h3cmsr3020配置
- 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
- 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
- 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。
h3cmsr3020配置
*************************************************************** *************** * Copyright (c) 2004-2011 Hangzhou H3C Tech. Co., Ltd. All rights reserved. *
* Without the owner's prior written consent, *
* no decompiling or reverse-engineering shall be allowed. * *************************************************************** *************** Login authentication
Username:admin
Password:
system-v
System View: return to User View with Ctrl+Z.
[H3C]?
System view commands:
aaa Specify AAA configuration
acl Specify acl configuration information
acsei Specify ACSEI(a method for exchanging information
between ACFP client and ACFP server) configuration
information
archive Specify archive settings
arp Specify ARP configuration information
aspf-policy Specify ASPF(Application Specific Packet Filter) policy configuration information
atm Create A TM class
attack-defense Specify attack defense policy configuration information
bandwidth-based-sharing Specify bandwidth based load-sharing mode
bgp Border Gateway Protocol(BGP)
blacklist Specify blacklist configuration information
bridge Config Bridge set
clock Specify the system clock
command-alias Specify command alias
command-privilege Specify the command level
configuration Specify configuration settings
configure-user User currently editing the configuration
connection-limit Specify connection limit configuration information
controller Specify controller configuration view
copyright-info Copyright information configuration
cryptoengine Crypto engine
cut Cut connection
dar Specify DAR configuration information
delete Delete function
dhcp DHCP configuration subcommands
dialer DCC module
dialer-rule Create a dialer-rule
display Display current system information
dlsw Specify DLSw(Data Link Switching) configuration
information
dns Specify domain name system
domain Add domain or modify domain attributes
dot1x Specify 802.1X configuration information
error-diffusion Error packets diffusing in CE1/CT1 channels etofr Create a translation of an Ethernet interface to FR
interface
etoppp Create a translation of an Ethernet interface to PPP interface
execute Batch Command
file Specify file system configuration information firewall Specify firewall configuration information
flow-interval Set interval of interface statistic
fr Configure FR parameters
ftp Specify FTP configuration information gratuitous-arp-learning Gratuitous Arp learning function
gratuitous-arp-sending Sending gratuitous-arp packet when receiving
different sub-network arp packet function
header Specify the login banner
hotkey Specify hotkey configuration information hwtacacs Specify HWTACACS server
igmp Specify IGMP configuration information
ike Specify IKE(Internet Key Exchange) configuration
information
info-center Specify information center configuration information interface Specify the interface configuration view ip Specify IP configurations for the system
ipsec Specify IPSec(IP Security) configuration information ipv6 Enable IPv6 functionality
isdn Specify ISDN configuration information
job Schedule a system task
l2tp Specify L2TP(Layer Two Tunneling Protocol)
configuration information
l2tp-group Specify L2TP(Layer Two Tunneling Protocol) group
configuration information
l2tpmoreexam L2tp command group
local-user Specify local user configuration information
logfile Specify log file configuration
loopback-detection Detect if loopback exists
mac-address Configure MAC address
mib-style MIB style
mirroring-group Specify mirroring-group
mld Specify MLD configuration information
msdp Specify MSDP(Multicast Source Discovery Protocol)
configuration information
mtracert Trace route to multicast source
multicast Specify multicast configuration information
nat Specify NA T(Network Address Translation)
configuration information
naturemask-arp Specify Nature Mask Arp function
nqa Specify NQA (Network Quality Analyzer) configuration information
ntp-service Specify NTP(Network Time Protocol) configuration
information
ospf Open Shortest Path First (OSPF)
password-control Specify password control
patch Specify patch configuration information
pim Specify PIM(Protocol Independent Multicast)
configuration information
ping Ping function
pki Specify PKI module configuration information
policy-based-route Specify a policy based routing
port Specify Port characteristics
port-group Port group
port-security Specify port-security configuration information portal Portal protocol
ppp Specify PPP(the Point-to-Point Protocol)
configuration information
pppoe-server Specify PPPoE(PPP over Ethernet) server
configuration information
public-key Specify public-key module configuration information qos Command of QoS(Quality of Service) quit Exit from current command view
radius Specify RADIUS configuration information
return Exit to User View
rip Specify RIP(Routing Information Protocol)
configuration information
rmon Specify RMON
route-policy Route-policy
router Configure Router information
sampler Sampler feature
save Save current configuration
service Toggle service mode. By default it is off
sftp Specify SFTP service attribute
shutdown-interval ShutDown Detection
snmp-agent Specify SNMP(Simple Network Management Protocol)
configuration information
ssh Specify SSH (secure shell) configuration information standby Specify standby configuration information
stp Spanning tree protocol
super Specify super configuration information
sysname Specify the host name
system-failure System failure handling method
tcp Specify TCP(Transmission Control Protocol)
configuration information
telnet Specify TELNET configuration information
temperature-alarm Temperature alarm function
temperature-limit Set temperature limit
tftp Specify TFTP configuration information
tftp-server TFTP Server
time-range Specify time-range configuration information tracert Trace route function
track Specify track information
traffic Specify traffic configuration information
transceiver Transceiver information
translate Translation command between X.25 and TCP
tunnel Tunnel interface
udp-helper UDP HELPER module
undo Cancel current setting
user-group Specify user group configuration information user-interface Configure the user terminal interface
userlog Userlog feature
vlan Configure VLAN
voice Specify voice VLAN
vrrp Specify configuration information of VRRP
x25 X.25 protocol
x29 X.29 protocol
[H3C] disp cur
#
version 5.20, Release 2207P02, Basic
#
sysname H3C
#
firewall enable
#
nat address-group 1 10.183.2.1 10.183.2.1
#
domain default enable system
#
dns proxy enable
#
telnet server enable
#
dar p2p signature-file cfa0:/p2p_default.mtd
#
port-security enable
#
acl number 3000
rule 0 deny ip source 192.168.3.0 0.0.0.255 destination 128.0.0.0 0.0.63.255 rule 1 permit ip source 192.168.3.0 0.0.0.255 acl number 3001
rule 1 permit ip
#
vlan 1
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool allow3.0
network 192.168.3.0 mask 255.255.255.0
gateway-list 192.168.3.254
dns-list 208.67.220.220
#
dhcp server ip-pool allownet2.0
network 192.168.2.0 mask 255.255.255.0
gateway-list 192.168.2.254
dns-list 208.67.220.220 202.96.209.5
#
aspf-policy 1
detect HTTP aging-time 600
detect FTP aging-time 600
detect TCP aging-time 600
detect UDP aging-time 600
#
user-group system
group-attribute allow-guest
#
local-user admin
password cipher .4:N.F;VR@;Q=^Q`MAF4<1!! authorization-attribute level 3
service-type telnet
service-type web
#
interface Aux0
async mode flow
link-protocol ppp
#
interface Cellular0/0
async mode protocol
link-protocol ppp
#
interface V irtual-Ethernet0
#
interface NULL0
#
interface LoopBack0
#
interface GigabitEthernet0/0
port link-mode route
#
interface GigabitEthernet0/0.2
vlan-type dot1q vid 2
ip address 192.168.2.254 255.255.255.0 #
interface GigabitEthernet0/0.3
vlan-type dot1q vid 3
firewall packet-filter 3000 inbound
ip address 192.168.3.254 255.255.255.0 #
interface GigabitEthernet0/1
port link-mode route
nat outbound
ip address 128.0.10.172 255.255.192.0 #
interface GigabitEthernet6/0
port link-mode route
nat outbound static
nat outbound 3001 address-group 1
ip address 10.182.1.6 255.255.255.252 ip address 10.183.2.1 255.255.255.0 sub #
interface GigabitEthernet6/1
port link-mode route
#
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/1 128.0.1.251 ip route-static 10.183.1.0 255.255.255.0 10.182.1.5
#
dhcp server forbidden-ip 192.168.3.1 192.168.3.150
dhcp server forbidden-ip 192.168.2.1 192.168.2.150
dhcp server forbidden-ip 192.168.3.254
dhcp server forbidden-ip 192.168.2.254
#
dhcp enable
#
ssh server enable
#
nat static 192.168.2.208 10.183.5.11
nat static 192.168.2.245 10.183.5.12
nat static 192.168.2.246 10.183.5.13
#
load xml-configuration
#
user-interface con 0
user-interface tty 13
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
#
return
[H3C]。