侧边栏壁纸
  • 累计撰写 208 篇文章
  • 累计创建 16 个标签
  • 累计收到 5 条评论

目 录CONTENT

文章目录

H3C核心交换机基本配置

Wake
2022-08-10 / 0 评论 / 0 点赞 / 996 阅读 / 1,074 字
[S5500V2-CORE]dis cur

#

version 7.1.070, Release 1118P01

#

sysname S5500V2-CORE

#

telnet server enable

#

irf mac-address persistent timer

irf auto-update enable

undo irf link-delay

irf member 1 priority 1

#

dhcp enable

#

lldp global enable

#

password-recovery enable

#

vlan 1

#

vlan 7

#

vlan 10

vlan 20

#

vlan 100 to 101

#

stp global enable

#

dhcp server ip-pool vlan20

gateway-list 172.17.2.1

network 172.17.2.0 mask 255.255.255.0

dns-list 114.114.114.114 202.96.134.133

#

dhcp server ip-pool vlan100

gateway-list 172.17.100.1

network 172.17.100.0 mask 255.255.255.0

dns-list 114.114.114.114 202.96.134.133

#

dhcp server ip-pool vlan101

gateway-list 172.17.101.1

network 172.17.101.0 mask 255.255.255.0

dns-list 114.114.114.114 202.96.134.133

#

interface NULL0

interface Vlan-interface7

ip address 202.96.1.2 255.255.255.248

#

interface Vlan-interface10

ip address 172.17.1.1 255.255.255.0

#

interface Vlan-interface20

ip address 172.17.2.1 255.255.255.0

#

interface Vlan-interface100

ip address 172.17.100.1 255.255.255.0

#

interface Vlan-interface101

ip address 172.17.101.1 255.255.255.0

#

interface FortyGigE1/0/33

port link-mode bridge

#

interface FortyGigE1/0/34

port link-mode bridge

#

interface GigabitEthernet1/0/1

port link-mode bridge

port access vlan 7

#

interface GigabitEthernet1/0/2

port link-mode bridge

#

interface GigabitEthernet1/0/3

port link-mode bridge

port access vlan 100

packet-filter 3001 inbound

#

interface GigabitEthernet1/0/4

port link-mode bridge

port access vlan 101

#

interface GigabitEthernet1/0/5

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/6

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/7

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/8

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/9

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/10

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/11

port link-mode bridge

port access vlan 10

#

interface GigabitEthernet1/0/12

port link-mode bridge

port access vlan 10

interface GigabitEthernet1/0/13

port link-mode bridge

#

interface GigabitEthernet1/0/14

port link-mode bridge

#

interface GigabitEthernet1/0/15

port link-mode bridge

#

interface GigabitEthernet1/0/16

port link-mode bridge

#

interface GigabitEthernet1/0/17

port link-mode bridge

#

interface GigabitEthernet1/0/18

port link-mode bridge

#

interface GigabitEthernet1/0/19

port link-mode bridge

port access vlan 20

#

interface GigabitEthernet1/0/20

port link-mode bridge

port access vlan 20

#

interface GigabitEthernet1/0/21

port link-mode bridge

port access vlan 20

#

interface GigabitEthernet1/0/22

port link-mode bridge

port access vlan 20

#

interface GigabitEthernet1/0/23

port link-mode bridge

#

interface GigabitEthernet1/0/24

port link-mode bridge

#

interface GigabitEthernet1/0/25

port link-mode bridge

combo enable copper

#

interface GigabitEthernet1/0/26

port link-mode bridge

combo enable copper

#

interface GigabitEthernet1/0/27

port link-mode bridge

combo enable copper

#

interface GigabitEthernet1/0/28

port link-mode bridge

combo enable copper

#

interface GigabitEthernet1/0/29

port link-mode bridge

#

interface GigabitEthernet1/0/30

port link-mode bridge

#

interface M-GigabitEthernet0/0/0

#

interface Ten-GigabitEthernet1/0/31

port link-mode bridge

#

interface Ten-GigabitEthernet1/0/32

port link-mode bridge

#

scheduler logfile size 16

#

line class aux

user-role network-admin

#

line class usb

user-role network-admin

#

line class vty

user-role network-operator

#

line aux 0

user-role network-admin

#

line vty 0 4

authentication-mode scheme

user-role network-operator

#

line vty 5 63

user-role network-operator

#

ip route-static 0.0.0.0 0 202.96.1.1

#

snmp-agent

snmp-agent local-engineid 800063A28038AD8EBCD8D100000001

snmp-agent community read public

snmp-agent sys-info contact xxxxxxx

snmp-agent sys-info location hunanchangsha

snmp-agent sys-info version all

#

acl number 3000

rule 0 deny ip source 172.17.101.0 0.0.0.255 destination 172.17.2.0 0.0.0.255

rule 5 deny ip source 172.17.101.0 0.0.0.255 destination 172.17.1.0 0.0.0.255

rule 10 deny ip source 172.17.101.0 0.0.0.255 destination 172.17.100.0 0.0.0.255

rule 15 permit ip

#

acl number 3001

rule 0 permit ip source 172.17.100.0 0.0.0.255 destination 172.17.1.3 0

rule 5 permit ip source 172.17.100.254 0

rule 15 permit ip source 172.17.100.0 0.0.0.255 destination 172.17.1.23 0

rule 20 deny ip source 172.17.100.0 0.0.0.255 destination 172.17.1.0 0.0.0.255

rule 25 deny ip source 172.17.100.0 0.0.0.255 destination 172.17.2.0 0.0.0.255

rule 30 deny ip source 172.17.100.0 0.0.0.255 destination 172.17.101.0 0.0.0.255

rule 35 permit ip

radius scheme system

user-name-format without-domain

#

domain system

#

domain default enable system

#

role name level-0

description Predefined level-0 role

#

role name level-1

description Predefined level-1 role

#

role name level-2

description Predefined level-2 role

#

role name level-3

description Predefined level-3 role

#

role name level-4

description Predefined level-4 role

#

role name level-5

description Predefined level-5 role

#

role name level-6

description Predefined level-6 role

#

role name level-7

description Predefined level-7 role

#

role name level-8

description Predefined level-8 role

#

role name level-9

description Predefined level-9 role

#

role name level-10

description Predefined level-10 role

#

role name level-11

description Predefined level-11 role

#

role name level-12

description Predefined level-12 role

role name level-13

description Predefined level-13 role

#

role name level-14

description Predefined level-14 role

#

user-group system

#

local-user admin class manage

password hash $h$6$CP7bQ3N+4LYXvql2$uQS8RgfljcjplFA0IbL7YIXYhowhu43my0bAEKLriGwESMA9MGnDFsFM9+aPfaUZEsdobba8BamQKy4gz2p37g==

service-type telnet

authorization-attribute user-role level-15

authorization-attribute user-role network-admin

authorization-attribute user-role network-operator

#

local-user anton class manage

password hash $h$6$xTKRBiavnuMNukDN$cfQgOqcFx1fvSvq8cBKaJHCUSIX6JOPf0D+yQo0B3UeUzJvqVxMpQTwY5ZEewIjkOVR4BfdWkKxF4Iy+v9BNsw==

service-type telnet

authorization-attribute user-role level-15

authorization-attribute user-role network-operator

#

return
0

评论区