H3C核心交换机S7506E网络维护手册讲课教案

合集下载

H3C_S7506E维护操作管理守则

H3C_S7506E维护操作管理守则

精心整理H3C_S7506E维护操作手册配置举例:1、配置设备主机名如:sysnameH3C_S7506E2、3如:4如:5如:6如:7如:authorization-attributelevel38、配置将用户名admin及密码abc应用于telnet登录验证如:service-typetelnet9、开启telnet如:telnetserverenable10、配置E0/0接口描述如:descriptionto_G1/0/1_1.1.1.111、配置E0/0接口IP地址(广域网口IP地址)如:ipaddress2.2.2.212、配置E0/0接口为全双工状态如:13如:14如:15如:16如:17如:18如:19、配置环回地址如:ipaddress3.3.3.25520、配置VLAN端口如:interfaceVlan-interface121、配置VLAN接口的描述如:descriptionServer22、配置VLAN端口IP地址如:ipaddress3.3.3.1.023创建备份组并配置虚拟IP地址如:vrrpvrid1virtual-ip3.3.3.3 24、配置交换机在备份组中的优先级如:25如:26如:27如:2829如:30如:area 0.0.0.1network0.0.0.3network1.1.1.00.0.0.25531、设置OSPF链路开销参考值10000 bandwidth-reference1000032、将该OSPF区域设置为完全末梢区如:stubno-summary33、OSPF的开销如:ospfcost2034、开启SNMP代理如:35如:36如:37如:38如:39如:40如:snmp-agenttrapqueue-size500 41、配置SNMP陷阱报文生存时间如:snmp-agenttraplife60042、配置远程登录接口如:user-interfacevty0443、配置远程登录使用用户名及密码验证。

最新H3C官方基本配置及网络维护培训ppt课件

最新H3C官方基本配置及网络维护培训ppt课件
• 在高级访问控制列表视图下,删除一条子规则
– undo rule rule-id [ source ] [ destination ] [ soureport ] [ destination-port ] [ precedence ] [ tos ] | [ dscp ] [ fragment ] [ time-range ]
配置ACL进行包过滤的步骤
• 综上所述,在System交换机上配置ACL进行包过滤的 步骤如下:
– 配置时间段(可选) – 定义访问控制列表(四种类型:基本、高
级、基于接口、基于二层和用户自定义) – 激活访问控制列表
访问控制列表配置举例一
要求配置高级ACL,禁止员工在工作日8:00~18:00的时间段内访问新浪 网站( 61.172.201.194 )
Intranet
访问控制列表ACL
对到达端口的数据包进行分类,并打上不同的动作标记
访问列表作用于交换机的所有端口 访问列表的主要用途:
包过滤 镜像 流量限制 流量统计 分配队列优先级
流分类 通常选择数据包的包头信息作为流分类项
2层流分类项
以太网帧承载的数据类型 源/目的MAC地址 以太网封装格式
访问控制列表配置举例二
配置防病毒ACL 1. 定义高级ACL 3000 [System] acl number 3000 [System -acl-adv-3000] rule 1 deny udp destination-port eq 335 [System -acl-adv-3000] rule 3 deny tcp source-port eq 3365 [System -acl-adv-3000] rule 4 deny udp source 61.22.3.0 0.0.0.255

S7506E三层交换机配置资料讲解

S7506E三层交换机配置资料讲解

***************************************************************** ************** Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd. All rights reserved. ** Without the owner's prior written consent, ** no decompiling or reverse-engineering shall be allowed. ****************************************************************** *************Login authenticationUsername:adminPassword:<7506E>di cur#version 5.20, Release 6305#sysname 7506E#domain default enable system#telnet server enable#ip ttl-expires enableip unreachables enable#port-security enable#loopback-detection enable#mirroring-group 1 localmirroring-group 2 local#switch-mode standard#acl number 3010description to UTM200rule 0 permit ip source 192.168.128.0 0.0.15.255 rule 1 permit ip source 192.168.160.0 0.0.31.255 acl number 3011rule 0 permit ip source 192.168.34.0 0.0.0.255 rule 1 permit ip source 192.168.37.0 0.0.0.255 rule 2 permit ip source 192.168.31.0 0.0.0.255 rule 3 permit ip source 192.168.39.0 0.0.0.255 rule 4 permit ip source 192.168.254.0 0.0.0.255 acl number 3500#vlan 1#vlan 2 to 2221#vlan 2222description wireless_guest#vlan 2223 to 2500#vlan 3000description test#vlan 3901description dianxin ap#vlan 3902description test#vlan 3985description dhcp for temp guest meetingsupervlansubvlan 36#vlan 3986description dianxin wireless supervlansubvlan 3901#vlan 3987description huisuo vlan 33 supervlansubvlan 33#vlan 3988description wirelesssupervlansubvlan 2222#vlan 3989supervlansubvlan 3 to 29#vlan 3990supervlansubvlan 1226 to 1250#vlan 3991supervlansubvlan 1200 to 1225#vlan 3992supervlansubvlan 100 to 111#vlan 3993supervlansubvlan 1032 to 1150#vlan 3994supervlansubvlan 911 to 1031#vlan 3995supervlansubvlan 791 to 910#vlan 3996supervlansubvlan 351 to 421 747 to 790#vlan 3997supervlansubvlan 231 to 350#vlan 3998supervlansubvlan 112 to 230#vlan 3999description to UTM200#vlan 4000 to 4001#ftth#domain systemaccess-limit disablestate activeidle-cut disableself-service-url disable#traffic classifier kefang operator andif-match acl 3010traffic classifier denyvlanclass operator andif-match acl 3500#traffic behavior kefangredirect next-hop 192.168.145.2traffic behavior dengvlanfilter deny#qos policy kefangclassifier kefang behavior kefangqos policy denyvlanclassifier denyvlanclass behavior dengvlan#dhcp server ip-pool 3985network 192.168.36.0 mask 255.255.255.0gateway-list 192.168.36.254dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 8#dhcp server ip-pool 3986network 192.168.160.0 mask 255.255.224.0 gateway-list 192.168.160.1dns-list 202.96.128.86 8.8.8.8 202.96.128.166 expired day 0 hour 2#dhcp server ip-pool 3987network 192.168.33.0 mask 255.255.255.0gateway-list 192.168.33.254dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 8#dhcp server ip-pool 3988network 192.168.142.0 mask 255.255.254.0gateway-list 192.168.142.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3989network 192.168.140.0 mask 255.255.254.0gateway-list 192.168.140.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3990network 192.168.138.0 mask 255.255.254.0gateway-list 192.168.138.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3991network 192.168.136.0 mask 255.255.254.0gateway-list 192.168.136.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3992network 192.168.134.0 mask 255.255.254.0gateway-list 192.168.134.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3993network 192.168.132.128 mask 255.255.255.128 gateway-list 192.168.132.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3994network 192.168.132.0 mask 255.255.255.128 gateway-list 192.168.132.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3995network 192.168.131.128 mask 255.255.255.128 gateway-list 192.168.131.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3996network 192.168.131.0 mask 255.255.255.128 gateway-list 192.168.131.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3997network 192.168.130.128 mask 255.255.255.128 gateway-list 192.168.130.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3998network 192.168.130.0 mask 255.255.255.128 gateway-list 192.168.130.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3999#local-user adminpassword cipher _PW\RO>8';4.[DN#`U3;6Q!!service-type telnetlevel 3#stp instance 0 root primarystp enable#monitor-link group 1#interface NULL0#interface Vlan-interface1ip address 192.168.39.2 255.255.255.0 #interface Vlan-interface2ip address 192.168.31.227 255.255.255.0 #interface Vlan-interface30ip address 192.168.30.254 255.255.255.0 #interface Vlan-interface32ip address 192.168.32.254 255.255.255.0 #interface Vlan-interface34ip address 192.168.34.254 255.255.255.0 #interface Vlan-interface35ip address 192.168.35.254 255.255.255.0 #interface Vlan-interface37ip address 192.168.37.254 255.255.255.0 #interface Vlan-interface38ip address 192.168.38.254 255.255.255.0 ##interface Vlan-interface3986 (分配网关)ip address 192.168.160.1 255.255.224.0local-proxy-arp enable#interface Vlan-interface3987ip address 192.168.33.254 255.255.255.0#interface Vlan-interface3988ip address 192.168.142.1 255.255.254.0#interface Vlan-interface3989ip address 192.168.140.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3990ip address 192.168.138.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3991ip address 192.168.136.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3992ip address 192.168.134.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3993ip address 192.168.132.129 255.255.255.128 local-proxy-arp enable#local-proxy-arp enable#interface Vlan-interface3995ip address 192.168.131.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3996ip address 192.168.131.1 255.255.255.128local-proxy-arp enable#interface Vlan-interface3997ip address 192.168.130.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3998ip address 192.168.130.1 255.255.255.128local-proxy-arp enable#interface Vlan-interface3999description to UTM200ip address 192.168.145.1 255.255.255.0#interface Vlan-interface4000description to f1000-sip address 192.168.254.1 255.255.255.0#interface Vlan-interface4001ip address 192.168.254.101 255.255.255.252 #interface GigabitEthernet2/0/1port link-type trunkport trunk permit vlan 1 to 3984 3999 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#port trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet3/0/1port access vlan 4000qos apply policy kefang inbound#interface GigabitEthernet3/0/2port link-type trunkundo port trunk permit vlan 1port trunk permit vlan 3 to 29 39 50 to 99 101 to 3984 4001 to 4094 port trunk pvid vlan 39#interface GigabitEthernet3/0/3 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/4 port access vlan 1227qos apply policy kefang inbound mirroring-group 2 monitor-port #interface GigabitEthernet3/0/5 port access vlan 3901qos apply policy kefang inbound #interface GigabitEthernet3/0/6 port access vlan 8#interface GigabitEthernet3/0/7 port access vlan 3999description to UTM-200_G 0/0 qos apply policy kefang inbound #interface GigabitEthernet3/0/8 port access vlan 8qos apply policy kefang inbound #interface GigabitEthernet3/0/9 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/10qos apply policy kefang inbound #interface GigabitEthernet3/0/11 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/12 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/13 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/14 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/15 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/16 port access vlan 2stp edged-port enableqos apply policy kefang inbound #stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/18 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/19 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/20 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/21 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/22 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/23 port access vlan 35stp edged-port enableqos apply policy kefang inboundstp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/25port access vlan 2stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/26port access vlan 2stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/27port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inboundmirroring-group 1 monitor-port#interface GigabitEthernet3/0/28port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/29port access vlan 29qos apply policy kefang inbound#interface GigabitEthernet3/0/30port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inboundqos apply policy kefang inbound #interface GigabitEthernet3/0/32 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/33 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/34 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/35 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/36 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/37 port access vlan 37qos apply policy kefang inbound #interface GigabitEthernet3/0/38 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/39#interface GigabitEthernet3/0/40 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/41 port access vlan 2stp disablestp loop-protectionqos apply policy kefang inbound #interface GigabitEthernet3/0/42 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/43 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/44 port access vlan 34qos apply policy kefang inbound #interface GigabitEthernet3/0/45 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/46 port access vlan 35qos apply policy kefang inbound #interface GigabitEthernet3/0/47port access vlan 34qos apply policy kefang inbound#interface GigabitEthernet4/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#port trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/14port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/15port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/16port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/17port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/18port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/19port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/20port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/21port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/22port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/23port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/24port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/25port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/26port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/27port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/28port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/29port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/30port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/31port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/32port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/33port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/34port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/35port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/36port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/37port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/38port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/39port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/40port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet4/0/41port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/42port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/43port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/44port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/45port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/46port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/47port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/48port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 loopback-detection enableqos apply policy kefang inbound#interface GigabitEthernet8/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/11port link-type trunkundo port trunk permit vlan 1port trunk permit vlan 3901qos apply policy kefang inboundmirroring-group 2 mirroring-port both#interface GigabitEthernet8/0/12port access vlan 30description 到集团综合楼qos apply policy kefang inbound#interface GigabitEthernet9/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface M-Ethernet0/0/0#interface Ten-GigabitEthernet5/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface Ten-GigabitEthernet5/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#route-policy kefang permit node 0if-match acl 3010apply ip-address next-hop 192.168.129.1#ip route-static 0.0.0.0 0.0.0.0 192.168.254.2ip route-static 10.0.0.0 255.255.255.0 192.168.30.253 ip route-static 10.0.18.0 255.255.255.0 192.168.30.253 ip route-static 10.0.24.0 255.255.255.0 192.168.30.253 ip route-static 10.0.25.0 255.255.255.0 192.168.30.253 ip route-static 10.0.29.0 255.255.255.0 192.168.30.253 ip route-static 10.0.97.0 255.255.255.0 192.168.30.253 ip route-static 10.10.0.0 255.255.0.0 192.168.30.253ip route-static 10.11.2.0 255.255.255.0 192.168.30.253 ip route-static 10.11.30.0 255.255.255.0 192.168.30.253 ip route-static 10.11.70.0 255.255.255.0 192.168.30.253 ip route-static 10.11.72.0 255.255.255.0 192.168.30.253ip route-static 10.12.41.0 255.255.255.0 192.168.30.253ip route-static 10.100.1.0 255.255.255.0 192.168.30.253ip route-static 116.6.69.101 255.255.255.255 192.168.30.253 ip route-static 172.16.1.0 255.255.255.0 61.144.43.216ip route-static 172.16.1.0 255.255.255.0 192.168.145.2ip route-static 192.168.0.0 255.255.255.0 192.168.30.253ip route-static 192.168.4.0 255.255.255.0 192.168.30.253ip route-static 192.168.5.0 255.255.255.0 192.168.30.253ip route-static 192.168.7.0 255.255.255.0 192.168.30.253ip route-static 192.168.8.0 255.255.255.0 192.168.30.253ip route-static 192.168.9.0 255.255.255.0 192.168.30.253ip route-static 192.168.19.0 255.255.255.0 192.168.30.253 ip route-static 192.168.21.0 255.255.255.0 192.168.30.253 ip route-static 192.168.22.0 255.255.255.0 192.168.30.253 ip route-static 192.168.23.0 255.255.255.0 192.168.30.253 ip route-static 192.168.24.0 255.255.255.0 192.168.30.253 ip route-static 192.168.26.0 255.255.255.0 192.168.30.253 ip route-static 192.168.28.0 255.255.255.0 192.168.30.253 ip route-static 192.168.29.0 255.255.255.0 192.168.30.253 ip route-static 192.168.41.0 255.255.255.0 192.168.30.253 ip route-static 192.168.46.0 255.255.255.0 192.168.30.253 ip route-static 192.168.68.0 255.255.255.0 192.168.30.253 ip route-static 192.168.76.0 255.255.255.0 192.168.30.253 ip route-static 192.168.82.0 255.255.255.0 192.168.30.253 ip route-static 192.168.84.0 255.255.255.0 192.168.30.253 ip route-static 192.168.86.0 255.255.255.0 192.168.30.253 ip route-static 192.168.88.0 255.255.255.0 192.168.30.253 ip route-static 192.168.91.0 255.255.255.0 192.168.30.253 ip route-static 192.168.96.0 255.255.255.0 192.168.30.253 ip route-static 192.168.103.0 255.255.255.0 192.168.30.253 ip route-static 192.168.202.0 255.255.255.0 192.168.30.253 ip route-static 192.168.253.0 255.255.255.0 192.168.253.1 ip route-static 192.168.254.4 255.255.255.252 192.168.254.2 #snmp-agentsnmp-agent local-engineid 800063A203000FE22EDA1Csnmp-agent community write q-ideasnmp-agent sys-info version allsnmp-agent target-host trap address udp-domain 192.168.34.120 udp-port 5000 params securityname q-idea#dhcp server detect#dhcp enable#user-interface aux 0idle-timeout 0 0user-interface vty 0 4acl 3011 inboundauthentication-mode schemeuser privilege level 3#return<7506E>。

H核心交换机E网络维护手册

H核心交换机E网络维护手册

网络设备维护手册第一章交换机操作手册此部分档使用本项目交换机型号如下:S7506E/S5120/S5130/WX3024E设备登陆Console登陆1、通过交换机Console 口进行本地登录是登录交换机的最基本的方式,也是配置通过其他方式登录交换机的基础。

连接示意图如下:2、把电脑和交换机连接好后,交换机上电开机,然后在电脑上进行如下操作,首先点击开始->程序->附件->通讯->超级终端打开后出现下面图示,输入名称,可以任意输入。

输入完成点击确定,出现下面界面,连接时使用选择COM口,一般台式机为COM1或COM2,而笔记本经过转接,可能会产生COM3或COM4,也有可能是其他的,你可以在下面的选择项里看到,选择完成后点击确定。

通过上面的选择,现在到了对端口属性进行设置,一般情况下没有进行过修改,默认只要点击还原为默认值就可以了,然后再单击确定。

之后敲回车即可,会出现H3C>提示符,说明已经与交换机连接,可以进行配置了,如果没有可以重启交换机或检查连接是否正确。

telnet登陆1、新建用户名密码local-user admin /admin为用户名password cipher h3c@123 /h3c@123为密码authorization-attribute level 3 /授权admin用户的等级为3,3为最高级service-type telnet /授权admin用户的登陆方式,可以为ftp、telnet等#telnet server enable /开启telnet服务使用电脑连接至交换机:交换机加电开机显示sarting......************************************************************** ** H3C S5510-24P BOOTROM, Version 142 ** **************************************************************Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd.Creation date: Mar 12 2008, 11:17:30CPU Clock Speed : 200MHzBUS Clock Speed : 33MHzMemory Size : 128MBThe switch Mac is: 000F-E2B1-BD60Press Ctrl-B to enter Boot Menu (10)Auto-booting...Decompress Image.................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ......................................................................................... ................................................OK!Starting ...******************************************************************************* Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd. All rights reserved. ** Without the owner's prior written consent, ** no decompiling or reverse-engineering shall be allowed. *******************************************************************************It will take a long time to get configuration file, please wait...Startup configuration file does not exist.User interface aux0 is available. <H3C>%Apr 26 12:03:53:611 2000 H3C SHELL/4/LOGIN: Console login from aux0<H3C><H3C>sys [H3C][H3C]sysname neiwang [neiwang-luser-admin]pa sin admin fg)safely Save current configuration safely<cr>[neiwang]save s[neiwang]save safely Are you sure? [Y/N]:yPlease input the file name(*.cfg)[fla](To leave the existing filename unchanged, press the enter key):Validating file. Please wait...Now saving current configuration to the device.Saving configuration fla. Please wait....................Configuration is saved to flash successfully.[neiwang]qu<neiwang>saveThe current configuration will be written to the device. Are you sure? [Y/N]:n<neiwang>sysSystem View: return to User View with Ctrl+Z.[neiwang]DHCP Snooping was enabled.[neiwang-GigabitEthernet1/0/15]qu[neiwang]vlan 26[neiwang-vlan26][neiwang-GigabitEthernet1/0/15]port access vlan 26[neiwang-GigabitEthernet1/0/15]qu[neiwang-GigabitEthernet1/0/25]port trunk permit all ? ......... Done.<cr>[neiwang-GigabitEthernet1/0/25]undo port link-type ......... Done.[neiwang-GigabitEthernet1/0/25]sp[neiwang-GigabitEthernet1/0/25]speed ?10 Specify speed of current port 10Mb/s100 Specify speed of current port 100Mb/s1000 Specify speed of current port 1000Mb/sauto Enable port's speed negotiation automatically[neiwang-GigabitEthernet1/0/25]speed au[neiwang-GigabitEthernet1/0/25]speed auto[neiwang-GigabitEthernet1/0/25]du[neiwang-GigabitEthernet1/0/25]duplex au[neiwang-GigabitEthernet1/0/25]duplex auto[neiwang-GigabitEthernet1/0/25]qu[neiwang]dhcp[neiwang]dhcp-snooping ?<cr>[neiwang]dhcp-snoopingDHCP Snooping has already been enabled.[neiwang]int g 1/0/25[neiwang-GigabitEthernet1/0/25]dhcp[neiwang-GigabitEthernet1/0/25]dhcp-snooping ?information Specify Option 82 servicetrust Trusted port[neiwang-GigabitEthernet1/0/25]dhcp-snooping tr[neiwang-GigabitEthernet1/0/25]dhcp-snooping trust ?<cr>[neiwang-GigabitEthernet1/0/25]dhcp-snooping trust[neiwang-GigabitEthernet1/0/25]qu[neiwang]dis valn ?INTEGER<1-4094> VLAN IDall All the VLANsdynamic Dynamic VLAN IDreserved Reserved VLAN IDstatic Static VLAN ID<cr>[neiwang]dis vlan all [neiwang]dis arp [neiwang]dis arp ?all Display static&dynamic ARP entrydynamic Display dynamic ARP entryinterface Display by Interfacesource-suppression Display ARP source suppressionstatic Display static ARP entrytimer Display ARP timervlan Display by VLANvpn-instance Display ARP entries by VPN name[neiwang]dis arp allType: S-Static D-DynamicIP Address MAC Address VLAN ID Interface Aging Type[neiwang]dis mac-a[neiwang]dis mac-address ? [neiwang]#interface Vlan-interface4000 //路由添加管理口vlan//路由添加管理地址IP#interface GigabitEthernet1/0/52 //回程路由#//指定要回跳的路由第二章无线维护手册设备登陆此步骤参考设备登陆设备常用操作注册APwlan ap AP1 model WA2620i-AGN /MODEL的型号一定要和实际一样/手工注册方式序列号一定要正确radio 1 /2620i是双频APservice-template 10 /调用服务模板radio enable /启用射频口radio 2service-template 10radio enable配置SSID名称wlan service-template 10 /新建服务模板10ssid TAXZFWZX /ssid为TAXZFWZXbind WLAN-ESS 10 /绑定无线接口10authentication-method open-system /以下为加密方案cipher-suite tkipsecurity-ie wpaservice-template enable /启用服务模板#interface WLAN-ESS10 /新建无线接口10,供服务模板调用port-security port-mode psk /以下为认证信息port-security tx-key-type 11keyport-security preshared-key pass-phrase si h3c@123。

HCSE维护操作手册

HCSE维护操作手册

H3C_S7506E维护操作手册配置举例:1、配置设备主机名如:sysname H3C_S7506E2、配置Router id如:router id 1.1.1.13、配置vlan 1的描述如:vlan 1description gateway4、删除默认用户admin如:undo local-user admin5、创建本地用户admin如:local-user admin6、配置ds用户的密码为密文加密的abc如:password cipher abc7、配置使用用户名admin及密码abc登录之后的用户级别为最高的3级如:authorization-attribute level 38、配置将用户名admin及密码abc应用于telnet登录验证如:service-type telnet9、开启telnet如:telnet server enable10、配置E0/0接口描述如:description to_G1/0/1_ 1.1.1.111、配置E0/0接口IP地址(广域网口IP地址)如:ip address 2.2.2.2 255.255.255.25212、配置E0/0接口为全双工状态如:duplex full13、配置E0/0接口速率为1000M如:speed 100014、配置E0/0接口的OSPF为点对点模式如:ospf network-type p2p15、开启interface Vlan-interface143接口的OSPF的bfd如:ospf bfd enable16、配置VLAN 1接口的描述如:description gateway17、配置interface Vlan-interface1接口的IP地址(局域网网关IP地址)如:ip address 3.3.3.252 255.255.255.018、配置环回接口0如:interface LoopBack019、配置环回地址如:ip address 3.3.3.252 255.255.255.25520、配置VLAN端口如:interface Vlan-interface121、配置VLAN接口的描述如:description Server22、配置VLAN端口IP地址如:ip address 3.3.3.1 255.255.255.023创建备份组并配置虚拟IP地址如:vrrp vrid 1 virtual-ip 3.3.3.324、配置交换机在备份组中的优先级如:vrrp vrid 1 priority 12025、配置备份组中交换机的抢占延迟时间如:vrrp vrid 1 preempt-mode timer delay 6026、配置链路聚合创建interface Bridge-Aggregation1如:interface Bridge-Aggregation127、配置interface Bridge-Aggregation1端口类型如:port link-type trunk28、配置MSTPstp region-configuration //进入MST域视图region-name abc //配置MST域的域名instance 1 vlan 1 to 2 3 //配置多生成树实例和VLAN的映射关系instance 2 vlan 4active region-configuration //激活MST域的配置stp instance 1 root secondary //配置MST1的根桥29、启用进程号为1的OSPF协议如:ospf 130、在相应area中发布广域网及局域网地址如:area 0.0.0.1network 3.3.3.0 0.0.0.3network 1.1.1.0 0.0.0.25531、设置OSPF链路开销参考值10000bandwidth-reference 1000032、将该OSPF区域设置为完全末梢区如:stub no-summary33、OSPF的开销如:ospf cost 2034、开启SNMP代理如:snmp-agent35、配置SNMP的只读属性为abc如:snmp-agent community read abc36、配置SNMP的读写属性为abc如:snmp-agent community write abc37、配置SNMP代理发送的信息的版本为适应所有版本如:snmp-agent sys-info version all38、开启SNMP陷阱报文如:snmp-agent trap enable39、配置SNMP陷阱报文发往5.5.5.5,且其安全名称为abc如:snmp-agent target-host trap address udp-domain 5.5.5.5 params securityname abc 40、配置SNMP队列长度如:snmp-agent trap queue-size 50041、配置SNMP陷阱报文生存时间如:snmp-agent trap life 60042、配置远程登录接口如:user-interface vty 0 443、配置远程登录使用用户名及密码验证。

网络设备维护手册

网络设备维护手册

网络运行维护文档网络部分设备日常操作手册11 月文档修订统计目录第1 章前言 (4)1.1 文档目的 (4)1.2 文档合用人员 (4)1.3 文档内容范畴 (4)1.4 有关文档 (4)第2 章网络构造 (5)2.1 拓扑图与网络构造描述 (5)第3 章路由器日常操作 (6)3.1 H3C 路由器日常操作 (6)3.1.1设备批示灯状态检查内容 (6)3.1.2路由器软硬件状态检查 (6)3.1.3路由器配备状态检查 (6)3.1.4路由器连接状态检查 (6)3.1.5路由器运行负载状态检查 (7)3.1.6路由器路由合同状态检查 (7)3.1.7路由器运行状态统计检查 (7)3.1.8路由器异常状态统计检查 (8)第4 章交换机日常操作 (9)4.1 H3C 交换机日常操作 (9)4.1.1设备批示灯状态检查内容 (9)4.1.2交换机软硬件状态检查 (9)4.1.3交换机配备状态检查 (9)4.1.4交换机连接状态检查 (10)4.1.5交换机运行负载状态检查 (10)4.1.6交换机运行状态统计检查 (10)4.1.7交换机异常状态统计检查 (10)第5 章超级终端安装及设立 (11)5.1.1超级终端安装及设立 (11)第1章前言1.1 文档目的本文档编写的重要目的是为网络运行维护提供参考指南。

1.2 文档合用人员本文档重要面对分行的网络人员,他们将通过参考本文档完毕网络日常操作内容。

1.3 文档内容范畴本文档内容基于H3C MSR 系列路由器、H3C7500E、防火墙板卡等系列产品,涵盖了分行网络维护的下列内容:●路由器、交换机、防火墙软硬件状态检查●路由器、交换机配备状态检查●路由器、交换机连接状态检查●路由器、交换机运行负载状态检查●路由器路由合同状态检查●路由器、交换机运行状态统计检查1.4 有关文档厂商配备手册/配备参考(具体见附件)第2章网络构造2.1 拓扑图与网络构造描述略2.1.1 网络拓扑图略第3章超级终端安装及设立3.1.1 超级终端安装及设立1、超级终端安装“超级终端”是Windows 9x、Windows NT 及Win2k 下的程序,是Microsoft 操作系统中的一种惯用组件。

H3C交换机操作手册

H3C交换机操作手册

H3C交换机操作手册目录H3C以太网交换机的基本操作 (3)1.1 知识准备 (3)1.2 操作目的 (3)1.3 网络拓扑 (4)1.4 配置步骤 (4)串口操作配置 (4)查看配置及日志操作 (7)设置密码操作 (8)1.5 验证方法 (9)H3C以太网交换机VLAN配置 (9)1.6 知识准备 (9)1.7 操作目的 (9)1.8 操作内容 (9)1.9 设备准备 (10)1.10 拓扑 (10)1.11 配置步骤 (10)1.12 验证方法 (11)H3C以太网交换机链路聚合配置 (11)1.13 知识准备 (11)1.14 操作目的 (11)1.15 操作内容 (11)1.16 设备准备 (11)1.17 网络拓扑 (12)1.18 配置步骤 (12)1.19 验证方法 (14)H3C以太网交换机STP配置 (14)1.22 操作内容 (14)1.23 设备准备 (14)1.24 网络拓扑 (15)1.25 配置步骤 (15)1.26 验证方法 (16)H3C以太网交换机VRRP配置 (17)1.27 知识准备 (17)1.28 操作目的 (17)1.29 操作内容 (17)1.30 设备准备 (17)1.31 网络拓扑 (18)1.32 配置步骤 (18)1.33 验证方法 (20)H3C以太网交换机镜像配置 (20)1.34 知识准备 (20)1.35 操作目的 (21)1.36 操作内容 (21)1.37 设备准备 (21)1.38 网络拓扑 (21)1.39 配置步骤 (22)1.40 验证方法 (22)H3C以太网交换机路由配置 (23)1.41 知识准备 (23)1.42 操作目的 (23)1.43 操作内容 (23)1.44 设备准备 (23)1.45 网络拓扑 (23)H3C以太网交换机ACL配置 (25)1.48 知识准备 (25)1.49 操作目的 (25)1.50 操作内容 (25)1.51 网路拓扑 (25)1.52 配置步骤 (26)1.53 验证方法 (26)实验一H3C以太网交换机的基本操作备注:H3C以太网交换机采用统一软件平台VRP,交换机命令完全相同。

H3C-S7506E维护操作手册说课材料

H3C-S7506E维护操作手册说课材料

H3C_S7506E维护操作手册配置举例:1、配置设备主机名如:sysname H3C_S7506E2、配置Router id如:router id 1.1.1.13、配置vlan 1的描述如:vlan 1description gateway4、删除默认用户admin如:undo local-user admin5、创建本地用户admin如:local-user admin6、配置ds用户的密码为密文加密的abc如:password cipher abc7、配置使用用户名admin及密码abc登录之后的用户级别为最高的3级如:authorization-attribute level 38、配置将用户名admin及密码abc应用于telnet登录验证如:service-type telnet9、开启telnet如:telnet server enable10、配置E0/0接口描述如:description to_G1/0/1_ 1.1.1.111、配置E0/0接口IP地址(广域网口IP地址)如:ip address 2.2.2.2 255.255.255.25212、配置E0/0接口为全双工状态如:duplex full13、配置E0/0接口速率为1000M如:speed 100014、配置E0/0接口的OSPF为点对点模式如:ospf network-type p2p15、开启interface Vlan-interface143接口的OSPF的bfd如:ospf bfd enable16、配置VLAN 1接口的描述如:description gateway17、配置interface Vlan-interface1接口的IP地址(局域网网关IP地址)如:ip address 3.3.3.252 255.255.255.018、配置环回接口0如:interface LoopBack019、配置环回地址如:ip address 3.3.3.252 255.255.255.25520、配置VLAN端口如:interface Vlan-interface121、配置VLAN接口的描述如:description Server22、配置VLAN端口IP地址如:ip address 3.3.3.1 255.255.255.023创建备份组并配置虚拟IP地址如:vrrp vrid 1 virtual-ip 3.3.3.324、配置交换机在备份组中的优先级如:vrrp vrid 1 priority 12025、配置备份组中交换机的抢占延迟时间如:vrrp vrid 1 preempt-mode timer delay 6026、配置链路聚合创建interface Bridge-Aggregation1如:interface Bridge-Aggregation127、配置interface Bridge-Aggregation1端口类型如:port link-type trunk28、配置MSTPstp region-configuration //进入MST域视图region-name abc //配置MST域的域名instance 1 vlan 1 to 2 3 //配置多生成树实例和VLAN的映射关系instance 2 vlan 4active region-configuration //激活MST域的配置stp instance 1 root secondary //配置MST1的根桥29、启用进程号为1的OSPF协议如:ospf 130、在相应area中发布广域网及局域网地址如:area 0.0.0.1network 3.3.3.0 0.0.0.3network 1.1.1.0 0.0.0.25531、设置OSPF链路开销参考值10000bandwidth-reference 1000032、将该OSPF区域设置为完全末梢区如:stub no-summary33、OSPF的开销如:ospf cost 2034、开启SNMP代理如:snmp-agent35、配置SNMP的只读属性为abc如:snmp-agent community read abc36、配置SNMP的读写属性为abc如:snmp-agent community write abc37、配置SNMP代理发送的信息的版本为适应所有版本如:snmp-agent sys-info version all38、开启SNMP陷阱报文如:snmp-agent trap enable39、配置SNMP陷阱报文发往5.5.5.5,且其安全名称为abc如:snmp-agent target-host trap address udp-domain 5.5.5.5 params securityname abc 40、配置SNMP队列长度如:snmp-agent trap queue-size 50041、配置SNMP陷阱报文生存时间如:snmp-agent trap life 60042、配置远程登录接口如:user-interface vty 0 443、配置远程登录使用用户名及密码验证。

H3C交换机操作手册(完整资料).doc

H3C交换机操作手册(完整资料).doc

【最新整理,下载后即可编辑】目录H3C以太网交换机的基本操作 (3)知识准备 (3)操作目的 (3)网络拓扑 (3)配置步骤 (3)串口操作配置 (3)查看配置及日志操作 (6)设置密码操作 (7)验证方法 (8)H3C以太网交换机VLAN配置 (8)知识准备 (8)操作目的 (8)操作内容 (8)设备准备 (8)拓扑 (8)配置步骤 (9)验证方法 (9)H3C以太网交换机链路聚合配置 (9)知识准备 (10)操作目的 (10)操作内容 (10)设备准备 (10)1.17 网络拓扑 (10)配置步骤 (10)验证方法 (12)H3C以太网交换机STP配置 (12)知识准备 (12)操作目的 (13)操作内容 (13)设备准备 (13)配置步骤 (13)验证方法 (15)H3C以太网交换机VRRP配置 (15)知识准备 (15)操作目的 (15)操作内容 (15)设备准备 (15)网络拓扑 (16)配置步骤 (16)验证方法 (18)H3C以太网交换机镜像配置 (18)知识准备 (18)操作目的 (19)操作内容 (19)设备准备 (19)网络拓扑 (19)配置步骤 (20)验证方法 (20)H3C以太网交换机路由配置 (20)知识准备 (20)操作目的 (21)操作内容 (21)设备准备 (21)网络拓扑 (21)1.46 配置步骤 (21)验证方法 (22)H3C以太网交换机ACL配置 (23)知识准备 (23)操作目的 (23)操作内容 (23)网路拓扑 (23)配置步骤 (23)验证方法 (24)实验一H3C以太网交换机的基本操作备注:H3C以太网交换机采用统一软件平台VRP,交换机命令完全相同。

1.1 知识准备了解交换机的基本知识,了解交换机的基本原理。

阅读H3C S7500系列以太网交换机操作手册。

1.2 操作目的通过以下举例学会通过串口操作交换机,并对交换机的端口进行基本配置;能够查看所配置的内容;学会如何重新设置密码,实验内容通过串口线连接到7506交换机,对7506交换机进行配置,配置7506交换机端口以及察看配置信息,设置7506交换机密码,包实验设备7506 一台PC 一台串口线一条平行网线一条1.3 网络拓扑1.4 配置步骤1.4.1 串口操作配置H3C 7506的调试配置一般是通过Console口连接的方式进行,Console口连接配置采用VT100终端方式,下面以Windows操作系统提供的超级终端工具配置为例进行说明。

S7506E三层交换机配置上课讲义

S7506E三层交换机配置上课讲义

***************************************************************** ************** Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd. All rights reserved. ** Without the owner's prior written consent, ** no decompiling or reverse-engineering shall be allowed. ****************************************************************** *************Login authenticationUsername:adminPassword:<7506E>di cur#version 5.20, Release 6305#sysname 7506E#domain default enable system#telnet server enable#ip ttl-expires enableip unreachables enable#port-security enable#loopback-detection enable#mirroring-group 1 localmirroring-group 2 local#switch-mode standard#acl number 3010description to UTM200rule 0 permit ip source 192.168.128.0 0.0.15.255 rule 1 permit ip source 192.168.160.0 0.0.31.255 acl number 3011rule 0 permit ip source 192.168.34.0 0.0.0.255 rule 1 permit ip source 192.168.37.0 0.0.0.255 rule 2 permit ip source 192.168.31.0 0.0.0.255 rule 3 permit ip source 192.168.39.0 0.0.0.255 rule 4 permit ip source 192.168.254.0 0.0.0.255 acl number 3500#vlan 1#vlan 2 to 2221#vlan 2222description wireless_guest#vlan 2223 to 2500#vlan 3000description test#vlan 3901description dianxin ap#vlan 3902#vlan 3985description dhcp for temp guest meeting supervlansubvlan 36#vlan 3986description dianxin wirelesssupervlansubvlan 3901#vlan 3987description huisuo vlan 33supervlansubvlan 33#vlan 3988description wirelesssupervlansubvlan 2222#vlan 3989supervlansubvlan 3 to 29#vlan 3990supervlansubvlan 1226 to 1250#vlan 3991subvlan 1200 to 1225#vlan 3992supervlansubvlan 100 to 111#vlan 3993supervlansubvlan 1032 to 1150#vlan 3994supervlansubvlan 911 to 1031#vlan 3995supervlansubvlan 791 to 910#vlan 3996supervlansubvlan 351 to 421 747 to 790 #vlan 3997supervlansubvlan 231 to 350#vlan 3998supervlansubvlan 112 to 230#description to UTM200#vlan 4000 to 4001#ftth#domain systemaccess-limit disablestate activeidle-cut disableself-service-url disable#traffic classifier kefang operator andif-match acl 3010traffic classifier denyvlanclass operator and if-match acl 3500#traffic behavior kefangredirect next-hop 192.168.145.2traffic behavior dengvlanfilter deny#qos policy kefangclassifier kefang behavior kefangqos policy denyvlanclassifier denyvlanclass behavior dengvlan #dhcp server ip-pool 3985network 192.168.36.0 mask 255.255.255.0 gateway-list 192.168.36.254expired day 0 hour 8#dhcp server ip-pool 3986network 192.168.160.0 mask 255.255.224.0 gateway-list 192.168.160.1dns-list 202.96.128.86 8.8.8.8 202.96.128.166 expired day 0 hour 2#dhcp server ip-pool 3987network 192.168.33.0 mask 255.255.255.0gateway-list 192.168.33.254dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 8#dhcp server ip-pool 3988network 192.168.142.0 mask 255.255.254.0 gateway-list 192.168.142.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3989network 192.168.140.0 mask 255.255.254.0 gateway-list 192.168.140.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3990network 192.168.138.0 mask 255.255.254.0 gateway-list 192.168.138.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8#dhcp server ip-pool 3991network 192.168.136.0 mask 255.255.254.0gateway-list 192.168.136.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3992network 192.168.134.0 mask 255.255.254.0gateway-list 192.168.134.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3993network 192.168.132.128 mask 255.255.255.128 gateway-list 192.168.132.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3994network 192.168.132.0 mask 255.255.255.128 gateway-list 192.168.132.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3995network 192.168.131.128 mask 255.255.255.128 gateway-list 192.168.131.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4dhcp server ip-pool 3996network 192.168.131.0 mask 255.255.255.128 gateway-list 192.168.131.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3997network 192.168.130.128 mask 255.255.255.128 gateway-list 192.168.130.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3998network 192.168.130.0 mask 255.255.255.128 gateway-list 192.168.130.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3999#local-user adminpassword cipher _PW\RO>8';4.[DN#`U3;6Q!!service-type telnetlevel 3#stp instance 0 root primarystp enable#monitor-link group 1##interface Vlan-interface1ip address 192.168.39.2 255.255.255.0 #interface Vlan-interface2ip address 192.168.31.227 255.255.255.0 #interface Vlan-interface30ip address 192.168.30.254 255.255.255.0 #interface Vlan-interface32ip address 192.168.32.254 255.255.255.0 #interface Vlan-interface34ip address 192.168.34.254 255.255.255.0 #interface Vlan-interface35ip address 192.168.35.254 255.255.255.0 #interface Vlan-interface37ip address 192.168.37.254 255.255.255.0 #interface Vlan-interface38ip address 192.168.38.254 255.255.255.0 #interface Vlan-interface3985ip address 192.168.36.254 255.255.255.0 #interface Vlan-interface3986 (分配网关)ip address 192.168.160.1 255.255.224.0local-proxy-arp enable#interface Vlan-interface3987ip address 192.168.33.254 255.255.255.0#interface Vlan-interface3988ip address 192.168.142.1 255.255.254.0#interface Vlan-interface3989ip address 192.168.140.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3990ip address 192.168.138.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3991ip address 192.168.136.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3992ip address 192.168.134.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3993ip address 192.168.132.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3994ip address 192.168.132.1 255.255.255.128#interface Vlan-interface3995ip address 192.168.131.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3996ip address 192.168.131.1 255.255.255.128local-proxy-arp enable#interface Vlan-interface3997ip address 192.168.130.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3998ip address 192.168.130.1 255.255.255.128local-proxy-arp enable#interface Vlan-interface3999description to UTM200ip address 192.168.145.1 255.255.255.0#interface Vlan-interface4000description to f1000-sip address 192.168.254.1 255.255.255.0#interface Vlan-interface4001ip address 192.168.254.101 255.255.255.252 #interface GigabitEthernet2/0/1port link-type trunkport trunk permit vlan 1 to 3984 3999 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet3/0/1port access vlan 4000qos apply policy kefang inbound#interface GigabitEthernet3/0/2port link-type trunkundo port trunk permit vlan 1port trunk permit vlan 3 to 29 39 50 to 99 101 to 3984 4001 to 4094 port trunk pvid vlan 39qos apply policy kefang inboundmirroring-group 1 mirroring-port both#interface GigabitEthernet3/0/3port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/4port access vlan 1227qos apply policy kefang inboundmirroring-group 2 monitor-port#interface GigabitEthernet3/0/5port access vlan 3901qos apply policy kefang inbound#interface GigabitEthernet3/0/6port access vlan 8#interface GigabitEthernet3/0/7port access vlan 3999description to UTM-200_G 0/0qos apply policy kefang inbound#interface GigabitEthernet3/0/8port access vlan 8qos apply policy kefang inbound#interface GigabitEthernet3/0/9 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/10 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/11 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/12 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/13 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/14 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/15 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/16 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/17 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/18 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/19 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/20 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/21port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/22 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/23 port access vlan 35stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/24 port access vlan 34stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/25 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/26 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/27 port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inboundmirroring-group 1 monitor-port#interface GigabitEthernet3/0/28port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/29port access vlan 29qos apply policy kefang inbound#interface GigabitEthernet3/0/30port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet3/0/31port access vlan 4000qos apply policy kefang inbound#interface GigabitEthernet3/0/32port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/33port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/34port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/35 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/36 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/37 port access vlan 37qos apply policy kefang inbound #interface GigabitEthernet3/0/38 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/39 port access vlan 37qos apply policy kefang inbound #interface GigabitEthernet3/0/40 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/41 port access vlan 2stp disablestp loop-protectionqos apply policy kefang inbound#interface GigabitEthernet3/0/42 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/43 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/44 port access vlan 34qos apply policy kefang inbound #interface GigabitEthernet3/0/45 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/46 port access vlan 35qos apply policy kefang inbound #interface GigabitEthernet3/0/47 port link-type trunkport trunk permit vlan 1 30qos apply policy kefang inbound #interface GigabitEthernet3/0/48 port access vlan 34qos apply policy kefang inbound #interface GigabitEthernet4/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/7port trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/13port link-type trunkqos apply policy kefang inbound#interface GigabitEthernet4/0/14port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/15port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/16port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/17port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/18port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/19port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094#interface GigabitEthernet4/0/20port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/21port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/22port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/23port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/24port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/25port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inboundinterface GigabitEthernet4/0/26port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/27port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/28port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/29port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/30port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/31port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/33port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/34port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/35port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/36port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/37port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/38port trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/39port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/40port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/41port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/42port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/43port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/44port link-type trunk#interface GigabitEthernet4/0/45port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/46port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/47port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/48port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 loopback-detection enableqos apply policy kefang inbound#interface GigabitEthernet8/0/2port link-type trunk#interface GigabitEthernet8/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094#interface GigabitEthernet8/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/11port link-type trunkundo port trunk permit vlan 1port trunk permit vlan 3901qos apply policy kefang inboundmirroring-group 2 mirroring-port both#interface GigabitEthernet8/0/12port access vlan 30description 到集团综合楼qos apply policy kefang inbound#interface GigabitEthernet9/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet9/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface M-Ethernet0/0/0#interface Ten-GigabitEthernet5/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface Ten-GigabitEthernet5/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#route-policy kefang permit node 0if-match acl 3010apply ip-address next-hop 192.168.129.1#ip route-static 0.0.0.0 0.0.0.0 192.168.254.2ip route-static 10.0.0.0 255.255.255.0 192.168.30.253 ip route-static 10.0.18.0 255.255.255.0 192.168.30.253 ip route-static 10.0.24.0 255.255.255.0 192.168.30.253 ip route-static 10.0.25.0 255.255.255.0 192.168.30.253 ip route-static 10.0.29.0 255.255.255.0 192.168.30.253 ip route-static 10.0.97.0 255.255.255.0 192.168.30.253 ip route-static 10.10.0.0 255.255.0.0 192.168.30.253ip route-static 10.11.2.0 255.255.255.0 192.168.30.253 ip route-static 10.11.30.0 255.255.255.0 192.168.30.253 ip route-static 10.11.70.0 255.255.255.0 192.168.30.253 ip route-static 10.11.72.0 255.255.255.0 192.168.30.253 ip route-static 10.12.41.0 255.255.255.0 192.168.30.253 ip route-static 10.100.1.0 255.255.255.0 192.168.30.253ip route-static 116.6.69.101 255.255.255.255 192.168.30.253 ip route-static 172.16.1.0 255.255.255.0 61.144.43.216ip route-static 172.16.1.0 255.255.255.0 192.168.145.2ip route-static 192.168.0.0 255.255.255.0 192.168.30.253ip route-static 192.168.4.0 255.255.255.0 192.168.30.253ip route-static 192.168.5.0 255.255.255.0 192.168.30.253ip route-static 192.168.7.0 255.255.255.0 192.168.30.253ip route-static 192.168.8.0 255.255.255.0 192.168.30.253ip route-static 192.168.9.0 255.255.255.0 192.168.30.253ip route-static 192.168.19.0 255.255.255.0 192.168.30.253 ip route-static 192.168.21.0 255.255.255.0 192.168.30.253 ip route-static 192.168.22.0 255.255.255.0 192.168.30.253 ip route-static 192.168.23.0 255.255.255.0 192.168.30.253 ip route-static 192.168.24.0 255.255.255.0 192.168.30.253 ip route-static 192.168.26.0 255.255.255.0 192.168.30.253 ip route-static 192.168.28.0 255.255.255.0 192.168.30.253 ip route-static 192.168.29.0 255.255.255.0 192.168.30.253 ip route-static 192.168.41.0 255.255.255.0 192.168.30.253 ip route-static 192.168.46.0 255.255.255.0 192.168.30.253 ip route-static 192.168.68.0 255.255.255.0 192.168.30.253 ip route-static 192.168.76.0 255.255.255.0 192.168.30.253 ip route-static 192.168.82.0 255.255.255.0 192.168.30.253 ip route-static 192.168.84.0 255.255.255.0 192.168.30.253 ip route-static 192.168.86.0 255.255.255.0 192.168.30.253 ip route-static 192.168.88.0 255.255.255.0 192.168.30.253 ip route-static 192.168.91.0 255.255.255.0 192.168.30.253 ip route-static 192.168.96.0 255.255.255.0 192.168.30.253 ip route-static 192.168.103.0 255.255.255.0 192.168.30.253 ip route-static 192.168.202.0 255.255.255.0 192.168.30.253 ip route-static 192.168.253.0 255.255.255.0 192.168.253.1 ip route-static 192.168.254.4 255.255.255.252 192.168.254.2。

交换机常用维护手册

交换机常用维护手册


软件升级 维护方法 配置保存 收集信息 常用命令
维护方法-console
通常的维护方法有四种,即console、telnet、SSH和网管软件进行维护,前 提交换机上设置好了管理的ip地址,并且维护端能ping通交换机的管理ip。 1、console方法 下面介绍如何用超级终端登录交换机的console口,在登录console口的时 候,需要准备好交换机设备中一根连接console口和RS232口的线缆。连接 好线缆后,进行如下的操作
软件升级-bootroom升级
1、重启交换机,首先运行BOOTROM程序,终端屏幕上显示如下信息: ****************************************** * * * H3C 3628 BOOTROM, Version 130 * * * ****************************************** Copyright(C) 2003-2007 by HUAWEI TECHNOLOGIES CO.,LTD. Creation Date : Sep 19 2007, 18:35:37 CPU Type : MIPS CPU Clock Speed : 150Mhz Memory Size : 64MB Press Ctrl-B to enter Boot Menu... 5 此时,键入<Ctrl+B>,系统将进入BOOT菜单
交换机的CMW版
Bootroom的版本为319
软件升级-CMW升级
使用dir来查看flash的空间是否足够,即: <H3C>dir 如果交换机的flash有足够容纳新版本的CMW软件,就可以将新版本的 CMW软件上传到交换机的flash中。如果交换机的flash没有足够的空间, 请先删除旧的CMW软件,即: <H3C>del /u xxxxxxx.bin (/u这个参数是彻底删除) 在确定了交换机的flash有足够的空间后,使用ftp方式来上传新版本的 CMW软件。

S7506E三层交换机配置

S7506E三层交换机配置

***************************************************************** ************** Copyright (c) 2004-2008Hangzhou H3C Tech.Co.,Ltd. All rights reserved. ** Without the owner's prior written consent,** no decompiling or reverse-engineering shall be allowed.****************************************************************** *************Login authenticationUsername:adminPassword:<7506E>di cur#version5.20,Release6305#sysname7506E#domain default enable system#telnet server enable#ip ttl-expires enableip unreachables enable#port-security enable#loopback-detection enable#mirroring-group1 localmirroring-group2 local#switch-mode standard#acl number3010description to UTM200rule0permit ip source 192.168.128.00.0.15.255 rule1permit ip source 192.168.160.00.0.31.255 acl number3011rule0permit ip source192.168.34.00.0.0.255 rule1permit ip source192.168.37.00.0.0.255 rule2permit ip source192.168.31.00.0.0.255 rule3permit ip source192.168.39.00.0.0.255 rule4permit ip source 192.168.254.00.0.0.255 acl number3500#vlan1#vlan2to2221#vlan 2222description wireless_guest#vlan 2223 to 2500#vlan 3000description test#vlan 3901description dianxin ap#vlan 3902description test#vlan 3985description dhcp for temp guest meeting supervlansubvlan 36#vlan 3986description dianxin wirelesssupervlansubvlan3901#vlan 3987description huisuo vlan33supervlansubvlan 33#vlan 3988description wirelesssupervlansubvlan2222#vlan 3989supervlansubvlan 3 to29#vlan 3990supervlansubvlan1226to1250#vlan 3991supervlansubvlan1200to1225#vlan 3992supervlansubvlan 100to111#vlan 3993supervlansubvlan1032to1150#vlan 3994supervlansubvlan 911to1031#vlan 3995supervlansubvlan 791to910#vlan 3996supervlansubvlan 351to421747 to790 #vlan 3997supervlansubvlan 231to350#vlan 3998supervlansubvlan 112to230#vlan 3999description to UTM200#vlan 4000 to 4001#ftth#domain systemaccess-limit disablestate activeidle-cut disableself-service-url disable#traffic classifier kefang operator andif-match acl 3010traffic classifier denyvlanclass operator andif-match acl 3500#traffic behavior kefangredirect next-hop192.168.145.2traffic behavior dengvlanfilter deny#qos policy kefangclassifier kefang behavior kefangqos policy denyvlanclassifier denyvlanclass behavior dengvlan#dhcp server ip-pool 3985network192.168.36.0mask 255.255.255.0 gateway-list192.168.36.254dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour8#dhcp server ip-pool 3986network192.168.160.0mask255.255.224.0 gateway-list192.168.160.1dns-list202.96.128.868.8.8.8 202.96.128.166 expired day0hour2#dhcp server ip-pool 3987network192.168.33.0mask 255.255.255.0 gateway-list192.168.33.254dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour8#dhcp server ip-pool 3988network192.168.142.0mask255.255.254.0 gateway-list192.168.142.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3989network192.168.140.0mask255.255.254.0 gateway-list192.168.140.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3990network192.168.138.0mask255.255.254.0 gateway-list192.168.138.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3991network192.168.136.0mask255.255.254.0 gateway-list192.168.136.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3992network192.168.134.0mask255.255.254.0 gateway-list192.168.134.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3993network192.168.132.128 mask255.255.255.128 gateway-list192.168.132.129dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3994network192.168.132.0mask255.255.255.128 gateway-list192.168.132.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3995network192.168.131.128 mask255.255.255.128 gateway-list192.168.131.129dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3996network192.168.131.0mask255.255.255.128 gateway-list192.168.131.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3997network192.168.130.128 mask255.255.255.128 gateway-list192.168.130.129dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3998network192.168.130.0mask255.255.255.128 gateway-list192.168.130.1dns-list202.96.128.86202.96.128.1668.8.8.8 expired day0hour4#dhcp server ip-pool 3999#local-user adminpassword cipher _PW\RO>8';4.[DN#`U3;6Q!! service-type telnetlevel3#stp instance 0root primarystp enable#monitor-link group1#interface NULL0#interface Vlan-interface1ip address192.168.39.2255.255.255.0#interface Vlan-interface2ip address192.168.31.227255.255.255.0#interface Vlan-interface30#interface Vlan-interface32ip address192.168.32.254255.255.255.0 #interface Vlan-interface34ip address192.168.34.254255.255.255.0 #interface Vlan-interface35ip address192.168.35.254255.255.255.0 #interface Vlan-interface37ip address192.168.37.254255.255.255.0 #interface Vlan-interface38ip address192.168.38.254255.255.255.0 #interface Vlan-interface3985ip address192.168.36.254255.255.255.0 #interface Vlan-interface3986(分配网关)ip address192.168.160.1255.255.224.0 local-proxy-arp enable#interface Vlan-interface3987ip address192.168.33.254255.255.255.0 #interface Vlan-interface3988ip address192.168.142.1255.255.254.0 #interface Vlan-interface3989local-proxy-arp enable#interface Vlan-interface3990ip address192.168.138.1255.255.254.0 local-proxy-arp enable#interface Vlan-interface3991ip address192.168.136.1255.255.254.0 local-proxy-arp enable#interface Vlan-interface3992ip address192.168.134.1255.255.254.0 local-proxy-arp enable#interface Vlan-interface3993ip address192.168.132.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3994ip address192.168.132.1255.255.255.128 local-proxy-arp enable#interface Vlan-interface3995ip address192.168.131.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3996ip address192.168.131.1255.255.255.128 local-proxy-arp enable#interface Vlan-interface3997ip address192.168.130.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3998ip address192.168.130.1255.255.255.128 local-proxy-arp enable#interface Vlan-interface3999description to UTM200ip address192.168.145.1255.255.255.0#interface Vlan-interface4000description to f1000-sip address192.168.254.1255.255.255.0#interface Vlan-interface4001ip address192.168.254.101 255.255.255.252 #interface GigabitEthernet2/0/1port link-type trunkport trunk permit vlan1 to 39843999to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/2port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/3port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/4port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/5port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/6port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/7port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/8port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/9port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/10port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface GigabitEthernet2/0/11port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface GigabitEthernet2/0/12port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface GigabitEthernet3/0/1port access vlan4000qos apply policy kefang inbound#interface GigabitEthernet3/0/2port link-type trunkundo port trunk permit vlan 1port trunk permit vlan3 to 293950to 99 101to 3984 4001 to4094 port trunk pvid vlan 39qos apply policy kefang inboundmirroring-group1 mirroring-port both#interface GigabitEthernet3/0/3port access vlan2qos apply policy kefang inbound#interface GigabitEthernet3/0/4port access vlan1227mirroring-group2 monitor-port #interface GigabitEthernet3/0/5 port access vlan3901qos apply policy kefang inbound #interface GigabitEthernet3/0/6 port access vlan8#interface GigabitEthernet3/0/7 port access vlan3999 description to UTM-200_G0/0 qos apply policy kefang inbound #interface GigabitEthernet3/0/8 port access vlan8qos apply policy kefang inbound #interface GigabitEthernet3/0/9 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/10 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/11 port access vlan2stp edged-port enable#interface GigabitEthernet3/0/12 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/13 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/14 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/15 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/16 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/17 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/18 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/19 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/20 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/21 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/22 port access vlan2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/23 port access vlan35stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/24 port access vlan34stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/25port access vlan2stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/26port access vlan2stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/27port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound mirroring-group1 monitor-port#interface GigabitEthernet3/0/28port access vlan2qos apply policy kefang inbound#interface GigabitEthernet3/0/29port access vlan29qos apply policy kefang inbound#interface GigabitEthernet3/0/30port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound##interface GigabitEthernet3/0/32 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/33 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/34 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/35 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/36 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/37 port access vlan37qos apply policy kefang inbound #interface GigabitEthernet3/0/38 port access vlan2qos apply policy kefang inbound ##interface GigabitEthernet3/0/40 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/41 port access vlan2stp disablestp loop-protectionqos apply policy kefang inbound #interface GigabitEthernet3/0/42 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/43 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/44 port access vlan34qos apply policy kefang inbound #interface GigabitEthernet3/0/45 port access vlan2qos apply policy kefang inbound #interface GigabitEthernet3/0/46 port access vlan35qos apply policy kefang inbound#interface GigabitEthernet3/0/47port link-type trunkport trunk permit vlan1 30qos apply policy kefang inbound#interface GigabitEthernet3/0/48port access vlan34qos apply policy kefang inbound#interface GigabitEthernet4/0/1port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/2port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/3port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/4port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/5port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/6port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/7port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/8port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/9port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/10port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/11port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface GigabitEthernet4/0/12port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/13port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/14port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/15port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/16port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/17port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/18port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/19port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/20port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/21port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/22port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/23port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/24port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/25port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/26port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/27port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/28port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/29port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/30port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/31port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/32port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/33port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/34port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/35port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/36port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/37port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/38port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/39port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/40port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/41port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/42port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/43port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface GigabitEthernet4/0/44port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/45port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/46port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/47port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/48port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/1port link-type trunkport trunk permit vlan1 to 39844000to4094 loopback-detection enableqos apply policy kefang inbound#interface GigabitEthernet8/0/2port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/3port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/4port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/5port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/6port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/7port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/8port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/9port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/10port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/11port link-type trunkundo port trunk permit vlan 1port trunk permit vlan3901qos apply policy kefang inboundmirroring-group2 mirroring-port both#interface GigabitEthernet8/0/12port access vlan30description到集团综合楼qos apply policy kefang inbound#interface GigabitEthernet9/0/1port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/2port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/3port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/4port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/5port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/6port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/7port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/8port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/9port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/10port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/11port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/12port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface M-Ethernet0/0/0#interface Ten-GigabitEthernet5/0/1port link-type trunkport trunk permit vlan1 to 39844000to4094 qos apply policy kefang inbound#interface Ten-GigabitEthernet5/0/2port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/1port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/2port link-type trunkport trunk permit vlan1 to 39844000to4094qos apply policy kefang inbound#route-policy kefang permit node0if-match acl 3010apply ip-address next-hop192.168.129.1#ip route-static0.0.0.00.0.0.0 192.168.254.2ip route-static10.0.0.0 255.255.255.0192.168.30.253ip route-static 10.0.18.0 255.255.255.0192.168.30.253ip route-static 10.0.24.0 255.255.255.0192.168.30.253ip route-static 10.0.25.0 255.255.255.0192.168.30.253ip route-static 10.0.29.0 255.255.255.0192.168.30.253ip route-static 10.0.97.0 255.255.255.0192.168.30.253ip route-static 10.10.0.0 255.255.0.0 192.168.30.253ip route-static 10.11.2.0 255.255.255.0192.168.30.253ip route-static 10.11.30.0 255.255.255.0192.168.30.253ip route-static 10.11.70.0 255.255.255.0192.168.30.253ip route-static 10.11.72.0 255.255.255.0192.168.30.253ip route-static 10.12.41.0 255.255.255.0192.168.30.253ip route-static 10.100.1.0 255.255.255.0192.168.30.253ip route-static116.6.69.101255.255.255.255192.168.30.253ip route-static 172.16.1.0 255.255.255.061.144.43.216ip route-static 172.16.1.0 255.255.255.0192.168.145.2ip route-static 192.168.0.0255.255.255.0192.168.30.253ip route-static 192.168.4.0255.255.255.0192.168.30.253ip route-static 192.168.5.0255.255.255.0192.168.30.253ip route-static 192.168.7.0255.255.255.0192.168.30.253ip route-static 192.168.8.0255.255.255.0192.168.30.253ip route-static 192.168.9.0255.255.255.0192.168.30.253ip route-static192.168.19.0255.255.255.0192.168.30.253ip route-static192.168.21.0255.255.255.0192.168.30.253ip route-static192.168.22.0255.255.255.0192.168.30.253ip route-static192.168.23.0255.255.255.0192.168.30.253ip route-static192.168.24.0255.255.255.0192.168.30.253ip route-static192.168.26.0255.255.255.0192.168.30.253ip route-static192.168.28.0255.255.255.0192.168.30.253ip route-static192.168.29.0255.255.255.0192.168.30.253ip route-static192.168.41.0255.255.255.0192.168.30.253ip route-static192.168.46.0255.255.255.0192.168.30.253ip route-static192.168.68.0255.255.255.0192.168.30.253ip route-static192.168.76.0255.255.255.0192.168.30.253ip route-static192.168.82.0255.255.255.0192.168.30.253ip route-static192.168.84.0255.255.255.0192.168.30.253ip route-static192.168.86.0255.255.255.0192.168.30.253ip route-static192.168.88.0255.255.255.0192.168.30.253ip route-static192.168.91.0255.255.255.0192.168.30.253ip route-static192.168.96.0255.255.255.0192.168.30.253ip route-static192.168.103.0255.255.255.0192.168.30.253 ip route-static192.168.202.0255.255.255.0192.168.30.253 ip route-static192.168.253.0255.255.255.0192.168.253.1ip route-static192.168.254.4255.255.255.252192.168.254.2# snmp-agent33 / 34snmp-agent local-engineid 800063A203000FE22EDA1Csnmp-agent community write q-ideasnmp-agent sys-info version allsnmp-agent target-host trap address udp-domain192.168.34.120udp-port 5000 params securityname q-idea#dhcp server detect#dhcp enable#user-interface aux0idle-timeout0 0user-interface vty04acl 3011inboundauthentication-mode schemeuser privilege level 3#return<7506E>。

H3C交换机维护文档

H3C交换机维护文档

H3C交换机日常维护操作方法日常维护中所有的操作都要在[ ]提示符下操作才有效。

一、创建vlan在提示符〔〕模式下,输入vlan 2,就立即创建了vlan2,而且立即生效。

二、删除vlan在刚才执行的vlan 2前,添加undo,即undo vlan 2然后会车,就把刚才创建的vlan 2删除了。

三、添加端口创建完了vlan,就可以把端口添加到相应的vlan里,方法是:先进入vlan,比如vlan 2,就可以看到提示符变成了vlan2提示符了,然后再输入Port interface g1/0/1 to g1/0/2,这样就把1口和2口都添加到vlan 2里了。

如果1口已经在vlan 2里,现在想调整,将1口变成vlan3里的端口我们可以输入:Vlan 3,提示符变成vlan 3了,然后再输入port interface g1/0/1就可以了。

四、添加静态路由如果内网增加了vlan,而且这个段里的机器也要访问外网,需要在交换机里执行:Ip route 0.0.0.0 0.0.0.0 192.168.100.2 (0.0.0.0 0.0.0.0代表任意ip,192.168.100.2是下一跳的ip,即防火墙的内口ip),同样需要在防火墙上向内网做一条反向的静态路由。

五、给vlan增加网关Interface vlan 2//选择vlan2Ip address 192.168.2.1 255.255.255.0//给vlan2添加IP做完了网关,这样vlan里的所有用户只要将网关改成这些对应vlan地址就可以自动路由六、传送单播包缺省在交换机里划分了vlan,交换机就自动的隔离了广播,这样的话,不同vlan里的机器就不能通过访问机器名的方式去访问别的机器,如果还想使用基于机器名的方式访问,需要在交换机下做允许广播包通过的命令。

Interface vlan 3\\进入到要转发广播包的vlan里[h3c-interface-vlan3]udp-helper server 192.168.5.5\\指定允许192.168.5.5的udp广播包过。

H3C无线产品日常维护指导书-chinanet

H3C无线产品日常维护指导书-chinanet

H3C无线产品日常维护指导书-chinanetH3C 无线产品日常维护指导书第1章无线用户典型问题举例 (3)1.1 用户无线网卡无法搜索到CHINANET (3)1.1.1 服务台预判 (3)1.1.2 局方判断 (4)1.2 用户无法获取IP地址 (5)1.2.1 服务台号预判 (5)1.2.2 局方判断 (5)1.3 用户可以获取IP地址,但无法打开portal认证页面(以IE为例) (5)1.3.1 服务台预判 (5)1.3.2 局方判断 (6)1.4 用户可以获取IP地址,可以打开portal认证页面,无法认证成功 (7)1.4.1 服务台号预判 (7)1.4.2 局方判断 (7)1.5 上网过程中,出现网络速度变慢的问题 (7)1.5.1 服务台预判 (7)1.5.2 局方判断 (7)1.6 上网过程中,出现网络中断的问题 (8)1.6.1 服务台预判 (8)1.6.2 局方判断 (8)第2章无线接入点典型问题举例 (8)2.1 AC+FIT AP模式出现AP无法正常注册情况 (8)2.2 AP处于不停下载版本的状态 (10)2.3 AP链接后出现链路断开分析 (10)2.4 AP短暂掉线 (11)2.5 AP永久性掉线定位 (11)2.6 AC上显示AP不停的进入或者停滞在JoinACK状态 (12)第3章无线控制器典型问题举例 (13)3.1 OAP链接不成功 (13)3.2 无线控制器添加AP后,AP始终无法正常工作 (13)3.3 用户可以获取地址,到网关不通 (14)3.4 AC常用维护命令 (14)第4章BAS典型问题举例 (15)4.1 更改portal服务器 (15)4.2 Bas常用维护命令 (16)第1章无线用户典型问题举例1.1 用户无线网卡无法搜索到CHINANET1.1.1 服务台预判原因:1、确认当地环境存在CHINANET 无线网络覆盖2、用户网卡已经被禁用;打开“网络连接”选中无线网卡将其启用3、用户笔记本电脑无线网卡的硬件开关没有打开;当前很多主流笔记本电脑都有无线网卡的硬件启用开关,或者键上有热键开启无线网卡4、用户开启了无线网卡软件配置客户端;例如用户是Intel网卡、当其开启了Intel配置网卡软件和其它无线网络配置软件,那么可能在Windows无线网络配置栏中显示:此时只能使用网卡自带的配置软件来配置,如果需要使用windows来配置其无线网络需要在网卡中勾选“用Windows配置我的无线网络设置”。

S7506E三层交换机配置

S7506E三层交换机配置

***************************************************************** ************** Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd. All rights reserved. ** Without the owner's prior written consent, ** no decompiling or reverse-engineering shall be allowed. ****************************************************************** *************Login authenticationUsername:adminPassword:<7506E>di cur#version 5.20, Release 6305#sysname 7506E#domain default enable system#telnet server enable#ip ttl-expires enableip unreachables enable#port-security enable#loopback-detection enable#mirroring-group 1 localmirroring-group 2 local#switch-mode standard#acl number 3010description to UTM200rule 0 permit ip source 192.168.128.0 0.0.15.255 rule 1 permit ip source 192.168.160.0 0.0.31.255 acl number 3011rule 0 permit ip source 192.168.34.0 0.0.0.255 rule 1 permit ip source 192.168.37.0 0.0.0.255 rule 2 permit ip source 192.168.31.0 0.0.0.255 rule 3 permit ip source 192.168.39.0 0.0.0.255 rule 4 permit ip source 192.168.254.0 0.0.0.255 acl number 3500#vlan 1#vlan 2 to 2221#vlan 2222description wireless_guest#vlan 2223 to 2500#vlan 3000description test#vlan 3901description dianxin ap#vlan 3902description test#vlan 3985description dhcp for temp guest meetingsupervlansubvlan 36#vlan 3986description dianxin wireless supervlansubvlan 3901#vlan 3987description huisuo vlan 33 supervlansubvlan 33#vlan 3988description wirelesssupervlansubvlan 2222#vlan 3989supervlansubvlan 3 to 29#vlan 3990supervlansubvlan 1226 to 1250#vlan 3991supervlansubvlan 1200 to 1225#vlan 3992supervlansubvlan 100 to 111#vlan 3993supervlansubvlan 1032 to 1150#vlan 3994supervlansubvlan 911 to 1031#vlan 3995supervlansubvlan 791 to 910#vlan 3996supervlansubvlan 351 to 421 747 to 790 #vlan 3997supervlansubvlan 231 to 350#vlan 3998supervlansubvlan 112 to 230#vlan 3999description to UTM200#vlan 4000 to 4001#ftth#domain systemaccess-limit disablestate activeidle-cut disableself-service-url disable#traffic classifier kefang operator andif-match acl 3010traffic classifier denyvlanclass operator andif-match acl 3500#traffic behavior kefangredirect next-hop 192.168.145.2traffic behavior dengvlanfilter deny#qos policy kefangclassifier kefang behavior kefangqos policy denyvlanclassifier denyvlanclass behavior dengvlan#dhcp server ip-pool 3985network 192.168.36.0 mask 255.255.255.0gateway-list 192.168.36.254dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 8#dhcp server ip-pool 3986network 192.168.160.0 mask 255.255.224.0 gateway-list 192.168.160.1dns-list 202.96.128.86 8.8.8.8 202.96.128.166expired day 0 hour 2#dhcp server ip-pool 3987network 192.168.33.0 mask 255.255.255.0gateway-list 192.168.33.254dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 8#dhcp server ip-pool 3988network 192.168.142.0 mask 255.255.254.0 gateway-list 192.168.142.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3989network 192.168.140.0 mask 255.255.254.0 gateway-list 192.168.140.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3990network 192.168.138.0 mask 255.255.254.0 gateway-list 192.168.138.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3991network 192.168.136.0 mask 255.255.254.0 gateway-list 192.168.136.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3992network 192.168.134.0 mask 255.255.254.0gateway-list 192.168.134.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3993network 192.168.132.128 mask 255.255.255.128 gateway-list 192.168.132.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3994network 192.168.132.0 mask 255.255.255.128 gateway-list 192.168.132.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3995network 192.168.131.128 mask 255.255.255.128 gateway-list 192.168.131.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3996network 192.168.131.0 mask 255.255.255.128 gateway-list 192.168.131.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8expired day 0 hour 4#dhcp server ip-pool 3997network 192.168.130.128 mask 255.255.255.128gateway-list 192.168.130.129dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3998network 192.168.130.0 mask 255.255.255.128 gateway-list 192.168.130.1dns-list 202.96.128.86 202.96.128.166 8.8.8.8 expired day 0 hour 4#dhcp server ip-pool 3999#local-user adminpassword cipher _PW\RO>8';4.[DN#`U3;6Q!! service-type telnetlevel 3#stp instance 0 root primarystp enable#monitor-link group 1#interface NULL0#interface Vlan-interface1ip address 192.168.39.2 255.255.255.0#interface Vlan-interface2ip address 192.168.31.227 255.255.255.0#interface Vlan-interface30ip address 192.168.30.254 255.255.255.0ip address 192.168.32.254 255.255.255.0 #interface Vlan-interface34ip address 192.168.34.254 255.255.255.0 #interface Vlan-interface35ip address 192.168.35.254 255.255.255.0 #interface Vlan-interface37ip address 192.168.37.254 255.255.255.0 #interface Vlan-interface38ip address 192.168.38.254 255.255.255.0 #interface Vlan-interface3985ip address 192.168.36.254 255.255.255.0 #interface Vlan-interface3986 (分配网关)ip address 192.168.160.1 255.255.224.0 local-proxy-arp enable#interface Vlan-interface3987ip address 192.168.33.254 255.255.255.0 #interface Vlan-interface3988ip address 192.168.142.1 255.255.254.0 #interface Vlan-interface3989ip address 192.168.140.1 255.255.254.0 local-proxy-arp enableip address 192.168.138.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3991ip address 192.168.136.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3992ip address 192.168.134.1 255.255.254.0local-proxy-arp enable#interface Vlan-interface3993ip address 192.168.132.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3994ip address 192.168.132.1 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3995ip address 192.168.131.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3996ip address 192.168.131.1 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3997ip address 192.168.130.129 255.255.255.128 local-proxy-arp enable#interface Vlan-interface3998ip address 192.168.130.1 255.255.255.128local-proxy-arp enable#interface Vlan-interface3999description to UTM200ip address 192.168.145.1 255.255.255.0#interface Vlan-interface4000description to f1000-sip address 192.168.254.1 255.255.255.0#interface Vlan-interface4001ip address 192.168.254.101 255.255.255.252 #interface GigabitEthernet2/0/1port link-type trunkport trunk permit vlan 1 to 3984 3999 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet2/0/10port link-type trunkqos apply policy kefang inbound#interface GigabitEthernet2/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet2/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet3/0/1port access vlan 4000qos apply policy kefang inbound#interface GigabitEthernet3/0/2port link-type trunkundo port trunk permit vlan 1port trunk permit vlan 3 to 29 39 50 to 99 101 to 3984 4001 to 4094 port trunk pvid vlan 39qos apply policy kefang inboundmirroring-group 1 mirroring-port both#interface GigabitEthernet3/0/3port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/4port access vlan 1227qos apply policy kefang inbound#interface GigabitEthernet3/0/5 port access vlan 3901qos apply policy kefang inbound #interface GigabitEthernet3/0/6 port access vlan 8#interface GigabitEthernet3/0/7 port access vlan 3999description to UTM-200_G 0/0 qos apply policy kefang inbound #interface GigabitEthernet3/0/8 port access vlan 8qos apply policy kefang inbound #interface GigabitEthernet3/0/9 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/10 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/11 port access vlan 2stp edged-port enableqos apply policy kefang inboundinterface GigabitEthernet3/0/12 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/13 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/14 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/15 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/16 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/17 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/18stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/19 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/20 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/21 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/22 port access vlan 2stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/23 port access vlan 35stp edged-port enableqos apply policy kefang inbound #interface GigabitEthernet3/0/24 port access vlan 34stp edged-port enable#interface GigabitEthernet3/0/25port access vlan 2stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/26port access vlan 2stp edged-port enableqos apply policy kefang inbound#interface GigabitEthernet3/0/27port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inboundmirroring-group 1 monitor-port#interface GigabitEthernet3/0/28port access vlan 2qos apply policy kefang inbound#interface GigabitEthernet3/0/29port access vlan 29qos apply policy kefang inbound#interface GigabitEthernet3/0/30port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet3/0/31interface GigabitEthernet3/0/32 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/33 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/34 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/35 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/36 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/37 port access vlan 37qos apply policy kefang inbound #interface GigabitEthernet3/0/38 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/39interface GigabitEthernet3/0/40 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/41 port access vlan 2stp disablestp loop-protectionqos apply policy kefang inbound #interface GigabitEthernet3/0/42 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/43 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/44 port access vlan 34qos apply policy kefang inbound #interface GigabitEthernet3/0/45 port access vlan 2qos apply policy kefang inbound #interface GigabitEthernet3/0/46 port access vlan 35qos apply policy kefang inboundinterface GigabitEthernet3/0/47port link-type trunkport trunk permit vlan 1 30qos apply policy kefang inbound#interface GigabitEthernet3/0/48port access vlan 34qos apply policy kefang inbound#interface GigabitEthernet4/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/5port link-type trunkqos apply policy kefang inbound#interface GigabitEthernet4/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/13port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/14port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/15port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/16port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/17port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/18port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/19port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/20port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/21port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/22port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/23port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/24port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/25port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/26port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/27port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/28port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/29port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/30port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/31port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/32port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/33port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/34port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/35port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/36port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/37port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface GigabitEthernet4/0/38port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/39port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/40port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/41port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/42port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/43port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/44port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/45port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/46port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/47port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet4/0/48port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 loopback-detection enableqos apply policy kefang inbound#interface GigabitEthernet8/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094interface GigabitEthernet8/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet8/0/11port link-type trunkundo port trunk permit vlan 1port trunk permit vlan 3901qos apply policy kefang inboundmirroring-group 2 mirroring-port both#interface GigabitEthernet8/0/12port access vlan 30description 到集团综合楼qos apply policy kefang inbound#interface GigabitEthernet9/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094interface GigabitEthernet9/0/3port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/4port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/5port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/6port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/7port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/8port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/9port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/10port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/11port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface GigabitEthernet9/0/12port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface M-Ethernet0/0/0#interface Ten-GigabitEthernet5/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface Ten-GigabitEthernet5/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094 qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/1port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#interface Ten-GigabitEthernet6/0/2port link-type trunkport trunk permit vlan 1 to 3984 4000 to 4094qos apply policy kefang inbound#route-policy kefang permit node 0if-match acl 3010apply ip-address next-hop 192.168.129.1#ip route-static 0.0.0.0 0.0.0.0 192.168.254.2ip route-static 10.0.0.0 255.255.255.0 192.168.30.253ip route-static 10.0.18.0 255.255.255.0 192.168.30.253ip route-static 10.0.24.0 255.255.255.0 192.168.30.253ip route-static 10.0.25.0 255.255.255.0 192.168.30.253ip route-static 10.0.29.0 255.255.255.0 192.168.30.253ip route-static 10.0.97.0 255.255.255.0 192.168.30.253ip route-static 10.10.0.0 255.255.0.0 192.168.30.253ip route-static 10.11.2.0 255.255.255.0 192.168.30.253ip route-static 10.11.30.0 255.255.255.0 192.168.30.253ip route-static 10.11.70.0 255.255.255.0 192.168.30.253ip route-static 10.11.72.0 255.255.255.0 192.168.30.253ip route-static 10.12.41.0 255.255.255.0 192.168.30.253ip route-static 10.100.1.0 255.255.255.0 192.168.30.253ip route-static 116.6.69.101 255.255.255.255 192.168.30.253 ip route-static 172.16.1.0 255.255.255.0 61.144.43.216ip route-static 172.16.1.0 255.255.255.0 192.168.145.2ip route-static 192.168.0.0 255.255.255.0 192.168.30.253ip route-static 192.168.4.0 255.255.255.0 192.168.30.253ip route-static 192.168.5.0 255.255.255.0 192.168.30.253ip route-static 192.168.7.0 255.255.255.0 192.168.30.253ip route-static 192.168.8.0 255.255.255.0 192.168.30.253ip route-static 192.168.9.0 255.255.255.0 192.168.30.253ip route-static 192.168.19.0 255.255.255.0 192.168.30.253 ip route-static 192.168.21.0 255.255.255.0 192.168.30.253 ip route-static 192.168.22.0 255.255.255.0 192.168.30.253 ip route-static 192.168.23.0 255.255.255.0 192.168.30.253 ip route-static 192.168.24.0 255.255.255.0 192.168.30.253 ip route-static 192.168.26.0 255.255.255.0 192.168.30.253 ip route-static 192.168.28.0 255.255.255.0 192.168.30.253 ip route-static 192.168.29.0 255.255.255.0 192.168.30.253 ip route-static 192.168.41.0 255.255.255.0 192.168.30.253 ip route-static 192.168.46.0 255.255.255.0 192.168.30.253 ip route-static 192.168.68.0 255.255.255.0 192.168.30.253 ip route-static 192.168.76.0 255.255.255.0 192.168.30.253 ip route-static 192.168.82.0 255.255.255.0 192.168.30.253 ip route-static 192.168.84.0 255.255.255.0 192.168.30.253 ip route-static 192.168.86.0 255.255.255.0 192.168.30.253 ip route-static 192.168.88.0 255.255.255.0 192.168.30.253 ip route-static 192.168.91.0 255.255.255.0 192.168.30.253 ip route-static 192.168.96.0 255.255.255.0 192.168.30.253 ip route-static 192.168.103.0 255.255.255.0 192.168.30.253 ip route-static 192.168.202.0 255.255.255.0 192.168.30.253 ip route-static 192.168.253.0 255.255.255.0 192.168.253.1 ip route-static 192.168.254.4 255.255.255.252 192.168.254.2 #snmp-agentsnmp-agent local-engineid 800063A203000FE22EDA1Csnmp-agent community write q-ideasnmp-agent sys-info version all。

  1. 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
  2. 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
  3. 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。

H3C核心交换机S7506E网络维护手册网络设备维护手册第一章交换机操作手册此部分档使用本项目交换机型号如下:S7506E/S5120/S5130/WX3024E1.1设备登陆1.1.1 Console登陆1、通过交换机Console 口进行本地登录是登录交换机的最基本的方式,也是配置通过其他方式登录交换机的基础。

连接示意图如下:2、把电脑和交换机连接好后,交换机上电开机,然后在电脑上进行如下操作,首先点击开始->程序->附件->通讯->超级终端打开后出现下面图示,输入名称,可以任意输入。

输入完成点击确定,出现下面界面,连接时使用选择COM口,一般台式机为COM1或COM2,而笔记本经过转接,可能会产生COM3或COM4,也有可能是其他的,你可以在下面的选择项里看到,选择完成后点击确定。

通过上面的选择,现在到了对端口属性进行设置,一般情况下没有进行过修改,默认只要点击还原为默认值就可以了,然后再单击确定。

之后敲回车即可,会出现H3C>提示符,说明已经与交换机连接,可以进行配置了,如果没有可以重启交换机或检查连接是否正确。

1.1.2 telnet登陆1、新建用户名密码local-user admin /admin为用户名password cipher h3c@123 /h3c@123为密码authorization-attribute level 3 /授权admin用户的等级为3,3为最高级service-type telnet /授权admin用户的登陆方式,可以为ftp、telnet等#telnet server enable /开启telnet服务使用电脑连接至交换机:开始菜单-输入cmd,如下图,输入telnet 1.1.44.254,输入用户名密码admin/h3c@123即可登录交换机1.2 交换机加电开机显示sarting......************************************************************* * ** H3C S5510-24P BOOTROM, Version 142 ** ************************************************************** Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd.Creation date: Mar 12 2008, 11:17:30CPU Clock Speed : 200MHzBUS Clock Speed : 33MHzMemory Size : 128MBThe switch Mac is: 000F-E2B1-BD60Press Ctrl-B to enter Boot Menu... 1 0Auto-booting...Decompress Image................................................................................................................................ .......................................................................................................................................... .......................................................................................................................................... .......................................................................................................................................... .......................................................................................................................................... .......................................................................................................................................... ...................................................................................................................OK!Starting ...********************************************************************* ********** Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd. All rights reserved. ** Without the owner's prior written consent, ** no decompiling or reverse-engineering shall be allowed. ********************************************************************** *********It will take a long time to get configuration file, please wait...Startup configuration file does not exist.User interface aux0 is available.//开机自检过程1.3 交换机常用Press ENTER to get started.<H3C>%Apr 26 12:03:53:611 2000 H3C SHELL/4/LOGIN: Console login from aux0 <H3C><H3C>sys //进入视图模式System View: return to User View with Ctrl+Z.[H3C][H3C]sysname neiwang//对交换机进行命名[neiwang]dis cu//查看交换机配置#version 5.20, Release 5303#sysname neiwang#domain default enable system#domain systemaccess-limit disablestate activeidle-cut disableself-service-url disable#interface NULL0#interface GigabitEthernet1/0/1#interface GigabitEthernet1/0/2#interface GigabitEthernet1/0/3#interface GigabitEthernet1/0/4 #interface GigabitEthernet1/0/5 #interface GigabitEthernet1/0/6 #interface GigabitEthernet1/0/7 #interface GigabitEthernet1/0/8 #interface GigabitEthernet1/0/9 #interface GigabitEthernet1/0/10 #interface GigabitEthernet1/0/11 #interface GigabitEthernet1/0/12 #interface GigabitEthernet1/0/13 #interface GigabitEthernet1/0/14 #interface GigabitEthernet1/0/15 #interface GigabitEthernet1/0/16 #interface GigabitEthernet1/0/17 #interface GigabitEthernet1/0/18 #interface GigabitEthernet1/0/19 #interface GigabitEthernet1/0/20 #interface GigabitEthernet1/0/21 #interface GigabitEthernet1/0/22 #interface GigabitEthernet1/0/23 #interface GigabitEthernet1/0/24 #interface GigabitEthernet1/0/25 shutdowninterface GigabitEthernet1/0/26shutdown#interface GigabitEthernet1/0/27shutdown#interface GigabitEthernet1/0/28shutdown#user-interface aux 0user-interface vty 0 4#return[neiwang][neiwangvlan 25//创建VLAN[neiwang-vlan25]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/10 //给VLAN批量添加端口[neiwang-vlan25]qu //退出VLAN视图[neiwang]interface vlan 25 //进入VLAN接口视图[neiwang-Vlan-interface25] ip address 192.168.120.1 24 //给VLAN添加IP地址[neiwang-Vlan-interface25]qu //退出VLAn 接口视图[neiwang]dis cu//再次查看交换机配置,可以看到多了一个VLAN及这个VLAN的IP地址#version 5.20, Release 5303#sysname neiwang#domain default enable systemvlan 1#vlan 25#domain systemaccess-limit disablestate activeidle-cut disableself-service-url disable#interface NULL0#interface Vlan-interface25ip address 192.168.120.1 255.255.255.0 #interface GigabitEthernet1/0/1port access vlan 25#interface GigabitEthernet1/0/2port access vlan 25#interface GigabitEthernet1/0/3port access vlan 25#interface GigabitEthernet1/0/4port access vlan 25#interface GigabitEthernet1/0/5port access vlan 25#interface GigabitEthernet1/0/6port access vlan 25#interface GigabitEthernet1/0/7port access vlan 25#interface GigabitEthernet1/0/8port access vlan 25#interface GigabitEthernet1/0/9port access vlan 25#interface GigabitEthernet1/0/10port access vlan 25#interface GigabitEthernet1/0/11 #interface GigabitEthernet1/0/12 #interface GigabitEthernet1/0/13 #interface GigabitEthernet1/0/14 #interface GigabitEthernet1/0/15 #interface GigabitEthernet1/0/16 #interface GigabitEthernet1/0/17 #interface GigabitEthernet1/0/18 #interface GigabitEthernet1/0/19 #interface GigabitEthernet1/0/20 #interface GigabitEthernet1/0/21 #interface GigabitEthernet1/0/22 #interface GigabitEthernet1/0/23 #interface GigabitEthernet1/0/24 #interface GigabitEthernet1/0/25 shutdown#interface GigabitEthernet1/0/26 shutdown#interface GigabitEthernet1/0/27 shutdown#interface GigabitEthernet1/0/28 shutdown#user-interface aux 0user-interface vty 0 4#return[neiwang]telnet server enable% Start Telnet server//下面是为交换机添加一个新用户操作[neiwang]local-user admin //添加新用户New local user added.[neiwang-luser-admin]pa sin admin //为新用户设置密码[neiwang-luser-admin]service-type telnet level 3 //为新用户设置服务及权限[neiwang-luser-admin]qu//下面为该用户配置telnet服务[neiwang]user-interface vty ?INTEGER<0-4> First user terminal interface number to be configured [neiwang]user-interface vty 0 4 //进入telnet视图模式[neiwang-ui-vty0-4]authentication-mode scheme ? //认证模式设置none Login without checkingpassword Authentication use password of user terminal interfacescheme Authentication use AAA[neiwang-ui-vty0-4]authentication-mode s[neiwang-ui-vty0-4]authentication-mode scheme //设备认证模式为用户名密码[neiwang-ui-vty0-4]qu[neiwang]telnet server enable //开启telnet服务[neiwang]save ?STRING The name of specific file(*.cfg)safely Save current configuration safely<cr>[neiwang]save s[neiwang]save safely //保存交换机设置,以防断电交换机配置丢失[neiwang]save s ?savesftpshutdown-intervalsnmp-agentsshsslstpsuperswitch-modesysname[neiwang]save safelyThe current configuration will be written to the device. Are you sure? [Y/N]:y Please input the file name(*.cfg)[flash:/startup.cfg](To leave the existing filename unchanged, press the enter key):Validating file. Please wait...Now saving current configuration to the device.Saving configuration flash:/startup.cfg. Please wait... .................Configuration is saved to flash successfully.[neiwang]qu<neiwang>saveThe current configuration will be written to the device. Are you sure? [Y/N]:n<neiwang>sysSystem View: return to User View with Ctrl+Z.[neiwang]DHCP Snooping was enabled.//下面为对VLAN及端口增加删除进行操作先输入 sys 进入全局模式,必须输,然后输命令前面字母按TAB [neiwang][neiwang][neiwang]int[neiwang]interface g[neiwang]interface GigabitEthernet 1/0/15 //进入交换机端口模式[neiwang-GigabitEthernet1/0/15]port acc[neiwang-GigabitEthernet1/0/15]port access vlan 25 //单一端口添加到VLAN[neiwang-GigabitEthernet1/0/15]port access vlan 26 //如果VLAN没有创建,提示如下Error: This VLAN does not exist.[neiwang-GigabitEthernet1/0/15]qu[neiwang]vlan 26[neiwang-vlan26][neiwang-GigabitEthernet1/0/15]port access vlan 26[neiwang-GigabitEthernet1/0/15]qu//下面为对单一端口属性进行设置[neiwang]int g 1/0/25[neiwang-GigabitEthernet1/0/25]sp[neiwang-GigabitEthernet1/0/25]speed 1000 //把25号端口强制为1000M [neiwang-GigabitEthernet1/0/25]du[neiwang-GigabitEthernet1/0/25]duplex ful[neiwang-GigabitEthernet1/0/25]duplex full //把25号端口强制为全双工[neiwang-GigabitEthernet1/0/25]port[neiwang-GigabitEthernet1/0/25]port link-t[neiwang-GigabitEthernet1/0/25]port link-type ?access Access link-typehybrid Hybrid VLAN link-typetrunk VLAN Trunk link-type[neiwang-GigabitEthernet1/0/25]port link-type tr[neiwang-GigabitEthernet1/0/25]port link-type trunk //定义该端口为trunk属性<cr>[neiwang-GigabitEthernet1/0/25]port trunk permit all ?^% Unrecognized command found at '^' position.[neiwang-GigabitEthernet1/0/25]port trunk permit all ? //允许所有VLAN通过该端口INTEGER<1-4094> VLAN IDall All the VLANs[neiwang-GigabitEthernet1/0/25]port trunk permit vlan all ?<cr>[neiwang-GigabitEthernet1/0/25]port trunk permit vlan allPlease wait........... Done.<cr>[neiwang-GigabitEthernet1/0/25]undo port link-type //取消该端口属性前面加undoPlease wait........... Done.[neiwang-GigabitEthernet1/0/25]sp[neiwang-GigabitEthernet1/0/25]speed ?10 Specify speed of current port 10Mb/s100 Specify speed of current port 100Mb/s1000 Specify speed of current port 1000Mb/sauto Enable port's speed negotiation automatically[neiwang-GigabitEthernet1/0/25]speed au[neiwang-GigabitEthernet1/0/25]speed auto[neiwang-GigabitEthernet1/0/25]du[neiwang-GigabitEthernet1/0/25]duplex au[neiwang-GigabitEthernet1/0/25]duplex auto[neiwang-GigabitEthernet1/0/25]qu[neiwang]dhcp[neiwang]dhcp-snooping ?<cr>[neiwang]dhcp-snoopingDHCP Snooping has already been enabled.[neiwang]int g 1/0/25[neiwang-GigabitEthernet1/0/25]dhcp[neiwang-GigabitEthernet1/0/25]dhcp-snooping ?information Specify Option 82 servicetrust Trusted port[neiwang-GigabitEthernet1/0/25]dhcp-snooping tr[neiwang-GigabitEthernet1/0/25]dhcp-snooping trust ?<cr>[neiwang-GigabitEthernet1/0/25]dhcp-snooping trust[neiwang-GigabitEthernet1/0/25]qu[neiwang]dis valn ?INTEGER<1-4094> VLAN IDall All the VLANsdynamic Dynamic VLAN IDreserved Reserved VLAN IDstatic Static VLAN ID<cr>[neiwang]dis vlan all //查看显示VLANVLAN ID: 1VLAN Type: staticRoute Interface: not configuredDescription: VLAN 0001Tagged Ports: noneUntagged Ports:GigabitEthernet1/0/11 GigabitEthernet1/0/12 GigabitEthernet1/0/13 GigabitEthernet1/0/14 GigabitEthernet1/0/15 GigabitEthernet1/0/16 GigabitEthernet1/0/17 GigabitEthernet1/0/18 GigabitEthernet1/0/19 GigabitEthernet1/0/20 GigabitEthernet1/0/21 GigabitEthernet1/0/22 GigabitEthernet1/0/23 GigabitEthernet1/0/24 GigabitEthernet1/0/25 GigabitEthernet1/0/26 GigabitEthernet1/0/27 GigabitEthernet1/0/28 VLAN ID: 25VLAN Type: staticRoute Interface: configuredIP Address: 192.168.120.1Subnet Mask: 255.255.255.0Description: VLAN 0025Tagged Ports: noneUntagged Ports:GigabitEthernet1/0/1 GigabitEthernet1/0/2 GigabitEthernet1/0/3 GigabitEthernet1/0/4 GigabitEthernet1/0/5 GigabitEthernet1/0/6 GigabitEthernet1/0/7 GigabitEthernet1/0/8 GigabitEthernet1/0/9 GigabitEthernet1/0/10[neiwang]dis vlan all%Apr 26 12:28:45:14 2000 neiwang IFNET/4/LINK UPDOWN:GigabitEthernet1/0/13: link status is DOWN%Apr 26 12:28:46:904 2000 neiwang IFNET/4/LINK UPDOWN:GigabitEthernet1/0/9: link status is UP%Apr 26 12:28:46:914 2000 neiwang IFNET/4/LINK UPDOWN:Vlan-interface25: link status is UP%Apr 26 12:28:46:917 2000 neiwang IFNET/4/UPDOWN:Line protocol on the interface Vlan-interface25 is UPDHCP Snooping has already been enabled.[neiwang]dis arp //三层交换机查看arp列表^% Incomplete command found at '^' position.[neiwang]dis arp ?X.X.X.X Display ARP entry by special IP addressall Display static&dynamic ARP entrydynamic Display dynamic ARP entryinterface Display by Interfacesource-suppression Display ARP source suppressionstatic Display static ARP entrytimer Display ARP timervlan Display by VLANvpn-instance Display ARP entries by VPN name[neiwang]dis arp allType: S-Static D-DynamicIP Address MAC Address VLAN ID Interface Aging Type [neiwang]dis mac-a[neiwang]dis mac-address ? //查看交换机mac地址列表H-H-H MAC addressaging-time Global aging timeblackhole Blackhole entry, without aging, can be added/deleted, saved tothe configuration filecount MAC entries countdynamic Dynamic entry, with aging, can be added/deleted, lost afterresetinterface Choose one interface to displaystatic Static entry, without aging, can be added/deleted, saved to theconfiguration filevlan VLAN<cr>[neiwang]dis mac-addressNo Multicast Mac addresses found.[neiwang]%Apr 26 12:30:36:527 2000 neiwang SHELL/4/LOGIN: admin login from 192.168.120.15%Apr 26 12:31:14:141 2000 neiwang SHELL/4/LOGOUT: admin logout from 192.168.120.15#interface Vlan-interface4000 //路由添加管理口vlanip address 1.1.40.72 255.255.255.0 //路由添加管理地址IP#interface GigabitEthernet1/0/52 //回程路由#ip route-static 0.0.0.0 0.0.0.0 1.1.40.254 //指定要回跳的路由第二章无线维护手册2.1 设备登陆此步骤参考1.1设备登陆2.2 设备常用操作2.2.1 注册APwlan ap AP1 model WA2620i-AGN /MODEL的型号一定要和实际一样 serial-id 219801A0CNC149002626 /手工注册方式序列号一定要正确 radio 1 /2620i是双频APservice-template 10 /调用服务模板radio enable /启用射频口radio 2service-template 10radio enable2.2.2 配置SSID名称wlan service-template 10 /新建服务模板10ssid TAXZFWZX /ssid为TAXZFWZXbind WLAN-ESS 10 /绑定无线接口10authentication-method open-system /以下为加密方案cipher-suite tkipsecurity-ie wpaservice-template enable /启用服务模板#interface WLAN-ESS10 /新建无线接口10,供服务模板调用port-security port-mode psk /以下为认证信息port-security tx-key-type 11keyport-security preshared-key pass-phrase si h3c@123。

相关文档
最新文档