
!
! Last configuration change at 12:38:58 india Wed Sep 24 2025 by atblaze
!
version 15.6
service timestamps debug datetime msec
service timestamps log datetime localtime show-timezone
service password-encryption
no platform punt-keepalive disable-kernel-core
!
hostname c47d4ffbed00
!
boot-start-marker
boot-end-marker
!
!
vrf definition Mgmt-intf
 !
 address-family ipv4
 exit-address-family
 !
 address-family ipv6
 exit-address-family
!
no logging buffered
logging console alerts
no logging monitor
enable secret 5 $1$N8Ex$mH.vWoLhHPJT3fXsmMHSv0
enable password 7 14121C0A0E082F
!
aaa new-model
!
!
aaa group server radius ATBB-RADIUS
 server name JAZE-1
 server name JAZE-2
 server name JAZE-3
 deadtime 2
!
aaa authentication login default local
aaa authentication login PPPoE_LIST group ATBB-RADIUS
aaa authentication login AUTHEN_LIST group ATBB-RADIUS
aaa authentication ppp default local
aaa authentication ppp PPPoE_LIST group ATBB-RADIUS
aaa authorization network default group ATBB-RADIUS 
aaa authorization network PPPoE_LIST group ATBB-RADIUS 
aaa authorization network AUTHOR_LIST group ATBB-RADIUS 
aaa authorization subscriber-service default local group ATBB-RADIUS 
aaa accounting send stop-record always
aaa accounting delay-start all
aaa accounting delay-start extended-delay 2
aaa accounting update periodic 5
aaa accounting network default start-stop group ATBB-RADIUS
aaa accounting network PPPoE_LIST start-stop group ATBB-RADIUS
aaa accounting network ACCNT_LIST start-stop group ATBB-RADIUS
aaa accounting network AUTHOR_LIST start-stop group ATBB-RADIUS
!
!
!
!
aaa server radius dynamic-author
 client 180.179.56.164 server-key 7 09464F131C0B12061C03162138
 port 3799
 auth-type any
 ignore session-key
 ignore server-key
!
aaa session-id common
aaa policy interface-config allow-subinterface
ppp unique address access-accept
ppp packet throttle 100 10 300
clock timezone india 5 30
!
ip vrf PEERCAST
 rd 1:1
 import map NAT-LAN-PEERCAST
 export map GLOBAL_EXPORT
!
!
!
!
!
!
!
!
!


ip name-server 2401:4900:50:9::75 2401:4900:50:9::76 103.179.111.2 103.53.166.250

ip domain name bras.atbb.com
!
!
!
ipv6 unicast-routing
ipv6 dhcp database nvram:dhcp-binding
ipv6 dhcp iana-route-add
ipv6 dhcp pool Clients
 prefix-delegation pool dhcppool
 address prefix 2404:6DC0:21FF:FFFF::/64
 dns-server 2401:4900:50:9::75
 dns-server 2401:4900:50:9::76
 dns-server 2001:4860:4860::8888
!
ipv6 multicast rpf use-bgp
ipv6 multicast vrf Mgmt-intf rpf use-bgp
!
!
!
!
!
!
!
subscriber service password 7 070520564B071C11001D190717
subscriber service coa-rfc-compliant
subscriber service multiple-accept
subscriber service session-accounting
subscriber service accounting interim-interval 5
subscriber templating
subscriber authorization enable
subscriber accounting ssg
!
!
!
!
flow record NAT-FLOW-RECORD
 description NAT Flow Record for NetFlow export
 match ipv4 protocol
 match ipv4 source address
 match ipv4 destination address
 match transport source-port
 match transport destination-port
!
!
flow exporter NETFLOW-EXPORTER
 description Export NAT logs via NetFlow
 destination 13.204.14.198
 transport udp 2055
 template data timeout 60
!
!
flow monitor NAT-FLOW-MONITOR
 description Monitor for NAT FLOW
 exporter NETFLOW-EXPORTER
 record NAT-FLOW-RECORD
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
spanning-tree extend system-id
!
username atblaze secret 5 $1$8Iba$BlYr28mHrZiy2nd6Y8Alv1
!
redundancy
 mode sso
!
!
!
!
!
!
!
policy-map 3M
 class class-default
  police rate 3145500 
policy-map 8M
 class class-default
  police rate 8389000 
policy-map 65M
 class class-default
  police rate 67914500 
policy-map 300M
 class class-default
  police rate 317296000 
policy-map 0K
 class class-default
  police rate 8000 
policy-map 200M
 class class-default
  police rate 217296000 
policy-map ICMP-BIG
policy-map 250M
 class class-default
  police rate 257296000 
policy-map 225M
 class class-default
  police rate 225296000 
policy-map 5M
 class class-default
  police rate 5145500 
policy-map 40M
 class class-default
  police rate 44040000 
policy-map Policy1
policy-map 32M
 class class-default
  police rate 33550000 
policy-map 70M
 class class-default
  police rate 73400000 
policy-map 2M
 class class-default
  police rate 2097000 
policy-map 35M
 class class-default
  police rate 36700000 
policy-map 85M
 class class-default
  police rate 89128500 
policy-map 64k
 class class-default
  police rate 8000 
policy-map 512kb
 class class-default
  police rate 524000 
policy-map 75M
 class class-default
  police rate 81788500 
policy-map 400M
 class class-default
  police rate 417296000 
policy-map 175M
 class class-default
  police rate 177300000 
policy-map 25M
 class class-default
  police rate 28311500 
policy-map 15M
 class class-default
  police rate 15728500 
policy-map 125M
 class class-default
  police rate 127300000 
policy-map 30M
 class class-default
  police rate 31457000 
policy-map 500M
 class class-default
  police rate 517296000 
policy-map 10M
 class class-default
  police rate 12582500 
policy-map 120M
 class class-default
  police rate 127300000 
policy-map 20M
 class class-default
  police rate 22914500 
policy-map 100M
 class class-default
  police rate 110100000 
policy-map 4M
 class class-default
  police rate 4194000 
policy-map 50M
 class class-default
  police rate 56623000 
policy-map 1M
 class class-default
  police rate 1000000 
policy-map 60M
 class class-default
  police rate 62914500 
policy-map 350M
 class class-default
  police rate 357296000 
policy-map 1000M
 class class-default
  police rate 1017296000 
policy-map 325M
 class class-default
  police rate 325296000 
policy-map 275M
 class class-default
  police rate 277296000 
policy-map 128kb
 class class-default
  police rate 13000 
policy-map 12M
 class class-default
  police rate 12311500 
policy-map 6M
 class class-default
  police rate 6145500 
policy-map 750M
 class class-default
  police rate 757296000 
policy-map 150M
 class class-default
  police rate 157300000 
policy-map 450M
 class class-default
  police rate 450296000 
!
!
! 
!
!
!
!
!
!
!
!
!
!
!
! 
! 
! 
! 
! 
! 
bba-group pppoe BBA_PPPoE5
 virtual-template 5
 sessions per-vc limit 64000
 sessions per-mac limit 64000
 sessions per-vlan limit 64000 inner 64000
!
bba-group pppoe BBA_PPPoE4
 virtual-template 4
 sessions per-vc limit 64000
 sessions per-mac limit 64000
 sessions per-vlan limit 64000 inner 64000
!
!
!
interface Loopback4
 ip address 10.36.64.1 255.255.224.0
 ip tcp adjust-mss 1452
 ipv6 enable
!
interface TenGigabitEthernet0/0/0
 description TO-BGP
 ip address 103.169.56.2 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip nat outside
 ip flow monitor NAT-FLOW-MONITOR input
 ip flow monitor NAT-FLOW-MONITOR output
 ipv6 address 2404:6DC0:2::2/126
 ipv6 enable
 no ipv6 redirects
 no mop enabled
!
interface TenGigabitEthernet1/3/0
 description TO-CORESW1PO1-49-TKL-MAR-COL-MON-KULASE-LAYAM
 no ip address
 no ip redirects
 no ip unreachables
 ip nat inside
!
interface TenGigabitEthernet1/3/0.103
 encapsulation dot1Q 103
 ip tcp adjust-mss 1452
 shutdown
 pppoe enable group BBA_PPPoE4
!
interface TenGigabitEthernet1/3/0.104
 description PARUTHIVILAI-BRAS
 encapsulation dot1Q 104
 ip nat inside
 ip tcp adjust-mss 1452
 pppoe enable group BBA_PPPoE5
!
interface TenGigabitEthernet1/3/0.106
 encapsulation dot1Q 106
 ip nat inside
 ip tcp adjust-mss 1452
 pppoe enable group BBA_PPPoE5
!
interface TenGigabitEthernet1/3/0.108
 encapsulation dot1Q 108
 ip nat inside
 ip tcp adjust-mss 1452
 pppoe enable group BBA_PPPoE5
!
interface TenGigabitEthernet1/3/0.109
 encapsulation dot1Q 109
 ip nat inside
 ip tcp adjust-mss 1452
 shutdown
 pppoe enable group BBA_PPPoE5
!
interface TenGigabitEthernet1/3/0.110
 encapsulation dot1Q 110
 ip nat inside
 ip tcp adjust-mss 1452
 pppoe enable group BBA_PPPoE5
!
interface TenGigabitEthernet1/3/0.111
 encapsulation dot1Q 111
 ip tcp adjust-mss 1452
 pppoe enable group BBA_PPPoE4
!
interface TenGigabitEthernet1/3/0.114
 description KUlasekaram-BRAS
 encapsulation dot1Q 114
 ip nat inside
 ip tcp adjust-mss 1452
 shutdown
 pppoe enable group BBA_PPPoE5
!
interface TenGigabitEthernet1/3/0.120
 encapsulation dot1Q 120
 ip nat inside
 ip tcp adjust-mss 1452
 pppoe enable group BBA_PPPoE5
!
interface GigabitEthernet0
 vrf forwarding Mgmt-intf
 no ip address
 shutdown
 negotiation auto
!
interface Virtual-Template4
 ip unnumbered Loopback4
 no ip redirects
 no ip unreachables
 ip nat inside
 ip tcp adjust-mss 1452
 ipv6 enable
 ipv6 nd managed-config-flag
 ipv6 nd other-config-flag
 ipv6 nd router-preference High
 no ipv6 nd ra suppress
 ipv6 dhcp server Clients
 peer default ip address pool LOCAL-POOL1
 peer default ipv6 pool dhcppool
 ppp authentication pap PPPoE_LIST
 ppp authorization PPPoE_LIST
 ppp accounting PPPoE_LIST
 ppp ipcp dns 103.179.111.2 103.53.166.250
 ppp ipv6cp address unique
!
interface Virtual-Template5
 ip unnumbered Loopback4
 no ip redirects
 no ip unreachables
 ip nat inside
 ip tcp adjust-mss 1452
 ipv6 enable
 ipv6 nd managed-config-flag
 ipv6 nd other-config-flag
 ipv6 nd router-preference High
 no ipv6 nd ra suppress
 ipv6 dhcp server Clients
 peer default ip address pool LOCAL-POOL2
 peer default ipv6 pool dhcppool
 ppp authentication pap PPPoE_LIST
 ppp authorization PPPoE_LIST
 ppp accounting PPPoE_LIST
 ppp ipcp dns 103.179.111.2 103.53.166.250
 ppp ipv6cp address unique
!
ip local pool non-payment 10.200.200.2 10.200.203.254
ip local pool LOCAL-POOL1 10.36.64.2 10.36.95.254
ip local pool LOCAL-POOL2 10.37.64.2 10.37.95.254
ip nat settings mode cgn
no ip nat settings support mapping outside
ip nat settings pap 
ip nat log translations flow-export v9 udp destination 13.204.14.198 2055
ip nat translation max-entries 2147483647
ip nat translation max-entries all-vrf 2147483647
ip nat translation max-entries all-host 2147483647
ip nat pool PUBLIC-POOL-1 103.104.48.209 103.104.48.222 netmask 255.255.255.240
ip nat pool PUBLIC-POOL-2 103.169.56.5 103.169.56.250 netmask 255.255.255.0
ip nat inside source route-map NAT-LOCAL-LIST-1 pool PUBLIC-POOL-1 overload
ip nat inside source route-map NAT-LOCAL-LIST-2 pool PUBLIC-POOL-2 overload
ip forward-protocol nd
!
ip ftp username atbb
ip ftp password 7 0820584C0718111B1D0C
no ip http server
no ip http secure-server
ip tftp source-interface GigabitEthernet0
ip route 0.0.0.0 0.0.0.0 103.169.56.1
ip ssh time-out 90
ip ssh authentication-retries 5
ip ssh version 2
!
access-list 1 permit 10.36.64.0 0.0.31.255
access-list 2 permit 10.37.64.0 0.0.31.255
access-list 1301 permit 103.182.68.0 0.0.1.255
access-list 1301 permit 103.104.48.0 0.0.1.255
access-list 1301 permit 103.194.240.0 0.0.3.255
access-list 1301 permit 103.78.159.0 0.0.0.255
ipv6 route ::/0 2404:6DC0:2::1
ipv6 local pool dhcppool 2404:6DC0:AD00::/40 56
!
route-map NAT-LOCAL-LIST-1 permit 10
 match ip address 1
!
route-map NAT-LOCAL-LIST-2 permit 10
 match ip address 2
!
!
!
radius-server attribute 44 include-in-access-req default-vrf
radius-server attribute 44 extend-with-addr
radius-server attribute 6 on-for-login-auth
radius-server attribute 8 include-in-access-req
radius-server attribute 32 include-in-access-req 
radius-server attribute 32 include-in-accounting-req 
radius-server attribute 55 include-in-acct-req
radius-server attribute 55 access-request include
radius-server attribute 25 access-request include
radius-server attribute nas-port format d
radius-server attribute 61 extended
radius-server attribute 4 103.78.159.170
radius-server attribute 31 send nas-port-detail mac-only
radius-server dead-criteria tries 3
radius-server retransmit 5
radius-server timeout 10
radius-server deadtime 15
radius-server directed-request
radius-server domain-stripping
radius-server key 7 1103181F121C0E181325392F3B
!
radius server JAZE-2
 address ipv4 103.129.155.6 auth-port 1812 acct-port 1813
 key 7 082B4D540C17000305041E0F39
!
radius server JAZE-1
 address ipv4 180.179.56.164 auth-port 1812 acct-port 1813
 key 7 1103181F121C0E181325392F3B
!
radius server JAZE-3
 address ipv4 180.179.56.167 auth-port 1812 acct-port 1813
 key 7 030E5A110301245859060B0E04
!
!
control-plane
!
 !
 !
 !
 !
!
!
!
!
privilege exec level 15 verify
privilege exec level 1 ping
privilege exec level 1 login
privilege exec level 1 logging
privilege exec level 1 show logging
privilege exec level 1 show
privilege exec level 0 logout
!
line con 0
 stopbits 1
line aux 0
 stopbits 1
line vty 0 4
 access-class 1301 in
 transport preferred ssh
 transport input ssh
!
!
end
