config interface range ethernet e(1-24) port storm-control broadcast enable port storm-control include-multicast exit no spanning-tree interface range ethernet g(1-4) switchport mode general exit vlan database vlan 2,4,50 exit interface range ethernet g(1-4) switchport general allowed vlan add 2 exit interface range ethernet g(1-4) switchport general allowed vlan add 4 exit interface range ethernet e(1-24) switchport access vlan 4 exit interface range ethernet g(1-4) switchport general allowed vlan add 50 exit interface vlan 2 name manag exit interface vlan 4 name fiziki exit interface vlan 50 name iptv exit interface range ethernet e(1-24) switchport access multicast-tv vlan 50 exit ip igmp snooping interface vlan 50 ip igmp snooping exit interface vlan 50 ip igmp snooping querier enable exit interface range ethernet e(1-24) loopback-detection enable exit loopback-detection enable interface vlan 2 ip address 192.168.1.80 255.255.240.0 exit ip access-list securityACL deny-udp any 67 any any deny-tcp any any any 42 deny-tcp any any any 135 deny-tcp any any any 139 deny-tcp any any any 369 deny-tcp any any any 445 deny-tcp any any any 593 deny-tcp any any any 2869 deny-tcp any any any 5000 deny-udp any any any 42 deny-udp any any any 137 deny-udp any any any 138 deny-udp any any any 445 deny-udp any any any 1025 permit udp any any permit igmp any any permit icmp any any permit gre any any permit tcp any any exit interface range ethernet e(1-24) service-acl input securityACL exit hostname SW_1-80 aaa authentication enable default line aaa authentication login default line line telnet password <password> exit line console password <password> exit username admin password <password> level 15 snmp-server community <c0mmun1t1> rw view Default snmp-server community <publicpass> ro view Default lldp enable clock timezone +4 zone MSK clock source sntp sntp unicast client enable sntp unicast client poll sntp server 192.168.1.254 poll exit copy running-config startup-config