sh run Building configuration... Current configuration : 11217 bytes ! ! Last configuration change at 17:10:36 UAE Wed Jun 29 2011 by local ! version 15.0 service nagle no service pad service tcp-keepalives-in service tcp-keepalives-out service timestamps debug datetime msec localtime show-timezone service timestamps log datetime msec localtime show-timezone service password-encryption ! ! boot-start-marker boot-end-marker ! ! no aaa new-model clock timezone UAE 4 ! dot11 syslog no ip source-route ! ! ip cef no ip dhcp use vrf connected ip dhcp excluded-address 172.21.47.1 172.21.47.19 ip dhcp excluded-address 172.21.47.246 172.21.47.254 ! ip dhcp pool VOICE network 172.21.47.0 255.255.255.0 option 150 ip 172.20.1.30 default-router 172.21.47.250 ! ! no ip bootp server no ip domain lookup ip domain name rakbank.co.ae ip name-server 192.168.2.23 ip multicast-routing login block-for 120 attempts 5 within 30 login on-failure every 5 no ipv6 cef ! multilink bundle-name authenticated ! ! ! ! isdn switch-type basic-net3 ! ! voice call convert-discpi-to-prog voice rtp send-recv ! voice class codec 1 codec preference 1 g711ulaw codec preference 2 g711alaw codec preference 3 g729br8 ! voice-card 0 dsp services dspfarm ! license udi pid CISCO2851 sn FHK1444F1YB username local privilege 15 secret 5 $1$SsQl$gUAsMHeGAv5lnAIuWrhsE0 username rakadmin privilege 15 secret 5 $1$..6M$LrousJc.ehPwZjv59HkVG0 username HONWANRT02 password 7 111B180E15130507557878 ! redundancy ! ! ! ! crypto isakmp policy 100 encr 3des authentication pre-share group 2 crypto isakmp key dmRAK#1024!vpn address 0.0.0.0 0.0.0.0 crypto isakmp keepalive 30 ! ! crypto ipsec transform-set raktrans esp-3des esp-sha-hmac mode transport ! crypto ipsec profile DMVPN set security-association lifetime seconds 1800 set transform-set raktrans ! ! interface Tunnel1 description ++++ Primary DMVPN Cloud 1 ++++ bandwidth 4096 ip address 192.168.247.114 255.255.255.0 no ip redirects no ip unreachables no ip proxy-arp ip mtu 1400 no ip next-hop-self eigrp 100 ip nhrp authentication rakbank ip nhrp map multicast 192.168.241.2 ip nhrp map 192.168.247.5 192.168.241.2 ip nhrp network-id 101 ip nhrp holdtime 180 ip nhrp nhs 192.168.247.5 ip tcp adjust-mss 1360 no ip split-horizon eigrp 100 tunnel source GigabitEthernet0/1 tunnel mode gre multipoint tunnel key 1001 tunnel protection ipsec profile DMVPN shared ! ! interface Tunnel2 description ++++ Primary DMVPN Cloud 2 ++++ bandwidth 4096 ip address 192.168.246.114 255.255.255.0 no ip redirects no ip unreachables no ip proxy-arp ip mtu 1400 no ip next-hop-self eigrp 100 ip nhrp authentication rakbank ip nhrp map multicast 192.168.244.2 ip nhrp map 192.168.246.5 192.168.244.2 ip nhrp network-id 100 ip nhrp holdtime 180 ip nhrp nhs 192.168.246.5 ip tcp adjust-mss 1360 no ip split-horizon eigrp 100 tunnel source GigabitEthernet0/1 tunnel mode gre multipoint tunnel key 1000 tunnel protection ipsec profile DMVPN shared ! ! interface Tunnel3 description ++++ DR DMVPN Cloud 1 ++++ bandwidth 4096 ip address 192.168.248.114 255.255.255.0 no ip redirects no ip unreachables no ip proxy-arp ip mtu 1400 no ip next-hop-self eigrp 100 ip nhrp authentication rakbank ip nhrp map multicast 192.168.241.82 ip nhrp map 192.168.248.1 192.168.241.82 ip nhrp network-id 102 ip nhrp holdtime 180 ip nhrp nhs 192.168.248.1 ip tcp adjust-mss 1360 no ip split-horizon eigrp 100 tunnel source GigabitEthernet0/1 tunnel mode gre multipoint tunnel key 1002 tunnel protection ipsec profile DMVPN shared ! ! interface Tunnel4 description ++++ DR DMVPN Cloud 2 ++++ bandwidth 4096 ip address 192.168.249.114 255.255.255.0 no ip redirects no ip unreachables no ip proxy-arp ip mtu 1400 no ip next-hop-self eigrp 100 ip nhrp authentication rakbank ip nhrp map multicast 192.168.243.82 ip nhrp map 192.168.249.1 192.168.243.82 ip nhrp network-id 103 ip nhrp holdtime 180 ip nhrp nhs 192.168.249.1 ip tcp adjust-mss 1360 no ip split-horizon eigrp 100 tunnel source GigabitEthernet0/1 tunnel mode gre multipoint tunnel key 1003 tunnel protection ipsec profile DMVPN shared ! ! interface GigabitEthernet0/0 no ip address no ip proxy-arp duplex full speed 100 ! ! interface GigabitEthernet0/0.10 description ++++ Data Segment ++++ encapsulation dot1Q 10 ip address 10.1.47.250 255.255.255.0 no ip proxy-arp ! interface GigabitEthernet0/0.20 description ++++ Voice Segment ++++ encapsulation dot1Q 20 ip address 172.21.47.250 255.255.255.0 no ip proxy-arp ip pim dense-mode h323-gateway voip interface h323-gateway voip bind srcaddr 172.21.47.250 ! interface GigabitEthernet0/0.25 description ++++ Voice alcatel Segment +++++ encapsulation dot1Q 25 ip address 172.48.47.250 255.255.255.0 no ip proxy-arp ! interface GigabitEthernet0/0.50 description ++++ ATM Segment ++++ encapsulation dot1Q 50 ip address 10.48.47.250 255.255.255.0 no ip proxy-arp ! interface GigabitEthernet0/1 description "Link To MPLS Network" ip address 192.168.242.186 255.255.255.252 no ip proxy-arp ip multicast boundary 50 duplex auto speed auto ! ! interface FastEthernet0/0/0 no ip address shutdown duplex auto speed auto ! ! interface FastEthernet0/0/1 no ip address shutdown duplex auto speed auto ! ! interface BRI0/1/0 description ++++ Backup Link ++++ no ip address encapsulation ppp dialer rotary-group 1 dialer-group 1 isdn switch-type basic-net3 isdn point-to-point-setup ppp authentication chap ppp multilink no cdp enable ! ! interface BRI0/1/1 description ++++ Backup Link ++++ no ip address encapsulation ppp dialer rotary-group 1 dialer-group 1 isdn switch-type basic-net3 isdn point-to-point-setup ppp authentication chap ppp multilink no cdp enable ! ! interface BRI0/1/2 description ++++ Backup Link ++++ no ip address encapsulation ppp dialer rotary-group 1 dialer-group 1 isdn switch-type basic-net3 isdn point-to-point-setup ppp authentication chap ppp multilink no cdp enable ! ! interface BRI0/1/3 description ++++ Backup Link ++++ no ip address encapsulation ppp dialer rotary-group 1 dialer-group 1 isdn switch-type basic-net3 isdn point-to-point-setup ppp authentication chap ppp multilink no cdp enable ! ! interface Integrated-Service-Engine1/0 ip unnumbered GigabitEthernet0/0.20 service-module ip address 172.21.47.251 255.255.255.0 !Application: CUE Running on NME service-module ip default-gateway 172.21.47.250 no keepalive ! ! interface Dialer1 description ++++ Backup Interface ++++ ip address 192.168.243.186 255.255.255.252 encapsulation ppp no ip split-horizon dialer in-band dialer map ip 192.168.243.185 name HONWANRT02 broadcast 072069000 dialer map ip 192.168.2.0 name HONWANRT02 broadcast 072069000 dialer hold-queue 10 dialer watch-group 1 ppp authentication chap ppp multilink ! ! ! router eigrp 100 distribute-list 10 out Tunnel1 distribute-list 10 out Tunnel2 distribute-list 10 out Tunnel3 distribute-list 10 out Tunnel4 default-metric 1500 5 255 1 1500 network 10.1.47.0 0.0.0.255 network 10.48.47.0 0.0.0.255 network 172.48.47.0 0.0.0.255 network 192.168.246.0 network 192.168.247.0 network 192.168.248.0 network 192.168.249.0 distance eigrp 15 18 ! router bgp 64603 no synchronization bgp router-id 192.168.242.186 bgp log-neighbor-changes redistribute connected route-map voice neighbor 192.168.242.185 remote-as 64517 neighbor 192.168.242.185 ebgp-multihop 100 no auto-summary ! ip forward-protocol nd no ip http server ip http authentication local no ip http secure-server ip http timeout-policy idle 60 life 86400 requests 10000 ! ! ip route 0.0.0.0 0.0.0.0 192.168.243.185 19 ip route 172.21.47.251 255.255.255.255 Integrated-Service-Engine1/0 ! ip access-list standard connected permit 172.21.47.0 0.0.0.255 deny any ! ! no logging trap access-list 10 permit 10.1.47.0 0.0.0.255 access-list 10 permit 10.48.47.0 0.0.0.255 access-list 10 permit 172.48.47.0 0.0.0.255 access-list 10 permit 10.0.0.0 0.0.0.255 access-list 110 deny ospf any any access-list 110 permit ip any any dialer watch-list 1 ip 192.168.2.0 255.255.255.0 dialer watch-list 1 delay route-check initial 120 dialer watch-list 1 delay connect 10 dialer watch-list 1 delay disconnect 20 dialer-list 1 protocol ip list 110 ! ! ! ! route-map voice permit 10 match ip address voicetraffic ! snmp-server community RAKCOMM RO snmp-server community 53RAK00 RW snmp-server host 172.20.1.35 RAKCOMM ! ! control-plane ! ! ! voice-port 0/2/0 ! voice-port 0/2/1 ! voice-port 0/2/2 ! voice-port 0/2/3 ! ! ! sccp local GigabitEthernet0/0.20 sccp ccm 172.20.18.20 identifier 1 version 5.0.1 sccp ccm 172.20.1.30 identifier 2 version 5.0.1 sccp ccm 172.20.1.31 identifier 3 version 5.0.1 sccp ! sccp ccm group 10 bind interface GigabitEthernet0/0.20 associate ccm 1 priority 1 associate ccm 2 priority 2 associate ccm 3 priority 3 associate profile 1 register JZBTRNS associate profile 2 register JZBCFB ! dspfarm profile 1 transcode codec g711ulaw codec g711alaw codec g729ar8 codec g729abr8 maximum sessions 30 associate application SCCP ! dspfarm profile 2 conference codec g711ulaw codec g711alaw codec g729ar8 codec g729abr8 codec g729r8 codec g729br8 maximum sessions 4 associate application SCCP ! dial-peer voice 7549 voip description *** Jazaira Branch Voice Mail *** destination-pattern 7549 session protocol sipv2 session target ipv4:172.21.47.251 incoming called-number . dtmf-relay rtp-nte codec g711ulaw no vad ! ! ! ! call-manager-fallback max-conferences 8 gain -6 transfer-system full-consult ip source-address 172.21.47.250 port 2000 max-ephones 100 max-dn 200 system message primary WAN Link is Down transfer-pattern .... transfer-pattern .T voicemail 7549 call-forward busy 7549 call-forward noan 7549 timeout 16 time-zone 35 time-format 24 date-format dd-mm-yy ! banner motd ^CC ! line con 0 exec-timeout 5 0 login local line aux 0 line 66 no activation-character no exec transport preferred none transport input all transport output pad telnet rlogin lapb-ta mop udptn v120 ssh line vty 0 4 exec-timeout 5 0 logging synchronous login local line vty 5 15 exec-timeout 5 0 logging synchronous login local ! scheduler allocate 20000 1000 ntp authentication-key 1 md5 045C090B5B284E4343 7 ntp authenticate ntp trusted-key 1 ntp server 10.16.254.1 key 1 prefer end