version 6.4R2.4; system { host-name bern; domain-name gate.21c3.ccc.de; time-zone Europe/Berlin; authentication-order password; ports { console type vt100; } root-authentication { encrypted-password "$1$TiC9hv9s$lOwDmkoWgIJyyGaMoLjVA/"; ## SECRET-DATA } name-server { 212.21.72.1; 212.42.242.2; 212.84.206.1; } login { message "You are accessing CCC 2004 Bern. "; user alf { uid 3501; class superuser; authentication { encrypted-password "$1$RWZG3UI5$dzyEssOsREytzg9NQi0Cb1"; ## SECRET-DATA } } user blackwing { uid 2010; class superuser; authentication { encrypted-password "$1$q1Hd27AW$OvbV5AMQ6Qq12q95Z4mFa1"; ## SECRET-DATA ssh-rsa "ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAIEA0B2m7Nh4OElq+b5QbiC2RTGVU/m3NthJIHrrMzQV/VIRkARtYwEClEA+bH/2/krl8mbh3fMPb9XT8sXdPsRKTSAdxzoSMS1akZnu4MF2tX9VsQks//Xpu/wGWIk2yclE/uhxM8/M38CUpFdWo8dLgUDqgab02H0PEAUUsLqsXrs= blackwing"; ## SECRET-DATA } } user cc { uid 2002; class superuser; authentication { encrypted-password "$1$ltJR0bX5$mLLEOUZ1MnAfHe2cyBMD31"; ## SECRET-DATA } } user czmok { uid 2011; class superuser; authentication { encrypted-password "$1$kgFeGUCE$DNlzYZy.npsOu/jh8zNoR."; ## SECRET-DATA ssh-dsa "ssh-dss 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 czmok@leuchtkerze"; ## SECRET-DATA } } user swahl { uid 2000; class superuser; authentication { encrypted-password "$1$hxHOYu.L$.4I64YogucIxk5fgchPDp."; ## SECRET-DATA } } } services { ssh { protocol-version v2; } } syslog { user * { any emergency; } file messages { any notice; authorization info; } } ntp { server 192.168.242.2; server 192.168.242.1; source-address 192.168.242.92; } } interfaces { ge-0/0/0 { description Internal; vlan-tagging; link-mode full-duplex; unit 2 { description CCC-Internal-IPv4; vlan-id 970; family inet { address 82.130.0.129/29; } } unit 3 { description CCC--Internal-IPv6; vlan-id 971; family inet6 { address 2001:1520:21c3:fffe::1/64; } } inactive: unit 4 { description Management; vlan-id 972; } } fe-0/1/0 { link-mode full-duplex; unit 0 { family inet { address 192.168.242.92/25; } } } ge-1/3/0 { description External; vlan-tagging; link-mode full-duplex; inactive: unit 0 { description BCIX100; vlan-id 100; } inactive: unit 1 { description BCIX102; vlan-id 102; family inet6 { address 2001:7F8:19:1::85d8:3/64; } } unit 2 { description CCC-IPv4; vlan-id 910; family inet { address 82.130.0.1/29; } } unit 3 { description CCC-IPv6; vlan-id 911; family inet6 { address 2001:1520:21c3:ffff::3/64; } } } fxp0 { unit 0 { family inet { address 192.168.1.1/24; } } } } snmp { community vectra { authorization read-only; clients { 192.168.242.7/32; } } } routing-options { static { route 0.0.0.0/0 { qualified-next-hop 192.168.242.6; no-install; no-readvertise; } route 82.130.0.0/18 { next-hop 82.130.0.130; install; } } autonomous-system 34264; forwarding-table { inactive: unicast-reverse-path feasible-paths; } } protocols { bgp { group ccc { type internal; import any; export srcAS34264; neighbor 82.130.0.2 { family inet { unicast; } family inet6 { unicast; } } inactive: neighbor 2001:7F8:19:1::85D8:1 { family inet6 { unicast; } } neighbor 82.130.0.3 { family inet { unicast; } family inet6 { unicast; } } inactive: neighbor 2001:7F8:19:1::85D8:2 { family inet6 { unicast; } } } } ospf { area 0.0.0.0 { interface ge-1/3/0.2 { authentication { md5 1 key "$9$sI4oGQz39Cuq.5FnCpu1RhSevLX-"; ## SECRET-DATA } } } } } policy-options { policy-statement next-hop-self { term set-hop { then { next-hop self; next policy; } } } policy-statement srcAS34264 { from { protocol static; route-filter 82.130.0.0/18 exact; } then { origin igp; accept; } } policy-statement any { then accept; } }