! version 12.3 no service pad service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname napciscoap ! enable secret 5 $1$flC.$FWiIp9VNw7q4XN7mJ1H2o1 ! ip subnet-zero ip domain name nac.ilabs.interop.net ip name-server 45.200.1.2 ! ! aaa new-model ! ! aaa group server radius rad_eap server 45.200.1.74 auth-port 1812 acct-port 1813 ! aaa group server radius rad_mac ! aaa group server radius rad_acct ! aaa group server radius rad_admin ! aaa group server tacacs+ tac_admin ! aaa group server radius rad_pmip ! aaa group server radius dummy ! aaa group server radius rad_eap1 server 45.200.1.74 auth-port 1812 acct-port 1813 ! aaa authentication login eap_methods group rad_eap aaa authentication login mac_methods local aaa authentication login eap_methods1 group rad_eap1 aaa authorization exec default local aaa accounting network acct_methods start-stop group rad_acct aaa session-id common dot11 vlan-name Management vlan 1000 dot11 vlan-name Quarantine vlan 21 dot11 vlan-name Success vlan 20 ! dot11 ssid ilabs-nap-cisco vlan 21 authentication open eap eap_methods guest-mode information-element ssidl advertisement ! ! ! username Cisco password 7 0802455D0A16 username admin privilege 15 password 7 0701204F40081A5541 ! bridge irb ! ! interface Dot11Radio0 no ip address no ip route-cache ! encryption vlan 21 mode ciphers tkip wep128 ! encryption vlan 20 mode ciphers tkip wep128 ! ssid ilabs-nap-cisco ! speed basic-1.0 basic-2.0 basic-5.5 basic-11.0 station-role root no dot11 extension aironet bridge-group 1 bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled ! interface Dot11Radio0.20 encapsulation dot1Q 20 no ip route-cache bridge-group 20 bridge-group 20 subscriber-loop-control bridge-group 20 block-unknown-source no bridge-group 20 source-learning no bridge-group 20 unicast-flooding bridge-group 20 spanning-disabled ! interface Dot11Radio0.21 encapsulation dot1Q 21 no ip route-cache bridge-group 21 bridge-group 21 subscriber-loop-control bridge-group 21 block-unknown-source no bridge-group 21 source-learning no bridge-group 21 unicast-flooding bridge-group 21 spanning-disabled ! interface Dot11Radio1 no ip address no ip route-cache ! encryption vlan 20 mode ciphers tkip ! encryption vlan 21 mode ciphers tkip ! ssid ilabs-nap-cisco ! speed basic-6.0 9.0 basic-12.0 18.0 basic-24.0 36.0 48.0 54.0 power local 10 no power client local power client 10 station-role root no dot11 extension aironet ! interface Dot11Radio1.20 encapsulation dot1Q 20 no ip route-cache bridge-group 20 bridge-group 20 subscriber-loop-control bridge-group 20 block-unknown-source no bridge-group 20 source-learning no bridge-group 20 unicast-flooding bridge-group 20 spanning-disabled ! interface Dot11Radio1.21 encapsulation dot1Q 21 no ip route-cache bridge-group 21 bridge-group 21 subscriber-loop-control bridge-group 21 block-unknown-source no bridge-group 21 source-learning no bridge-group 21 unicast-flooding bridge-group 21 spanning-disabled ! interface Dot11Radio1.1000 encapsulation dot1Q 1000 native no ip route-cache bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled ! interface FastEthernet0 no ip address no ip route-cache duplex auto speed auto bridge-group 99 no bridge-group 99 source-learning bridge-group 99 spanning-disabled hold-queue 160 in ! interface FastEthernet0.20 encapsulation dot1Q 20 no ip route-cache bridge-group 20 no bridge-group 20 source-learning bridge-group 20 spanning-disabled ! interface FastEthernet0.21 encapsulation dot1Q 21 no ip route-cache bridge-group 21 no bridge-group 21 source-learning bridge-group 21 spanning-disabled ! interface FastEthernet0.1000 encapsulation dot1Q 1000 no ip route-cache bridge-group 1 no bridge-group 1 source-learning bridge-group 1 spanning-disabled ! interface BVI1 ip address 45.200.1.75 255.255.255.0 no ip route-cache ! ip default-gateway 45.200.1.1 ip http server ip http authentication local no ip http secure-server ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag ip radius source-interface BVI1 ! radius-server host 45.200.1.74 auth-port 1812 acct-port 1813 key 7 141913080205297B72 radius-server vsa send accounting ! control-plane ! bridge 1 route ip ! ! ! line con 0 line vty 0 4 ! end