#------------------------------------------------------------------- # DES-3526 Configuration # # Firmware: Build 5.00-B27 # Copyright(C) 2000-2005 D-Link Corporation. All rights reserved. #------------------------------------------------------------------- # BASIC config serial_port baud_rate 9600 auto_logout 10_minutes enable telnet 23 enable web 80 config terminal_line default # STORM config traffic control_trap none config traffic control 1-5 broadcast disable multicast disable unicast disable action drop threshold 128000 # LOOP_DETECT disable loopdetect config loopdetect recover_timer 60 config loopdetect interval 10 config loopdetect mode port-based config loopdetect ports 1-26 state disabled # GM config sim candidate disable sim config sim dp_interval 30 config sim hold_time 100 # SYSLOG disable syslog config system_severity trap information config system_severity log information # QOS config scheduling 0 max_packet 0 max_latency 0 config scheduling 1 max_packet 0 max_latency 0 config scheduling 2 max_packet 0 max_latency 0 config scheduling 3 max_packet 0 max_latency 0 config 802.1p user_priority 0 1 config 802.1p user_priority 1 0 config 802.1p user_priority 2 0 config 802.1p user_priority 3 1 config 802.1p user_priority 4 2 config 802.1p user_priority 5 2 config 802.1p user_priority 6 3 config 802.1p user_priority 7 3 config 802.1p default_priority 1-26 0 config bandwidth_control 1-26 rx_rate no_limit tx_rate no_limit # MIRROR disable mirror # TRAF-SEGMENTATION config traffic_segmentation 1-26 forward_list 1-26 # PORT config ports 1-26 speed auto flow_control disable learning enable state enable trap enable # PORT_LOCK enable port_security trap_log config port_security ports 1-4 admin_state enable max_learning_addr 0 lock_address_mode Permanent config port_security ports 5-26 admin_state disable max_learning_addr 1 lock_address_mode DeleteOnReset # 8021X disable 802.1x config 802.1x auth_protocol radius_eap config 802.1x capability ports 1-26 none config 802.1x auth_parameter ports 1-26 direction both port_control auto quiet_period 60 tx_period 30 supp_timeout 30 server_timeout 30 max_req 2 reauth_period 3600 enable_reauth disable # SNMPv3 delete snmp community public delete snmp community private delete snmp user initial delete snmp group initial delete snmp view restricted all delete snmp view CommunityView all config snmp engineID 800000ab03001cf09d649a create snmp view restricted 1.3.6.1.2.1.1 view_type included create snmp view restricted 1.3.6.1.2.1.11 view_type included create snmp view restricted 1.3.6.1.6.3.10.2.1 view_type included create snmp view restricted 1.3.6.1.6.3.11.2.1 view_type included create snmp view restricted 1.3.6.1.6.3.15.1.1 view_type included create snmp view CommunityView 1 view_type included create snmp view CommunityView 1.3.6.1.6.3 view_type excluded create snmp view CommunityView 1.3.6.1.6.3.1 view_type included create snmp group initial v3 noauth_nopriv read_view restricted notify_view restricted create snmp group frydmqry v1 read_view CommunityView notify_view CommunityView create snmp group frydmqry v2c read_view CommunityView notify_view CommunityView create snmp group frydmwrt v1 read_view CommunityView write_view CommunityView notify_view CommunityView create snmp group frydmwrt v2c read_view CommunityView write_view CommunityView notify_view CommunityView create snmp community frydmqry view CommunityView read_only create snmp community frydmwrt view CommunityView read_write create snmp user initial initial create snmp host 10.100.16.80 v2c frydmqry create snmp host 10.100.16.90 v2c frydmwrt # MANAGEMENT enable snmp traps enable snmp authenticate traps disable rmon # VLAN disable asymmetric_vlan config vlan default delete 1-26 config vlan default add untagged 1-26 config vlan default advertisement enable create vlan Registration tag 100 config vlan Registration advertisement disable create vlan Isolation tag 101 config vlan Isolation advertisement disable disable gvrp config gvrp 1-26 state disable ingress_checking enable acceptable_frame admit_all pvid 1 # FDB create fdb default 02-00-00-00-00-01 port 1 create fdb default 02-00-00-00-00-02 port 2 create fdb default 02-00-00-00-00-03 port 3 create fdb default 02-00-00-00-00-04 port 4 config fdb aging_time 300 config multicast port_filtering_mode 1-26 forward_unregistered_groups # MAC_ADDRESS_TABLE_NOTIFICATION config mac_notification interval 1 historysize 1 disable mac_notification config mac_notification ports 1-26 disable # STP config stp version rstp config stp maxage 20 maxhops 20 forwarddelay 15 txholdcount 6 fbpdu enable config stp priority 32768 instance_id 0 config stp hellotime 2 config stp mst_config_id name 00:1C:F0:9D:64:9A revision_level 0 disable stp config stp ports 1-26 externalCost auto edge false p2p auto state enable config stp ports 1-26 fbpdu disable config stp ports 1-26 restricted_role false config stp ports 1-26 restricted_tcn false config stp mst_ports 1-26 instance_id 0 internalCost auto priority 128 # SSH config ssh server maxsession 8 config ssh server contimeout 300 config ssh server authfail 2 config ssh server rekey never disable ssh # SSL disable ssl enable ssl ciphersuite RSA_with_RC4_128_MD5 enable ssl ciphersuite RSA_with_3DES_EDE_CBC_SHA enable ssl ciphersuite DHE_DSS_with_3DES_EDE_CBC_SHA enable ssl ciphersuite RSA_EXPORT_with_RC4_40_MD5 config ssl cachetimeout timeout 600 # SAFE_GUARD config safeguard_engine state disable cpu_utilization rising_threshold 100 falling_threshold 20 trap_log disable # ACL disable cpu_interface_filtering # SNTP disable sntp config time_zone operator - hour 6 min 0 config sntp primary 0.0.0.0 secondary 0.0.0.0 poll-interval 720 config dst disable # IPBIND disable address_binding acl_mode disable address_binding trap_log # DHCP_NETBIOS_FILTER # ROUTE create iproute default 10.100.0.1 1 # SNOOP disable igmp_snooping config igmp_snooping default host_timeout 260 router_timeout 260 leave_timer 2 state disable config igmp_snooping querier default query_interval 125 max_response_time 10 robustness_variable 2 config igmp_snooping querier default last_member_query_interval 1 state disable config igmp_snooping Registration host_timeout 260 router_timeout 260 leave_timer 2 state disable config igmp_snooping querier Registration query_interval 125 max_response_time 10 robustness_variable 2 config igmp_snooping querier Registration last_member_query_interval 1 state disable config igmp_snooping Isolation host_timeout 260 router_timeout 260 leave_timer 2 state disable config igmp_snooping querier Isolation query_interval 125 max_response_time 10 robustness_variable 2 config igmp_snooping querier Isolation last_member_query_interval 1 state disable config limited_multicast_addr ports 1-26 access deny state disable # LACP config link_aggregation algorithm mac_source config lacp_port 1-26 mode passive # GVLAN # IP config ipif System vlan default ipaddress 10.100.6.32/21 state enable disable autoconfig # ARP config arp_aging time 20 # ACCESS_AUTHENTICATION_CONTROL config authen_login default method local config authen_enable default method local_enable config authen application console login default config authen application console enable default config authen application telnet login default config authen application telnet enable default config authen application ssh login default config authen application ssh enable default config authen application http login default config authen application http enable default config authen parameter response_timeout 0 config authen parameter attempt 3 disable authen_policy # DHCP_RELAY disable dhcp_relay config dhcp_relay hops 4 time 0 config dhcp_relay option_82 state disable config dhcp_relay option_82 check disable config dhcp_relay option_82 policy replace #------------------------------------------------------------------- # End of configuration file for DES-3526 #-------------------------------------------------------------------