[Nocrancid] autopop-onenet.net router config diffs
rancid at rancid.noc.onenet.net
rancid at rancid.noc.onenet.net
Tue Sep 12 18:05:02 CDT 2017
Index: configs/odot-stillwater-residence.client.onenet.net
===================================================================
--- configs/odot-stillwater-residence.client.onenet.net (revision 156550)
+++ configs/odot-stillwater-residence.client.onenet.net (working copy)
@@ -136,8 +136,8 @@
#ge-0/0/2.0 up down
#ge-0/0/3 up up
#ge-0/0/3.0 up up
-#ge-0/0/4 up down
-#ge-0/0/4.0 up down
+#ge-0/0/4 up up
+#ge-0/0/4.0 up up
#ge-0/0/5 up down
#ge-0/0/5.0 up down
#ge-0/0/6 up down
Index: configs/hub.tsb.onenet.net
===================================================================
--- configs/hub.tsb.onenet.net (revision 156550)
+++ configs/hub.tsb.onenet.net (working copy)
@@ -24,6 +24,12 @@
# AFEB 0 AFEB Processor OK
# AFEB 0 LU Temp OK
# AFEB 0 MQ Temp OK
+# AFEB 0 AFEB Processor OK
+# AFEB 0 LU Temp OK
+# AFEB 0 MQ Temp OK
+# AFEB 0 AFEB Processor OK
+# AFEB 0 LU Temp OK
+# AFEB 0 MQ Temp OK
# AFEB 0 QX Temp OK
# Fans Fan 1 OK
# Fan 2 OK
Index: configs/mhsso-pauls-valley.client.onenet.net
===================================================================
--- configs/mhsso-pauls-valley.client.onenet.net (revision 156550)
+++ configs/mhsso-pauls-valley.client.onenet.net (working copy)
@@ -1,12 +1,12 @@
# RANCID-CONTENT-TYPE: juniper
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show system commit
+# 2017-09-12 17:27:46 CDT by root via other
+# 2017-09-12 17:15:21 CDT by root via other
+# 2017-09-12 17:06:21 CDT by admin via cli
# 2017-09-12 16:42:23 CDT by admin via cli
# 2017-09-12 16:40:05 CDT by admin via cli
# 2017-09-12 16:35:06 CDT by admin via cli
-# 2017-09-12 16:32:55 CDT by admin via cli
-# 2017-09-12 10:33:49 CDT by admin via cli
-# 2017-09-12 10:28:45 CDT by admin via cli
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show chassis environment
# Class Item Status Measurement
# Temp Routing Engine OK
@@ -21,8 +21,8 @@
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show chassis firmware
# Part Type Version
-# FPC 0 O/S Version 12.1X44-D35.5 by builder on 2014-05
-# FWDD O/S Version 12.1X44-D35.5 by builder on 2014-05
+# FPC 0 O/S Version 12.3X48-D40.5 by builder on 2016-10
+# FWDD O/S Version 12.3X48-D40.5 by builder on 2016-10
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show chassis fpc detail
# Slot 0 information:
@@ -48,14 +48,17 @@
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show chassis ssb
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show system boot-messages
# kld_map_v: 0x8ff80000, kld_map_p: 0x0
-# Copyright (c) 1996-2014, Juniper Networks, Inc.
+# Copyright (c) 1996-2016, Juniper Networks, Inc.
# All rights reserved.
# Copyright (c) 1992-2006 The FreeBSD Project.
# Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
# The Regents of the University of California. All rights reserved.
# FreeBSD/SMP: Multiprocessor System Detected: 4 CPUs
+# Security policy loaded: Junos MAC/veriexec (mac_veriexec)
# Security policy loaded: JUNOS MAC/pcap (mac_pcap)
# Security policy loaded: JUNOS MAC/runasnonroot (mac_runasnonroot)
+# MAC/veriexec fingerprint module loaded: SHA256
+# MAC/veriexec fingerprint module loaded: SHA1
# netisr_init: !debug_mpsafenet, forcing maxthreads from 4 to 1
# cpu0 on motherboard
# : CAVIUM's OCTEON 52XX CPU Rev. 0.8 with no FPU implemented
@@ -106,31 +109,34 @@
# da0: <ST ST72682 2.10> Removable Direct Access SCSI-2 device
# da0: 40.000MB/s transfers
# da0: 2000MB (4096000 512 byte sectors: 255H 63S/T 254C)
+# Kernel thread "wkupdaemon" (pid 48) exited prematurely.
# Trying to mount root from ufs:/dev/da0s1a
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show version
# Hostname: MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED
# Model: srx240h2
-# JUNOS Software Release [12.1X44-D35.5]
+# JUNOS Software Release [12.3X48-D40.5]
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show version invoke-on all-routing-engines
# Hostname: MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED
# Model: srx240h2
-# JUNOS Software Release [12.1X44-D35.5]
+# JUNOS Software Release [12.3X48-D40.5]
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> file list /var/tmp detail
-# lrw-r--r-- 1 root wheel 11 May 19 2014 /var/tmp@ -> /cf/var/tmp
+# lrw-r--r-- 1 root wheel 11 Oct 27 2016 /var/tmp@ -> /cf/var/tmp
# total files: 1
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show system uptime
-# System booted: 2017-09-12 10:17 CDT
-# Protocols started: 2017-09-12 10:19 CDT
-# Last configured: 2017-09-12 16:42 CDT by admin
+# System booted: 2017-09-12 17:24 CDT
+# Protocols started: 2017-09-12 17:29 CDT
+# Last configured: 2017-09-12 17:27 CDT by root
#
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show interface terse
#Interface Admin Link
#ge-0/0/0 up up
-#ge-0/0/0.0 up up
+#ge-0/0/0.500 up up
+#ge-0/0/0.501 up up
+#ge-0/0/0.32767 up up
#gr-0/0/0 up up
#ip-0/0/0 up up
#lsq-0/0/0 up up
@@ -159,10 +165,8 @@
#ge-0/0/11 down down
#ge-0/0/12 down down
#ge-0/0/13 down down
-#ge-0/0/14 up up
-#ge-0/0/14.500 up up
-#ge-0/0/14.501 up up
-#ge-0/0/14.32767 up up
+#ge-0/0/14 up down
+#ge-0/0/14.0 up down
#ge-0/0/15 up up
#ge-0/0/15.0 up up
#fxp2 up up
@@ -187,8 +191,8 @@
#vlan up up
#vlan.100 up up
# grnoc-mon at MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED> show configuration
-## Last commit: 2017-09-12 16:42:23 CDT by admin
-version 12.1X44-D35.5;
+## Last commit: 2017-09-12 17:27:46 CDT by root
+version 12.3X48-D40.5;
system {
host-name MHSSO-PAULS-VALLEY-MR-CLIENT-OWNED;
auto-snapshot;
@@ -324,198 +328,6 @@
chassis {
config-button no-rescue no-clear;
}
-interfaces {
- ge-0/0/0 {
- description "Link to ATT";
- speed 100m;
- link-mode full-duplex;
- gigether-options {
- no-auto-negotiation;
- }
- unit 0 {
- family inet {
- address 12.246.241.90/30;
- }
- }
- }
- ge-0/0/1 {
- description "L2 INTERFACE - DMZ";
- unit 0 {
- family ethernet-switching {
- port-mode access;
- vlan {
- members 100;
- }
- }
- }
- }
- ge-0/0/2 {
- description "L2 INTERFACE - DMZ";
- unit 0 {
- family ethernet-switching {
- port-mode access;
- vlan {
- members 100;
- }
- }
- }
- }
- ge-0/0/3 {
- description "L2 INTERFACE - DMZ";
- unit 0 {
- family ethernet-switching {
- port-mode access;
- vlan {
- members 100;
- }
- }
- }
- }
- ge-0/0/4 {
- description "L2 INTERFACE - DMZ";
- unit 0 {
- family ethernet-switching {
- port-mode access;
- vlan {
- members 100;
- }
- }
- }
- }
- ge-0/0/5 {
- description "L2 INTERFACE - DMZ";
- unit 0 {
- family ethernet-switching {
- port-mode access;
- vlan {
- members 100;
- }
- }
- }
- }
- ge-0/0/6 {
- description "L2 INTERFACE - DMZ";
- unit 0 {
- family ethernet-switching {
- port-mode access;
- vlan {
- members 100;
- }
- }
- }
- }
- ge-0/0/7 {
- disable;
- }
- ge-0/0/8 {
- disable;
- }
- ge-0/0/9 {
- disable;
- }
- ge-0/0/10 {
- description "L3 INTERFACE - PHONE SYSTEM - 192.168.250.1/24";
- unit 0 {
- family inet {
- address 192.168.250.1/24;
- }
- }
- }
- ge-0/0/11 {
- disable;
- }
- ge-0/0/12 {
- disable;
- }
- ge-0/0/13 {
- disable;
- }
- ge-0/0/14 {
- description "Link to OneNet";
- vlan-tagging;
- speed 100m;
- link-mode full-duplex;
- gigether-options {
- no-auto-negotiation;
- }
- unit 500 {
- description "L3 INTERFACE - UNTRUST-WAN - 156.110.34.19/31";
- vlan-id 500;
- family inet {
- address 156.110.34.19/31;
- }
- }
- unit 501 {
- description "L3 INTERFACE - MPLS-WAN - 10.199.28.73/31";
- vlan-id 501;
- family inet {
- address 10.199.28.73/31;
- }
- }
- }
- ge-0/0/15 {
- description "L3 INTERFACE - TRUST - 192.168.4.250/24";
- unit 0 {
- family inet {
- address 192.168.4.250/24;
- }
- }
- }
- protect: lo0 {
- unit 0 {
- family inet {
- filter {
- input PROTECT-RE;
- }
- }
- }
- }
- vlan {
- unit 100 {
- description "L3 INTERFACE - DMZ - 164.58.2.33/28";
- family inet {
- address 164.58.2.33/28;
- }
- }
- }
-}
-snmp {
- description OneNet-SRX200-Template-3.0.0;
- contact "Net Group - (888)566-3638";
- community "<removed>" {
- authorization read-only;
- }
- community "<removed>" {
- authorization read-only;
- }
- community "<removed>" {
- authorization read-write;
- }
-}
-routing-options {
- static {
- route 0.0.0.0/0 next-hop 156.110.34.18;
- route 10.0.0.0/8 next-hop 10.199.28.72;
- route 172.16.0.0/12 next-hop 10.199.28.72;
- route 192.168.0.0/16 next-hop 10.199.28.72;
- }
-}
-protocols {
- lldp {
- interface all;
- }
- stp;
-}
-policy-options {
- protect: prefix-list PRE-MGMT-SOURCES {
- 156.110.31.0/27;
- 156.110.31.32/28;
- 164.58.253.0/24;
- }
- protect: prefix-list PRE-LOCALIPv4-SOURCES {
- apply-path "interfaces <*> unit <*> family inet address <*>";
- }
-}
security {
alg {
sip disable;
@@ -685,7 +497,7 @@
security-zone UNTRUST {
screen UNTRUST-SCREEN;
interfaces {
- ge-0/0/14.500 {
+ ge-0/0/0.500 {
host-inbound-traffic {
system-services {
ping;
@@ -699,7 +511,7 @@
}
security-zone MPLS {
interfaces {
- ge-0/0/14.501 {
+ ge-0/0/0.501 {
host-inbound-traffic {
system-services {
ping;
@@ -737,7 +549,7 @@
}
security-zone ATT-INTERNET {
interfaces {
- ge-0/0/0.0 {
+ ge-0/0/14.0 {
host-inbound-traffic {
system-services {
ping;
@@ -749,6 +561,198 @@
}
}
}
+interfaces {
+ ge-0/0/0 {
+ description "Link to OneNet";
+ vlan-tagging;
+ speed 100m;
+ link-mode full-duplex;
+ gigether-options {
+ no-auto-negotiation;
+ }
+ unit 500 {
+ description "L3 INTERFACE - UNTRUST-WAN - 156.110.34.19/31";
+ vlan-id 500;
+ family inet {
+ address 156.110.34.19/31;
+ }
+ }
+ unit 501 {
+ description "L3 INTERFACE - MPLS-WAN - 10.199.28.73/31";
+ vlan-id 501;
+ family inet {
+ address 10.199.28.73/31;
+ }
+ }
+ }
+ ge-0/0/1 {
+ description "L2 INTERFACE - DMZ";
+ unit 0 {
+ family ethernet-switching {
+ port-mode access;
+ vlan {
+ members 100;
+ }
+ }
+ }
+ }
+ ge-0/0/2 {
+ description "L2 INTERFACE - DMZ";
+ unit 0 {
+ family ethernet-switching {
+ port-mode access;
+ vlan {
+ members 100;
+ }
+ }
+ }
+ }
+ ge-0/0/3 {
+ description "L2 INTERFACE - DMZ";
+ unit 0 {
+ family ethernet-switching {
+ port-mode access;
+ vlan {
+ members 100;
+ }
+ }
+ }
+ }
+ ge-0/0/4 {
+ description "L2 INTERFACE - DMZ";
+ unit 0 {
+ family ethernet-switching {
+ port-mode access;
+ vlan {
+ members 100;
+ }
+ }
+ }
+ }
+ ge-0/0/5 {
+ description "L2 INTERFACE - DMZ";
+ unit 0 {
+ family ethernet-switching {
+ port-mode access;
+ vlan {
+ members 100;
+ }
+ }
+ }
+ }
+ ge-0/0/6 {
+ description "L2 INTERFACE - DMZ";
+ unit 0 {
+ family ethernet-switching {
+ port-mode access;
+ vlan {
+ members 100;
+ }
+ }
+ }
+ }
+ ge-0/0/7 {
+ disable;
+ }
+ ge-0/0/8 {
+ disable;
+ }
+ ge-0/0/9 {
+ disable;
+ }
+ ge-0/0/10 {
+ description "L3 INTERFACE - PHONE SYSTEM - 192.168.250.1/24";
+ unit 0 {
+ family inet {
+ address 192.168.250.1/24;
+ }
+ }
+ }
+ ge-0/0/11 {
+ disable;
+ }
+ ge-0/0/12 {
+ disable;
+ }
+ ge-0/0/13 {
+ disable;
+ }
+ ge-0/0/14 {
+ description "Link to ATT";
+ speed 100m;
+ link-mode full-duplex;
+ gigether-options {
+ no-auto-negotiation;
+ }
+ unit 0 {
+ family inet {
+ address 12.246.241.90/30;
+ }
+ }
+ }
+ ge-0/0/15 {
+ description "L3 INTERFACE - TRUST - 192.168.4.250/24";
+ unit 0 {
+ family inet {
+ address 192.168.4.250/24;
+ }
+ }
+ }
+ protect: lo0 {
+ unit 0 {
+ family inet {
+ filter {
+ input PROTECT-RE;
+ }
+ }
+ }
+ }
+ vlan {
+ unit 100 {
+ description "L3 INTERFACE - DMZ - 164.58.2.33/28";
+ family inet {
+ address 164.58.2.33/28;
+ }
+ }
+ }
+}
+snmp {
+ description OneNet-SRX200-Template-3.0.0;
+ contact "Net Group - (888)566-3638";
+ community "<removed>" {
+ authorization read-only;
+ }
+ community "<removed>" {
+ authorization read-only;
+ }
+ community "<removed>" {
+ authorization read-write;
+ }
+}
+routing-options {
+ static {
+ route 0.0.0.0/0 next-hop 156.110.34.18;
+ route 10.0.0.0/8 next-hop 10.199.28.72;
+ route 172.16.0.0/12 next-hop 10.199.28.72;
+ route 192.168.0.0/16 next-hop 10.199.28.72;
+ }
+}
+protocols {
+ lldp {
+ interface all;
+ }
+ stp;
+}
+policy-options {
+ protect: prefix-list PRE-MGMT-SOURCES {
+ 156.110.31.0/27;
+ 156.110.31.32/28;
+ 164.58.253.0/24;
+ }
+ protect: prefix-list PRE-LOCALIPv4-SOURCES {
+ apply-path "interfaces <*> unit <*> family inet address <*>";
+ }
+}
firewall {
family inet {
protect: filter PROTECT-RE {
@@ -801,7 +805,7 @@
routing-instances {
ATT-INTERNET {
instance-type virtual-router;
- interface ge-0/0/0.0;
+ interface ge-0/0/14.0;
routing-options {
static {
route 0.0.0.0/0 next-hop 12.246.241.89;
More information about the Nocrancid
mailing list