nx5500-869CC8*#sh running-config ! ! Configuration of NX5500 version 7.5.1.0-015R ! ! version 2.7 ! ! client-identity-group default load default-fingerprints ! ip access-list BROADCAST-MULTICAST-CONTROL permit tcp any any rule-precedence 10 rule-description "permit all TCP traffic" permit udp any eq 67 any eq dhcpc rule-precedence 11 rule-description "permit DHCP replies" deny udp any range 137 138 any range 137 138 rule-precedence 20 rule-description "deny windows netbios" deny ip any 224.0.0.0/4 rule-precedence 21 rule-description "deny IP multicast" deny ip any host 255.255.255.255 rule-precedence 22 rule-description "deny IP local broadcast" permit ip any any rule-precedence 100 rule-description "permit all IP traffic" ! mac access-list PERMIT-ARP-AND-IPv4 permit any any type ip rule-precedence 10 rule-description "permit all IPv4 traffic" permit any any type arp rule-precedence 20 rule-description "permit all ARP traffic" ! ip snmp-access-list default permit any ! firewall-policy default no ip dos tcp-sequence-past-window ! ! mint-policy global-default ! meshpoint-qos-policy default ! wlan-qos-policy default qos trust dscp qos trust wmm ! radio-qos-policy default ! wlan Mutah-Wifi ssid Mutah-Wifi vlan 1725 bridging-mode tunnel encryption-type none authentication-type none no multi-band-operation no protected-mgmt-frames ! auto-provisioning-policy Adoption-policy adopt anyap precedence 1 profile mutah-Site rf-domain Mutah-rf-domain ip 172.25.0.0/16 ! dhcp-server-policy "DHCP Server" option controlleripaddress 191 ascii dhcp-pool 1725 network 172.25.0.0/16 option controlleripaddress pool1=172.25.0.5 ! ! management-policy default telnet no http server https server rest-server ssh user admin password 1 ################################## role superuser access all snmp-server community 0 private rw snmp-server community 0 public ro snmp-server user snmptrap v3 encrypted des auth md5 0 admin123 snmp-server user snmpmanager v3 encrypted des auth md5 0 admin123 ! ex3500-management-policy default snmp-server community public ro snmp-server community private rw snmp-server notify-filter 1 remote 127.0.0.1 snmp-server view defaultview 1 included ! ex3500-qos-class-map-policy default ! ex3500-qos-policy-map default ! profile nx5500 default-nx5500 no autoinstall configuration no autoinstall firmware no device-upgrade auto crypto ikev1 policy ikev1-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ikev2 policy ikev2-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ipsec transform-set default esp-aes-256 esp-sha-hmac crypto ikev1 remote-vpn crypto ikev2 remote-vpn crypto auto-ipsec-secure crypto load-management crypto remote-vpn-client interface ge1 interface ge2 interface ge3 interface ge4 interface ge5 interface ge6 interface pppoe1 use firewall-policy default service pm sys-restart router ospf router bgp adoption-mode controller ! profile rfs4000 default-rfs4000 autoinstall configuration autoinstall firmware crypto ikev1 policy ikev1-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ikev2 policy ikev2-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ipsec transform-set default esp-aes-256 esp-sha-hmac crypto ikev1 remote-vpn crypto ikev2 remote-vpn crypto auto-ipsec-secure crypto remote-vpn-client interface radio1 interface radio2 interface up1 interface ge1 interface ge2 interface ge3 interface ge4 interface ge5 interface wwan1 interface pppoe1 use firewall-policy default use client-identity-group default logging on service pm sys-restart router ospf router bgp adoption-mode controller ! profile anyap R4-ALL-AP no mint mlcp vlan no autoinstall configuration no autoinstall firmware crypto ikev1 policy ikev1-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ikev2 policy ikev2-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ipsec transform-set default esp-aes-256 esp-sha-hmac crypto ikev1 remote-vpn crypto ikev2 remote-vpn crypto auto-ipsec-secure crypto load-management crypto remote-vpn-client interface radio1 wlan Mutah-Wifi bss 1 primary interface radio2 wlan Mutah-Wifi bss 1 primary interface radio3 interface bluetooth1 shutdown mode le-sensor interface up1 interface ge1 interface ge2 interface fe1 interface fe2 interface fe3 interface fe4 interface vlan1 ip address dhcp ip dhcp client request options all interface wwan1 interface pppoe1 use firewall-policy default controller host 172.25.0.5 pool 1 level 1 controller host 172.25.0.6 pool 1 level 1 service pm sys-restart router ospf adoption-mode controller ! profile anyap R4-ALL-AP no mint mlcp vlan no autoinstall configuration no autoinstall firmware crypto ikev1 policy ikev1-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ikev2 policy ikev2-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ipsec transform-set default esp-aes-256 esp-sha-hmac crypto ikev1 remote-vpn crypto ikev2 remote-vpn crypto auto-ipsec-secure crypto load-management crypto remote-vpn-client interface radio1 wlan Mutah-Wifi bss 1 primary interface radio2 wlan Mutah-Wifi bss 1 primary interface radio3 interface bluetooth1 shutdown mode le-sensor interface up1 interface ge1 interface ge2 interface fe1 interface fe2 interface fe3 interface fe4 interface vlan1 ip address dhcp ip dhcp client request options all interface wwan1 interface pppoe1 use firewall-policy default controller host 172.25.0.5 pool 1 level 1 controller host 172.25.0.6 pool 1 level 1 service pm sys-restart router ospf adoption-mode controller ! profile anyap R4-F1-AP1 no autoinstall configuration no autoinstall firmware crypto ikev1 policy ikev1-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ikev2 policy ikev2-default isakmp-proposal default encryption aes-256 group 2 hash sha crypto ipsec transform-set default esp-aes-256 esp-sha-hmac crypto ikev1 remote-vpn crypto ikev2 remote-vpn crypto auto-ipsec-secure crypto load-management crypto remote-vpn-client interface radio1 wlan Mutah-Wifi bss 1 primary interface radio2 wlan Mutah-Wifi bss 1 primary interface radio3 interface bluetooth1 shutdown mode le-sensor interface up1 interface ge1 interface ge2 interface fe1 interface fe2 interface fe3 interface fe4 interface vlan1 ip address dhcp ip dhcp client request options all interface wwan1 interface pppoe1 use firewall-policy default controller host 172.25.0.5 pool 1 level 1 controller host 172.25.0.6 pool 1 level 1 service pm sys-restart router ospf adoption-mode controller ! rf-domain Mutah-rf-domain timezone Asia/Kuwait country-code jo ad-wips-wireless-mitigation disable ad-wips-wired-mitigation disable control-vlan 1725 ! rf-domain default timezone Asia/Kuwait country-code kw ad-wips-wireless-mitigation disable ad-wips-wired-mitigation disable controller-managed ! nx5500 40-83-DE-86-9C-C8 use profile default-nx5500 use rf-domain default hostname nx5500-869CC8 license AAP 479297a license ADSEC DEFAULT-ADV-SEC-LICENSE mint mlcp vlan mint mlcp ip no mint tunnel-across-extended-vlan ip default-gateway 172.25.0.1 interface ge2 switchport mode trunk switchport trunk allowed vlan 1,102,1725 switchport trunk native vlan 1 interface ge3 switchport mode access switchport access vlan 102 interface vlan1 ip address 192.168.0.1/24 interface vlan102 ip address 192.168.102.6/24 interface vlan1725 ip address 172.25.0.5/16 use dhcp-server-policy "DHCP Server" use auto-provisioning-policy Adoption-policy cluster name Mutah-AP cluster member ip 172.25.0.5 level 1 cluster member ip 172.25.0.6 level 1 cluster master-priority 255 cluster force-configured-state cluster force-configured-state-delay 5 logging on logging console warnings logging buffered warnings controller host 172.25.0.5 pool 1 controller host 172.25.0.6 pool 1 router ospf no ospf enable router-id 172.25.0.5 no auto-cost reference-bandwidth no default-information originate no passive all route-limit num-routes 9216 retry-count 5 retry-timeout 60 reset-time 1080 ip default-gateway priority 7000 ! nx5500 40-83-DE-86-A2-98 use profile default-nx5500 use rf-domain default hostname nx5500-86A298 license AAP 37d9bd0dd license ADSEC DEFAULT-ADV-SEC-LICENSE no mint mlcp vlan ip default-gateway 172.25.0.1 interface ge2 switchport mode trunk switchport trunk allowed vlan 1,1725 switchport trunk native vlan 1 interface vlan1 ip address 192.168.0.1/24 interface vlan1725 ip address 172.25.0.6/16 cluster name Mutah-AP cluster mode standby cluster member ip 172.25.0.5 level 1 cluster member ip 172.25.0.6 level 1 ! ap310 00-DC-B2-35-68-83 use profile R5-F3-AP1 use rf-domain default hostname R5-F3-AP1 ! ap310 00-DC-B2-35-69-CD use profile R5-F2-AP2 use rf-domain default hostname R5-F2-AP2 ! ap310 00-DC-B2-35-69-D2 use profile R5-F1-AP3 use rf-domain default hostname R5-F1-AP3 ! ap310 00-DC-B2-35-69-D7 use profile R4-F1-AP1 use rf-domain default hostname R4-F1-AP1 ! ap310 00-DC-B2-35-6C-61 use profile R5-F2-AP3 use rf-domain default hostname R5-F2-AP3 ! ap310 00-DC-B2-35-6C-8E use profile R5-F3-AP3 use rf-domain default hostname R5-F3-AP3 ! ap310 00-DC-B2-35-6C-93 use profile R5-F2-AP1 use rf-domain default hostname R5-F2-AP1 ! ap310 00-DC-B2-35-6C-9D use profile R5-F1-AP2 use rf-domain default hostname R5-F1-AP2 ! ap310 00-DC-B2-35-6F-C2 use profile R4-F3-AP1 use rf-domain default hostname R4-F3-AP1 interface radio2 ! ap310 00-DC-B2-35-70-12 use profile R6-F1-AP1 use rf-domain default hostname R6-F1-AP1 ! ap310 00-DC-B2-35-70-A3 use profile R4-F2-AP3 use rf-domain default hostname R4-F2-AP3 ! ap310 00-DC-B2-35-70-D0 use profile R5-F1-AP1 use rf-domain default hostname R5-F1-AP1 ! ap310 00-DC-B2-35-70-FD use profile R4-F2-AP2 use rf-domain default hostname R4-F2-AP2 interface ge1 switchport mode trunk switchport trunk allowed vlan 1,1089,1091 switchport trunk native vlan 1 ! ap310 00-DC-B2-35-71-02 use profile R4-F1-AP2 use rf-domain default hostname R4-F1-AP2 controller host 172.25.0.5 pool 1 level 1 controller host 172.25.0.6 pool 1 level 1 ! ap310 00-DC-B2-35-71-ED use profile R4-F2-AP1 use rf-domain default hostname R4-F2-AP1 ! ap310 00-DC-B2-35-71-F7 use profile R4-F1-AP3 use rf-domain default hostname R4-F1-AP3 ! ap310 00-DC-B2-35-71-FC use profile R4-F3-AP3 use rf-domain default hostname R4-F3-AP3 ! ap310 00-DC-B2-35-72-01 use profile R6-F3-AP2 use rf-domain default hostname R6-F3-AP2 ! ap310 00-DC-B2-35-72-06 use profile R6-F2-AP1 use rf-domain default hostname R6-F2-AP1 ! ap310 00-DC-B2-35-72-2E use profile R4-F3-AP2 use rf-domain default hostname R4-F3-AP2 ! ap310 00-DC-B2-35-72-38 use profile R5-F3-AP2 use rf-domain default hostname R5-F3-AP2 ! ap310 00-DC-B2-35-72-83 use profile R6-F2-AP2 use rf-domain default hostname R6-F2-AP2 ! ap310 00-DC-B2-35-72-8D use profile R6-F1-AP3 use rf-domain default hostname R6-F1-AP3 ! ap310 00-DC-B2-35-72-92 use profile new-profile1 use rf-domain default hostname ap310-357292 ! ap310 00-DC-B2-35-73-41 use profile R6-F3-AP1 use rf-domain default hostname R6-F3-AP1 ! ap310 00-DC-B2-35-73-46 use profile R6-F2-AP3 use rf-domain default hostname R6-F2-AP3 ! ap310 00-DC-B2-35-73-50 use profile R6-F1-AP2 use rf-domain default hostname R6-F1-AP2 ! ap310 00-DC-B2-35-73-5A use profile R6-F3-AP3 use rf-domain default hostname R6-F3-AP3 ! ap310 00-DC-B2-35-73-5F use profile R4-F1-AP4 use rf-domain default hostname R4-F1-AP4 ! ! end