! version 1.6.3 login con login telnet enable password A#:U7!PI`K.=KK@&'1[-]1!! user noc service-type exec password 7 A#:U7!PI`K/-JEXJQ<%DJQ!! vpdn enable ip local pool 1 192.168.0.2 192.168.0.100 no ip redirects logging host 0 80.68.240.4 514 local7 debugging logging buffered debugging logging buffered 400 logging console firewall enable timerange enable access-list normal 100 sort manual access-list normal 199 sort manual access-list normal 1 permit 192.168.0.0 0.0.0.255 access-list normal 1 deny any access-list normal 100 permit ip 192.168.0.2 0.0.0.0 any access-list normal 100 permit ip any 192.168.0.2 0.0.0.0 access-list normal 101 permit ip 192.168.0.3 0.0.0.0 any access-list normal 101 permit ip any 192.168.0.3 0.0.0.0 access-list normal 102 permit ip 192.168.0.4 0.0.0.0 any access-list normal 102 permit ip any 192.168.0.4 0.0.0.0 radius-server host 80.68.252.19 radius-server key darkzonedm6 aaa-enable aaa authentication ppp default radius local aaa authentication login default local snmp-server community ro SNMPRBC01 snmp-server contact noc@rbc.ru, (095) 363-1107 snmp-server location RBC HQ, Moscow, Russia, Zone: 1 hostname hq-z1-lns1 host gimle.rbc.ru 80.68.240.4 no exec-timeout ! crypto ike key necropolis address 62.5.151.234 crypto ike key necropolis address 192.168.0.2 crypto ike key necropolis address 192.168.0.3 crypto ike key necropolis address 192.168.0.4 crypto ike key necropolis address 192.168.0.5 crypto ike key necropolis address 192.168.0.6 crypto ike key necropolis address 192.168.0.7 crypto ike key necropolis address 192.168.0.8 crypto ike key necropolis address 192.168.0.9 crypto ike key necropolis address 192.168.0.10 crypto ike keepalive interval 600 crypto ike keepalive timeout 1800 ! ! crypto ipsec transform LNS-TRANSFORM esp-new encrypt 3des ! ! crypto map LNS-MAP 1 isakmp match address 100 set transform LNS-TRANSFORM set peer 192.168.0.2 ! ! crypto map LNS-MAP 2 isakmp match address 101 set transform LNS-TRANSFORM set peer 192.168.0.3 ! ! crypto map LNS-MAP 3 isakmp match address 102 set transform LNS-TRANSFORM set peer 192.168.0.4 ! ! crypto ike policy 1 encryption 3des-cbc group 2 hash md5 ! interface Aux0 async mode interactive encapsulation ppp ! interface Ethernet0 speed 100 duplex full no loopback ip address 80.68.252.3 255.255.252.0 ip fast-forwarding out nat inside 1 interface ! interface Serial0 encapsulation ppp shutdown ! interface Virtual-Template1 encapsulation ppp mtu 1500 ppp authentication chap ppp negotiate timeout 1 peer default ip address pool 1 ip address 192.168.0.1 255.255.255.0 crypto map LNS-MAP ! vpdn-group 1 ! Default L2TP VPDN group accept dialin l2tp virtual-template 1 force-local-chap no l2tp tunnel authentication l2tp tunnel password 0 necropolis ! exit ip route 0.0.0.0 0.0.0.0 80.68.252.1 preference 60 ! end