You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

1208 lines
38 KiB

<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<topology xmlns="http://www.cisco.com/VIRL" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" schemaVersion="0.95" xsi:schemaLocation="http://www.cisco.com/VIRL https://raw.github.com/CiscoVIRL/schema/v0.95/virl.xsd">
<node name="Router-A" type="SIMPLE" subtype="IOSv" location="236,245">
<extensions>
<entry key="AutoNetkit.mgmt_ip" type="string"></entry>
<entry key="AutoNetkit.IGP" type="String">eigrp</entry>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">!&#xD;
! Last configuration change at 22:03:48 UTC Sun Jan 15 2017&#xD;
!&#xD;
version 15.6&#xD;
service timestamps debug datetime msec&#xD;
service timestamps log datetime msec&#xD;
no service password-encryption&#xD;
!&#xD;
hostname Router-A&#xD;
!&#xD;
boot-start-marker&#xD;
boot-end-marker&#xD;
!&#xD;
!&#xD;
vrf definition Mgmt-intf&#xD;
!&#xD;
address-family ipv4&#xD;
exit-address-family&#xD;
!&#xD;
address-family ipv6&#xD;
exit-address-family&#xD;
!&#xD;
enable password cisco&#xD;
!&#xD;
no aaa new-model&#xD;
ethernet lmi ce&#xD;
!&#xD;
!&#xD;
!&#xD;
mmi polling-interval 60&#xD;
no mmi auto-configure&#xD;
no mmi pvc&#xD;
mmi snmp-timeout 180&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
no ip domain lookup&#xD;
ip cef&#xD;
ipv6 unicast-routing&#xD;
ipv6 cef&#xD;
!&#xD;
multilink bundle-name authenticated&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
redundancy&#xD;
!&#xD;
no cdp run&#xD;
!&#xD;
! &#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
interface Loopback0&#xD;
description Loopback&#xD;
ip address 192.168.0.2 255.255.255.255&#xD;
!&#xD;
interface GigabitEthernet0/0&#xD;
description OOB Management&#xD;
vrf forwarding Mgmt-intf&#xD;
ip address 10.255.0.229 255.255.0.0&#xD;
duplex full&#xD;
speed auto&#xD;
media-type rj45&#xD;
!&#xD;
interface GigabitEthernet0/1&#xD;
description to ISP&#xD;
ip address 192.168.101.2 255.255.255.252&#xD;
duplex full&#xD;
speed auto&#xD;
media-type rj45&#xD;
!&#xD;
ip forward-protocol nd&#xD;
!&#xD;
!&#xD;
no ip http server&#xD;
no ip http secure-server&#xD;
ip route 0.0.0.0 0.0.0.0 192.168.101.1&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
control-plane&#xD;
!&#xD;
banner exec `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner incoming `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner login `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
!&#xD;
line con 0&#xD;
password cisco&#xD;
line aux 0&#xD;
line vty 0 4&#xD;
exec-timeout 720 0&#xD;
password cisco&#xD;
login&#xD;
transport input telnet ssh&#xD;
!&#xD;
no scheduler allocate&#xD;
!&#xD;
end</entry>
</extensions>
<interface id="0" name="GigabitEthernet0/1" ipv4="192.168.101.2" netPrefixLenV4="24"/>
<interface id="1" name="GigabitEthernet0/2" ipv4="192.168.1.1" netPrefixLenV4="24"/>
<interface id="2" name="GigabitEthernet0/3"/>
<interface id="3" name="GigabitEthernet0/4"/>
</node>
<node name="Router-B" type="SIMPLE" subtype="IOSv" location="463,232">
<extensions>
<entry key="AutoNetkit.mgmt_ip" type="string"></entry>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">!&#xD;
! Last configuration change at 22:03:51 UTC Sun Jan 15 2017&#xD;
!&#xD;
version 15.6&#xD;
service timestamps debug datetime msec&#xD;
service timestamps log datetime msec&#xD;
no service password-encryption&#xD;
!&#xD;
hostname Router-B&#xD;
!&#xD;
boot-start-marker&#xD;
boot-end-marker&#xD;
!&#xD;
!&#xD;
vrf definition Mgmt-intf&#xD;
!&#xD;
address-family ipv4&#xD;
exit-address-family&#xD;
!&#xD;
address-family ipv6&#xD;
exit-address-family&#xD;
!&#xD;
enable password cisco&#xD;
!&#xD;
no aaa new-model&#xD;
ethernet lmi ce&#xD;
!&#xD;
!&#xD;
!&#xD;
mmi polling-interval 60&#xD;
no mmi auto-configure&#xD;
no mmi pvc&#xD;
mmi snmp-timeout 180&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
no ip domain lookup&#xD;
ip cef&#xD;
ipv6 unicast-routing&#xD;
ipv6 cef&#xD;
!&#xD;
multilink bundle-name authenticated&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
redundancy&#xD;
!&#xD;
no cdp run&#xD;
!&#xD;
! &#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
interface Loopback0&#xD;
description Loopback&#xD;
ip address 192.168.0.3 255.255.255.255&#xD;
!&#xD;
interface GigabitEthernet0/0&#xD;
description OOB Management&#xD;
vrf forwarding Mgmt-intf&#xD;
ip address 10.255.0.230 255.255.0.0&#xD;
duplex full&#xD;
speed auto&#xD;
media-type rj45&#xD;
!&#xD;
interface GigabitEthernet0/1&#xD;
description to ISP&#xD;
ip address 192.168.102.2 255.255.255.252&#xD;
ip ospf cost 1&#xD;
duplex full&#xD;
speed auto&#xD;
media-type rj45&#xD;
!&#xD;
ip forward-protocol nd&#xD;
!&#xD;
!&#xD;
no ip http server&#xD;
no ip http secure-server&#xD;
ip route 0.0.0.0 0.0.0.0 192.168.102.1&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
control-plane&#xD;
!&#xD;
banner exec `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner incoming `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner login `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
!&#xD;
line con 0&#xD;
password cisco&#xD;
line aux 0&#xD;
line vty 0 4&#xD;
exec-timeout 720 0&#xD;
password cisco&#xD;
login&#xD;
transport input telnet ssh&#xD;
!&#xD;
no scheduler allocate&#xD;
!&#xD;
end</entry>
</extensions>
<interface id="0" name="GigabitEthernet0/1"/>
<interface id="1" name="GigabitEthernet0/2" netPrefixLenV4="24"/>
</node>
<node name="Internet&#xD;&#xA;" type="ASSET" subtype="FLAT" location="391,42">
<extensions>
<entry key="host_network" type="String">flat</entry>
</extensions>
<interface id="0" name="link0"/>
</node>
<node name="Switch-A" type="SIMPLE" subtype="IOSvL2" location="512,305">
<extensions>
<entry key="AutoNetkit.mgmt_ip" type="string"></entry>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">!&#xD;
! Last configuration change at 22:03:41 UTC Sun Jan 15 2017&#xD;
!&#xD;
version 15.2&#xD;
service timestamps debug datetime msec&#xD;
service timestamps log datetime msec&#xD;
no service password-encryption&#xD;
service compress-config&#xD;
!&#xD;
hostname Switch-A&#xD;
!&#xD;
boot-start-marker&#xD;
boot-end-marker&#xD;
!&#xD;
!&#xD;
vrf definition Mgmt-intf&#xD;
!&#xD;
address-family ipv4&#xD;
exit-address-family&#xD;
!&#xD;
address-family ipv6&#xD;
exit-address-family&#xD;
!&#xD;
enable password cisco&#xD;
!&#xD;
no aaa new-model&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
no ip domain-lookup&#xD;
ip cef&#xD;
no ipv6 cef&#xD;
!&#xD;
!&#xD;
!&#xD;
spanning-tree mode pvst&#xD;
spanning-tree extend system-id&#xD;
!&#xD;
vlan internal allocation policy ascending&#xD;
!&#xD;
! &#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
interface Loopback0&#xD;
description Loopback&#xD;
no ip address&#xD;
!&#xD;
interface GigabitEthernet0/1&#xD;
description to Router-B&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/2&#xD;
description to Switch-B&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/3&#xD;
description to Server-C&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/0&#xD;
description OOB management&#xD;
no switchport&#xD;
ip address 10.255.0.231 255.255.0.0&#xD;
negotiation auto&#xD;
!&#xD;
ip forward-protocol nd&#xD;
!&#xD;
no ip http server&#xD;
no ip http secure-server&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
control-plane&#xD;
!&#xD;
banner exec `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner incoming `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner login `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
!&#xD;
line con 0&#xD;
password cisco&#xD;
line aux 0&#xD;
line vty 0 4&#xD;
exec-timeout 720 0&#xD;
password cisco&#xD;
login&#xD;
transport input telnet ssh&#xD;
!&#xD;
mac address-table aging-time 10&#xD;
!&#xD;
end</entry>
</extensions>
<interface id="0" name="GigabitEthernet0/1"/>
<interface id="1" name="GigabitEthernet0/2"/>
<interface id="2" name="GigabitEthernet0/3"/>
<interface id="3" name="GigabitEthernet1/0"/>
<interface id="4" name="GigabitEthernet1/1"/>
</node>
<node name="ISP" type="SIMPLE" subtype="lxc" location="343,149">
<extensions>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">#cloud-config&#xD;
bootcmd:&#xD;
- ln -s -t /etc/rc.d /etc/rc.local&#xD;
hostname: ISP&#xD;
manage_etc_hosts: true&#xD;
runcmd:&#xD;
- start ttyS0&#xD;
- systemctl start getty@ttyS0.service&#xD;
- systemctl start rc-local&#xD;
- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config&#xD;
- echo "UseDNS no" &gt;&gt; /etc/ssh/sshd_config&#xD;
- service ssh restart&#xD;
- service sshd restart&#xD;
users:&#xD;
- default&#xD;
- gecos: User configured by VIRL Configuration Engine 0.23.9&#xD;
lock-passwd: false&#xD;
name: cisco&#xD;
plain-text-passwd: cisco&#xD;
shell: /bin/bash&#xD;
ssh-authorized-keys:&#xD;
- VIRL-USER-SSH-PUBLIC-KEY&#xD;
sudo: ALL=(ALL) ALL&#xD;
write_files:&#xD;
- path: /etc/init/ttyS0.conf&#xD;
owner: root:root&#xD;
content: |&#xD;
# ttyS0 - getty&#xD;
# This service maintains a getty on ttyS0 from the point the system is&#xD;
# started until it is shut down again.&#xD;
start on stopped rc or RUNLEVEL=[12345]&#xD;
stop on runlevel [!12345]&#xD;
respawn&#xD;
exec /sbin/getty -L 115200 ttyS0 vt102&#xD;
permissions: '0644'&#xD;
- path: /etc/systemd/system/dhclient@.service&#xD;
content: |&#xD;
[Unit]&#xD;
Description=Run dhclient on %i interface&#xD;
After=network.target&#xD;
[Service]&#xD;
Type=oneshot&#xD;
ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease&#xD;
RemainAfterExit=yes&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
- path: /etc/rc.local&#xD;
owner: root:root&#xD;
permissions: '0755'&#xD;
content: |-&#xD;
#!/bin/sh&#xD;
ifconfig eth1 up 192.168.101.1 netmask 255.255.255.252&#xD;
ifconfig eth2 up 192.168.102.1 netmask 255.255.255.252&#xD;
&#xD;
dhclient eth0&#xD;
dhclient eth3&#xD;
&#xD;
echo 1 &gt; /proc/sys/net/ipv4/ip_forward&#xD;
&#xD;
route add default gw 172.16.1.1 eth3&#xD;
&#xD;
route add -net 192.168.101.0/30 gw 192.168.101.2 dev eth1&#xD;
route add -net 192.168.102.0/30 gw 192.168.102.2 dev eth2&#xD;
&#xD;
route add -net 192.168.100.0/24 gw 192.168.101.2 dev eth1&#xD;
route add -net 192.168.32.0/20 gw 192.168.102.2 dev eth2&#xD;
&#xD;
iptables -t nat -A POSTROUTING -o eth3 -j MASQUERADE&#xD;
iptables -P FORWARD ACCEPT&#xD;
iptables -F FORWARD&#xD;
&#xD;
iptables -t nat -A PREROUTING -i eth3 -p tcp -m tcp --dport 80 -j DNAT --to-destination 192.168.2.100:80&#xD;
iptables -t nat -A PREROUTING -i eth3 -p tcp -m tcp --dport 22 -j DNAT --to-destination 192.168.2.100:22&#xD;
&#xD;
/sbin/tc qdisc add dev eth2 root handle 1:1 netem delay 100ms loss 5%&#xD;
echo "alias unbug='sudo tc qdisc del dev eth2 root'" &gt;&gt;/home/cisco/.bashrc&#xD;
&#xD;
service ssh start&#xD;
&#xD;
hostname ISP&#xD;
&#xD;
exit 0&#xD;
&#xD;
</entry>
</extensions>
<interface id="0" name="eth1"/>
<interface id="1" name="eth2"/>
<interface id="2" name="eth3"/>
</node>
<node name="Server-B" type="SIMPLE" subtype="lxc" location="384,414">
<extensions>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">#cloud-config&#xD;
bootcmd:&#xD;
- ln -s -t /etc/rc.d /etc/rc.local&#xD;
hostname: Server-B&#xD;
manage_etc_hosts: true&#xD;
&#xD;
runcmd:&#xD;
- start ttyS0&#xD;
- systemctl start getty@ttyS0.service&#xD;
- systemctl start rc-local&#xD;
- systemctl start install-webserver&#xD;
- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config&#xD;
- echo "UseDNS no" &gt;&gt; /etc/ssh/sshd_config&#xD;
- service ssh restart&#xD;
- service sshd restart&#xD;
users:&#xD;
- default&#xD;
- gecos: User configured by VIRL Configuration Engine 0.18.9&#xD;
lock-passwd: false&#xD;
name: cisco&#xD;
plain-text-passwd: cisco&#xD;
shell: /bin/bash&#xD;
ssh-authorized-keys:&#xD;
- VIRL-USER-SSH-PUBLIC-KEY&#xD;
sudo: ALL=(ALL) ALL&#xD;
write_files:&#xD;
- path: /etc/init/ttyS0.conf&#xD;
owner: root:root&#xD;
content: |&#xD;
# ttyS0 - getty&#xD;
# This service maintains a getty on ttyS0 from the point the system is&#xD;
# started until it is shut down again.&#xD;
start on stopped rc or RUNLEVEL=[12345]&#xD;
stop on runlevel [!12345]&#xD;
respawn&#xD;
exec /sbin/getty -L 115200 ttyS0 vt102&#xD;
permissions: '0644'&#xD;
- path: /etc/systemd/system/dhclient@.service&#xD;
content: |&#xD;
[Unit]&#xD;
Description=Run dhclient on %i interface&#xD;
After=network.target&#xD;
[Service]&#xD;
Type=oneshot&#xD;
ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease&#xD;
RemainAfterExit=yes&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
- path: /etc/rc.local&#xD;
owner: root:root&#xD;
permissions: '0755'&#xD;
content: |-&#xD;
#!/bin/sh -e&#xD;
echo "nameserver 8.8.8.8" &gt;/etc/resolv.conf&#xD;
#ifconfig eth1 192.168.32.10 netmask 255.255.254.0&#xD;
#route del default&#xD;
#route add default gw 192.168.32.1&#xD;
exit 0&#xD;
&#xD;
</entry>
</extensions>
<interface id="0" name="eth1"/>
</node>
<node name="Server-A" type="SIMPLE" subtype="lxc" location="639,256">
<extensions>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">#cloud-config&#xD;
bootcmd:&#xD;
- ln -s -t /etc/rc.d /etc/rc.local&#xD;
hostname: Server-A&#xD;
manage_etc_hosts: true&#xD;
runcmd:&#xD;
- start ttyS0&#xD;
- systemctl start getty@ttyS0.service&#xD;
- systemctl start rc-local&#xD;
- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config&#xD;
- echo "UseDNS no" &gt;&gt; /etc/ssh/sshd_config&#xD;
- service ssh restart&#xD;
- service sshd restart&#xD;
users:&#xD;
- default&#xD;
- gecos: User configured by VIRL Configuration Engine 0.18.9&#xD;
lock-passwd: false&#xD;
name: cisco&#xD;
plain-text-passwd: cisco&#xD;
shell: /bin/bash&#xD;
ssh-authorized-keys:&#xD;
- VIRL-USER-SSH-PUBLIC-KEY&#xD;
sudo: ALL=(ALL) ALL&#xD;
write_files:&#xD;
- path: /etc/init/ttyS0.conf&#xD;
owner: root:root&#xD;
content: |&#xD;
# ttyS0 - getty&#xD;
# This service maintains a getty on ttyS0 from the point the system is&#xD;
# started until it is shut down again.&#xD;
start on stopped rc or RUNLEVEL=[12345]&#xD;
stop on runlevel [!12345]&#xD;
respawn&#xD;
exec /sbin/getty -L 115200 ttyS0 vt102&#xD;
permissions: '0644'&#xD;
- path: /etc/systemd/system/dhclient@.service&#xD;
content: |&#xD;
[Unit]&#xD;
Description=Run dhclient on %i interface&#xD;
After=network.target&#xD;
[Service]&#xD;
Type=oneshot&#xD;
ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease&#xD;
RemainAfterExit=yes&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
- path: /etc/rc.local&#xD;
owner: root:root&#xD;
permissions: '0755'&#xD;
content: |-&#xD;
#!/bin/sh -e&#xD;
#ifconfig eth1 192.168.32.20&#xD;
#route del default&#xD;
#route add default gw 192.168.32.1&#xD;
exit 0&#xD;
&#xD;
- path: /etc/resolv.conf&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
content: |&#xD;
nameserver 8.8.8.8</entry>
</extensions>
<interface id="0" name="eth1"/>
</node>
<node name="Management-Client" type="SIMPLE" subtype="lxc" location="146,372">
<extensions>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">#cloud-config&#xD;
bootcmd:&#xD;
- ln -s -t /etc/rc.d /etc/rc.local&#xD;
hostname: Client&#xD;
manage_etc_hosts: true&#xD;
runcmd:&#xD;
- start ttyS0&#xD;
- systemctl start getty@ttyS0.service&#xD;
- systemctl start rc-local&#xD;
- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config&#xD;
- echo "UseDNS no" &gt;&gt; /etc/ssh/sshd_config&#xD;
- service ssh restart&#xD;
- service sshd restart&#xD;
users:&#xD;
- default&#xD;
- gecos: User configured by VIRL Configuration Engine 0.18.9&#xD;
lock-passwd: false&#xD;
name: cisco&#xD;
plain-text-passwd: cisco&#xD;
shell: /bin/bash&#xD;
ssh-authorized-keys:&#xD;
- VIRL-USER-SSH-PUBLIC-KEY&#xD;
sudo: ALL=(ALL) ALL&#xD;
write_files:&#xD;
- path: /etc/init/ttyS0.conf&#xD;
owner: root:root&#xD;
content: |&#xD;
# ttyS0 - getty&#xD;
# This service maintains a getty on ttyS0 from the point the system is&#xD;
# started until it is shut down again.&#xD;
start on stopped rc or RUNLEVEL=[12345]&#xD;
stop on runlevel [!12345]&#xD;
respawn&#xD;
exec /sbin/getty -L 115200 ttyS0 vt102&#xD;
permissions: '0644'&#xD;
- path: /etc/systemd/system/dhclient@.service&#xD;
content: |&#xD;
[Unit]&#xD;
Description=Run dhclient on %i interface&#xD;
After=network.target&#xD;
[Service]&#xD;
Type=oneshot&#xD;
ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease&#xD;
RemainAfterExit=yes&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
- path: /etc/rc.local&#xD;
owner: root:root&#xD;
permissions: '0755'&#xD;
content: |-&#xD;
!/bin/sh -e&#xD;
#ifconfig eth1 192.168.100.194 netmask 255.255.255.240&#xD;
#route del default&#xD;
#route add default gw 192.168.100.193&#xD;
exit 0&#xD;
&#xD;
- path: /etc/resolv.conf&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
content: |&#xD;
#by Patrick.&#xD;
nameserver 8.8.8.8&#xD;
</entry>
</extensions>
<interface id="0" name="eth1"/>
</node>
<node name="Administration-Client" type="SIMPLE" subtype="lxc" location="234,437">
<extensions>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">#cloud-config&#xD;
bootcmd:&#xD;
- ln -s -t /etc/rc.d /etc/rc.local&#xD;
hostname: Client&#xD;
manage_etc_hosts: true&#xD;
runcmd:&#xD;
- start ttyS0&#xD;
- systemctl start getty@ttyS0.service&#xD;
- systemctl start rc-local&#xD;
- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config&#xD;
- echo "UseDNS no" &gt;&gt; /etc/ssh/sshd_config&#xD;
- service ssh restart&#xD;
- service sshd restart&#xD;
users:&#xD;
- default&#xD;
- gecos: User configured by VIRL Configuration Engine 0.18.9&#xD;
lock-passwd: false&#xD;
name: cisco&#xD;
plain-text-passwd: cisco&#xD;
shell: /bin/bash&#xD;
ssh-authorized-keys:&#xD;
- VIRL-USER-SSH-PUBLIC-KEY&#xD;
sudo: ALL=(ALL) ALL&#xD;
write_files:&#xD;
- path: /etc/init/ttyS0.conf&#xD;
owner: root:root&#xD;
content: |&#xD;
# ttyS0 - getty&#xD;
# This service maintains a getty on ttyS0 from the point the system is&#xD;
# started until it is shut down again.&#xD;
start on stopped rc or RUNLEVEL=[12345]&#xD;
stop on runlevel [!12345]&#xD;
respawn&#xD;
exec /sbin/getty -L 115200 ttyS0 vt102&#xD;
permissions: '0644'&#xD;
- path: /etc/systemd/system/dhclient@.service&#xD;
content: |&#xD;
[Unit]&#xD;
Description=Run dhclient on %i interface&#xD;
After=network.target&#xD;
[Service]&#xD;
Type=oneshot&#xD;
ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease&#xD;
RemainAfterExit=yes&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
- path: /etc/rc.local&#xD;
owner: root:root&#xD;
permissions: '0755'&#xD;
content: |-&#xD;
!/bin/sh -e&#xD;
#ifconfig eth1 192.168.100.130 netmask 255.255.255.192&#xD;
#route del default&#xD;
#route add default gw 192.168.100.129&#xD;
exit 0&#xD;
&#xD;
- path: /etc/resolv.conf&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
content: |&#xD;
#by Patrick.&#xD;
nameserver 8.8.8.8&#xD;
</entry>
</extensions>
<interface id="0" name="eth1"/>
</node>
<node name="Rechnungswesen-Client" type="SIMPLE" subtype="lxc" location="61,296">
<extensions>
<entry key="Auto-generate config" type="Boolean">false</entry>
<entry key="config" type="String">#cloud-config&#xD;
bootcmd:&#xD;
- ln -s -t /etc/rc.d /etc/rc.local&#xD;
hostname: Client&#xD;
manage_etc_hosts: true&#xD;
runcmd:&#xD;
- start ttyS0&#xD;
- systemctl start getty@ttyS0.service&#xD;
- systemctl start rc-local&#xD;
- sed -i '/^\s*PasswordAuthentication\s\+no/d' /etc/ssh/sshd_config&#xD;
- echo "UseDNS no" &gt;&gt; /etc/ssh/sshd_config&#xD;
- service ssh restart&#xD;
- service sshd restart&#xD;
users:&#xD;
- default&#xD;
- gecos: User configured by VIRL Configuration Engine 0.18.9&#xD;
lock-passwd: false&#xD;
name: cisco&#xD;
plain-text-passwd: cisco&#xD;
shell: /bin/bash&#xD;
ssh-authorized-keys:&#xD;
- VIRL-USER-SSH-PUBLIC-KEY&#xD;
sudo: ALL=(ALL) ALL&#xD;
write_files:&#xD;
- path: /etc/init/ttyS0.conf&#xD;
owner: root:root&#xD;
content: |&#xD;
# ttyS0 - getty&#xD;
# This service maintains a getty on ttyS0 from the point the system is&#xD;
# started until it is shut down again.&#xD;
start on stopped rc or RUNLEVEL=[12345]&#xD;
stop on runlevel [!12345]&#xD;
respawn&#xD;
exec /sbin/getty -L 115200 ttyS0 vt102&#xD;
permissions: '0644'&#xD;
- path: /etc/systemd/system/dhclient@.service&#xD;
content: |&#xD;
[Unit]&#xD;
Description=Run dhclient on %i interface&#xD;
After=network.target&#xD;
[Service]&#xD;
Type=oneshot&#xD;
ExecStart=/sbin/dhclient %i -pf /var/run/dhclient.%i.pid -lf /var/lib/dhclient/dhclient.%i.lease&#xD;
RemainAfterExit=yes&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
- path: /etc/rc.local&#xD;
owner: root:root&#xD;
permissions: '0755'&#xD;
content: |-&#xD;
!/bin/sh -e&#xD;
#ifconfig eth1 192.168.100.10 netmask 255.255.255.128&#xD;
#route del default&#xD;
#route add default gw 192.168.100.1&#xD;
exit 0&#xD;
&#xD;
- path: /etc/resolv.conf&#xD;
owner: root:root&#xD;
permissions: '0644'&#xD;
content: |&#xD;
#by Patrick.&#xD;
nameserver 8.8.8.8&#xD;
</entry>
</extensions>
<interface id="0" name="eth1"/>
</node>
<node name="Switch-B" type="SIMPLE" subtype="IOSvL2" location="483,416">
<extensions>
<entry key="config" type="String">!&#xD;
! Last configuration change at 22:03:41 UTC Sun Jan 15 2017&#xD;
!&#xD;
version 15.2&#xD;
service timestamps debug datetime msec&#xD;
service timestamps log datetime msec&#xD;
no service password-encryption&#xD;
service compress-config&#xD;
!&#xD;
hostname Switch-B&#xD;
!&#xD;
boot-start-marker&#xD;
boot-end-marker&#xD;
!&#xD;
!&#xD;
vrf definition Mgmt-intf&#xD;
!&#xD;
address-family ipv4&#xD;
exit-address-family&#xD;
!&#xD;
address-family ipv6&#xD;
exit-address-family&#xD;
!&#xD;
enable password cisco&#xD;
!&#xD;
no aaa new-model&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
no ip domain-lookup&#xD;
ip cef&#xD;
no ipv6 cef&#xD;
!&#xD;
!&#xD;
!&#xD;
spanning-tree mode pvst&#xD;
spanning-tree extend system-id&#xD;
!&#xD;
vlan internal allocation policy ascending&#xD;
!&#xD;
! &#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
interface Loopback0&#xD;
description Loopback&#xD;
no ip address&#xD;
!&#xD;
interface GigabitEthernet0/1&#xD;
description to Switch-A&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/2&#xD;
description to Server-A&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/3&#xD;
description to Switch-C&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/0&#xD;
description OOB management&#xD;
no switchport&#xD;
ip address 10.255.0.231 255.255.0.0&#xD;
negotiation auto&#xD;
!&#xD;
ip forward-protocol nd&#xD;
!&#xD;
no ip http server&#xD;
no ip http secure-server&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
control-plane&#xD;
!&#xD;
banner exec `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner incoming `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner login `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
!&#xD;
line con 0&#xD;
password cisco&#xD;
line aux 0&#xD;
line vty 0 4&#xD;
exec-timeout 720 0&#xD;
password cisco&#xD;
login&#xD;
transport input telnet ssh&#xD;
!&#xD;
mac address-table aging-time 10&#xD;
!&#xD;
end</entry>
</extensions>
<interface id="0" name="GigabitEthernet0/1"/>
<interface id="1" name="GigabitEthernet0/2"/>
<interface id="2" name="GigabitEthernet0/3"/>
</node>
<node name="Switch-C" type="SIMPLE" subtype="IOSvL2" location="606,393">
<extensions>
<entry key="config" type="String">!&#xD;
! Last configuration change at 22:03:41 UTC Sun Jan 15 2017&#xD;
!&#xD;
version 15.2&#xD;
service timestamps debug datetime msec&#xD;
service timestamps log datetime msec&#xD;
no service password-encryption&#xD;
service compress-config&#xD;
!&#xD;
hostname Switch-C&#xD;
!&#xD;
boot-start-marker&#xD;
boot-end-marker&#xD;
!&#xD;
!&#xD;
vrf definition Mgmt-intf&#xD;
!&#xD;
address-family ipv4&#xD;
exit-address-family&#xD;
!&#xD;
address-family ipv6&#xD;
exit-address-family&#xD;
!&#xD;
enable password cisco&#xD;
!&#xD;
no aaa new-model&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
no ip domain-lookup&#xD;
ip cef&#xD;
no ipv6 cef&#xD;
!&#xD;
!&#xD;
!&#xD;
spanning-tree mode pvst&#xD;
spanning-tree extend system-id&#xD;
!&#xD;
vlan internal allocation policy ascending&#xD;
!&#xD;
! &#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
interface Loopback0&#xD;
description Loopback&#xD;
no ip address&#xD;
!&#xD;
interface GigabitEthernet0/1&#xD;
description to Switch-A&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/2&#xD;
description to Server-A&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/3&#xD;
description to Switch-B&#xD;
switchport access vlan 2&#xD;
switchport mode access&#xD;
media-type rj45&#xD;
negotiation auto&#xD;
!&#xD;
interface GigabitEthernet0/0&#xD;
description OOB management&#xD;
no switchport&#xD;
ip address 10.255.0.231 255.255.0.0&#xD;
negotiation auto&#xD;
!&#xD;
ip forward-protocol nd&#xD;
!&#xD;
no ip http server&#xD;
no ip http secure-server&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
!&#xD;
control-plane&#xD;
!&#xD;
banner exec `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner incoming `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
banner login `&#xD;
**************************************************************************&#xD;
* IOSv is strictly limited to use for evaluation, demonstration and IOS *&#xD;
* education. IOSv is provided as-is and is not supported by Cisco's *&#xD;
* Technical Advisory Center. Any use or disclosure, in whole or in part, *&#xD;
* of the IOSv Software or Documentation to any third party for any *&#xD;
* purposes is expressly prohibited except as otherwise authorized by *&#xD;
* Cisco in writing. *&#xD;
**************************************************************************`&#xD;
!&#xD;
line con 0&#xD;
password cisco&#xD;
line aux 0&#xD;
line vty 0 4&#xD;
exec-timeout 720 0&#xD;
password cisco&#xD;
login&#xD;
transport input telnet ssh&#xD;
!&#xD;
mac address-table aging-time 10&#xD;
!&#xD;
end</entry>
</extensions>
<interface id="0" name="GigabitEthernet0/1"/>
<interface id="1" name="GigabitEthernet0/2"/>
<interface id="2" name="GigabitEthernet0/3"/>
</node>
<annotations/>
<connection dst="/virl:topology/virl:node[4]/virl:interface[1]" src="/virl:topology/virl:node[2]/virl:interface[2]"/>
<connection dst="/virl:topology/virl:node[5]/virl:interface[1]" src="/virl:topology/virl:node[1]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[2]/virl:interface[1]" src="/virl:topology/virl:node[5]/virl:interface[2]"/>
<connection dst="/virl:topology/virl:node[5]/virl:interface[3]" src="/virl:topology/virl:node[3]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[1]/virl:interface[2]" src="/virl:topology/virl:node[10]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[1]/virl:interface[3]" src="/virl:topology/virl:node[8]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[1]/virl:interface[4]" src="/virl:topology/virl:node[9]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[11]/virl:interface[2]" src="/virl:topology/virl:node[6]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[12]/virl:interface[2]" src="/virl:topology/virl:node[7]/virl:interface[1]"/>
<connection dst="/virl:topology/virl:node[12]/virl:interface[3]" src="/virl:topology/virl:node[11]/virl:interface[3]"/>
<connection dst="/virl:topology/virl:node[11]/virl:interface[1]" src="/virl:topology/virl:node[4]/virl:interface[2]"/>
<connection dst="/virl:topology/virl:node[12]/virl:interface[1]" src="/virl:topology/virl:node[4]/virl:interface[3]"/>
</topology>