set high-availability vrrp group dsdc-net address '10.8.2.1/24' set high-availability vrrp group dsdc-net hello-source-address '10.8.2.3' set high-availability vrrp group dsdc-net interface 'eth0.100' set high-availability vrrp group dsdc-net peer-address '10.8.2.2' set high-availability vrrp group dsdc-net priority '100' set high-availability vrrp group dsdc-net vrid '100' set interfaces ethernet eth0 vif 66 address '10.22.11.3/24' set interfaces ethernet eth0 vif 66 description 'DMVPN to Coruscant DataCenter cdc01r' set interfaces ethernet eth0 vif 67 address '10.22.12.3/24' set interfaces ethernet eth0 vif 67 description 'DMVPN to Coruscant DataCenter cdc02r' set interfaces ethernet eth0 vif 100 address '10.8.2.3/24' set interfaces ethernet eth0 vif 100 description 'DeathStar DataCenter Local Network' set interfaces tunnel tun66 address '172.16.11.3/24' set interfaces tunnel tun66 encapsulation 'gre' set interfaces tunnel tun66 ip adjust-mss 'clamp-mss-to-pmtu' set interfaces tunnel tun66 multicast 'enable' set interfaces tunnel tun66 parameters ip key '1' set interfaces tunnel tun66 source-address '10.22.11.3' set interfaces tunnel tun66 source-interface 'eth0.66' set interfaces tunnel tun67 address '172.16.12.3/24' set interfaces tunnel tun67 encapsulation 'gre' set interfaces tunnel tun67 ip adjust-mss 'clamp-mss-to-pmtu' set interfaces tunnel tun67 multicast 'enable' set interfaces tunnel tun67 parameters ip key '1' set interfaces tunnel tun67 source-address '10.22.12.3' set interfaces tunnel tun67 source-interface 'eth0.67' set protocols nhrp tunnel tun66 cisco-authentication 'qwerty123' set protocols nhrp tunnel tun66 map 172.16.11.1/24 nbma-address '10.22.11.1' set protocols nhrp tunnel tun66 map 172.16.11.1/24 register set protocols nhrp tunnel tun66 multicast 'nhs' set protocols nhrp tunnel tun66 redirect set protocols nhrp tunnel tun66 shortcut set protocols nhrp tunnel tun67 cisco-authentication 'qwerty123' set protocols nhrp tunnel tun67 map 172.16.12.1/24 nbma-address '10.22.12.1' set protocols nhrp tunnel tun67 map 172.16.12.1/24 register set protocols nhrp tunnel tun67 multicast 'nhs' set protocols nhrp tunnel tun67 redirect set protocols nhrp tunnel tun67 shortcut set protocols ospf area 10 area-type nssa set protocols ospf interface eth0.100 area '10' set protocols ospf interface tun66 area '10' set protocols ospf interface tun66 priority '0' set protocols ospf interface tun67 area '10' set protocols ospf interface tun67 priority '0' set protocols ospf parameters abr-type 'cisco' set protocols static route 10.11.0.10/32 next-hop 10.5.0.1 distance '1' set service dhcp-server failover name 'ge_fovert' set service dhcp-server failover remote '10.8.2.2' set service dhcp-server failover source-address '10.8.2.3' set service dhcp-server failover status 'secondary' set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 default-router '10.8.2.1' set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 domain-name 'galaxy-net.ml' set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 enable-failover set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 name-server '10.8.1.66' set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 name-server '10.8.1.67' set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 range 0 start '10.8.2.128' set service dhcp-server shared-network-name dsdc-net subnet 10.8.2.0/24 range 0 stop '10.8.2.254' set service ssh set system domain-name 'galaxy-net.ml' set system host-name 'dsdc02' set system time-zone 'Europe/Moscow' set vpn ipsec esp-group esp_s1 compression 'disable' set vpn ipsec esp-group esp_s1 lifetime '1800' set vpn ipsec esp-group esp_s1 mode 'transport' set vpn ipsec esp-group esp_s1 pfs 'dh-group2' set vpn ipsec esp-group esp_s1 proposal 1 encryption 'aes256' set vpn ipsec esp-group esp_s1 proposal 1 hash 'sha1' set vpn ipsec esp-group esp_s1 proposal 2 encryption '3des' set vpn ipsec esp-group esp_s1 proposal 2 hash 'md5' set vpn ipsec ike-group ike_s1 close-action 'none' set vpn ipsec ike-group ike_s1 ikev2-reauth 'no' set vpn ipsec ike-group ike_s1 key-exchange 'ikev1' set vpn ipsec ike-group ike_s1 lifetime '3600' set vpn ipsec ike-group ike_s1 proposal 1 dh-group '2' set vpn ipsec ike-group ike_s1 proposal 1 encryption 'aes256' set vpn ipsec ike-group ike_s1 proposal 1 hash 'sha1' set vpn ipsec ike-group ike_s1 proposal 2 dh-group '2' set vpn ipsec ike-group ike_s1 proposal 2 encryption 'aes128' set vpn ipsec ike-group ike_s1 proposal 2 hash 'sha1' set vpn ipsec interface 'eth0.66' set vpn ipsec interface 'eth0.67' set vpn ipsec profile dm66 authentication mode 'pre-shared-secret' set vpn ipsec profile dm66 authentication pre-shared-secret 'qwerty123' set vpn ipsec profile dm66 bind tunnel 'tun66' set vpn ipsec profile dm66 esp-group 'esp_s1' set vpn ipsec profile dm66 ike-group 'ike_s1' set vpn ipsec profile dm67 authentication mode 'pre-shared-secret' set vpn ipsec profile dm67 authentication pre-shared-secret 'qwerty123' set vpn ipsec profile dm67 bind tunnel 'tun67' set vpn ipsec profile dm67 esp-group 'esp_s1' set vpn ipsec profile dm67 ike-group 'ike_s1'