603 5504030C&lt;BR /&gt;2C433932 30302D32 34505F4A 41443233 32303058 48315F73 646E2D6E 6574776F&lt;BR /&gt;726B2D69 6E667261 2D697761 6E308201 22300D06 092A8648 86F70D01 01010500&lt;BR /&gt;0382010F 00308201 0A028201 01008E74 CBBD667B 9137062F 305EBF6C 0AAF6EAA&lt;BR /&gt;8C21E637 1088C427 2DA4CE8C 622A2F87 AF7CF84E 3ADA4F8D EFC5336C FFA5ACBD&lt;BR /&gt;13AA5C69 F8A8E420 95DA9A50 6D963C6F 7557E8A8 338899C6 3B8AF7B9 3DB67F71&lt;BR /&gt;24570DE1 E0F8B390 4785E450 C48620BF 7B1D73DF CD17BCCE 4FF8629D 66C40898&lt;BR /&gt;38A5E33C 7C619D16 ACB5E85D 99B5B03C 86ADFA85 A94BB029 11B26769 F7879C63&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 5029016C 16666B53 504D18E7 CF64D2AC CFCB310A B3F0583F 7063F427 2356480C&lt;BR /&gt;8F773A1E D8DB1374 6F948C18 DB9CEE23 85A04A94 DD793552 FC83B86F 770337F1&lt;BR /&gt;81B1C479 0D381494 DB0176B3 C250A356 DABEC423 0DF9B2FA 9F3B17A6 CC74A598&lt;BR /&gt;33C44C34 D5F4532B 2463440D AC430203 010001A3 7F307D30 0C060355 1D130101&lt;BR /&gt;FF040230 00301F06 03551D23 04183016 8014C006 E473F713 9F0ED323 0A9B836D&lt;BR /&gt;1DB99E46 0837301D 0603551D 25041630 1406082B 06010505 07030206 082B0601&lt;BR /&gt;05050703 04301D06 03551D0E 04160414 2EA86930 CBB42FBA 87DAC874 401A269C&lt;BR /&gt;42EC0376 300E0603 551D0F01 01FF0404 030205E0 300D0609 2A864886 F70D0101&lt;BR /&gt;0D050003 82010100 5B4CE50E E66B60A0 805BEC58 F6937580 38A65A1C C8FD9CAF&lt;BR /&gt;44883B7F 06A4DD10 27EAD5AF 74ECD3F1 D09D72F9 977A5EAE 8BE4F57B 0F51DEC9&lt;BR /&gt;77EE6564 B8A1B3DE DEC9FBD5 91B48AAC 9DE3B87A D36FB0A3 C8B51596 C89BD83A&lt;BR /&gt;E35B03AF 979CC4CF 483CAE20 781C581F 9B864786 6483C37B 49698BE1 9D6E7AC8&lt;BR /&gt;D754A45A 8A83C12F E60D7B6E F914EA54 FE56BC4E 62264CD1 0D501FDD D119BEDC&lt;BR /&gt;A9D77288 94E155B7 07B5464D 374075E5 53D2CE55 D7292B40 2AFE0EED 7847A16E&lt;BR /&gt;88E3C9DE 5F5D2E04 B55A475F 898D457D 4F0A5F79 B5E6840C 5D8CB416 0629752F&lt;BR /&gt;F8A240EA AA862C72 A7D4A849 123B01CD E4D5805F C049C9D8 B128180C A5E9FDC6&lt;BR /&gt;C9B1E94D BE9EA71F&lt;BR /&gt;quit&lt;BR /&gt;certificate ca 37XXXXXXXXXXXXXX&lt;BR /&gt;30820323 3082020B A0030201 02020837 F3973A9E 07A82830 0D06092A 864886F7&lt;BR /&gt;0D01010D 0500301F 311D301B 06035504 030C1473 646E2D6E 6574776F 726B2D69&lt;BR /&gt;6E667261 2D636130 1E170D32 31303730 39303531 3832335A 170D3236 30373038&lt;BR /&gt;30353138 32335A30 1F311D30 1B060355 04030C14 73646E2D 6E657477 6F726B2D&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; 696E6672 612D6361 30820122 300D0609 2A864886 F70D0101 01050003 82010F00&lt;BR /&gt;3082010A 02820101 0086D719 8B092105 706D2459 D5A5315A CA9395DC E8215847&lt;BR /&gt;2F8483FC DB3C9E33 F9852BB5 91422E91 54059093 319EBF69 38637D9E CB571680&lt;BR /&gt;F07544B0 78135D37 61694107 D2937940 F926535E A7EA22A5 DF40B6DC B06AC4D8&lt;BR /&gt;9A56F84F 1EF7AFF2 678E801F 002DC685 D283E0FF A4A00C69 CDC9629D 826DB043&lt;BR /&gt;05490FD5 72338425 A22E56B1 0D0AAB47 9DB253A3 21B73741 D1CE2951 B9508096&lt;BR /&gt;5AC4E35B 34CB3A6B BDEFB4C7 0F43411D 8FB96931 6B4D6BC3 73747D76 755715F6&lt;BR /&gt;C0420444 3B1B5482 C7FECB7A E38AAB1C 9C815208 46D137D3 784373E8 174B6874&lt;BR /&gt;DA1F2154 B7A9B25E F0D9C988 9E3D93BE EBA7EACE F787233A ABB46C4D 957DE518&lt;BR /&gt;F4B08C57 9C34C090 35020301 0001A363 3061300F 0603551D 130101FF 04053003&lt;BR /&gt;0101FF30 1F060355 1D230418 30168014 C006E473 F7139F0E D3230A9B 836D1DB9&lt;BR /&gt;9E460837 301D0603 551D0E04 160414C0 06E473F7 139F0ED3 230A9B83 6D1DB99E&lt;BR /&gt;46083730 0E060355 1D0F0101 FF040403 02018630 0D06092A 864886F7 0D01010D&lt;BR /&gt;05000382 0101001A 6F895C34 DCDBA5F0 5EC1A5EB 25933F58 35E8A11D B0B7B53C&lt;BR /&gt;2D25F4AD 7D80C727 A36DF067 B5D0E18B 668FA21A 5B5093F7 15521BCA B8DAAF48&lt;BR /&gt;60512976 981307CF D7E97B9D 7C671EF2 F5512C5D 7B1D41FC BF2002EA 495162B6&lt;BR /&gt;63EB998D 62EF34E0 269CA858 C238633C E0618864 FAE61636 A1CF40D3 39CAB298&lt;BR /&gt;36699FEF 42396EF6 A1C84E59 2E59E3DE D5DEDF72 E45C3477 85BD8798 7CC228E3&lt;BR /&gt;88719E33 64D98F1A 4072CB22 33CA9753 E45DB76D AC7B9B88 540A435C 930E9890&lt;BR /&gt;A2B5E6FA 0F753E71 85AC99FB BEFF1AFF 8FE7385B 56F4EF14 96621D91 26D0CFEB&lt;BR /&gt;2B740B94 560407D2 693A0A05 C3E33173 59BF0DDE 09CA2D98 5BA2DB2A A45DD031&lt;BR /&gt;4D5885EE F468A4&lt;BR /&gt;quit&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;license boot level network-essentials addon dna-essentials&lt;BR /&gt;dot1x system-auth-control&lt;BR /&gt;memory free low-watermark processor 87534&lt;BR /&gt;!&lt;BR /&gt;diagnostic bootup level minimal&lt;BR /&gt;!&lt;BR /&gt;spanning-tree mode rapid-pvst&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;enable secret 8 $8$.NgW/4EhgJxrVXXXXXXXXXXXXXXXXXXXXXX.a2agw&lt;BR /&gt;!&lt;BR /&gt;username adm secret 9 $9$PBHsSrVgqXXXXXXXXXXXXXXXXXXXXXXXXX&lt;BR /&gt;username adm_asecret 9 $9$0ANq/alg9XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX&lt;BR /&gt;username cisc_login privilege 15 secret 8 $8$KdXWjGrunYPRWk$IOXJOe5XXXXXXXXXXXXXXXXXXXXXXXXXXX&lt;BR /&gt;username adm_WW secret 9 $9$Ifzf8rEX2Wls7.$Vyt36JXXXXXXXXXXXXXXXXXXXXXXXXXXX&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;redundancy&lt;BR /&gt;mode sso&lt;BR /&gt;crypto engine compliance shield disable&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;transceiver type all&lt;BR /&gt;monitoring&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;class-map match-any system-cpp-police-ewlc-control&lt;BR /&gt;description EWLC Control&lt;BR /&gt;class-map match-any system-cpp-police-topology-control&lt;BR /&gt;description Topology control&lt;BR /&gt;class-map match-any system-cpp-police-sw-forward&lt;BR /&gt;description Sw forwarding, L2 LVX data packets, LOGGING, Transit Traffic&lt;BR /&gt;class-map match-any system-cpp-default&lt;BR /&gt;description EWLC data, Inter FED Traffic&lt;BR /&gt;class-map match-any system-cpp-police-sys-data&lt;BR /&gt;description Openflow, Exception, EGR Exception, NFL Sampled Data, RPF Failed&lt;BR /&gt;class-map match-any system-cpp-police-punt-webauth&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description Punt Webauth&lt;BR /&gt;class-map match-any system-cpp-police-l2lvx-control&lt;BR /&gt;description L2 LVX control packets&lt;BR /&gt;class-map match-any system-cpp-police-forus&lt;BR /&gt;description Forus Address resolution and Forus traffic&lt;BR /&gt;class-map match-any system-cpp-police-multicast-end-station&lt;BR /&gt;description MCAST END STATION&lt;BR /&gt;class-map match-any system-cpp-police-high-rate-app&lt;BR /&gt;description High Rate Applications&lt;BR /&gt;class-map match-any system-cpp-police-multicast&lt;BR /&gt;description MCAST Data&lt;BR /&gt;class-map match-any system-cpp-police-l2-control&lt;BR /&gt;description L2 control&lt;BR /&gt;class-map match-any system-cpp-police-dot1x-auth&lt;BR /&gt;description DOT1X Auth&lt;BR /&gt;class-map match-any system-cpp-police-data&lt;BR /&gt;description ICMP redirect, ICMP_GEN and BROADCAST&lt;BR /&gt;class-map match-any system-cpp-police-stackwise-virt-control&lt;BR /&gt;description Stackwise Virtual OOB&lt;BR /&gt;class-map match-any non-client-nrt-class&lt;BR /&gt;class-map match-any system-cpp-police-routing-control&lt;BR /&gt;description Routing control and Low Latency&lt;BR /&gt;class-map match-any system-cpp-police-protocol-snooping&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description Protocol snooping&lt;BR /&gt;class-map match-any system-cpp-police-dhcp-snooping&lt;BR /&gt;description DHCP snooping&lt;BR /&gt;class-map match-any system-cpp-police-ios-routing&lt;BR /&gt;description L2 control, Topology control, Routing control, Low Latency&lt;BR /&gt;class-map match-any system-cpp-police-system-critical&lt;BR /&gt;description System Critical and Gold Pkt&lt;BR /&gt;class-map match-any system-cpp-police-ios-feature&lt;BR /&gt;description ICMPGEN,BROADCAST,ICMP,L2LVXCntrl,ProtoSnoop,PuntWebauth,MCASTData,Transit,DOT1XAuth,Swfwd,LOGGING,L2LVXData,ForusTraffic,ForusARP,McastEndStn,Openflow,Exception,EGRExcption,NflSampled,RpfFailed&lt;BR /&gt;!&lt;BR /&gt;policy-map system-cpp-policy&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface Port-channel1&lt;BR /&gt;description *** Synology DS215+ NAS ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel2&lt;BR /&gt;description *** Synology DS214+ NAS ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;vrf forwarding Mgmt-vrf&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/1&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/2&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/3&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;interface GigabitEthernet1/0/4&lt;BR /&gt;description Terminal&lt;BR /&gt;switchport access vlan 3&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication host-mode multi-host&lt;BR /&gt;authentication order mab&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/5&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/6&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface GigabitEthernet1/0/7&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/8&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/9&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/10&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/11&lt;BR /&gt;description *** Printer ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/12&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/13&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/14&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/15&lt;BR /&gt;description User data port&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;authentication host-mode multi-auth&lt;BR /&gt;authentication order mab dot1x&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity 180&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 10&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/16&lt;BR /&gt;description *** Synology DS214+ NAS ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;channel-group 2 mode active&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/17&lt;BR /&gt;description *** Synology DS214+ NAS ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;channel-group 2 mode active&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/18&lt;BR /&gt;description *** Synology DS215+ NAS ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;channel-group 1 mode active&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;interface GigabitEthernet1/0/19&lt;BR /&gt;description *** Synology DS215+ NAS ***&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;channel-group 1 mode active&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/20&lt;BR /&gt;description Wireless&lt;BR /&gt;switchport trunk native vlan 2&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/21&lt;BR /&gt;description Wireless&lt;BR /&gt;switchport trunk native vlan 2&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/22&lt;BR /&gt;description Backup-Router-WiFi&lt;BR /&gt;switchport access vlan 2&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;interface GigabitEthernet1/0/23&lt;BR /&gt;description Backup-Router-Data&lt;BR /&gt;switchport mode access&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/24&lt;BR /&gt;description To-Primary_Router&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/1&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/2&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/3&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/1/4&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/1&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;!&lt;BR /&gt;interface TenGigabitEthernet1/1/2&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/3&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet1/1/4&lt;BR /&gt;device-tracking attach-policy IPDT_POLICY&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;description Data Subnet 10.12.118.0/24&lt;BR /&gt;ip address 10.12.118.230 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan4&lt;BR /&gt;description Adyen Subnet 10.141.68.0/24&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt;description Wifi Subnet 10.12.168.0/24&lt;BR /&gt;ip address 10.12.168.230 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;ip default-gateway 10.12.118.245&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;no ip http server&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;ip http client source-interface Vlan1&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;ip ssh time-out 60&lt;BR /&gt;ip ssh authentication-retries 2&lt;BR /&gt;ip ssh source-interface Vlan1&lt;BR /&gt;ip ssh logging events&lt;BR /&gt;ip ssh version 2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip radius source-interface Vlan1&lt;BR /&gt;logging source-interface Vlan1&lt;BR /&gt;logging host 10.12.101.76&lt;BR /&gt;ip access-list standard 99&lt;BR /&gt;10 permit 10.12.100.211&lt;BR /&gt;20 permit 10.121.101.0 0.0.0.255&lt;BR /&gt;30 deny any&lt;BR /&gt;!&lt;BR /&gt;snmp-server community $AzXXXXX RO&lt;BR /&gt;snmp-server community nXXXXXXX RW&lt;BR /&gt;snmp-server community 84XXXXXX RO 99&lt;BR /&gt;snmp-server community RXXXXXXX RW 99&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server community 2C:3F:0B:C9:D4:70 RW&lt;BR /&gt;snmp-server trap-source Vlan1&lt;BR /&gt;snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart&lt;BR /&gt;snmp-server enable traps flowmon&lt;BR /&gt;snmp-server enable traps entity-perf throughput-notif&lt;BR /&gt;snmp-server enable traps call-home message-send-fail server-fail&lt;BR /&gt;snmp-server enable traps tty&lt;BR /&gt;snmp-server enable traps eigrp&lt;BR /&gt;snmp-server enable traps ospf state-change&lt;BR /&gt;snmp-server enable traps ospf errors&lt;BR /&gt;snmp-server enable traps ospf retransmit&lt;BR /&gt;snmp-server enable traps ospf lsa&lt;BR /&gt;snmp-server enable traps ospf cisco-specific state-change nssa-trans-change&lt;BR /&gt;snmp-server enable traps ospf cisco-specific state-change shamlink interface&lt;BR /&gt;snmp-server enable traps ospf cisco-specific state-change shamlink neighbor&lt;BR /&gt;snmp-server enable traps ospf cisco-specific errors&lt;BR /&gt;snmp-server enable traps ospf cisco-specific retransmit&lt;BR /&gt;snmp-server enable traps ospf cisco-specific lsa&lt;BR /&gt;snmp-server enable traps bfd&lt;BR /&gt;snmp-server enable traps license&lt;BR /&gt;snmp-server enable traps smart-license&lt;BR /&gt;snmp-server enable traps auth-framework sec-violation&lt;BR /&gt;snmp-server enable traps rep&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps memory bufferpeak&lt;BR /&gt;snmp-server enable traps config-copy&lt;BR /&gt;snmp-server enable traps config&lt;BR /&gt;snmp-server enable traps config-ctid&lt;BR /&gt;snmp-server enable traps energywise&lt;BR /&gt;snmp-server enable traps fru-ctrl&lt;BR /&gt;snmp-server enable traps entity&lt;BR /&gt;snmp-server enable traps flash insertion removal lowspace&lt;BR /&gt;snmp-server enable traps power-ethernet group 1 threshold 80&lt;BR /&gt;snmp-server enable traps power-ethernet police&lt;BR /&gt;snmp-server enable traps cpu threshold&lt;BR /&gt;snmp-server enable traps syslog&lt;BR /&gt;snmp-server enable traps udld link-fail-rpt&lt;BR /&gt;snmp-server enable traps udld status-change&lt;BR /&gt;snmp-server enable traps vtp&lt;BR /&gt;snmp-server enable traps vlancreate&lt;BR /&gt;snmp-server enable traps vlandelete&lt;BR /&gt;snmp-server enable traps port-security&lt;BR /&gt;snmp-server enable traps envmon&lt;BR /&gt;snmp-server enable traps stackwise&lt;BR /&gt;snmp-server enable traps dhcp&lt;BR /&gt;snmp-server enable traps event-manager&lt;BR /&gt;snmp-server enable traps ike policy add&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps ike policy delete&lt;BR /&gt;snmp-server enable traps ike tunnel start&lt;BR /&gt;snmp-server enable traps ike tunnel stop&lt;BR /&gt;snmp-server enable traps ipsec cryptomap add&lt;BR /&gt;snmp-server enable traps ipsec cryptomap delete&lt;BR /&gt;snmp-server enable traps ipsec cryptomap attach&lt;BR /&gt;snmp-server enable traps ipsec cryptomap detach&lt;BR /&gt;snmp-server enable traps ipsec tunnel start&lt;BR /&gt;snmp-server enable traps ipsec tunnel stop&lt;BR /&gt;snmp-server enable traps ipsec too-many-sas&lt;BR /&gt;snmp-server enable traps ospfv3 state-change&lt;BR /&gt;snmp-server enable traps ospfv3 errors&lt;BR /&gt;snmp-server enable traps ipmulticast&lt;BR /&gt;snmp-server enable traps pimstdmib neighbor-loss invalid-register invalid-join-prune rp-mapping-change interface-election&lt;BR /&gt;snmp-server enable traps msdp&lt;BR /&gt;snmp-server enable traps pim neighbor-change rp-mapping-change invalid-pim-message&lt;BR /&gt;snmp-server enable traps bridge newroot topologychange&lt;BR /&gt;snmp-server enable traps stpx inconsistency root-inconsistency loop-inconsistency&lt;BR /&gt;snmp-server enable traps cef resource-failure peer-state-change peer-fib-state-change inconsistency&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;snmp-server enable traps bulkstat collection transfer&lt;BR /&gt;snmp-server enable traps mac-notification change move threshold&lt;BR /&gt;snmp-server enable traps errdisable&lt;BR /&gt;snmp-server enable traps vlan-membership&lt;BR /&gt;snmp-server enable traps transceiver all&lt;BR /&gt;snmp-server enable traps vrfmib vrf-up vrf-down vnet-trunk-up vnet-trunk-down&lt;BR /&gt;snmp-server enable traps rf&lt;BR /&gt;snmp-server host 10.12.101.76 version 2c 2C:3F:0B:C9:D4:70&lt;BR /&gt;radius-server attribute 6 on-for-login-auth&lt;BR /&gt;radius-server attribute 8 include-in-access-req&lt;BR /&gt;radius-server attribute 25 access-request include&lt;BR /&gt;radius-server dead-criteria time 5 tries 3&lt;BR /&gt;!&lt;BR /&gt;radius server ISE1&lt;BR /&gt;address ipv4 10.121.102.215 auth-port 1812 acct-port 1813&lt;BR /&gt;timeout 10&lt;BR /&gt;key 7 121A0C041104&lt;BR /&gt;!&lt;BR /&gt;radius server ISE2&lt;BR /&gt;address ipv4 10.121.102.216 auth-port 1812 acct-port 1813&lt;BR /&gt;timeout 10&lt;BR /&gt;key 7 045802150C2E&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;radius server HKHHKLPSVCRAD01&lt;BR /&gt;address ipv4 10.12.101.59 auth-port 1812 acct-port 1813&lt;BR /&gt;timeout 10&lt;BR /&gt;key 7 01100F175804&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;service-policy input system-cpp-policy&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;password 7 000A4312100B0F0716&lt;BR /&gt;logging synchronous&lt;BR /&gt;login authentication NO_AUTH&lt;BR /&gt;stopbits 1&lt;BR /&gt;line aux 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt;password 7 030A0B1F125F254D57&lt;BR /&gt;logging synchronous&lt;BR /&gt;login authentication SSH-LOGIN&lt;BR /&gt;transport input ssh&lt;BR /&gt;line vty 5 15&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; password 7 030A0B1F125F254D57&lt;BR /&gt;logging synchronous&lt;BR /&gt;login authentication SSH-LOGIN&lt;BR /&gt;transport input ssh&lt;BR /&gt;!&lt;BR /&gt;call-home&lt;BR /&gt;! If contact email address in call-home is configured as sch-@cisco.com&lt;BR /&gt;! the email address configured in Cisco Smart License Portal will be used as contact email address to send SCH notifications.&lt;BR /&gt;contact-email-addr sch-@cisco.com&lt;BR /&gt;profile "Cisco"&lt;BR /&gt;active&lt;BR /&gt;destination transport-method http&lt;BR /&gt;ntp logging&lt;BR /&gt;ntp source Vlan1&lt;BR /&gt;ntp server 10.12.101.10&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;netconf-yang&lt;BR /&gt;netconf-yang feature candidate-datastore&lt;BR /&gt;telemetry ietf subscription 500&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_port_detail&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 501&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_module&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.141.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 502&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_stack&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 503&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/poe_switch&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 504&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter nested-uri /services;serviceName=ios_oper/platform_component;cname=0?platform_properties&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 30000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 550&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=smevent/sessionevent&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 551&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=sessmgr_oper/session_context_data&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 552&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/sisf_mac_oper_state&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.141.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 553&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; filter tdl-uri /services;serviceName=ios_oper/sisf_db_wired_mac&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 554&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/cdp_neighbor_detail&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 555&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/cdp_neighbor_detail&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 600&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=sessmgr_oper/tbl_aaa_servers_stat&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 601&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=sessmgr_oper/tbl_aaa_servers_stat&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 602&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_emul_oper/lisp_routers;top_id=0/sessions&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 603&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/lisp_tcp_session_state&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 604&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter nested-uri /services;serviceName=ios_emul_oper/lisp_routers;top_id=0/instances;iid=0/af;iaftype=LISP_TDL_IAF_IPV4/lisp_publisher&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 605&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/lisp_pubsub_session_state&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 606&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter nested-uri /services;serviceName=ios_emul_oper/lisp_routers;top_id=0/remote_locator_sets;name=default-etr-locator-set-ipv4/rem_loc_set_rlocs_si&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 360000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 607&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=iosevent/lisp_etr_si_type&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 608&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_emul_oper/cts_env_data&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 60000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 750&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_emul_oper/environment_sensor&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 30000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 751&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-uri /services;serviceName=ios_oper/platform_component&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 30000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 1020&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; filter tdl-uri /services;serviceName=iosevent/install_status&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy on-change&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry ietf subscription 8882&lt;BR /&gt;encoding encode-tdl&lt;BR /&gt;filter tdl-transform trustSecCounterDelta&lt;BR /&gt;receiver-type protocol&lt;BR /&gt;source-address 10.12.118.230&lt;BR /&gt;stream native&lt;BR /&gt;update-policy periodic 90000&lt;BR /&gt;receiver name DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;telemetry receiver protocol DNAC_ASSURANCE_RECEIVER&lt;BR /&gt;host ip-address 10.12.101.76 25103&lt;BR /&gt;protocol tls-native profile sdn-network-infra-iwan&lt;BR /&gt;telemetry transform trustSecCounterDelta&lt;BR /&gt;input table cts_rolebased_policy&lt;BR /&gt;field dst_sgt&lt;BR /&gt;field src_sgt&lt;BR /&gt;field sgacl_name&lt;BR /&gt;field monitor_mode&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; field num_of_sgacl&lt;BR /&gt;field policy_life_time&lt;BR /&gt;field total_deny_count&lt;BR /&gt;field last_updated_time&lt;BR /&gt;field total_permit_count&lt;BR /&gt;join-key cts_role_based_policy_key&lt;BR /&gt;logical-op and&lt;BR /&gt;type mandatory&lt;BR /&gt;uri /services;serviceName=ios_emul_oper/cts_rolebased_policy&lt;BR /&gt;operation 1&lt;BR /&gt;output-field 1&lt;BR /&gt;field cts_rolebased_policy.src_sgt&lt;BR /&gt;output-field 2&lt;BR /&gt;field cts_rolebased_policy.dst_sgt&lt;BR /&gt;output-field 3&lt;BR /&gt;field cts_rolebased_policy.total_permit_count&lt;BR /&gt;output-op type delta&lt;BR /&gt;output-field 4&lt;BR /&gt;field cts_rolebased_policy.total_deny_count&lt;BR /&gt;output-op type delta&lt;BR /&gt;output-field 5&lt;BR /&gt;field cts_rolebased_policy.sgacl_name&lt;BR /&gt;output-field 6&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; field cts_rolebased_policy.monitor_mode&lt;BR /&gt;output-field 7&lt;BR /&gt;field cts_rolebased_policy.num_of_sgacl&lt;BR /&gt;output-field 8&lt;BR /&gt;field cts_rolebased_policy.policy_life_time&lt;BR /&gt;output-field 9&lt;BR /&gt;field cts_rolebased_policy.last_updated_time&lt;BR /&gt;specified&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;PIAA&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 21 Sep 2024 10:04:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197133#M591904</guid>
      <dc:creator>keith-mk-li</dc:creator>
      <dc:date>2024-09-21T10:04:09Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197136#M591906</link>
      <description>&lt;P&gt;One use specific port 1812/1813 other not?&lt;/P&gt;
&lt;P&gt;Maybe this issue here&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Sat, 21 Sep 2024 10:11:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197136#M591906</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-09-21T10:11:22Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197193#M591908</link>
      <description>&lt;P&gt;i see that both switches using&amp;nbsp;&lt;SPAN&gt;port 1812/1813, did you see one not ?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 21 Sep 2024 17:35:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197193#M591908</guid>
      <dc:creator>keith-mk-li</dc:creator>
      <dc:date>2024-09-21T17:35:29Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197233#M591909</link>
      <description>&lt;P&gt;your auth is set to use local account for both switches, set it to use ISE group and try "aaa authentication login default local"&lt;/P&gt;</description>
      <pubDate>Sun, 22 Sep 2024 05:25:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197233#M591909</guid>
      <dc:creator>Ambuj M</dc:creator>
      <dc:date>2024-09-22T05:25:27Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197237#M591910</link>
      <description>&lt;P&gt;but why switch 1 can authentication and switch 2 can not as both switches use local account for auth ? need to change to below ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Switch 1&lt;BR /&gt;aaa authentication login default local&amp;nbsp; &amp;nbsp;&amp;lt;--&amp;gt;&amp;nbsp; &amp;nbsp; aaa authentication login default ISE&amp;nbsp;&lt;BR /&gt;aaa authentication dot1x default group ISE&lt;BR /&gt;aaa authorization exec default local&lt;BR /&gt;aaa authorization network default group ISE&lt;BR /&gt;aaa accounting delay-start all&lt;BR /&gt;aaa accounting update newinfo&lt;BR /&gt;aaa accounting identity default start-stop group ISE&lt;BR /&gt;aaa accounting network default start-stop group ISE&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Switch 2&lt;BR /&gt;aaa authentication login default local&amp;nbsp; &amp;nbsp;&amp;lt;--&amp;gt;&amp;nbsp; &amp;nbsp; aaa authentication login default ISE&amp;nbsp;&lt;BR /&gt;aaa authentication login NO_AUTH none&lt;BR /&gt;aaa authentication login SSH-LOGIN local&lt;BR /&gt;aaa authentication dot1x default group ISE&lt;BR /&gt;aaa authorization exec default local&lt;BR /&gt;aaa authorization network default group ISE&lt;BR /&gt;aaa accounting delay-start all&lt;BR /&gt;aaa accounting update newinfo&lt;BR /&gt;aaa accounting auth-proxy default start-stop group ISE&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 22 Sep 2024 07:32:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197237#M591910</guid>
      <dc:creator>keith-mk-li</dc:creator>
      <dc:date>2024-09-22T07:32:17Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197273#M591912</link>
      <description>&lt;P&gt;You use ISE for admin or for network access ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Share&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Show aaa servers&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Sun, 22 Sep 2024 11:09:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197273#M591912</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-09-22T11:09:24Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197305#M591913</link>
      <description>&lt;P&gt;there you go&amp;nbsp;&lt;/P&gt;&lt;P&gt;SW#sh aaa servers&lt;/P&gt;&lt;P&gt;RADIUS: id 1, priority 1, host 10.121.102.215, auth-port 1812, acct-port 1813, hostname ISE1&lt;BR /&gt;State: current UP, duration 4294967s, previous duration 0s&lt;BR /&gt;Dead: total time 0s, count 5&lt;BR /&gt;Platform State from SMD: current UP, duration 4294967s, previous duration 40s&lt;BR /&gt;SMD Platform Dead: total time 121143s, count 156&lt;BR /&gt;Platform State from WNCD (1) : current UP&lt;BR /&gt;Platform State from WNCD (2) : current UP&lt;BR /&gt;Platform State from WNCD (3) : current UP&lt;BR /&gt;Platform State from WNCD (4) : current UP&lt;BR /&gt;Platform State from WNCD (5) : current UP&lt;BR /&gt;Platform State from WNCD (6) : current UP&lt;BR /&gt;Platform State from WNCD (7) : current UP&lt;BR /&gt;Platform State from WNCD (8) : current UP, duration 0s, previous duration 0s&lt;BR /&gt;WNCD Platform Dead: total time 0s, count 0UP&lt;BR /&gt;Quarantined: No&lt;BR /&gt;Authen: request 145239, timeouts 1573, failover 48, retransmission 1409&lt;BR /&gt;Response: accept 14616, reject 13513, challenge 115535&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 306783502ms&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Transaction: success 143666, failure 176&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Dot1x transactions:&lt;BR /&gt;Response: total responses: 123525, avg response time: 112ms&lt;BR /&gt;Transaction: timeouts 150, failover 28&lt;BR /&gt;Transaction: total 8140, success 7919, failure 221&lt;BR /&gt;MAC auth transactions:&lt;BR /&gt;Response: total responses: 20125, avg response time: 208ms&lt;BR /&gt;Transaction: timeouts 26, failover 20&lt;BR /&gt;Transaction: total 20151, success 6692, failure 13459&lt;BR /&gt;Author: request 4, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 4, reject 0, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 130ms&lt;BR /&gt;Transaction: success 4, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;MAC author transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Account: request 57868, timeouts 1045, failover 25, retransmission 1011&lt;BR /&gt;Request: start 11931, interim 33023, stop 11901&lt;BR /&gt;Response: start 11930, interim 33004, stop 11887&lt;BR /&gt;Response: unexpected 29, server error 0, incorrect 0, time 110ms&lt;BR /&gt;Transaction: success 56823, failure 34&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Elapsed time since counters last cleared: 14w2d11h44m&lt;BR /&gt;Estimated Outstanding Access Transactions: 0&lt;BR /&gt;Estimated Outstanding Accounting Transactions: 0&lt;BR /&gt;Estimated Throttled Access Transactions: 0&lt;BR /&gt;Estimated Throttled Accounting Transactions: 0&lt;BR /&gt;Maximum Throttled Transactions: access 0, accounting 0&lt;BR /&gt;Consecutive Response Failures: total 144&lt;BR /&gt;SMD Platform : max 83, current 0 total 144&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Consecutive Timeouts: total 1386&lt;BR /&gt;SMD Platform : max 335, current 0 total 1386&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Requests per minute past 24 hours:&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; high - 1 hours, 58 minutes ago: 1&lt;BR /&gt;low - 11 hours, 43 minutes ago: 0&lt;BR /&gt;average: 0&lt;/P&gt;&lt;P&gt;RADIUS: id 2, priority 2, host 10.151.102.216, auth-port 1812, acct-port 1813, hostname ISE2&lt;BR /&gt;State: current UP, duration 4294967s, previous duration 0s&lt;BR /&gt;Dead: total time 0s, count 5&lt;BR /&gt;Platform State from SMD: current UP, duration 4294967s, previous duration 18000s&lt;BR /&gt;SMD Platform Dead: total time 224725s, count 36&lt;BR /&gt;Platform State from WNCD (1) : current UP&lt;BR /&gt;Platform State from WNCD (2) : current UP&lt;BR /&gt;Platform State from WNCD (3) : current UP&lt;BR /&gt;Platform State from WNCD (4) : current UP&lt;BR /&gt;Platform State from WNCD (5) : current UP&lt;BR /&gt;Platform State from WNCD (6) : current UP&lt;BR /&gt;Platform State from WNCD (7) : current UP&lt;BR /&gt;Platform State from WNCD (8) : current UP, duration 0s, previous duration 0s&lt;BR /&gt;WNCD Platform Dead: total time 0s, count 0UP&lt;BR /&gt;Quarantined: No&lt;BR /&gt;Authen: request 681, timeouts 529, failover 135, retransmission 378&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Response: accept 6, reject 41, challenge 106&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 123ms&lt;BR /&gt;Transaction: success 153, failure 154&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Dot1x transactions:&lt;BR /&gt;Response: total responses: 112, avg response time: 115ms&lt;BR /&gt;Transaction: timeouts 130, failover 113&lt;BR /&gt;Transaction: total 136, success 2, failure 134&lt;BR /&gt;MAC auth transactions:&lt;BR /&gt;Response: total responses: 41, avg response time: 145ms&lt;BR /&gt;Transaction: timeouts 24, failover 22&lt;BR /&gt;Transaction: total 65, success 4, failure 61&lt;BR /&gt;Author: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 0, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;MAC author transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;Account: request 185, timeouts 128, failover 32, retransmission 94&lt;BR /&gt;Request: start 3, interim 51, stop 37&lt;BR /&gt;Response: start 3, interim 35, stop 19&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 114ms&lt;BR /&gt;Transaction: success 57, failure 34&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Elapsed time since counters last cleared: 14w2d11h43m&lt;BR /&gt;Estimated Outstanding Access Transactions: 0&lt;BR /&gt;Estimated Outstanding Accounting Transactions: 0&lt;BR /&gt;Estimated Throttled Access Transactions: 0&lt;BR /&gt;Estimated Throttled Accounting Transactions: 0&lt;BR /&gt;Maximum Throttled Transactions: access 0, accounting 0&lt;BR /&gt;Consecutive Response Failures: total 164&lt;BR /&gt;SMD Platform : max 84, current 30 total 164&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Consecutive Timeouts: total 579&lt;BR /&gt;SMD Platform : max 336, current 86 total 579&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Requests per minute past 24 hours:&lt;BR /&gt;high - 11 hours, 43 minutes ago: 0&lt;BR /&gt;low - 11 hours, 43 minutes ago: 0&lt;BR /&gt;average: 0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;====================================================================&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SW2#sh aaa servers&lt;/P&gt;&lt;P&gt;RADIUS: id 1, priority 1, host 10.121.102.215, auth-port 1812, acct-port 1813, hostname ISE1&lt;BR /&gt;State: current UP, duration 190599s, previous duration 0s&lt;BR /&gt;Dead: total time 0s, count 8&lt;BR /&gt;Platform State from SMD: current UP, duration 4294967s, previous duration 0s&lt;BR /&gt;SMD Platform Dead: total time 18000s, count 3&lt;BR /&gt;Platform State from WNCD (1) : current UP&lt;BR /&gt;Platform State from WNCD (2) : current UP&lt;BR /&gt;Platform State from WNCD (3) : current UP&lt;BR /&gt;Platform State from WNCD (4) : current UP&lt;BR /&gt;Platform State from WNCD (5) : current UP&lt;BR /&gt;Platform State from WNCD (6) : current UP&lt;BR /&gt;Platform State from WNCD (7) : current UP&lt;BR /&gt;Platform State from WNCD (8) : current UP, duration 0s, previous duration 0s&lt;BR /&gt;WNCD Platform Dead: total time 0s, count 0UP&lt;BR /&gt;Quarantined: No&lt;BR /&gt;Authen: request 8, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 8, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 118ms&lt;BR /&gt;Transaction: success 8, failure 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Dot1x transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;MAC auth transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;Author: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 0, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;MAC author transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;Account: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Request: start 0, interim 0, stop 0&lt;BR /&gt;Response: start 0, interim 0, stop 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Elapsed time since counters last cleared: 2d4h56m&lt;BR /&gt;Estimated Outstanding Access Transactions: 0&lt;BR /&gt;Estimated Outstanding Accounting Transactions: 0&lt;BR /&gt;Estimated Throttled Access Transactions: 0&lt;BR /&gt;Estimated Throttled Accounting Transactions: 0&lt;BR /&gt;Maximum Throttled Transactions: access 0, accounting 0&lt;BR /&gt;Consecutive Response Failures: total 0&lt;BR /&gt;SMD Platform : max 0, current 0 total 0&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Consecutive Timeouts: total 0&lt;BR /&gt;SMD Platform : max 0, current 0 total 0&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Requests per minute past 24 hours:&lt;BR /&gt;high - 1 hours, 50 minutes ago: 7&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; low - 4 hours, 56 minutes ago: 0&lt;BR /&gt;average: 0&lt;/P&gt;&lt;P&gt;RADIUS: id 2, priority 2, host 10.151.102.216, auth-port 1812, acct-port 1813, hostname ISE2&lt;BR /&gt;State: current UP, duration 190702s, previous duration 0s&lt;BR /&gt;Dead: total time 0s, count 5&lt;BR /&gt;Platform State from SMD: current UP, duration 4294967s, previous duration 39641s&lt;BR /&gt;SMD Platform Dead: total time 18000s, count 2&lt;BR /&gt;Platform State from WNCD (1) : current UP&lt;BR /&gt;Platform State from WNCD (2) : current UP&lt;BR /&gt;Platform State from WNCD (3) : current UP&lt;BR /&gt;Platform State from WNCD (4) : current UP&lt;BR /&gt;Platform State from WNCD (5) : current UP&lt;BR /&gt;Platform State from WNCD (6) : current UP&lt;BR /&gt;Platform State from WNCD (7) : current UP&lt;BR /&gt;Platform State from WNCD (8) : current UP, duration 0s, previous duration 0s&lt;BR /&gt;WNCD Platform Dead: total time 0s, count 0UP&lt;BR /&gt;Quarantined: No&lt;BR /&gt;Authen: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 0, challenge 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Dot1x transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;MAC auth transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;Author: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 0, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;MAC author transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Transaction: total 0, success 0, failure 0&lt;BR /&gt;Account: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Request: start 0, interim 0, stop 0&lt;BR /&gt;Response: start 0, interim 0, stop 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Elapsed time since counters last cleared: 2d4h58m&lt;BR /&gt;Estimated Outstanding Access Transactions: 0&lt;BR /&gt;Estimated Outstanding Accounting Transactions: 0&lt;BR /&gt;Estimated Throttled Access Transactions: 0&lt;BR /&gt;Estimated Throttled Accounting Transactions: 0&lt;BR /&gt;Maximum Throttled Transactions: access 0, accounting 0&lt;BR /&gt;Consecutive Response Failures: total 0&lt;BR /&gt;SMD Platform : max 0, current 0 total 0&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Consecutive Timeouts: total 0&lt;BR /&gt;SMD Platform : max 0, current 0 total 0&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Requests per minute past 24 hours:&lt;BR /&gt;high - 4 hours, 58 minutes ago: 0&lt;BR /&gt;low - 4 hours, 58 minutes ago: 0&lt;BR /&gt;average: 0&lt;/P&gt;&lt;P&gt;RADIUS: id 3, priority 3, host 10.12.101.59, auth-port 1812, acct-port 1813, hostname HKHHKLPSVCRAD01&lt;BR /&gt;State: current UP, duration 190597s, previous duration 0s&lt;BR /&gt;Dead: total time 0s, count 0&lt;BR /&gt;Platform State from SMD: current UP, duration 4294967s, previous duration 0s&lt;BR /&gt;SMD Platform Dead: total time 0s, count 0&lt;BR /&gt;Platform State from WNCD (1) : current UP&lt;BR /&gt;Platform State from WNCD (2) : current UP&lt;BR /&gt;Platform State from WNCD (3) : current UP&lt;BR /&gt;Platform State from WNCD (4) : current UP&lt;BR /&gt;Platform State from WNCD (5) : current UP&lt;BR /&gt;Platform State from WNCD (6) : current UP&lt;BR /&gt;Platform State from WNCD (7) : current UP&lt;BR /&gt;Platform State from WNCD (8) : current UP, duration 0s, previous duration 0s&lt;BR /&gt;WNCD Platform Dead: total time 0s, count 0UP&lt;BR /&gt;Quarantined: No&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Authen: request 1, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 1, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 92ms&lt;BR /&gt;Transaction: success 1, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Dot1x transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;MAC auth transactions:&lt;BR /&gt;Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;Author: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Response: accept 0, reject 0, challenge 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;MAC author transactions:&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; Response: total responses: 0, avg response time: 0ms&lt;BR /&gt;Transaction: timeouts 0, failover 0&lt;BR /&gt;Transaction: total 0, success 0, failure 0&lt;BR /&gt;Account: request 0, timeouts 0, failover 0, retransmission 0&lt;BR /&gt;Request: start 0, interim 0, stop 0&lt;BR /&gt;Response: start 0, interim 0, stop 0&lt;BR /&gt;Response: unexpected 0, server error 0, incorrect 0, time 0ms&lt;BR /&gt;Transaction: success 0, failure 0&lt;BR /&gt;Throttled: transaction 0, timeout 0, failure 0&lt;BR /&gt;Malformed responses: 0&lt;BR /&gt;Bad authenticators: 0&lt;BR /&gt;Elapsed time since counters last cleared: 2d4h56m&lt;BR /&gt;Estimated Outstanding Access Transactions: 0&lt;BR /&gt;Estimated Outstanding Accounting Transactions: 0&lt;BR /&gt;Estimated Throttled Access Transactions: 0&lt;BR /&gt;Estimated Throttled Accounting Transactions: 0&lt;BR /&gt;Maximum Throttled Transactions: access 0, accounting 0&lt;BR /&gt;Consecutive Response Failures: total 0&lt;BR /&gt;SMD Platform : max 0, current 0 total 0&lt;BR /&gt;WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Consecutive Timeouts: total 0&lt;BR /&gt;SMD Platform : max 0, current 0 total 0&lt;BR /&gt;--More-- &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; &amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8;&amp;#8; WNCD Platform: max 0, current 0 total 0&lt;BR /&gt;IOSD Platform : max 0, current 0 total 0&lt;BR /&gt;Requests per minute past 24 hours:&lt;BR /&gt;high - 4 hours, 56 minutes ago: 0&lt;BR /&gt;low - 4 hours, 56 minutes ago: 0&lt;BR /&gt;average: 0&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Piaa&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 22 Sep 2024 14:09:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197305#M591913</guid>
      <dc:creator>keith-mk-li</dc:creator>
      <dc:date>2024-09-22T14:09:22Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197313#M591914</link>
      <description>&lt;P&gt;I think the issue with SW2' ypu can see the SW2 send to ISE1 and all request is reject' so the issue with ISE not for SW&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Authen: &lt;STRONG&gt;request 8,&lt;/STRONG&gt; timeouts 0, failover 0, retransmission 0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Response: accept 0, &lt;STRONG&gt;reject 8&lt;/STRONG&gt;, challenge 0&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 22 Sep 2024 15:58:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197313#M591914</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-09-22T15:58:50Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco switch authentication problem with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197387#M591918</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1771571"&gt;@keith-mk-li&lt;/a&gt;&amp;nbsp; - just a few suggestions when providing show run output from devices. Your output is very long and hard to read because of the paging breaks. It's helpful to always issue this command when there is more than one page/screen of output involved&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;terminal length 0&lt;/LI-CODE&gt;
&lt;P&gt;Next, you can restrict the output just for your RADIUS config, by using the command&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;show run | section radius
show run | in aaa&lt;/LI-CODE&gt;
&lt;P&gt;That narrows it down a lot. But in fairness showing us the interface and additional lines of config is useful.&lt;/P&gt;
&lt;P&gt;From your output I can see that on switch 2 you didn't explicitly set an access VLAN on any of your interfaces. In a non-NAC configuration, the IOS would default to VLAN 1. Please set an access vlan (unless it's VLAN 1, which would be the implied default)&lt;/P&gt;
&lt;P&gt;Is the L3 address of&amp;nbsp;&lt;SPAN&gt;Vlan1 (10.12.118.230) the correct source interface to be used for RADIUS, and is this also the IP address configured in ISE for SW2?&amp;nbsp; It's messy - you are using that for users and for network management?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From the "show aaa servers" you can see a bunch of rejects from ISE. What is ISE reporting in the Live Logs details?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;RADIUS shared secret in switch2 and ISE match?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 22 Sep 2024 21:00:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-switch-authentication-problem-with-ise/m-p/5197387#M591918</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2024-09-22T21:00:59Z</dc:date>
    </item>
  </channel>
</rss>

