思科4506路由器全网络配置方案
- 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
- 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
- 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。
思科4506全网络配置方案
1. 网络拓扑
2. 配置文档
中心机房配置2台Catalyst4506,互为冗余备份,通过一台PIX525防火墙连接互联网。
接入互换机配置Catalyst3750/3560,每台接入互换机配置2条TRUNK端口,别离连接到核心互换机。
整个网络部署9个Vlan,Vlan1为管理vlan,其余8个Vlan为用户Vlan。
每一个用户Vlan分派一个C类ip地址段,其中为网关,保留为手动ip配置,作为dhcp动态分派的Vlan用户利用。
设备名称管理ip备注
Sw4500-1
网管服务器
(1)主核心互换机Catalyst4506配置。
SW4500-1#
SW4500-1#wr t
Building configuration...
Current configuration : 9687 bytes
!
version
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service compress-config
!
hostname SW4500-1
!
boot-start-marker
boot system flash bootflash: secret cisco
!
no aaa new-model
ip subnet-zero
no ip domain-lookup
ip host fw host sw2 dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp pool vlan2
lease 0 8
!
ip dhcp pool vlan3
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan4
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan5
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan6
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan7
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan8
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan9
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan10
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan1
lease 0 8
!
!
!
!
power redundancy-mode redundant
no file verify auto
!
spanning-tree mode pvst
spanning-tree extend system-id spanning-tree vlan 1-10 priority 24576 !
vlan internal allocation policy ascending !
interface GigabitEthernet1/1
!
interface GigabitEthernet1/2
!
interface GigabitEthernet2/1 description LinkToSW4500-2 switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet2/2 switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet2/3 switchport mode trunk
!
interface GigabitEthernet2/4 switchport mode trunk
!
interface GigabitEthernet2/5 switchport mode trunk
!
interface GigabitEthernet2/6 switchport mode trunk
!
interface GigabitEthernet2/7 switchport mode trunk
!
interface GigabitEthernet2/8
!
interface GigabitEthernet2/9 switchport mode trunk
!
interface GigabitEthernet2/10 switchport mode trunk
!
interface GigabitEthernet2/11 switchport mode trunk
!
interface GigabitEthernet2/12 switchport mode trunk
!
interface GigabitEthernet2/13 switchport mode trunk
!
interface GigabitEthernet2/14 switchport mode trunk
!
interface GigabitEthernet2/15 switchport mode trunk
!
interface GigabitEthernet2/16 switchport mode trunk
!
interface GigabitEthernet2/17 switchport mode trunk
!
interface GigabitEthernet2/18 switchport mode trunk
!
interface GigabitEthernet3/1 description LinkToFirewall switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/2 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/3 description Cisco net manager switchport mode access spanning-tree portfast
interface GigabitEthernet3/4 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/5 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/6 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/7 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/8 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/9 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/10 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/11 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/12 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/13 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/14 switchport mode access spanning-tree portfast
!
switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/16 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/17 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/18 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/19 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/20 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/21 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/22 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/23 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/24 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/25 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/26
spanning-tree portfast
!
interface GigabitEthernet3/27 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/28 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/29 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/30 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/31 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/32 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/33
!
interface GigabitEthernet3/34
!
interface GigabitEthernet3/35
!
interface GigabitEthernet3/36
!
interface GigabitEthernet3/37
!
interface GigabitEthernet3/38
!
interface GigabitEthernet3/39
!
interface GigabitEthernet3/40
!
interface GigabitEthernet3/41 switchport trunk encapsulation dot1q
!
interface GigabitEthernet3/42
switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/43
switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/44
switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/45
switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/46
switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/47
switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/48
switchport trunk encapsulation dot1q switchport mode trunk
!
interface Vlan1
ip address standby 1 ip standby 1 preempt !
interface Vlan2
ip address standby 1 ip standby 1 preempt
!
interface Vlan3
ip address standby 1 ip standby 1 preempt
!
interface Vlan4
ip address standby 1 ip standby 1 preempt
!
interface Vlan5
ip address standby 1 ip standby 1 preempt
!
ip address standby 1 ip standby 1 preempt
!
interface Vlan7
ip address standby 1 ip standby 1 preempt
!
interface Vlan8
ip address standby 1 ip standby 1 preempt
!
interface Vlan9
ip address standby 1 ip standby 1 preempt
!
ip route 0.0.0.0 http server
!
!
!
snmp-server community public-nm RO
snmp-server community private-nm RW
snmp-server chassis-id
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart snmp-server enable traps tty
snmp-server enable traps fru-ctrl
snmp-server enable traps entity
snmp-server enable traps flash insertion removal
snmp-server enable traps cpu threshold
snmp-server enable traps vtp
snmp-server enable traps vlancreate
snmp-server enable traps vlandelete
snmp-server enable traps envmon fan shutdown supply temperature status
snmp-server enable traps port-security
snmp-server enable traps rf
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps hsrp
snmp-server enable traps ipmulticast
snmp-server enable traps mac-notification change move threshold
snmp-server enable traps pim neighbor-change rp-mapping-change invalid-pim-message snmp-server enable traps bridge newroot topologychange
snmp-server enable traps stpx inconsistency root-inconsistency loop-inconsistency snmp-server enable traps syslog
snmp-server enable traps vlan-membership
snmp-server host public-nm
!
control-plane
!
line con 0
stopbits 1
line vty 0 4
password cisco
login
!
end
SW4500-1# sh cdp nei
Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge
S - Switch, H - Host, I - IGMP, r - Repeater, P - Phone
Device ID Local Intrfce Holdtme Capability Platform Port ID
SW4500-2 Gig 2/1 136 R S I WS-C4506 Gig 2/1 bangonglou2 Gig 3/48 162 S I WS-C3750G Gig 1/0/23 bangonglou1 Gig 3/47 126 S I WS-C3750G Gig 1/0/23
SW4500-1#sw2
Trying sw2 Open
User Access Verification
Password:
SW4500-2>en
Password:
SW4500-2#wr t
Building configuration...
Current configuration : 9011 bytes
!
version
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service compress-config
!
hostname SW4500-2
!
boot-start-marker
boot system flash bootflash: secret 5 $1$qdQu$9POGVGQrtfz7hMOiRKf/k.
!
ip subnet-zero
no ip domain-lookup
ip host sw1 dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp excluded-address dhcp pool vlan2
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan3
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan4
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan5
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan6
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan7
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan8
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan9
network dns-server
default-router
lease 0 8
ip dhcp pool vlan10
network dns-server
default-router
lease 0 8
!
ip dhcp pool vlan1
network dns-server
default-router
lease 0 8
!
!
!
!
power redundancy-mode redundant
no file verify auto
!
spanning-tree mode pvst
spanning-tree extend system-id spanning-tree vlan 1-10 priority 28672 !
vlan internal allocation policy ascending !
interface GigabitEthernet1/1
!
interface GigabitEthernet1/2
!
interface GigabitEthernet2/1 description LINkToSW4500-1 switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet2/2
!
interface GigabitEthernet2/3
!
interface GigabitEthernet2/4
!
interface GigabitEthernet2/5
!
interface GigabitEthernet2/6
!
interface GigabitEthernet2/7
!
interface GigabitEthernet2/8
interface GigabitEthernet2/9
!
interface GigabitEthernet2/10 !
interface GigabitEthernet2/11 !
interface GigabitEthernet2/12 !
interface GigabitEthernet2/13 !
interface GigabitEthernet2/14 !
interface GigabitEthernet2/15 !
interface GigabitEthernet2/16 !
interface GigabitEthernet2/17 !
interface GigabitEthernet2/18 !
interface GigabitEthernet3/1 description LinkToFirewall switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/2 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/3 description Cisco net manager switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/4 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/5 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/6 switchport mode access
!
interface GigabitEthernet3/7 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/8 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/9 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/10 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/11 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/12 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/13 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/14 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/15 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/16 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/17 switchport mode access spanning-tree portfast
interface GigabitEthernet3/18 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/19 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/20 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/21 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/22 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/23 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/24 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/25 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/26 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/27 switchport mode access spanning-tree portfast
!
interface GigabitEthernet3/28 switchport mode access spanning-tree portfast
!
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/30 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/31 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/32 switchport mode access
spanning-tree portfast
!
interface GigabitEthernet3/33
!
interface GigabitEthernet3/34
!
interface GigabitEthernet3/35
!
interface GigabitEthernet3/36
!
interface GigabitEthernet3/37
!
interface GigabitEthernet3/38
!
interface GigabitEthernet3/39
!
interface GigabitEthernet3/40
!
interface GigabitEthernet3/41 switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet3/42
!
interface GigabitEthernet3/43
!
interface GigabitEthernet3/44
!
interface GigabitEthernet3/45
!
interface GigabitEthernet3/46
interface GigabitEthernet3/47
!
interface GigabitEthernet3/48
!
interface Vlan1
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan2
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan3
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan4
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan5
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan6
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan7
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan8
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
interface Vlan9
ip address standby 1 ip standby 1 priority 95 standby 1 preempt
!
ip route 0.0.0.0 http server
!
!
!
snmp-server community private-nm RW
snmp-server chassis-id
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps tty
snmp-server enable traps fru-ctrl
snmp-server enable traps entity
snmp-server enable traps flash insertion removal
snmp-server enable traps cpu threshold
snmp-server enable traps vtp
snmp-server enable traps vlancreate
snmp-server enable traps vlandelete
snmp-server enable traps envmon fan shutdown supply temperature status
snmp-server enable traps port-security
snmp-server enable traps rf
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps hsrp
snmp-server enable traps ipmulticast
snmp-server enable traps mac-notification change move threshold
snmp-server enable traps pim neighbor-change rp-mapping-change invalid-pim-message snmp-server enable traps bridge newroot topologychange
snmp-server enable traps stpx inconsistency root-inconsistency loop-inconsistency
snmp-server enable traps syslog
snmp-server enable traps vlan-membership
snmp-server host public-nm
!
control-plane
!
!
line con 0
stopbits 1
line vty 0 4
password cisco
login
!
end
SW4500-2# sh cdp nei
Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge
S - Switch, H - Host, I - IGMP, r - Repeater, P - Phone
Device ID Local Intrfce Holdtme Capability Platform Port ID
SW4500-1 Gig 2/1 167 R S I WS-C4506 Gig 2/1 bangonglou2 Gig 3/48 142 S I WS-C3750G Gig 1/0/24
SW4500-2#
SW4500-2#
SW4500-2#
SW4500-2#
SW4500-2#exit
[Connection to sw2 closed by foreign host]
SW4500-1#fw
Trying fw Open
User Access Verification
Password:
Type help or '?' for a list of available commands.
YMMK-FIREWALL> en
Password: *****
YMMK-FIREWALL# wr t
: Saved
:
PIX Version (4)
!
hostname YMMK-FIREWALL
domain-name
enable password cisco
passwd cisco
names
!
interface Ethernet0
nameif outside
security-level 0
ip address
!
interface Ethernet1
nameif inside
security-level 100
ip address
!
ftp mode passive
dns server-group DefaultDNS
domain-name
access-list intoout extended permit icmp any any
access-list intoout extended deny tcp any any eq 135 access-list intoout extended deny tcp any any eq netbios-ssn
access-list intoout extended deny tcp any any eq 1025
access-list intoout extended deny tcp any any eq 4444
access-list intoout extended deny tcp any any eq 5554
access-list intoout extended deny tcp any any eq 9996
access-list intoout extended deny tcp any any eq 69
access-list intoout extended deny tcp any any eq 1433
access-list intoout extended deny tcp any any eq 1434
access-list intoout extended permit ip any any
pager lines 24
mtu inside 1500
mtu outside 1500
no failover
icmp unreachable rate-limit 1 burst-size 1
icmp permit any inside
icmp permit any outside
asdm image flash:/
no asdm history enable
arp timeout 14400
global (outside) 1 interface
nat (inside) 1 (inside,outside) tcp interface 2741 1741 dns
access-group intoout in interface inside
route outside 0.0.0.0 1
route inside 1
route inside 1
route inside 1
route inside 1
route inside 1
route inside 1
route inside 1
route inside 1
route inside 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00 timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00 timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
dynamic-access-policy-record DfltAccessPolicy
aaa authentication ssh console LOCAL
snmp-server host inside community public-nm
no snmp-server location
no snmp-server contact
snmp-server community public-nm
snmp-server enable traps snmp authentication linkup linkdown coldstart
snmp-server enable traps syslog
crypto ipsec security-association lifetime kilobytes 4608000
telnet 0.0.0.0 inside
telnet timeout 5
ssh 0.0.0.0 outside
ssh timeout 20
console timeout 0
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
username cisco password 3q8ZgbRKJMLMsGri encrypted
!
class-map inspection_default
match default-inspection-traffic
!
!
policy-map type inspect dns preset_dns_map
parameters
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect netbios
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect sunrpc
inspect tftp
inspect sip
inspect xdmcp
!
service-policy global_policy global
prompt hostname context
Cryptochecksum:3cf0203d19fdb4ac1e58ce9fd4c4af44
: end
[OK]
YMMK-FIREWALL# sh route
Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area
* - candidate default, U - per-user static route, o - ODR
P - periodic downloaded static route
Gateway of last resort is to network 0.0.0.0
S [1/0] via inside
S [1/0] via inside
S [1/0] via inside
C is directly connected, inside
C is directly connected, outside
S [1/0] via inside
S [1/0] via inside
S [1/0] via inside
S [1/0] via inside
S [1/0] via inside
S [1/0] via inside
S* 0.0.0.0 [1/0] via outside
YMMK-FIREWALL# sh xlate
172 in use, 389 most used
PAT Global Local
PAT Global Local
PAT Global Local
PAT Global Local
PAT Global Local
…………
YMMK-FIREWALL#
$
YMMK-FIREWALL# exi
Logoff
[Connection to fw closed by foreign host]
SW4500-1#
SW4500-1#
SW4500-1#
SW4500-1# ... Open
User Access Verification
Password:
bangonglou1>en
Password:
bangonglou1#wr t
Building configuration...
Current configuration : 3815 bytes
!
version
no service pad
service timestamps debug uptime service timestamps log uptime
no service password-encryption
!
hostname bangonglou1
!
enable cisco
!
no aaa new-model
switch 1 provision ws-c3750g-24t system mtu routing 1500
ip subnet-zero
!
!
!
!
no file verify auto
spanning-tree mode pvst
spanning-tree extend system-id
!
vlan internal allocation policy ascending !
interface GigabitEthernet1/0/1 switchport access vlan 8
spanning-tree portfast
!
interface GigabitEthernet1/0/2 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/3
spanning-tree portfast
!
interface GigabitEthernet1/0/4 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/5 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/6 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/7 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/8 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/9 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/10 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/11 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/12 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/13 switchport access vlan 2 spanning-tree portfast
!
interface GigabitEthernet1/0/14 switchport access vlan 2
!
interface GigabitEthernet1/0/15 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/16 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/17 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/18 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/19 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/20 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/21 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/22 switchport access vlan 2
spanning-tree portfast
!
interface GigabitEthernet1/0/23 switchport trunk encapsulation dot1q switchport mode trunk
!
interface GigabitEthernet1/0/24 switchport trunk encapsulation dot1q switchport mode trunk
!
interface Vlan1
ip address default-gateway classless ip http server
snmp-server community public-nm RO
snmp-server community private-nm RW
snmp-server chassis-id
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart snmp-server enable traps tty
snmp-server enable traps cluster
snmp-server enable traps fru-ctrl
snmp-server enable traps entity
snmp-server enable traps cpu threshold
snmp-server enable traps power-ethernet group 1-9
snmp-server enable traps vtp
snmp-server enable traps vlancreate
snmp-server enable traps vlandelete
snmp-server enable traps flash insertion removal
snmp-server enable traps port-security
snmp-server enable traps envmon fan shutdown supply temperature status
snmp-server enable traps mac-notification
snmp-server enable traps stackwise
snmp-server enable traps license
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps hsrp
snmp-server enable traps rtr
snmp-server enable traps bridge newroot topologychange
snmp-server enable traps stpx inconsistency root-inconsistency loop-inconsistency snmp-server enable traps syslog
snmp-server enable traps vlan-membership
snmp-server host public-nm
!
control-plane
!
!
line con 0
line vty 0 4
password cisco
login
line vty 5 15
login
!
end
bangonglou1# exi
[Connection to closed by foreign host]
User Access Verification
Password:
bangonglou2>en
Password:
bangonglou2#wr t
Building configuration...
Current configuration : 4341 bytes
!
version
no service pad
service timestamps debug uptime service timestamps log uptime
no service password-encryption
!
hostname bangonglou2
!
enable secret cisco
!
no aaa new-model
switch 1 provision ws-c3750g-24t system mtu routing 1500
ip subnet-zero
!
!
!
!
no file verify auto
spanning-tree mode pvst
spanning-tree extend system-id
!
vlan internal allocation policy ascending !
interface GigabitEthernet1/0/1 switchport access vlan 3
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/2 switchport access vlan 3
switchport mode access
interface GigabitEthernet1/0/3 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/4 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/5 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/6 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/7 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/8 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/9 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/10 switchport access vlan 3 switchport mode access spanning-tree portfast
!
interface GigabitEthernet1/0/11 switchport access vlan 3 switchport mode access。