华为S5700实战配置
Posted
tags:
篇首语:本文由小常识网(cha138.com)小编为大家整理,主要介绍了华为S5700实战配置相关的知识,希望对你有一定的参考价值。
公司S5700配置实例
[yundaHW]#dis cur
Software Version V200R003C00SPC300
#
sysname yundaHW
#
FTP server enable
#
vlan batch 10 20 30 40 50 60 70 90
#
undo nap slave enable
#
clock timezone BJ add 08:00:00
#
dhcp enable
#
ip pool vlan10ips
gateway-list 172.16.1.254
network 172.16.1.0 mask 255.255.255.0
excluded-ip-address 172.16.1.100 172.16.1.253
lease day 8 hour 0 minute 0
dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan20ips
gateway-list 172.16.2.254
network 172.16.2.0 mask 255.255.255.0
excluded-ip-address 172.16.2.100 172.16.2.253
lease day 8 hour 0 minute 0
dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan30ips
gateway-list 172.16.3.254
network 172.16.3.0 mask 255.255.255.0
excluded-ip-address 172.16.3.100 172.16.3.253
lease day 8 hour 0 minute 0
dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan40ips
gateway-list 172.16.4.254
network 172.16.4.0 mask 255.255.255.0
excluded-ip-address 172.16.4.100 172.16.4.253
lease day 8 hour 0 minute 0
dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan50ips
gateway-list 172.16.5.254
network 172.16.5.0 mask 255.255.255.0
excluded-ip-address 172.16.5.100 172.16.5.253
lease day 8 hour 0 minute 0
dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan60ips
gateway-list 172.16.6.254
network 172.16.6.0 mask 255.255.255.0
excluded-ip-address 172.16.6.100 172.16.6.253
lease day 8 hour 0 minute 0
dns-list 172.16.1.10 114.114.114.114
#
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user gl password cipher %@%@LJ"lGs<^G<CoYhGQKJ#"\&xk%@%@
local-user gl privilege level 3
local-user gl service-type telnet web http
local-user admin password cipher %@%@5d~9:M^ipCfL\iB)EQd>3Uwe%@%@
local-user admin service-type http
#
interface Vlanif10
ip address 172.16.1.254 255.255.255.0
dhcp select global
#
interface Vlanif20
ip address 172.16.2.254 255.255.255.0
dhcp select global
#
interface Vlanif30
ip address 172.16.3.254 255.255.255.0
dhcp select global
#
interface Vlanif40
ip address 172.16.4.254 255.255.255.0
dhcp select global
#
interface Vlanif50
ip address 172.16.5.254 255.255.255.0
dhcp select global
#
interface Vlanif60
ip address 172.16.6.254 255.255.255.0
dhcp select global
#
interface Vlanif70
ip address 192.168.0.3 255.255.255.0
#
interface Vlanif90
ip address 10.10.10.3 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
port link-type access
port default vlan 10
loopback-detect recovery-time 30
loopback-detect packet vlan 10
loopback-detect enable
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 10
loopback-detect recovery-time 30
loopback-detect packet vlan 10
loopback-detect enable
#
interface GigabitEthernet0/0/3
port link-type access
port default vlan 20
loopback-detect recovery-time 30
loopback-detect packet vlan 20
loopback-detect enable
#
interface GigabitEthernet0/0/4
port link-type access
port default vlan 20
loopback-detect recovery-time 30
loopback-detect packet vlan 20
loopback-detect enable
#
interface GigabitEthernet0/0/5
port link-type access
port default vlan 30
loopback-detect recovery-time 30
loopback-detect packet vlan 30
loopback-detect enable
#
interface GigabitEthernet0/0/6
port link-type access
port default vlan 30
loopback-detect recovery-time 30
loopback-detect packet vlan 30
loopback-detect enable
#
interface GigabitEthernet0/0/7
port link-type access
port default vlan 40
loopback-detect recovery-time 30
loopback-detect packet vlan 40
loopback-detect enable
#
interface GigabitEthernet0/0/8
port link-type access
port default vlan 40
loopback-detect recovery-time 30
loopback-detect packet vlan 40
loopback-detect enable
#
interface GigabitEthernet0/0/9
port link-type access
port default vlan 50
loopback-detect recovery-time 30
loopback-detect packet vlan 50
loopback-detect enable
#
interface GigabitEthernet0/0/10
port link-type access
port default vlan 50
loopback-detect recovery-time 30
loopback-detect packet vlan 50
loopback-detect enable
#
interface GigabitEthernet0/0/11
port link-type access
port default vlan 60
loopback-detect recovery-time 30
loopback-detect packet vlan 60
loopback-detect enable
#
interface GigabitEthernet0/0/12
port link-type access
port default vlan 60
loopback-detect recovery-time 30
loopback-detect packet vlan 60
loopback-detect enable
#
interface GigabitEthernet0/0/13
port link-type access
port default vlan 70
loopback-detect recovery-time 30
loopback-detect packet vlan 70
loopback-detect enable
#
interface GigabitEthernet0/0/14
port link-type access
port default vlan 70
loopback-detect recovery-time 30
loopback-detect packet vlan 70
loopback-detect enable
#
interface GigabitEthernet0/0/15
shutdown
#
interface GigabitEthernet0/0/16
shutdown
#
interface GigabitEthernet0/0/17
port link-type access
port default vlan 90
loopback-detect recovery-time 30
loopback-detect packet vlan 90
loopback-detect enable
#
interface GigabitEthernet0/0/18
port link-type access
port default vlan 90
loopback-detect recovery-time 30
loopback-detect packet vlan 90
loopback-detect enable
#
interface GigabitEthernet0/0/19
#
interface GigabitEthernet0/0/20
#
interface GigabitEthernet0/0/21
shutdown
#
interface GigabitEthernet0/0/22
#
interface GigabitEthernet0/0/23
port hybrid pvid vlan 20
port hybrid untagged vlan 10 20
#
interface GigabitEthernet0/0/24
port hybrid pvid vlan 20
port hybrid untagged vlan 10 20
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 10.10.10.1
#
snmp-agent
snmp-agent local-engineid 800007DB0368A8281865B0
snmp-agent community read cipher %$%$q1d}@[Jr6%"2{lG‘d`UTsus/,i!M~$mHa!b]5l-3TWa*us2s41=aFh{\.7:Q2wY0x1sSs;su%$%$
snmp-agent sys-info version all
snmp-agent target-host trap address udp-domain 10.10.10.2 params securityname cipher %@%@=NfaA~>OjM$ZK&%=n##OsvYc%@%@ v2c
snmp-agent trap enable
#
user-interface con 0
authentication-mode password
set authentication password cipher %@%@Zf6|Jy!kJ-Bk74*)*(PM,,vngu^WD{qyjKBxfkYe>\+),vq,%@%@
user-interface vty 0 4
authentication-mode aaa
idle-timeout 20 0
user-interface vty 16 20
#
port-group vlan10
group-member GigabitEthernet0/0/1
group-member GigabitEthernet0/0/2
#
port-group vlan20
group-member GigabitEthernet0/0/3
group-member GigabitEthernet0/0/4
#
port-group vlan30
group-member GigabitEthernet0/0/5
group-member GigabitEthernet0/0/6
#
port-group vlan40
group-member GigabitEthernet0/0/7
group-member GigabitEthernet0/0/8
#
port-group vlan50
group-member GigabitEthernet0/0/9
group-member GigabitEthernet0/0/10
#
port-group vlan60
group-member GigabitEthernet0/0/11
group-member GigabitEthernet0/0/12
#
port-group vlan70call
group-member GigabitEthernet0/0/13
group-member GigabitEthernet0/0/14
#
port-group vlan90toac
group-member GigabitEthernet0/0/17
group-member GigabitEthernet0/0/18
#
return
以上是关于华为S5700实战配置的主要内容,如果未能解决你的问题,请参考以下文章
华为S5700配置端口镜像和华三S5120配置802.1X认证记录