命令手册《神州数码交换机5950》端口操作命令

合集下载

操作手册《神州数码交换机5950》端口操作

操作手册《神州数码交换机5950》端口操作

端口操作目录目录第1章端口配置..................................................................................1-11.1 端口介绍........................................................................................................................1-11.2 端口配置........................................................................................................................1-11.2.1 业务端口配置.....................................................................................................1-11.2.2 VLAN接口配置..................................................................................................1-21.3 端口配置举例................................................................................................................1-31.4 端口排错帮助................................................................................................................1-41.5 镜像................................................................................................................................1-41.5.1 镜像介绍.............................................................................................................1-41.5.2 镜像配置任务序列.............................................................................................1-41.5.3 镜像举例.............................................................................................................1-51.5.4 镜像排错帮助.....................................................................................................1-6第2章 Port Channel配置...................................................................2-12.1 Port Channel介绍..........................................................................................................2-12.2 Port Channel配置..........................................................................................................2-22.3 Port Channel举例..........................................................................................................2-22.4 Port Channel排错帮助..................................................................................................2-5第1章 端口配置1.1 端口介绍DCRS-5900系列交换机端口包括电口和Combo端口,Combo端口可以选择配置为千兆电口,也可以选择配置为千兆SFP光口,两者只能选择其中之一。

命令手册《神州数码交换机5950》端口操作命令

命令手册《神州数码交换机5950》端口操作命令

端口操作命令目录目录第1章端口配置命令...........................................................1-11.1 以太网端口配置命令.....................................................................................1-11.1.1 bandwidth...................................................................................................................1-11.1.2 combo-forced-mode....................................................................................................1-11.1.3 clear counters..............................................................................................................1-21.1.4 flow control.................................................................................................................1-21.1.5 interface Ethernet......................................................................................................1-31.1.6 loopback......................................................................................................................1-31.1.7 mdi...............................................................................................................................1-31.1.8 name............................................................................................................................1-41.1.9 negotiation...................................................................................................................1-41.1.10 rate-suppression.......................................................................................................1-41.1.11 show interface...........................................................................................................1-51.1.12 shutdown...................................................................................................................1-81.1.13 speed-duplex.............................................................................................................1-9 1.2 vlan接口配置命令...........................................................................................1-91.2.1 interface vlan..............................................................................................................1-91.2.2 ip address..................................................................................................................1-101.2.3 shutdown...................................................................................................................1-10 1.3 镜像命令.......................................................................................................1-101.3.1 monitor session source interface.............................................................................1-101.3.2 monitor session source interface access-group.......................................................1-111.3.3 monitor session destination interface......................................................................1-111.3.4 show monitor............................................................................................................1-12第2章 Port Channel配置命令............................................2-12.1 debug lacp.......................................................................................................2-1 2.2 port-group.......................................................................................................2-1 2.3 port-group mode.............................................................................................2-1 2.4 interface port-channel....................................................................................2-2 2.5 show port-group..............................................................................................2-2第1章 端口配置命令1.1 以太网端口配置命令1.1.1 bandwidth命令:bandwidth control <bandwidth> [both | receive | transmit]no bandwidth control功能:打开端口的带宽限制功能;本命令的no操作为关闭端口的带宽限制功能。

5950 配置手册

5950 配置手册

DCRS-9800系列高端多业务IPv6核心路由交换机产品概述DCRS-9800系列高端多业务IPv6 核心路由交换机是由神州数码网络公司自主研发的新一代核心路由交换机设备,为电子政务网络、企业网络、电信网络提供支持高性能、高可靠性、多业务完美融合、精细化能耗管理、高伸缩性的N*100G核心平台;DCRS-9800系列路由交换机率先通过国际IPv6 Ready第二阶段增强版认证,神州数码网络是国内第一家通过该认证的厂商。

同时DCRS-9800系列路由交换机通过IPv6 Ready Dhcpv6认证,神州数码是全球第一家通过该认证的厂商。

DCRS-9800系列高端多业务IPv6路由交换机提供了12槽到20槽的多种产品,单卡最大可支持96*1000M 端口或16*10G端口;具备N*T比特的背板带宽,并支持将来更高带宽的扩展能力,系统设计将支持N*十万兆以太网接口;具备全方位的IPv4/IPv6安全防范体系;具备稳定的核心保障机制和运营商级别的可靠性;具备业界最领先的多业务IPv6、组播、MPLS等技术;具备绿色的节能环保设计理念;为您构建“四高(高密度、高性能、高安全性、高稳定性)一多(多业务性)一绿(绿色的节能环保性)”的数据网络处理平台提供了强有力的保障。

主要特色超高密度,卓越性能DCRS-9800具备N*T比特的背板带宽,支持将来更高带宽的扩展能力;拥有着先进的十万兆以太网技术;每槽最大可支持96*1000M端口或16*10G端口。

具备硬件可伸缩性设计,可根据需要可灵活配置普通长度的标准模块和长度加倍的超级模块,满足核心层设备高密度、高吞吐量的要求,为城域和广域的应用提供了针对性的解决措施,可以简化网络结构、降低网络建设成本。

同时通过智能灵活的性能资源调度机制Flex-Resource来提供更高的性能资源:影响交换机性能的因素有很多:CPU、内存、MAC表、IP地址表、路由表、ACL表等等。

神州数码交换机基本管理命令.word

神州数码交换机基本管理命令.word

神州数码交换机基本管理命令.word目录第1章交换机基本配置命令 ...................................................... 1-11.1 基本配置命令 ................................................................................... 1-11.1.1 authentication line login ......................................................................... 1-11.1.2banner ...................................................................................................... 1-11.1.3 boot img ................................................................................................... 1-11.1.4 boot startup-config ................................................................................. 1-21.1.5 clock set ................................................................................................... 1-21.1.6config ........................................................................................................ 1-21.1.7 debug ssh-server .................................................................................... 1-21.1.8disable ...................................................................................................... 1-21.1.9enable ....................................................................................................... 1-31.1.10 enable password ................................................................................... 1-31.1.11end .......................................................................................................... 1-31.1.12 exec-timeout .......................................................................................... 1-3exit .......................................................................................................... 1-41.1.14help ......................................................................................................... 1-41.1.15hostname ............................................................................................... 1-41.1.16 ip host ..................................................................................................... 1-41.1.17 ipv6 host................................................................................................. 1-51.1.18 ip http server ......................................................................................... 1-51.1.19 language................................................................................................. 1-51.1.20login ........................................................................................................ 1-51.1.21password ................................................................................................ 1-51.1.22reload ...................................................................................................... 1-61.1.23 service password-encryption .............................................................. 1-61.1.24 service terminal-length ......................................................................... 1-61.1.25sysContact ............................................................................................. 1-61.1.26sysLocation ........................................................................................... 1-61.1.27 set default .............................................................................................. 1-7setup ....................................................................................................... 1-71.1.29 show clock ............................................................................................. 1-71.1.30 show cpu usage .................................................................................... 1-71.1.31 show memory usage ............................................................................ 1-71.1.32 show privilege ....................................................................................... 1-81.1.33 show temperature ................................................................................. 1-81.1.34 show tech-support ................................................................................ 1-81.1.35 show version ......................................................................................... 1-81.1.36username ............................................................................................... 1-81.1.37 web language ........................................................................................ 1-91.1.38write ........................................................................................................ 1-9 1.2 远程管理 .......................................................................................... 1-91.2.1 authentication ip access-class .............................................................. 1-91.2.2 authentication ipv6 access-class ........................................................1-101.2.3 authentication line login .......................................................................1-101.2.4 authenticationsecurityip .....................................................................1-101.2.5 authentication securityipv6 ................................................................. 1-111.2.6authorization .......................................................................................... 1-111.2.7 terminal length ...................................................................................... 1-111.2.8 terminal monitor .................................................................................... 1-111.2.9telnet .......................................................................................................1-121.2.10 telnet-server enable ............................................................................1-121.2.11 telnet-server max-connection ............................................................1-121.2.12 ssh-server authentication-retries ......................................................1-131.2.13 ssh-server enable................................................................................1-131.2.14 ssh-server host-key create rsa ..........................................................1-131.2.15 ssh-server max-connection ...............................................................1-131.2.16 ssh-server timeout ..............................................................................1-131.2.17 show ssh-server ..................................................................................1-141.2.18 show telnet login .................................................................................1-141.2.19who .......................................................................................................1-14 1.3 配置交换机的IP地址..................................................................... 1-141.3.1 interface vlan .........................................................................................1-141.3.2 interface ethernet0 ...............................................................................1-151.3.3 ip address ..............................................................................................1-151.3.4 ipv6 address ..........................................................................................1-151.3.5 ip bootp-client enable ...........................................................................1-151.3.6 ip dhcp-client enable ............................................................................1-16 1.4 SNMP命令 ..................................................................................... 1-161.4.1 debug snmp mib ...................................................................................1-161.4.2 debug snmp kernel ...............................................................................1-161.4.3 rmon enable ...........................................................................................1-161.4.4 show private-mib oid ............................................................................1-161.4.5 show snmp.............................................................................................1-171.4.6 show snmp engineid ............................................................................1-171.4.7 show snmp group .................................................................................1-181.4.8 show snmpmib .....................................................................................1-181.4.9 show snmp status .................................................................................1-181.4.10 show snmp user ..................................................................................1-181.4.11 show snmp view ..................................................................................1-191.4.12 snmp-server community ....................................................................1-191.4.13 snmp-server enable ............................................................................1-201.4.14 snmp-server enable traps ..................................................................1-201.4.15 snmp-server engineid .........................................................................1-201.4.16 snmp-server group .............................................................................1-201.4.17 snmp-server host ................................................................................1-211.4.18 snmp-server securityip ......................................................................1-221.4.19 snmp-server securityip ......................................................................1-221.4.20 snmp-server trap-source ....................................................................1-221.4.21 snmp-server user ................................................................................1-221.4.22 snmp-server view ................................................................................1-231.5 交换机升级命令.............................................................................. 1-231.5.1 copy (FTP)..........................................................................................1-231.5.2 copy (TFTP)........................................................................................1-241.5.3 ftp-dir ......................................................................................................1-251.5.4 ftp-server enable ...................................................................................1-251.5.5 ftp-server timeout ..................................................................................1-261.5.6 ip ftp ........................................................................................................1-261.5.7 show ftp ..................................................................................................1-261.5.8 show tftp .................................................................................................1-261.5.9 tftp-server enable ..................................................................................1-261.5.10 tftp-server retransmission-number ...................................................1-271.5.11 tftp-server transmission-timeout .......................................................1-27第2章文件系统操作命令.......................................................... 2-12.1 cd ..................................................................................................... 2-12.2 copy ................................................................................................. 2-12.3 delete ............................................................................................... 2-12.4 dir ..................................................................................................... 2-22.5 format .............................................................................................. 2-22.6 mkdir ................................................................................................ 2-22.7 mount ............................................................................................... 2-22.8 pwd .................................................................................................. 2-22.9 rename ............................................................................................. 2-22.10 rmdir .............................................................................................. 2-32.11 unmount ........................................................................................ 2-3第3章集群配置命令................................................................. 3-13.1 clear cluster nodes ......................................................................... 3-13.2 cluster auto-add .............................................................................. 3-13.3 cluster commander ......................................................................... 3-1 3.4 cluster ip-pool ................................................................................. 3-1 3.5 cluster keepalive interval ............................................................... 3-2 3.6 cluster keepalive loss-count .......................................................... 3-2 3.7 cluster member ............................................................................... 3-2 3.8 cluster member auto-to-user ......................................................... 3-3 3.9 cluster reset member ..................................................................... 3-3 3.10 cluster run ..................................................................................... 3-3 3.11 cluster update member ................................................................. 3-4 3.12debug cluster ................................................................................ 3-4 3.13 debug cluster packets .................................................................. 3-5 3.14 show cluster .................................................................................. 3-5 3.15 show cluster members ................................................................. 3-5 3.16 show cluster candidates .............................................................. 3-6 3.17 show cluster topology .................................................................. 3-7 3.18 rcommand commander ................................................................ 3-8 3.19 rcommand member ...................................................................... 3-8第1章交换机基本配置命令1.1 基本配置命令1.1.1 authentication line login命令:authentication line {console | vty | web} login {local | radius| tacacs} no authentication line {console | vty | web} login 功能:配置VTY(即指Telnet和ssh登录方式)、Web和Console方式对登录用户的验证方式和验证选择优先级;该命令的no 命令恢复缺省验证方式。

00_DCRS-5950手册装帧

00_DCRS-5950手册装帧

DCRS-5950系列交换机手册手册版本:v1.7.0神州数码网络(北京)有限公司地址:北京市海淀区上地九街9号 100085 网址: 手册简介本手册由三本分手册组成:《DCRS-5950系列交换机安装手册》、《DCRS-5950系列交换机操作手册》、《DCRS-5950系列交换机命令手册》。

手册内容简介《DCRS-5950系列交换机安装手册》介绍DCRS-5950系列交换机硬件结构、功能特点、安装方法。

《DCRS-5950系列交换机操作手册》01_基本管理操作交换机的配置管理方式和对应的基本配置,包括带外管理、SNMP管理、telnet管理、web管理,软件升级方法,集群网管配置。

02_端口操作以太网端口、端口隔离、端口汇聚的操作、ULDP、LLDP以及JUMBO的配置。

03_VLAN和MAC地址操作VLAN、private VLAN、GVRP、QinQ、VLAN-translation、动态VLAN、Voice VLAN的配置。

MAC地址表配置,包括MAC地址绑定和MAC地址过滤。

04_MSTP操作STP、MSTP的配置。

05_Qos、PBR及基于流的重定向操作COS、TOS、DSCP优先级配置,数据分类和转发策略的配置、IPv6QOS、PBR、ipv6 PBR的配置和使用,基于流的重定向操作。

06_三层转发及ARP操作IPv4/v6接口配置,IPv6各种隧道配置,URPF和ARP配置,ARP、ND绑定配置,防ARP扫描配置,arp local proxy操作,免费ARP功能配置,IPv6 URPF配置。

07_DHCP及相关操作DHCP、DHCPv6的配置,DHCP option82配置以及DHCPSnooping配置。

08_路由协议操作IPv4/v6的各种路由协议,包括RIP、RIPng、OSPF、OSPFv3、BGP、MBGP4+、RIP路由聚合、IPv4/v6黑洞路由以及静态路由配置。

DCRS-5950操作手册_03_VLAN和MAC地址操作

DCRS-5950操作手册_03_VLAN和MAC地址操作

目录第1章 VLAN配置.......................................................................1-11.1 VLAN配置.........................................................................................1-11.1.1 VLAN介绍...............................................................................................1-11.1.2 VLAN的配置任务序列.............................................................................1-21.1.3 VLAN典型应用........................................................................................1-41.2 GVRP配置........................................................................................1-51.2.1 GVRP介绍..............................................................................................1-51.2.2 GVRP配置任务序列................................................................................1-61.2.3 GVRP典型应用.......................................................................................1-71.2.4 VLAN排错帮助........................................................................................1-81.3 Dot1q-tunnel配置............................................................................1-91.3.1 Dot1q-tunnel介绍..................................................................................1-91.3.2 Dot1q-tunnel配置................................................................................1-101.3.3 Dot1q-tunnel典型应用.........................................................................1-101.3.4 Dot1q-tunnel排错帮助.........................................................................1-111.4 VLAN-translation配置...................................................................1-111.4.1 VLAN-translation介绍.........................................................................1-111.4.2 VLAN-translation配置.........................................................................1-121.4.3 VLAN-translation典型应用..................................................................1-121.4.4 VLAN-translation排错帮助..................................................................1-131.5.1 动态VLAN介绍.....................................................................................1-131.5.2 动态VLAN配置.....................................................................................1-141.5.3 动态VLAN典型应用..............................................................................1-161.5.4 动态VLAN排错帮助..............................................................................1-171.6 Voice VLAN配置............................................................................1-171.6.1 Voice VLAN介绍...................................................................................1-171.6.2 Voice VLAN配置...................................................................................1-181.6.3 Voice VLAN典型应用...........................................................................1-181.6.4 Voice VLAN排错帮助...........................................................................1-19第2章 MAC地址表配置.............................................................2-12.1 MAC地址表介绍...............................................................................2-12.1.1 MAC地址表的获取..................................................................................2-12.1.2 转发或过滤.............................................................................................2-22.2 MAC地址表配置...............................................................................2-3 2.3 典型配置举例...................................................................................2-4 2.4 排错帮助..........................................................................................2-4 2.5 MAC地址功能扩展............................................................................2-52.5.1 MAC地址绑定.........................................................................................2-52.5.1.1 MAC地址绑定介绍........................................................................2-52.5.1.2 MAC地址绑定配置任务序列..........................................................2-52.5.1.3 MAC地址绑定排错帮助.................................................................2-6第1章 VLAN配置1.1 VLAN配置1.1.1 VLAN介绍VLAN(Virtual Local Area Network)即虚拟局域网,这项技术可以根据功能、应用或者管理的需要将局域网内部的设备逻辑地划分为一个个网段,从而形成一个个虚拟的工作组,并且不需要考虑设备的实际物理位置。

DCRS-5950操作手册_01_基本管理操作

DCRS-5950操作手册_01_基本管理操作
1.2 CLI界面...........................................................................................1-10
1.2.1 配置模式介绍 ....................................................................................... 1-10 1.2.2 配置语法............................................................................................... 1-13 1.2.3 支持快捷键 ........................................................................................... 1-13 1.2.4 帮助功能............................................................................................... 1-13 1.2.5 对输入的检查 ....................................................................................... 1-14 1.2.6 支持不完全匹配.................................................................................... 1-14
基本管理操作
目录
目录
第 1 章 交换机管理......................................................................1-1

神州数码交换机配置命令

神州数码交换机配置命令

神州数码交换机配置命令交换机基本状态:hostname> ;⽤户模式hostname# ;特权模式hostname(config)# ;全局配置模式hostname(config-if)# ;接⼝状态交换机⼝令设置:switch>enable ;进⼊特权模式switch#config terminal ;进⼊全局配置模式switch(config)#hostname ;设置交换机的主机名switch(config)#enable secret xxx ;设置特权加密⼝令switch(config)#enable password xxa ;设置特权⾮密⼝令switch(config)#line console 0 ;进⼊控制台⼝switch(config-line)#line vty 0 4 ;进⼊虚拟终端switch(config-line)#login ;允许登录switch(config-line)#password xx ;设置登录⼝令xxswitch#exit ;返回命令交换机VLAN设置:switch#vlan database ;进⼊VLAN设置switch(vlan)#vlan 2 ;建VLAN 2switch(vlan)#no vlan 2 ;删vlan 2switch(config)#int f0/1 ;进⼊端⼝1switch(config-if)#switchport access vlan 2 ;当前端⼝加⼊vlan 2switch(config-if)#switchport mode trunk ;设置为⼲线switch(config-if)#switchport trunk allowed vlan 1,2 ;设置允许的vlanswitch(config-if)#switchport trunk encap dot1q ;设置vlan 中继switch(config)#vtp domain ;设置发vtp域名switch(config)#vtp password ;设置发vtp密码switch(config)#vtp mode server ;设置发vtp模式switch(config)#vtp mode client ;设置发vtp模式交换机设置IP地址:switch(config)#interface vlan 1 ;进⼊vlan 1switch(config-if)#ip address ;设置IP地址switch(config)#ip default-gateway ;设置默认⽹关switch#dir Flash: ;查看闪存交换机显⽰命令:switch#write ;保存配置信息switch#show vtp ;查看vtp配置信息switch#show run ;查看当前配置信息switch#show vlan ;查看vlan配置信息switch#show interface ;查看端⼝信息switch#show int f0/0 ;查看指定端⼝信息完了最最要的⼀步。

命令手册《神州数码交换机5950》可靠性命令

命令手册《神州数码交换机5950》可靠性命令

可靠性命令目录目录第1章 VRRP命令·················································································1-11.1 advertisement-interval················································································1-11.2 circuit-failover·····························································································1-11.3 debug vrrp···································································································1-21.4 disable···········································································································1-21.5 enable···········································································································1-21.6 interface·······································································································1-31.7 preempt-mode·····························································································1-31.8 priority·········································································································1-31.9 router vrrp···································································································1-41.10 show vrrp···································································································1-41.11 virtual-ip·····································································································1-5第2章 MRPP命令·················································································2-12.1 mrpp enable·································································································2-12.2 mrpp ring·····································································································2-12.3 control-vlan··································································································2-12.4 primary-port································································································2-22.5 secondary-port·····························································································2-22.6 hello-timer····································································································2-22.7 fail-timer······································································································2-32.8 node-mode····································································································2-32.9 enable···········································································································2-32.10 show mrpp·································································································2-42.11 show mrpp statistics··················································································2-42.12 clear mrpp statistics··················································································2-42.13 debug mrpp································································································2-5第1章 VRRP命令1.1 advertisement-interval命令:advertisement-interval<adver_interva l>功能:配置vrrp定时器时间值参数:<adver_interval>发送VRRP报文的间隔时间,单位为秒,取值范围为1~10缺省情况:<adver_interva>缺省值为1秒命令模式:VRRP协议配置模式使用指南:每隔一段时间,VRRP备份组中的Master都会发送VRRP报文来向组内的路由器(或三层以太网交换机)通知自己工作正常,这个间隔时间就是adver_interval。

交换机的命令

交换机的命令

交换机的命令一、交换机基本配置1、使用交换机的命令行管理界面①切换交换机的模式:用户模式、特权模式、全局配置模式、端口模式②命令帮助:?③命令简写:可识别该命令的前几个字母④命令自动补齐:按TAB键,在可识别的情况下自动补齐⑤命令的快捷键:ctrl+z返回到特权模式,ctrl+c终止当前操作2、交换机的全局配置①进入全局配置模式switch#configure terminalswitch(config)#②配置交换机的设备名称switch(config)#hostname s123s123(config)#③配置交换机的每日提示信息s123(config)#banner motd & !&为终止符,有效字符为22个字节3、交换机端口的基本配置①进入端口配置模式switch#configure terminalswitch(config)#interface fastethernet 0/3switch(config-if)#②配置端口速率(100、10、auto)switch(config-if)#speed 10③配置双工模式(full、half、auto)switch(config-if)#duplex half④开启端口⑤查看端口配置信息switch#show interface fastethernet 0/3 AdminStatus:up 交换机端口开启OperStatus:up 交换机端口连接设备正常AdminDuplex:half 双工模式AdminSpeed:10 端口速度4、查看交换机的系统和配置信息①进入特权模式switch>enableswitch#②查看交换机的版本信息switch#show version③查看交换机的MAC地址表switch#show mac-address-table④查看交换机当前生效的配置信息switch#show running-config二、虚拟局域网VLAN--交换机端口隔离1、配置前测试连通性①给每台PC配置IP地址等信息②用ping命令测试可以连通2、创建VLAN①进入交换机全局配置模式switch#configure terminalswitch(config)#②建立VLANswitch(config)#vlan 10switch(config-vlan)#name test10 switch(config-vlan)#exitswitch(config)#vlan 20switch(config-vlan)#exit③查看已配置的VLAN信息3、将接口分配到VLAN①进入端口配置模式switch#configure terminalswitch(config)#interface fastethernet 0/1 switch(config-if)#②端口加入VLANswitch(config-if)#switchport access vlan 10 switch(config-if)#exitswitch(config)#interface fastethernet 0/3 switch(config-if)#switchport access vlan 20 switch(config-if)#exit4、配置后测试连通性加入不同vlan的端口所连接的PC间逻辑上不再连通三、跨交换机实现VLANSwitch(config)#vlan 10Switch(config-vlan)#exitSwitch(config)#interface fastEthernet 0/3 Switch(config-if)#switchport access vlan 10Switch(config)#interface fastEthernet 0/1 Switch(config-if)#switchport mode trunk四、交换机的冗余链接--不能形成环路链路聚合Switch(config)#interface aggregateport 1 Switch(config-if)#switchport mode trunk Switch(config-if)#exitSwitch(config)#interface range fastethernet 0/1-2Switch(config-if-range)#port-group 1生成树步骤1:交换机A上的配置Switch(config)#hostname SASA(config)#VLAN 10SA(config-if)#name salesSA(config-if)#exitSA(config)#interface fastethernet 0/3SA(config-if)#switchport access vlan 10SA(config-if)#exitSA(config)#interface range fastethernet 0/1 - 2SA(config-if-range)#switchport mode trunk步骤2: 交换机B上的配置Switch(config)#hostname SBSB(config)#VLAN 10SB(config-if)#name salesSB(config-if)#exitSB(config)#interface fastethernet 0/3SB(config-if)#switchport access vlan 10SB(config-if)#exitSB(config)#interface range fastethernet 0/1 - 2SB(config-if-range)#switchport mode trunk步骤3: 配置快速生成树协议SA(config)#spanning-tree !开启生成树协议SA(config)#spanning-tree mode rstp !指定生成树协议的类型为RSTPSB(config)#spanning-tree !开启生成树协议SB(config)#spanning-tree mode rstp !指定生成树协议的类型为RSTP步骤4: 设置交换机的优先级,指定交换机A为根交换机SA(config)#spanning-tree priority 4096五、利用三层交换机实现不同VLAN间的通信步骤1: 在交换机A(三层交换机)上创建VLAN 10,并将0/1端口划分到VLAN 10中在交换机A(三层交换机)上创建VLAN 20,并将0/2端口划分到VLAN 20中步骤2: 把交换机A与交换机B相连端口(设为0/24端口)定义为tag vlan模式步骤3: 在交换机B上创建VLAN 10,并将0/1端口划分到VLAN 10中步骤4: 把交换机B与交换机A相连端口(设为0/24端口)定义为tag vlan模式步骤5: 设置三层交换机VLAN间通信。

神州数码交换机路由器命令汇总(最简输入版)解析

神州数码交换机路由器命令汇总(最简输入版)解析

神州数码交换机路由器命令汇总(部分)2016年3月23日星期三修改_________________________________________________________________________注:本文档命令为最简命令,如不懂请在机器上实验注:交换机版本信息:DCRS-5650-28(R4) Device, Compiled on Aug 12 10:58:26 2013sysLocation ChinaCPU Mac 00:03:0f:24:a2:a7Vlan MAC 00:03:0f:24:a2:a6SoftWare Version 7.0.3.1(B0043.0003)BootRom Version 7.1.103HardWare Version 2.0.1CPLD Version N/ASerial No.:1Copyright (C) 2001-2013 by Digital China Networks Limited.All rights reservedLast reboot is warm reset.Uptime is 0 weeks, 0 days, 1 hours, 42 minutes路由器版本信息:Digital China Networks Limited Internetwork Operating System SoftwareDCR-2659 Series Software, Version 1.3.3H (MIDDLE), RELEASE SOFTWARECopyright 2012 by Digital China Networks(BeiJing) LimitedCompiled: 2012-06-07 11:58:07 by system, Image text-base: 0x6004ROM: System Bootstrap, Version 0.4.2Serial num:8IRTJ610CA15000001, ID num:201404System image file is "DCR-2659_1.3.3H.bin"Digital China-DCR-2659 (PowerPC) Processor65536K bytes of memory,16384K bytes of flashRouter uptime is 0:00:44:44, The current time: 2002-01-01 00:44:44Slot 0: SCC SlotPort 0: 10/100Mbps full-duplex EthernetPort 1: 2M full-duplex SerialPort 2: 2M full-duplex SerialPort 3: 1000Mbps full-duplex EthernetPort 4: 1000Mbps full-duplex EthernetPort 5: 1000Mbps full-duplex EthernetPort 6: 1000Mbps full-duplex Ethernet一、交换机配置命令1.基本配置switch > en (enable )进入特权用户模式 switch # con (config) 进入全局配置模式switch (config)# ho switch (hostname) 配置交换机名称 switch (config)# in e1/0/1 进入接口配置模式 switch (config -if -ethernet1/0/1)# exswitch (config)# in vl 1 进入VLAN 配置模式switch (config -if -vlan1)# ip ad 192.168.1.252 255.255.255.0 switch (config -if -vlan1)# exswitch (config)# ena p 1234 配置交换机密码(不加密) switch (config)# ena p 7 1234 配置交换机密码(加密) switch (config)# vl 10 创建vlan switch (config -vlan10)#ex switch (config)# in vl 10switch (config -if -vlan10)# ip ad 172.16.10.1 255.255.255.0 配置VLAN 地址2.生成树技术switch (config)# sp (spanning -tree) 启用全局生成树(默认mstp 生成树技术) switch (config)# sp mo stp/rstp /mstp (生成树/快速生成树/多生成树技术) switch (config)# sp ms 0 p 4096 设置交换机的优先级 默认32768 switch (config)# sh sp (show spanning -tree) 查看生成树3.交换机Web 管理switch (config)# ip ht serswitch (config)# usern admin pa 1234 用户名和密码4.交换机Telnet 管理switch (config)# telnet -s e (telnet enable) 开启telnet 服务 switch (config)# usern admin pa 1234 用户名和密码5.链路聚合(不需启动生成树)switchA (config)# port -g 1 (prot -group) switchA (config)# in e1/0/1-2switchA (config -port -range)# po 1 m on/active switchA (config -port -range)# ex switchA (config)# no port -g 1 删除组1switchB (config)# port -g 2 switchB (config)# in e1/0/3-4switchB (config -port -range)# po 2 m on/active switchB (config -port -range)# ex switchB (config)# no port -g 2 删除组26.交换机MAC 与IP 绑定switch (config)# am e (am enable) 启用全局am 功能 switch (config)# in e1/0/1switch (config_if_ethernet1/0/1)# am p (am port) 打开端口am 功能switch (config_if_ethernet1/0/1)# am m (mac -ip -pool) 00-A0-D1-D1-07-FF 192.168.1.101 switch (config_if_ethernet1/0/1)# ex switch (config)# in e1/0/2输入这条命令会出现: Invalid ENCRYPTED password! Please input the ENCRYPTED password with length 32 密码位数不够32位switch (config_if_ethernet1/0/2)# no am p 解锁端口7.交换机MAC与IP绑定静态绑定switch (config)# in e1/0/1switch (config_if_ethernet1/0/1)# sw p (port-security) 开启绑定功能switch (config_if_ethernet1/0/1)# sw p mac 00-a0-d1- d1-07-ff 添加静态MAC地址switch (config_if_ethernet1/0/1)# sw p max 4 绑定MAC地址的个数(默认为1)动态绑定(实验中交换机没有动态绑定命令)switch (config)# in e1/0/1switch (config_if_ethernet1/0/1)# sw p (port-security) 开启绑定功能switch (config_if_ethernet1/0/1)# sw port-security lockswitch (config_if_ethernet1/0/1)# sw port-security convert 将动态学习到绑定MAC的进行绑定switch # sh port-s add 查看绑定的地址8.交换机DHCP服务器配置switch (config)# service dhcp 启用DHCPswitch (config)# ip dh po poolA定义地址池poolAswitch (dhcp-poolA- config)# netw (network-address) 192.168.1.0 24switch (dhcp-poolA- config)# de (default-router) 192.168.1.254网关switch (dhcp-poolA- config)# dn 60.191.244.5DNS服务器switch (dhcp-poolA- config)# le 3租期3天switch (dhcp-poolA- config)# exswitch (config)# ip dh ex (excluded-add) 192.168.1.252 192.168.1.254 排除地址范围9.保留地址(一个地址池中只能配一个IP-MAC的绑定)switch (config)# ip dh po poolCswitch (dhcp-poolC- config)# ho 192.168.1.100 绑定的IP地址switch (dhcp-poolC- config)# ha (hardware-add) 00-a0-d1- d1-07-ff 绑定的MAC地址switch (dhcp-poolC- config)# de 192.168.1.254 网关10.ACL访问控制列表switchA (config)# ip ac s (standard) test命名标准IP访问列表switchA (config-std-nacl-test)# d (deny) 192.168.100.0 0.0.0.255反子网掩码(路由器上为子网掩码)switchA (config-std-nacl-test)# d 192.168.200.0 0.0.0.255switchA (config-std-nacl-test)# p (permit) a (permit any) 允许所有switchA (config-std-nacl-test)# exswitchA (config)# fir e (firewall enable) 开启ACL功能switchA (config)# in e1/0/1switchA (config-if-interface1/0/1)# ip ac (access-group) test in/out 进in出out (二层交换机上不支持out)11.配置时间范围switchA (config)# time-r worktimeswitchA (config-time-range)# p (periodic) weekd 9:0:0 to 18:0:012.VRRP虚拟路由器冗余协议Master BackupswitchA (config)# router v 1 switchB (config_router)# router v 1switchA (config_router)# v (virtual-ip) 192.168.1.254 switchB (config_router)# v 192.168.1.254 switchA (config_router)# i v 1 (interface vlan 1) switchB (config_router)# i v 1switchA (config_router)# pri 110 switchB (config_router)# enaswitchA (config_router)# c (circuit-failover) v 10 20switchA (config_router)# ena13.DHCP中继DHCP_relay (config)# service dhcp 全局开启DHCP服务DHCP_relay (config)# ip fo u b (ip forward-protocol udp bootps) 全局开启转发DHCP_relay (config)# in vl 10DHCP_relay (config-if-vlan10)# ip h 172.16.1.1 转发到DHCP服务器地址14.DHCP侦听DHCP (config)# service dhcpDHCP (config)# ip dh sn e 开启DHCP侦听功能DHCP (config)# in e1/0/1DHCP (config-if-ethernet1/0/1)# ip d s t (ip dhcp snooping trust)设置上联口为信任口15.端口隔离Switch (config)# is g test s i e1/0/1-2 (isolate-port group test switchport interface e1/0/1-2)e1/0/1-2口不能互相通信,可以和其它端口通信。

神州数码交换机03_端口操作.word

神州数码交换机03_端口操作.word

目录第1章端口配置 .................................................................................. 1-11.1 端口介绍........................................................................................................................ 1-11.2 业务端口配置................................................................................................................ 1-11.3 端口配置举例................................................................................................................ 1-31.4 端口排错帮助................................................................................................................ 1-4第2章端口环路检测功能操作配置 .................................................. 2-12.1 端口环路检测功能简介................................................................................................ 2-12.2 端口环路检测功能配置任务序列................................................................................ 2-12.3 端口环路检测典型案例................................................................................................ 2-32.4 端口环路检测排错帮助................................................................................................ 2-3第3章ULDP操作配置 ...................................................................... 3-13.1 ULDP功能简介............................................................................................................. 3-13.2 ULDP配置任务序列..................................................................................................... 3-23.3 ULDP功能典型案例..................................................................................................... 3-43.4 ULDP排错帮助............................................................................................................. 3-5第4章LLDP功能操作配置............................................................... 4-14.1 LLDP功能简介............................................................................................................. 4-14.2 LLDP功能配置任务序列............................................................................................. 4-14.3 LLDP功能典型案例..................................................................................................... 4-44.4 LLDP功能排错帮助..................................................................................................... 4-4第5章Port Channel配置 .................................................................. 5-15.1 Port Channel介绍......................................................................................................... 5-15.2 Port Channel配置任务序列......................................................................................... 5-25.3 Port Channel举例......................................................................................................... 5-25.4 Port Channel排错帮助................................................................................................. 5-5第6章JUMBO配置........................................................................... 6-16.1 JUMBO介绍 ................................................................................................................. 6-1 6.2 JUMBO配置任务序列 ................................................................................................. 6-1第1章端口配置1.1 端口介绍交换机提供线卡和主控卡,线卡提供各种类型的业务端口;主控卡提供Console口和网管端口,用于带外管理交换机。

神州数码交换机基本管理操作

神州数码交换机基本管理操作

目录第1章交换机管理...................................................................... 1-11.1 管理方式 .......................................................................................... 1-11.1.1 带外管理................................................................................................. 1-11.1.2 带内管理................................................................................................. 1-51.2 CLI界面........................................................................................... 1-101.2.1 配置模式介绍 ....................................................................................... 1-101.2.2 配置语法............................................................................................... 1-121.2.3 支持快捷键........................................................................................... 1-131.2.4 帮助功能............................................................................................... 1-131.2.5 对输入的检查 ....................................................................................... 1-131.2.6 支持不完全匹配.................................................................................... 1-14第2章交换机基本配置 .............................................................. 2-12.1 基本配置 .......................................................................................... 2-12.2 远程管理 .......................................................................................... 2-22.2.1 Telnet ..................................................................................................... 2-22.2.2 SSH ........................................................................................................ 2-42.3 配置交换机的IP地址......................................................................... 2-62.3.1 配置交换机的IP地址任务序列 ................................................................ 2-62.4 SNMP配置........................................................................................ 2-72.4.1 SNMP介绍 .............................................................................................. 2-72.4.2 MIB介绍.................................................................................................. 2-82.4.3 RMON介绍.............................................................................................. 2-92.4.4 SNMP配置 ............................................................................................ 2-102.4.5 SNMP典型配置举例.............................................................................. 2-132.4.6 SNMP排错帮助..................................................................................... 2-142.5 交换机升级..................................................................................... 2-152.5.1 交换机系统文件.................................................................................... 2-152.5.2 BootROM模式升级............................................................................... 2-152.5.3 FTP/TFTP升级...................................................................................... 2-182.5.4 分布式加载........................................................................................... 2-26第3章文件系统操作.................................................................. 3-13.1 文件存储设备介绍............................................................................ 3-13.2 文件系统操作任务配置序列.............................................................. 3-13.3 典型应用 .......................................................................................... 3-23.4 排错帮助 .......................................................................................... 3-3第4章集群网管配置.................................................................. 4-14.1 集群网管介绍 ................................................................................... 4-14.2 集群网管基本配置............................................................................ 4-14.3 集群网管举例 ................................................................................... 4-44.4 集群网管排错帮助............................................................................ 4-5第1章 交换机管理1.1 管理方式用户购买到交换机设备后,需要对交换机进行配置,从而实现对网络的管理。

5950交换机配置

5950交换机配置

三层交换机配置:启用光口interface gei_1/24hybrid-attribute fiber配置登录用户conf tusernamne admin password adminenable 密码conf tenable secret XXXX端口配置interface gei_1/3duplex (full/half) (端口工作模式)speed (10/100/1000) (端口速率)flowcontrol (disable/enable) (端口流量控制)Vlan创建批量创建vlan方式:zxr10#vlan databasezxr10(vlan)#vlan 10-20这样子10-20号连续的vlan就创建起来了,适合批量创建vlan。

在vlan中添加用户端口:zxr10(config)vlan 10 ///进入vlan10zxr10(config-vlan)switchport pvid fei_1/1-24 ///在vlan10中添加1-24号端口为用户端口,此时默认模式已经为access模式。

在接口中添加vlan:interface fei_1/1 ///进入级联端口的接口模式switchport mode access//设置端口模式为accessswitchport access vlan 10 ///级联端口与vlan绑定配置trunk级联端口(全局模式下):interface fei_1/1 ///进入级联端口的接口模式switchport mode trunk ///设置端口模式为trunkswitchport trunk vlan 10 ///级联端口与vlan绑定三层接口地址配置:interface vlan 10 ///进入三层vlan接口模式ip address 10.20.20.1 255.255.255.0 ///配置三层ip地址配置路由:Conft routerIp router 0.0.0.0 0.0.0.0 XXXXXX端口聚合(静态)conf tinterface smartgroup1 (创建trunk组1) interface gei_1/1 (绑定端口到trunk组) smartgroup 1 mode on //设置聚合模式为静态interface gei_1/2smartgroup 1 mode on//修改smartgroup端口的VLAN链路类型interface smartgroup 1switchport mode trunkswitchport trunk vlan 10switchport trunk vlan 20DHCP配置ZXR10(config)#interface vlan 10ZXR10(config-if-vlan10)#ip dhcp mode serverZXR10(config-if-vlan10)#ip address 10.10.1.1 255.255.255.0ZXR10(config-if-vlan10)#exitZXR10(config)#ip pool pool1(ip pool的名字)ZXR10(config-ip-pool)#range 10.10.1.10 10.10.1.100 255.255.255.0ZXR10(config-ip-pool)#exitZXR10(config)#ip dhcp pool dhcp1ZXR10(config-dhcp-pool)#ip-pool pool1ZXR10(config-dhcp-pool)#default-router 10.10.1.1ZXR10(config-dhcp-pool)#dns-server 60.191.244.2 60.191.244.5 ZXR10(config-dhcp-pool)#exitZXR10(config)#ip dhcp policy policy1 1ZXR10(config-dhcp-policy)#dhcp-pool dhcp1ZXR10(config-dhcp-policy)#exitZXR10(config)#interface vlan 10ZXR10(config-if-vlan10)#ip dhcp policy policy1ZXR10(config)#ip dhcp enable删除dhcp然后重新加载no ip dhcp polocy POLICY50 1no ip dhcp pool DHCP50no ip pool dhcp50ip pool DHCP50range 10.170.3.2 10.170.3.254 255.255.255.0exitip DHCP pool DHCP50ip-pool DHCP50default-router 10.170.3.1dns-server 60.191.134.126 60.192.134.206 exitip DHCP policy policy50 1dhcp-pool DHCP50。

神州数码交换机路由器常用命令操作

神州数码交换机路由器常用命令操作

神州数码交换机路由器常用命令操作神州数码交换机常用命令操作交换机初始化Ctrl+B交换机恢复默认值Setdefault write Reload1. 创建vlan、将端口指定为相应vlan、vlan分配IPVlan [编号] //创建vlan 例:vlan10Swi Int eth0/0/[编号-编号] //指定那些端口属于这个vlan 例:swi Int e0/0/1-10 int vlan [编号] //进入vlan接口例:int vlan 10 Ip add [IP地址] [子网掩码] //配置IP地址例:ip add 192.168.1.1 255.255.255.0创建私有vlan方法Vlan 10Private-vlan primary 指定为主vlan Vlan 11Private-vlan community 指定为群体vlan Vlan 12priate-vlan isolated 指定为隔离vlan 创建关联:vlan 10Priate-vlan association [关联的vlan号] //主vlan关联群体vlan和隔离vlan 给各vlan指定相应端口结果:群体vlan和隔离vlan ping主vlan 通群体vlan内通;主vlan 内通;群体vlan间不通;隔离vlan内不通;2.配置远程管理(可通过setup配置)(1)交换机telnet远程管理telnet-server enable // 开启telnet服务,默认以开启telnet-user [用户] password 0 [密码] //添加telnet管理用户(2)web服务管理Ip http sever // 开启web服务,需手动开启Web-user [用户名] password 0 [密码] //添加web管理用户3.静态路由Ip route [目标地址段] [目标掩码] [下一跳IP/接口]Ip route 0.0.0.0 0.0.0.0 [下一跳IP/接口] //ip route 0.0.0.0 0.0.0.0 192.168.1.2 4.RIP协议路由以Vlan方法Router ripName[名称]Networkvlan[编号] //networkvlan10以IP方法Router rip Name [名称] Network [ip段] 5.ospf 协议路由以Vlan方法Router ospf [ 编号] //默认编号是1Int vlan [vlan号] //int vlan 10 [区域号]默认为0,必须有Ip ospf enable area [区域号] //ip ospf enable area 0以IP方法Router ospf [ 编号] Router-id [ip地址]Network [自己的IP] [网关] area 0 //network 192.168.1.1/24 area 06.生成树协议1)Stp模式配置spanning-tree //启用生成树spanning-tree mode stp //设置生成树模式spanning-tree mst 0 priority 4096 //设置生成树交换机优先级2)mstp的配置spanning-treespanning-tree mst configuration name [名称]instance [实例号] vlan [编号]spanning-tree mst [实例号] priority 4096 //设置生成树交换机优先级spanning-tree mst [实例号] port-priority 16 //设置生成树端口优先级3)配置成快速启用端口Int e0/0/[编号-编号] Spanning-tree portfast 7.链路聚合(手工)port-group [组号] // 创建聚合组号int e0/0/[做链路的那几个端口号] //将端口加入聚合组port-group [组号] mode on 8.链路聚合(LACP动态生成)port-group [组号]int e0/0/[做链路的那几个端口号](交换机A的配置)port-group [组号] mode active (交换机B的配置)port-group [组号] mode passive 9.trunk Int e0/0/[端口]Sw mode trunk //设置为trunk Sw trunk allowed vlan all //划分到所有vlan 10.Mac地址和端口绑定(单个)Int e0/0/[端口] Sw port-securitySw port-security mac-address [mac地址] 11.Mac地址和端口绑定(多个)Inte0/0/[端口]Sw port-securitySw port-security maximum [安全mac地址个数如:3] sw port-security mac-address [mac地址] sw port-security mac-address [mac地址] sw port-security mac-address [mac地址] 12.Mac地址和端口绑定(动态学习) Int e0/0/[端口]Sw port-security maximumSw port-security maximum lock Sw port-security maximum convert 13.mac地址表绑定mac-address-table static address[mac地址]vlan[编号]inte0/0/[编号]//解释:让mac地址只能在指定vlan中的指定端口中使用,其他的都不能使用(未测试) 14. 端口安全1) int e0/0/1-10 //进入端口,只能在access口上配置2) switchport port-security // 开启端口安全功能3) switchport port-security maximum 5 //配置端口安全最大连接数4) sw port-security violation shutdown //配置违例处理方式5).sw port-security mac-address [mac地址] //配置mac地址绑定15. 交换机端口镜像(将源端口数据复制到目标端口)1) monitor session 1 source interface fastEthernet 0/2 both //源端口、被镜像的端口2) monitor session 1 destiNation interface fastEthernet 0/3 //目标端口、镜像端口16.dhcp配置1)交换机做dhcp服务器配置Service dhcp //启用DHCP服务Ip dhcp pool [地址池名]Network-address [IP段如:192.168.1.0] [掩码数如:24] Lease[租用天数]Default-router[网关IP] Dns-server[DNS的IP]Ip dhcp excluded-address //指定网段中不分配的IP地址2)Dhcp中继服务的配置Service dhcpIp forward-protocol udp bootps //配置DHCP中继转发port 端口的UDP广播报文,默认67端口Int vlan [编号]或在接口上配置//int e0/0/[编号]Ip help-address [服务器IP] //指定DHCP中继转发的UDP 报文的目标地址17.ACL IP访问控制下面2条是开启ACL Firewall enable //开启包过滤功能Firewall default permit //设置默认动作为允许//定义标准访问控制列表//定义访问列表Ip access-list standard test //在端口上应用列表Deny 192.168.1.100.00.0.0.0.255//禁止IP段访问Deny 192.168.200.11 0.0.0.0//禁止单个IP访问Denytcp192.168.200.00.0.0.255any-destinationd-port23//拒绝IP段telnet数据Permit192.168.1.100.00.0.0.0.255//允许IP 段访问Deny192.168.200.110.0.0.0//允许IP访问//绑定ACL到各个端口Inte0/0/[端口]Ip access-group test in //验证方法Show access-group 标准ACL实验1) access-list 1 deny 192.168.1.0 0.0.0.255 //拒绝访问的IP 段2) access-list 1 permit 192.168.1.0 0.0.0.255 //允许的IP段3) //进入端口4) ip access-group 1 in //把控制列表1 配入端口,进入控制5) ip access-group 1 out //把控制列表1 配入端口,输出控制15. 扩展ACL实验1) access-list 101 deny tcp A.B.C.D 255.255.255.0 A.B.C.D 255.255.255.0 eq ftp(WWW)// 禁止前面个网段访问后面个网段的ftp或者WWW16. 交换机单向访问控制1) //使用标准ACL2) access-list 1 deny 192.168.1.0 0.0.0.255 3) //进入端口4) ip access-group 1 in神州数码路由器常用命令操作路由器初始化:ctrl+break Nopassword 路由器恢复默认值dirDel startup-config Reboot1.进入端口给端口分配IP Int [端口]Ip add [ip] [子网掩码] No shuFC串口配置时钟频率Ph sp __ 2.静态路由Ip route [目标地址段] [目标掩码] [下一跳IP/接口]Ip route 0.0.0.0 0.0.0.0 [下一跳IP/接口] //默认路由Ip route 0.0.0.0 0.0.0.0 [下一跳IP/接口] 10 //浮动路由3.RIP协议路由Router ripNetwork [ip段] 4.ospf协议路由Router ospf [进程号] Router-id [ip地址]Network [自己的IP段] [子网掩码] area [区域号如:0] 5.telnet 开启方法1Aaa authen enable default line Aaa authen login default line Enable passwd [密码] Line vty 0 4Password [密码] 方法2Username [用户名] password [密码]Aaa authentication login [用户名] local Line vty 0 4Login authentication [刚刚那个用户名] 6.web访问配置Username [用户] password 0 [密码] //添加用户Ip http webm-type[web配置方式] //选择方式.高级,典型,向导Ip http port[端口] //配置web端口7.ppp协议时钟频率physical-layer speed __ 封装PPP协议Int s0/[编号]Enc ppp //封装PPP协议单向验证(验证方式为PAP和CHAP)验证方Aaa authen ppp default localUsername [用户名] password [密码] Int s0/[编号] Enc pppPpp authen pap 被验证方Aaa authen ppp default local Int s0/[编号] Enc pppPpp pap sen [用户名] passwd [密码] 双向验证:9.hdlcInt s0/[编号]Enc hdlc //和PPP差不多,都在端口中配置10.dhcp配置Ip dhcp pool[地址池名]Network 192.168.2.0 255.255.255.0 //定义网络段Range 192.168.2.10 192.168.2.20 //定义地址范围Default-router [IP] //配置网关Dns-sever [ip] //配置NDS的IP Lease [天数] //租用天数//退回配置模式(config) Ip dhcpd enable//开启dhcp11.Nat网络地址转换分为三种静态地址转换、动态地址转换、端口复用第一种1对1的网络地址转换,也叫静态地址转换,主要用于发布服务器(FTP/WEB/telnet)1)定义内外口在端口下输入ip nat inside ip nat outside 2)配置地址转换:ip nat inside source staticip nat inside source static tcp 80 80 发布WWW服务ip nat inside source static tcp 20 20 发布ftp服务ip nat inside source static tcp 21 21ip nat inside source static tcp 23 23 允许telnet远程登陆第二种多对多的网络地址转换,也叫动态地址转换1)定义内外口在端口下输入ip nat inside ip nat outside 2)定义内网访问列表(标准)和外网的地址池定义内网访问列表:ip access-list standardpermit //定义允许转换的源地址范围定义外网的地址池:ip nat pool netmask 3)配置地址转换:ip nat inside source list pool overload。

神州数码交换机的端口操作命令

神州数码交换机的端口操作命令

神州数码交换机的端口操作命令本文将介绍神州数码交换机常用的端口操作命令及其用法。

神州数码交换机是一种常用的网络设备,用于连接各个网络节点,实现网络通信。

了解并掌握交换机的端口操作命令是网络管理和故障排除的重要基础。

1. 查看端口状态要查看端口的状态,可以使用以下命令:show interface brief该命令会列出交换机上所有端口的基本信息,包括端口号、速率、协议等。

通过查看端口的状态,可以判断端口是否正常工作,是否接入了其他设备。

2. 配置端口速率和双工模式可以使用以下命令来配置交换机端口的速率和双工模式:interface [端口号]speed [速率]duplex [模式]其中,[端口号]为要配置的端口号,[速率]为端口的速率(如10、100、1000等),[模式]为端口的双工模式(如半双工、全双工等)。

例如,要将端口1配置为100Mbps的全双工模式,可以使用以下命令:interface 1speed 100duplex full3. 配置端口的VLANVLAN(Virtual Local Area Network)是一种逻辑上划分网络的技术,可以将一个物理网络划分成多个逻辑网络。

神州数码交换机可以通过以下命令为端口配置所属的VLAN:interface [端口号]switchport mode accessswitchport access vlan [VLAN号]其中,[端口号]为要配置的端口号,[VLAN号]为要配置的VLAN号。

例如,将端口1配置为属于VLAN 10的端口,可以使用以下命令:interface 1switchport mode accessswitchport access vlan 104. 配置端口的安全性可以使用以下命令为端口配置安全性:interface [端口号]switchport port-securityswitchport port-security maximum [最大允许MAC地址数量]switchport port-security violation [违例处理方式]其中,[端口号]为要配置的端口号,[最大允许MAC地址数量]为该端口上允许学习的MAC地址数量的最大值,[违例处理方式]为端口出现违例时的处理方式(如关闭端口、报警等)。

神州数码交换机5950MSTP、VRRP、OSPF详细命令

神州数码交换机5950MSTP、VRRP、OSPF详细命令

神州数码交换机5950MSTP、VRRP、OSPF详细命令sw1(config)#spanning-treesw1(config)#spanning-tree mode mstpsw1(config)#spanning-tree mst configurationsw1(Config-Mstp-Region)#instance 10 vlan 10sw1(Config-Mstp-Region)#instance 11 vlan 11sw1(Config-Mstp-Region)#instance 14 vlan 14sw1(Config-Mstp-Region)#revision-level 1sw1(Config-Mstp-Region)#exitsw1(config)#spanning-tree mst 10 priority 4096sw1(config)#spanning-tree mst 11 priority 8192sw1(config)#spanning-tree mst 14 priority 4096sw1(config)#router vrrp 10sw1(config-router)#virtual-ip 192.168.10.100sw1(config-router)#interface vlan 11sw1(config-router)#priority 120sw1(config-router)#preempt-mode truesw1(config-router)#enablesw1(config-router)#exitsw1(config)#router vrrp 11sw1(config-router)#virtual-ip 192.168.11.100 sw1(config-router)#interface vlan 11sw1(config-router)#priority 100sw1(config-router)#preempt-mode truesw1(config-router)#enablesw1(config-router)#exitsw1(config)#router vrrp 14sw1(config-router)#virtual-ip 192.168.14.100 sw1(config-router)#interface vlan 14sw1(config-router)#priority 120sw1(config-router)#preempt-mode truesw1(config-router)#enablesw1(config-router)#exitsw1(config)#router ospf 1sw1(config-router)#network 172.16.11.1 0.0.0.0.255 area 0 sw1(config-router)#network 172.16.10.1 0.0.0.0.255 area 0 sw1(config-router)#network 172.16.14.1 0.0.0.0.255 area 0 sw1(config-router)#network 172.16.0.2 0.0.0.0.3 area 0 sw1(config-router)#exitsw2(config)#spanning-treesw2(config)#spanning-tree mode mstpsw2(config)#spanning-tree mst configurationsw2(Config-Mstp-Region)#instance 10 vlan 10sw2(Config-Mstp-Region)#instance 11 vlan 11sw2(Config-Mstp-Region)#instance 14 vlan 14 sw2(Config-Mstp-Region)#revision-level 1sw2(Config-Mstp-Region)#exitsw2(config)#spanning-tree mst 10 priority 8192 sw2(config)#spanning-tree mst 11 priority 4096 sw2(config)#spanning-tree mst 14 priority 8192 sw2(config)#router vrrp 10sw2(config-router)#virtual-ip 192.168.10.100 sw2(config-router)#interface vlan 10sw2(config-router)#priority 100sw2(config-router)#preempt-mode truesw2(config-router)#enablesw2(config-router)#exitsw2(config)#router vrrp 11sw2(config-router)#virtual-ip 192.168.11.100sw2(config-router)#interface vlan 11sw2(config-router)#priority 120sw2(config-router)#preempt-mode truesw2(config-router)#enablesw2(config-router)#exitsw2(config)#router vrrp 14sw2(config-router)#virtual-ip 192.168.11.100sw2(config-router)#interface vlan 14sw2(config-router)#priority 100sw2(config-router)#preempt-mode truesw2(config-router)#enablesw2(config-router)#exitsw2(config)#router ospf 1sw2(config-router)#network 172.16.11.2 0.0.0.0.255 area 0 sw2(config-router)#network 172.16.10.2 0.0.0.0.255 area 0sw2(config-router)#network 172.16.14.2 0.0.0.0.255 area 0 sw2(config-router)#network 172.16.0.6 0.0.0.0.3 area 0 sw2(config-router)#exit。

DCRS-5950操作手册_06_三层转发及ARP操作

DCRS-5950操作手册_06_三层转发及ARP操作
三层转发及 ARP ····································································1-1
1.1 三层接口··········································································································· 1-1 1.1.1 三层接口介绍 ························································································· 1-1 1.1.2 三层接口配置 ························································································· 1-1
3.2 ARP、ND 绑定配置 ·························································································· 3-2
1
三层转发及 ARP 操作
目录
3.3 ARP、ND 绑定举例 ·························································································· 3-3
第 6 章 免费 ARP 发送功能操作配置 ··········································6-1
6.1 免费 ARP 发送功能简介 ··················································································· 6-1 6.2 免费 ARP 发送功能配置任务序列····································································· 6-1 6.3 免费 ARP 发送功能典型案例············································································ 6-2 6.4 免费 ARP 发送功能排错帮助············································································ 6-2

神州数码交换机

神州数码交换机

标准的AClACL (Access Control Lists)是交换机实现的一种数据包过滤机制,通过允许或拒绝特定的数据包进出网络,交换机可以对网络访问进行控制,有效保证网络的安全运行。

通过ACL,可以限制某个IP 地址的PC 或者某些网段的PC 的上网活动允许通过(permit)或拒绝通过(deny)第一步:交换机全部恢复出厂设置,在交换机中创建vlan100 和vlan200,并添加端口。

交换机B:switchB(Config)#vlan 100switchB(Config-Vlan100)#switchport interface ethernet 0/0/1-8switchB(Config-Vlan100)#exitswitchB(Config)#vlan 200switchB(Config-Vlan200)#switchport interface ethernet 0/0/9-16switchB(Config-Vlan200)#exit第二步:设置交换机trunk 端口交换机B:switchB(Config)#interface ethernet 0/0/24switchB(Config-Ethernet0/0/24)#switchport mode trunkswitchB(Config-Ethernet0/0/24)#switchport trunk allowed vlan allswitchB(Config-Ethernet0/0/24)#exit交换机A:switchA(Config)#vlan 100switchA(Config-Vlan100)#exitswitchA(Config)#vlan 200switchA(Config-Vlan200)#exitswitchA(Config)#interface ethernet 1/1switchA(Config-Ethernet1/1)#switchport mode trunkswitchA(Config-Ethernet1/1)#switchport trunk allowed vlan allswitchA(Config-Ethernet1/1)#exit第三步:交换机A 添加vlan 地址。

  1. 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
  2. 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
  3. 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。

端口操作命令目录目录第1章端口配置命令...........................................................1-11.1 以太网端口配置命令.....................................................................................1-11.1.1 bandwidth...................................................................................................................1-11.1.2 combo-forced-mode....................................................................................................1-11.1.3 clear counters..............................................................................................................1-21.1.4 flow control.................................................................................................................1-21.1.5 interface Ethernet......................................................................................................1-31.1.6 loopback......................................................................................................................1-31.1.7 mdi...............................................................................................................................1-31.1.8 name............................................................................................................................1-41.1.9 negotiation...................................................................................................................1-41.1.10 rate-suppression.......................................................................................................1-41.1.11 show interface...........................................................................................................1-51.1.12 shutdown...................................................................................................................1-81.1.13 speed-duplex.............................................................................................................1-9 1.2 vlan接口配置命令...........................................................................................1-91.2.1 interface vlan..............................................................................................................1-91.2.2 ip address..................................................................................................................1-101.2.3 shutdown...................................................................................................................1-10 1.3 镜像命令.......................................................................................................1-101.3.1 monitor session source interface.............................................................................1-101.3.2 monitor session source interface access-group.......................................................1-111.3.3 monitor session destination interface......................................................................1-111.3.4 show monitor............................................................................................................1-12第2章 Port Channel配置命令............................................2-12.1 debug lacp.......................................................................................................2-1 2.2 port-group.......................................................................................................2-1 2.3 port-group mode.............................................................................................2-1 2.4 interface port-channel....................................................................................2-2 2.5 show port-group..............................................................................................2-2第1章 端口配置命令1.1 以太网端口配置命令1.1.1 bandwidth命令:bandwidth control <bandwidth> [both | receive | transmit]no bandwidth control功能:打开端口的带宽限制功能;本命令的no操作为关闭端口的带宽限制功能。

参数:<bandwidth>为限制带宽,单位为Kbps,若为千兆带宽,取值范围为1-1000000K,若为百兆带宽1-100000K;取值范围为both为端口收发时均进行带宽控制;receive为仅在端口从交换机外接收数据时进行带宽控制;transmit为仅在端口向交换机外发送数据时进行带宽控制。

命令模式:端口配置模式缺省情况:端口缺省关闭带宽限制功能。

使用指南:当端口设置了带宽限制功能,并且指定了限制带宽的大小,那么端口的最大带宽就被确定,而不以10/100/1000M为最大带宽。

如果不指定[both | receive | transmit]关键字,缺省为both。

注意:设置端口带宽限制值不能超过端口可能的物理连接最大速度。

例如一个10/100M以太网端口不能设置为限制101000K(或101000K以上)的带宽。

但是当一个10/100/1000M 端口工作在100M速度时,可以设置101000K(或101000K以上)流量限制。

举例:设置1槽板卡1-8号端口限制带宽为40000K。

Switch(Config)#interface ethernet 1/1-8Switch(Config-If-Port-Range)#bandwidth control 40000 both1.1.2 combo-forced-mode命令:combo-forced-mode {copper-forced | copper-preferred-auto | sfp-forced | sfp-preferred-auto }功能:设置组合端口的组合模式(只对组合端口有效)。

相关文档
最新文档