! service password-encryption ! no banner motd ! username manager privilege 15 password 8 xxxxx ! ! ssh server allow-users manager service ssh ! no service telnet ! service http ! no clock timezone ! snmp-server ! ! radius-server host xxxxx auth-port xxxxx key xxxxx radius-server host xxxxx auth-port xxxxx key xxxxx aaa group server radius singleid server xxxxx auth-port xxxxx server xxxxx auth-port xxxxx ! ! aaa authentication enable default local aaa authentication login default local aaa authentication dot1x default group singleid aaa authentication auth-mac default group singleid ! ! ! ! ! loop-protection loop-detect ldf-interval 1 fast-block ! ip domain-lookup ! ! ! no service dhcp-server ! spanning-tree mode rstp ! service power-inline auth-mac username unformatted lower-case auth radius send nas-identifier allied-telesis_networkswitch lacp global-passive-mode enable no spanning-tree rstp enable ! vlan database vlan 101 state enable ! interface port1.0.1-1.0.16 switchport switchport mode access auth-mac enable dot1x port-control auto auth timeout connect-timeout 120 auth reauthentication auth timeout reauth-period 86400 auth dynamic-vlan-creation spanning-tree edgeport ! interface port1.0.17-1.0.23 switchport switchport mode access ! interface port1.0.24 switchport switchport mode trunk switchport trunk allowed vlan add 101 ! interface port1.0.25-1.0.28 switchport switchport mode access ! interface vlan1 ip address dhcp ipv6 enable ipv6 address dhcp ip dhcp-client vendor-identifying-class ip dhcp-client request vendor-identifying-specific ! line con 0 line vty 0 7 ! end