Default configuration
When you boot up the device in autonomous mode, the device looks for a default file name-the PID of the device. For example, the Cisco C8231-G2 Secure Routers look for a file named C8231-G2.cfg. The device looks for this file before finding the standard files-router-confg or the ciscortr.cfg.
The device looks for the C8231-G2.cfg file in the bootflash. If the file is not found in the bootflash, the device then looks for the standard files-router-confg and ciscortr.cfg. If none of the files are found, the device then checks for any inserted USB that may have stored these files in the same particular order.
![]() Note |
If there is a configuration file with the PID as its name in an inserted USB, but one of the standard files are in bootflash, the system finds the standard file for use. |
Use the show running-config command to view the initial configuration, as shown in the following example:
Router#show running-config
Current configuration : 5480 bytes
!
! Last configuration change at 08:30:36 UTC Mon Aug 11 2025 by admin
!
version 17.18
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
service internal
platform qfp utilization monitor load 80
!
hostname arata-ethp3
!
boot-start-marker
boot-end-marker
!
!
vrf definition 1
!
address-family ipv4
exit-address-family
!
address-family ipv6
exit-address-family
!
vrf definition 65500
!
address-family ipv4
exit-address-family
!
vrf definition 65528
description SIG VRF
!
address-family ipv4
exit-address-family
!
vrf definition 65529
description Speedtest VRF
!
address-family ipv4
exit-address-family
!
vrf definition Mgmt-intf
!
address-family ipv4
exit-address-family
!
address-family ipv6
exit-address-family
!
no logging queue-limit
no logging rate-limit
aaa new-model
!
!
aaa authentication login default local
aaa authorization console
aaa authorization exec default
local
!
!
aaa session-id common
no process cpu extended history
!
ip name-server vrf Mgmt-intf 64.104.76.247
ip domain lookup vrf Mgmt-intf source-interface GigabitEthernet0
!
!
!
!
!
!
!
!
!
ip dhcp pool PnPWebUI1
vrf 65500
host 192.168.1.3 255.255.255.0
client-identifier 0077.6562.7569
dns-server 192.168.1.1
!
!
!
login on-success log
!
!
!
!
!
!
fhrp version vrrp v3
ipv6 unicast-routing
ipv6 rip vrf-mode enable
!
!
subscriber
templating
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
crypto pki trustpoint SLA-TrustPoint
enrollment pkcs12
revocation-check crl
hash sha512
!
crypto pki trustpoint TP-self-signed-363619999
enrollment selfsigned
revocation-check crl
rsakeypair TP-self-signed-363619999
hash sha512
!
!
crypto pki certificate chain SLA-TrustPoint
crypto pki certificate chain TP-self-signed-363619999
!
!
!
!
!
!
!
!
!
diagnostic bootup level minimal
!
license udi pid C8231-G2 sn FGL2903L28C
license accept end user agreement
license smart transport smart
memory free low-watermark processor 63122
!
spanning-tree extend system-id
!
!
!
username admin privilege 15 secret 9 $9$gIZ/Nyi9zyL6t.$wa0OV5z.ihFvtF9vDrUzGhYtb.T/mpAevEzdlxSe4rY
!
redundancy
mode none
!
!
!
!
!
no crypto ikev2 diagnose error
!
!
vlan internal allocation policy ascending
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface Loopback65528
vrf forwarding 65528
ip address 192.168.1.1 255.255.255.255
!
interface Loopback65529
vrf forwarding 65529
no ip address
!
interface GigabitEthernet0/0/0
!
interface GigabitEthernet0/0/1
!
interface GigabitEthernet0/0/2
!
interface GigabitEthernet0/0/3
!
interface TwoGigabitEthernet0/0/4
no ip address
negotiation auto
!
interface TwoGigabitEthernet0/0/5
no ip address
no ip address
negotiation auto
!
interface TwoGigabitEthernet0/0/6
no ip address
negotiation auto
!
interface TwoGigabitEthernet0/0/7
no ip address
negotiation auto
!
interface TenGigabitEthernet0/0/8
no ip address
ipv6 dhcp client request vendor
ipv6 address dhcp
ipv6 address autoconfig
ipv6 enable
!
interface TenGigabitEthernet0/0/8.28
encapsulation dot1Q 28
vrf forwarding 1
ip address 28.1.1.1 255.255.255.0
!
interface TenGigabitEthernet0/0/9
no ip address
ipv6 dhcp client request vendor
ipv6 address dhcp
ipv6 address autoconfig
ipv6 enable
ethernet oam
!
interface TenGigabitEthernet0/0/9.14
encapsulation dot1Q 14
vrf forwarding 1
ip address 14.1.1.2 255.255.255.0
!
interface TenGigabitEthernet0/0/9.17
encapsulation dot1Q 17
vrf forwarding 1
ip address 17.1.1.2 255.255.255.0
ipv6 address 3FFE:501:FFFF:100:E6A4:1CFF:FE82:F665/64
ipv6 enable
!
interface GigabitEthernet0
vrf forwarding Mgmt-intf
ip address 10.124.24.214 255.255.255.0
negotiation auto
ipv6 address autoconfig
ipv6 enable
!
interface Vlan1
vrf forwarding 65500
ip address 192.168.1.1 255.255.255.0
!
ip forward-protocol nd
no ip forward-protocol udp
ip tftp source-interface GigabitEthernet0
ip http server
ip http authentication local
ip http secure-server
ip http client source-interface GigabitEthernet0
!
ip nat settings central-policy
ip nat settings gatekeeper-size 1024
ip nat route vrf 65528 0.0.0.0 0.0.0.0 global
no ip nat service all-algs
ip route vrf Mgmt-intf 0.0.0.0 0.0.0.0 10.124.24.1
ip route vrf 1 36.1.1.0 255.255.255.0 14.1.1.1
ip route vrf 1 36.1.1.0 255.255.255.0 17.1.1.1
no ip ssh bulk-mode
ip scp server enable
!
no ipv6 mld ssm-map query dns
tftp-server bootflash:c8kg2be-universalk9.17.18.01a.SPA.bin
!
!
!
!
!
control-plane
!
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
!
!
!
alias exec scp copy scp://tester:Login_999@10.75.28.59/images/ flash: vrf Mgmt-intf
!
line con 0
activation-character 13
stopbits 1
speed 115200
line aux 0
activation-character 13
line vty 0 4
privilege level 15
activation-character 13
transport input all
transport output all
line vty 5 15
privilege level 15
activation-character 13
transport input none
!
no network-clock revertive
ntp server vrf Mgmt-intf 10.64.58.51
!
!
!
!
!
!
!
netconf-yang
netconf-yang feature candidate-datastore
no netconf-yang ssh server algorithm encryption aes128-cbc
no netconf-yang ssh server algorithm encryption aes256-cbc
no netconf-yang ssh server algorithm hostkey ssh-rsa
no netconf-yang ssh server algorithm kex diffie-hellman-group14-sha1
no netconf-yang ssh server algorithm mac hmac-sha1
end