ひょんな事から NEC UNIVERGE IX2015 を入手 (正確には借り受け)できたので、インターネット接続ルータとして使用している。 最近はYahoo!オークションで どこぞの機関の棚ずれ品と思しきものが安価に入手できるので別途購入した。
! NEC Portable Internetwork Core Operating System Software ! IX Series IX2010 (magellan-sec) Software, Version 8.1.15, RELEASE SOFTWARE ! Compiled Mar 10-Mon-2008 13:11:22 JST #1 ! Current time Aug 03-Sun-2008 04:52:31 JST ! timezone +09 00 ! syslog ip host 218.219.x.y ! boot entry flash boot entry 218.219.x.y ix2010-boot-20.2-gate-ms-8.1.15.rap 0.0.0.0 10 ! ntp server 218.219.x.y ntp interval 3600 ! logging buffered 4096 logging subsystem all error logging timestamp timeofday ! ip route default FastEthernet0/1.1 ip access-list all-pass permit ip src any dest any ip access-list mynetwork deny ip src 218.219.x.y/29 dest any ip access-list nbt-block deny tcp src any sport any dest any dport eq 137 ip access-list nbt-block deny udp src any sport any dest any dport eq 137 ip access-list nbt-block deny udp src any sport any dest any dport eq 138 ip access-list nbt-block deny tcp src any sport any dest any dport eq 139 ip access-list nbt-block deny tcp src any sport any dest any dport eq 445 ip access-list nbt-block deny udp src any sport any dest any dport eq 445 ip access-list private-10 permit ip src 192.168.10.0/24 dest any ip access-list private-20 permit ip src 192.168.20.0/24 dest any ip access-list specialuse deny ip src 0.0.0.0/8 dest any ip access-list specialuse deny ip src 10.0.0.0/8 dest any ip access-list specialuse deny ip src 172.16.0.0/12 dest any ip access-list specialuse deny ip src 192.168.0.0/16 dest any ip access-list specialuse deny ip src 127.0.0.0/8 dest any ip access-list specialuse deny ip src 169.254.0.0/16 dest any ip access-list specialuse deny ip src 192.0.2.0/24 dest any ip access-list specialuse deny ip src 224.0.0.0/3 dest any ip access-list specialuse deny ip src 198.18.0.0/15 dest any ip filter forced-reassembly ip ufs-cache enable ! snmp-agent view private_view 1.3.6.1.4.1.119 snmp-agent ip enable snmp-agent ip community private view private_view snmp-agent ip community public ! ppp profile examplenet authentication myname fugahoge@example.jp authentication password fugahoge@example.jp PaSsWoRd1 ! device FastEthernet0/0 ! device FastEthernet0/1 ! device FastEthernet1/0 ! device BRI1/0 isdn switch-type hsd128k ! interface FastEthernet0/0.0 no ip address shutdown ! interface FastEthernet0/1.0 no ip address shutdown ! interface FastEthernet1/0.0 ip address 218.219.x.y/29 no shutdown ! interface BRI1/0.0 encapsulation ppp no auto-connect no ip address shutdown ! interface FastEthernet0/0.1 encapsulation dot1q 10 tpid 8100 auto-connect ip address 192.168.10.254/24 no shutdown ! interface FastEthernet0/0.2 encapsulation dot1q 20 tpid 8100 auto-connect ip address 192.168.20.254/24 no shutdown ! interface FastEthernet0/1.1 encapsulation pppoe auto-connect ppp binding examplenet ip unnumbered FastEthernet1/0.0 ip mtu 1454 ip tcp adjust-mss 1414 ip filter nbt-block 1 in suppress-logging ip filter specialuse 2 in ip filter mynetwork 3 in ip filter all-pass 65000 in suppress-logging ip filter nbt-block 1 out suppress-logging ip filter specialuse 2 out ip filter all-pass 65000 out suppress-logging no shutdown ! interface Loopback0.0 ip address 127.0.0.1/32 ! interface Null0.0 no ip address
IX2015 は、個人で使用するなら RTX1100, 小規模法人で使用するなら RTX1500 か Cisco1812J あたりが対抗馬となる機械といえるだろう。
借ていたときの借り先は IX2015 を Getplus から購入したとのことだが、 冒頭の誓約書など手配はしてくれなかったとのこと。