H3C TE老版本OSPF正确配置

R1配置:

----------------------------------------------------

#
 sysname RT1
#
 super password level 3 cipher H`‘>T.,>([email protected]!X<]K3BK;Q!!
#
 ike local-name zb
#
 domain default enable system
#
 telnet server enable
#
 dar p2p signature-file flash:/p2p_default.mtd
#
 port-security enable
#
acl number 2008
 rule 0 permit source 192.168.0.0 0.0.0.255
acl number 2030
 rule 0 permit source 192.168.200.1 0
#
vlan 1
#
domain system
 access-limit disable
 state active   
 idle-cut disable
 self-service-url disable
#               
ike peer fb     
 exchange-mode aggressive
 pre-shared-key simple h3c
 id-type name   
 remote-name fb
#               
ipsec proposal 1
#               
ipsec policy-template huawei 1
 ike-peer fb    
 proposal 1     
#               
ipsec policy h3c 1 isakmp template huawei
#               
user-group system
 group-attribute allow-guest
#               
local-user telnet
 password simple telnet
 authorization-attribute level 2
 service-type telnet
local-user useradmin
 authorization-attribute level 2
#               
wlan rrm        
 dot11b mandatory-rate 1 2
 dot11b supported-rate 5.5 11
 dot11g mandatory-rate 1 2 5.5 11
 dot11g supported-rate 6 9 12 18 24 36 48 54
#               
attack-defense policy 1
#               
ospf 1 router-id 192.168.255.1
 default-route-advertise
 import-route static route-policy fk
 area 0.0.0.0   
  network 192.168.255.1 0.0.0.0
  network 10.255.111.1 0.0.0.0
  network 10.255.12.1 0.0.0.0
#               
rip 1           
 undo summary   
 version 2      
 network 10.0.0.0
 silent-interface Ethernet0/2
 silent-interface Ethernet0/0
 filter-policy ip-prefix filter export
 import-route static route-policy bt
#               
route-policy bt permit node 10
 if-match ip-prefix bt
route-policy fk permit node 10
 if-match ip-prefix fk
#               
 ip ip-prefix bt index 10 permit 192.168.0.0 19
 ip ip-prefix bt index 20 permit 10.0.0.0 11
 ip ip-prefix fk index 10 permit 192.168.96.0 19
 ip ip-prefix fk index 20 permit 10.101.0.0 19
 ip ip-prefix filter index 10 deny 192.168.96.0 19 less-equal 32
 ip ip-prefix filter index 20 permit 0.0.0.0 0 less-equal 32
#               
 ip route-static 0.0.0.0 0.0.0.0 61.67.1.2
 ip route-static 10.0.0.0 255.224.0.0 NULL0
 ip route-static 10.101.0.0 255.255.224.0 NULL0
 ip route-static 192.168.0.0 255.255.224.0 NULL0
 ip route-static 192.168.96.0 255.255.224.0 NULL0
#               
 undo info-center source default channel 2
 undo info-center source default channel 9
#               
 snmp-agent     
 snmp-agent local-engineid 800063A2030023892DAB30
 snmp-agent community read h3c-read
 snmp-agent sys-info version v2c v3
 snmp-agent target-host trap address udp-domain 192.168.200.1 params securityname h3c-read
 undo snmp-agent trap enable voice dial
 snmp-agent trap source LoopBack0
#               
 nat static 10.1.0.100 100.0.0.100
#               
 nms primary monitor-interface Ethernet0/0
#               
 load xml-configuration
#               
 load tr069-configuration
#               
user-interface tty 12
user-interface aux 0
user-interface vty 0 4
 acl 2030 inbound
 authentication-mode scheme
 user privilege level 2
 idle-timeout 0 0
 protocol inbound telnet
#               
return

R2配置:

----------------------------------------------------------------

#
 sysname RT2
#
 super password level 3 cipher $c$3$wUlzmVkRd1JQb+mPCZSg7KXL6nkENfjwROXQFg==
#
#
 domain default enable system
#
 telnet server enable
#
 ip ttl-expires enable
 ip unreachables enable
#
 dar p2p signature-file cfa0:/p2p_default.mtd
#
 port-security enable
#
 undo ip http enable
#
 password-recovery enable
#
acl number 2030
 rule 0 permit source 192.168.200.1 0
#               
acl number 3000
 rule 0 permit ip source 192.168.0.0 0.0.0.255 destination 192.168.0.0 0.0.31.255
#               
vlan 1          
#               
domain system   
 access-limit disable
 state active   
 idle-cut disable
 self-service-url disable
#               
traffic classifier oa operator and
 if-match acl 3000
#               
traffic behavior oa
 queue af bandwidth 1500
#               
qos policy h3c  
 classifier oa behavior oa
#               
user-group system
 group-attribute allow-guest
#               
local-user rt2  
 password cipher $c$3$mnEYQyPWbQ4cubJP5HnyP+IsCzivSg==
 service-type ppp
local-user telnet
 password cipher $c$3$cospwisuMw1xXMmseocl/GLrIkBBi7RnWQ==
 authorization-attribute level 2
 service-type telnet
#               
ospf 1 router-id 192.168.255.2
 area 0.0.0.0   
  network 192.168.255.2 0.0.0.0
  network 10.255.122.1 0.0.0.0
  network 10.255.12.2 0.0.0.0
 area 0.0.0.1   
  network 10.255.25.2 0.0.0.0
#               
 snmp-agent     
 snmp-agent local-engineid 800063A203000FE2E51B36
 snmp-agent community read h3c-read
 snmp-agent sys-info version v2c v3
 snmp-agent target-host trap address udp-domain 192.168.200.1 params securityname h3c-read
 snmp-agent trap source LoopBack0
#               
 load xml-configuration
#               
user-interface con 0
user-interface tty 13
user-interface aux 0
user-interface vty 0 4
 acl 2030 inbound
 authentication-mode scheme
 user privilege level 2
 idle-timeout 0 0
 protocol inbound telnet
#               
return

R3配置

----------------------------------------------------

#
 sysname RT3
#
 super password level 3 cipher H`‘>T.,>([email protected]!X<]K3BK;Q!!
#
 ike local-name fb
#
 domain default enable system
#
 dar p2p signature-file flash:/p2p_default.mtd
#
 lldp enable
#
acl number 2000
 rule 0 permit source 192.168.96.0 0.0.31.255
#
acl number 3000
 rule 0 permit ip source 192.168.255.3 0 destination 192.168.255.1 0
#
vlan 1
#
domain system
 access-limit disable
 state active   
 idle-cut disable
 self-service-url disable
#               
ike proposal 1  
#               
ike peer rt1    
 exchange-mode aggressive
 pre-shared-key simple h3c
 id-type name   
 remote-name zb
 remote-address 61.67.1.1
#               
ipsec proposal 1
#               
ipsec policy h3c 1 isakmp
 security acl 3000
 ike-peer rt1   
 proposal 1     
#               
user-group system
 group-attribute allow-guest
#               
local-user useradmin
 authorization-attribute level 2
#               
wlan rrm        
 dot11b mandatory-rate 1 2
 dot11b supported-rate 5.5 11
 dot11g mandatory-rate 1 2 5.5 11
 dot11g supported-rate 6 9 12 18 24 36 48 54
#               
attack-defense policy 1
#               
rip 1           
 undo summary   
 version 2      
 network 10.0.0.0
 network 192.168.101.0
 network 192.168.110.0
#               
policy-based-route Ethernet0/0 permit node 0
   if-match acl 2000
   apply output-interface Ethernet0/0
#               
policy-based-route Ethernet0/2 permit node 0
   if-match acl 2000
#               
policy-based-route Ethernet0/1 permit node 0
   if-match acl 2000
#               
 ip route-static 0.0.0.0 0.0.0.0 64.67.1.2
#               
 undo info-center source default channel 2
 undo info-center source default channel 9
#               
 nms primary monitor-interface Ethernet0/0
#               
 load xml-configuration
#               
 load tr069-configuration
#               
user-interface tty 12
user-interface aux 0
 user privilege level 2
 idle-timeout 0 0
user-interface vty 0 4
#               
return

R4配置:

-------------------------------------------------------------

#
 version 5.20, Release 1618P13, Basic
#
 sysname RT4
#
 super password level 3 cipher H`‘>T.,>([email protected]!X<]K3BK;Q!!
#
 ipsec cpu-backup enable
#
 undo cryptoengine enable
#
 domain default enable system
#
acl number 3000
 rule 0 permit ip source 192.168.0.0 0.0.31.255 destination 192.168.0.0 0.0.0.255
#
vlan 1
#
domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
#               
traffic classifier oa operator and
 if-match acl 3000
#               
traffic behavior oa
 queue af bandwidth 1500
#               
qos policy h3c  
 classifier oa behavior oa
#               
local-user admin
 password cipher .]@USE=B,53Q=^Q`MAF4<1!!
 service-type telnet
 level 3        
local-user rt4  
 password simple rt4
 service-type ppp
#               
interface Aux0  
 async mode flow
 link-protocol ppp
#               
interface Ethernet0/0
 port link-mode route
#               
interface Ethernet0/1
 port link-mode route
#               
interface Ethernet0/1.10
 vlan-type dot1q vid 10
 ip address 192.168.11.254 255.255.255.0
#               
interface Ethernet0/1.20
 vlan-type dot1q vid 20
 ip address 10.11.0.254 255.255.0.0
#               
interface Serial1/0
 virtualbaudrate 2048000
 link-protocol ppp
 ppp authentication-mode chap
 ppp chap user rt2
 ppp chap password simple rt2
 ip address 10.255.25.1 255.255.255.252
 qos apply policy h3c outbound
#               
interface Serial2/0
 link-protocol ppp
 ppp authentication-mode chap
 ppp chap user rt2
 ppp chap password simple rt2
 ppp mp Mp-group 1
 shutdown       
#               
interface NULL0
#               
interface LoopBack0
 ip address 192.168.255.4 255.255.255.255
#               
interface LoopBack10
 ip address 192.168.20.1 255.255.255.255
#               
interface LoopBack20
 ip address 10.20.0.1 255.255.255.255
#               
ospf 1 router-id 192.168.255.4
 filter-policy ip-prefix filter import
 area 0.0.0.1   
  network 192.168.255.4 0.0.0.0
  network 10.255.25.1 0.0.0.0
  network 10.11.0.0 0.0.255.255
  network 10.20.0.0 0.0.255.255
  network 192.168.11.0 0.0.0.255
  network 192.168.20.0 0.0.0.255
#               
 ip ip-prefix filter index 10 deny 192.168.96.0 19
 ip ip-prefix filter index 20 permit 0.0.0.0 0 less-equal 32
#               
user-interface con 0
 user privilege level 2
user-interface aux 0
user-interface vty 0 4
#               
return          
R5配置

-------------------------------------------------------

#
 sysname RT5
#
 super password level 3 cipher H`‘>T.,>([email protected]!X<]K3BK;Q!!
#
 ike local-name fb
#
 domain default enable system
#
 ip host h 1.1.1.1
#
 telnet server enable
#
 dar p2p signature-file flash:/p2p_default.mtd
#
 port-security enable
#
acl number 2000
 rule 0 permit source 192.168.0.0 0.0.31.255
#
acl number 3000
 rule 0 permit ip source 192.168.255.5 0 destination 192.168.255.1 0
#
vlan 1          
#               
domain system   
 access-limit disable
 state active   
 idle-cut disable
 self-service-url disable
#               
ike proposal 1  
#               
ike peer rt1    
 exchange-mode aggressive
 pre-shared-key simple h3c
 id-type name   
 remote-name zb
 remote-address 61.67.1.1
#               
ipsec proposal 1
#               
ipsec policy h3c 1 isakmp
 security acl 3000
 ike-peer rt1   
 proposal 1     
#               
user-group system
 group-attribute allow-guest
#               
local-user admin
 password cipher .]@USE=B,53Q=^Q`MAF4<1!!
 authorization-attribute level 3
 service-type telnet
#               
cwmp            
 undo cwmp enable
#               
rip 1           
 undo summary   
 version 2      
 network 10.0.0.0
 network 192.168.111.0
 network 192.168.120.0
#               
#               
voice-setup     
 #              
 sip            
 #              
 sip-server     
  #             
  call-rule-set
  #             
  call-route    
 #              
 dial-program   
  default entity fax protocol standard-t38
  default entity fax protocol standard-t38 hb-redundancy 0
  default entity fax protocol standard-t38 lb-redundancy 0
 #              
 aaa-client     
 #              
 gk-client      
#               
 ip route-static 0.0.0.0 0.0.0.0 202.112.1.2
#               
 load xml-configuration
#               
 load tr069-configuration
#               
user-interface tty 16
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2001
user-interface tty 17
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2002
user-interface tty 18
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2003
user-interface tty 19
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2004
user-interface tty 20
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2005
user-interface tty 21
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2006
user-interface tty 22
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2007
user-interface tty 23
 undo shell     
 idle-timeout 0 0
 flow-control none
 redirect enable
 redirect return-deal from-telnet
 undo redirect timeout
 redirect listen-port 2008
user-interface aux 0
 user privilege level 2
 idle-timeout 0 0
user-interface vty 0 4
 user privilege level 2
 set authentication password simple h3cte
 idle-timeout 0 0
#               
return

SW1配置:

--------------------------------------------------------------

#
 sysname SW1
#
 super password level 3 cipher $c$3$gFoSXX5isPm6ROe6dVr4T0fdLKNjaroPWwBHyg==
#
 domain default enable system
#
 burst-mode enable
#
 undo ip http enable
#
 password-recovery enable
#
vlan 1
#
vlan 10
#
vlan 20
#
vlan 30
#
vlan 40
#
domain system   
 access-limit disable
 state active   
 idle-cut disable
 self-service-url disable
#               
user-group system
#               
stp region-configuration
 region-name h3c
 instance 1 vlan 10
 instance 2 vlan 20
 active region-configuration
#               
 stp instance 0 root primary
 stp instance 1 root primary
 stp instance 2 root secondary
 stp enable     
#               
ospf 1 router-id 192.168.255.11
 silent-interface Vlan-interface10
 silent-interface Vlan-interface20
 area 0.0.0.0   
  network 192.168.255.11 0.0.0.0
  network 192.168.0.0 0.0.0.255
  network 10.1.0.0 0.0.255.255
  network 10.255.111.2 0.0.0.0
  network 10.255.212.1 0.0.0.0
#               
user-interface aux 0
user-interface vty 0 4
#               
return

SW2配置:

----------------------------------------------------------

#
 sysname SW2
#
 super password level 3 cipher $c$3$qjfU6akF+IsLNBE31R8g5dya/LHcgc0ERcbrQw==
#
 domain default enable system
#
 burst-mode enable
#
 undo ip http enable
#
 password-recovery enable
#
domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
#
user-group system
#
stp region-configuration
 region-name h3c
 instance 1 vlan 10
 instance 2 vlan 20
 active region-configuration
#               
 stp instance 0 root primary
 stp instance 1 root secondary
 stp instance 2 root primary
 stp enable     
#               
ospf 1 router-id 192.168.255.12
 silent-interface Vlan-interface10
 silent-interface Vlan-interface20
 area 0.0.0.0   
  network 192.168.255.12 0.0.0.0
  network 192.168.0.0 0.0.0.255
  network 10.1.0.0 0.0.255.255
  network 10.255.122.2 0.0.0.0
  network 10.255.212.2 0.0.0.0
#               
user-interface aux 0
user-interface vty 0 4
#               
return

SW3配置:

-----------------------------------------------------

#
 sysname SW3
#
 super password level 3 cipher H`‘>T.,>([email protected]!X<]K3BK;Q!!
#
 domain default enable system
#
 telnet server enable
#
vlan 1
#
vlan 10
#
vlan 20
#
domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
#
user-group system
#
 stp bpdu-protection
 stp enable     
stp region-configuration
 region-name h3c
 instance 1 vlan 10
 instance 2 vlan 20
 active region-configuration
#               
user-interface aux 0
user-interface vty 0 4
#               
return

H3C TE老版本OSPF正确配置

时间: 2024-10-07 00:27:41

H3C TE老版本OSPF正确配置的相关文章

eureka server中设置认证登录,spring cloud新老版本不同的配置(spring cloud2.0+ 和springcloud- )

注:spring cloud学习关于设置eureka server的登录认证出现问题记录 spring cloud2.0以下版本配置: application.yml配置: 1 security: 2 basic: 3 enabled: true 4 user: 5 name: user 6 password: password123 spring cloud2.0以上版本配置: application.yml配置: 1 spring: 2 application: 3 name: eureka

快速入门系列--WebAPI--04在老版本MVC4下的调整

WebAPI是建立在MVC和WCF的基础上的,原来微软老是喜欢封装的很多,这次终于愿意将http编程模型的相关细节暴露给我们了.在之前的介绍中,基本上都基于.NET 4.5之后版本,其System.Net.Http程序集非常的丰富,而老版本的则相对较弱.在WebAPI v1.0(和ASP.NET MVC4在一起的版本)很多的类和接口并不存在,同时对Task异步编程(ApiController默认提供异步执行方法)的支持还有一些欠缺(缺少不少方便的扩展方法),在使用时会有一些需要注意的地方,由于一

cenos下安装MySQL最新版(5.7.18)记录。附卸载老版本过程

首先说明:老版本数据库没有数据,所以无数据备份过程.如果你在升级数据库过程里,需要备份数据,请另外自行处理. 1.下载最新版MySQL.解压待用 wget https://dev.mysql.com/get/Downloads/MySQL-5.7/mysql-5.7.18-linux-glibc2.5-x86_64.tar.gz #下载tar -zxvf mysql-5.7.18-linux-glibc2.5-x86_64.tar.gz #解压cp -r mysql-5.7.18-linux-g

BGP拓扑正确配置

R1的配置 ----------------------------------------------------------------------------- sysname RT1# super password level 3 simple h3c# domain default enable system# telnet server enable#acl number 2000 rule 0 permit source 192.168.200.0 0.0.0.255acl num

H3C路由器V7版本关于认证的一些知识点

1.关于权限等级的分类 我们知道,H3C在V7版本中关于登陆权限分成了15级,与思科更为类似,而不是之前的3级权限.其实在实际应用中,虽然是15级权限,但我们使用的时候最常用的也就3级,分别是level-0.level-1.level-15.这三级对应的命令权限话不多说,直接上图:上图可以看出,level-0中允许的命令有:tracert.telnet.ping.ssh2.super,拒绝的命令有system-view.下面再来看level-1:对比可以发现,level-1的命令与level-0

解决eWebEditor老版本在IE新版本下按钮失效问题一劳永逸的办法

单位里有一套新闻发布系统,是很早以前的了,一直在用,eWebEditor是什么版本的也搞不清了,但肯定是老版本. 前一段时间也出了问题,在IE8上按钮失效,经过百度之后,解决方案几乎全都一样,都是五花八门的判断IE版本然后执行对应的匿名方法. 出问题的是editor.js中的这句:if (element.YUSERONCLICK) eval(element.YUSERONCLICK + "anonymous()"); 而解决方案,无一例外的都是两种 1. 1 if(navigator.

phpMyAdmin提示“无法在发生错误时创建会话,请检查 PHP 或网站服务器日志,并正确配置 PHP 安装。”

这是以前学生在使用phpwamp时遇到的一个问题(其他环境或是自己搭建时遇到此问题,解决方式同理) 其实这个问题与PHPWAMP本身无关,是电脑设置的问题,一般正常情况下不会出现这个问题. 现在把学生遇到的问题整理一下,发布成博文. 学生提问如下: 老师,求助啊,可能是phpwamp的配置文件被我搞乱了, 以前一切正常,换个电脑出现了问题.无论是用老师开发的PHPWAMP还是其他的php环境,在进入phpmyadmin时都会出现如下错误提示: "无法在发生错误时创建会话,请检查 PHP 或网站服

win8装好后右下角显示secureboot未正确配置

桌面会显示"Windows 8.1 Secure Boot未正确配置"的水印问题: 安全启动(Secure Boot)可以阻止未授权软件的运行,提升系统的安全性.上述提示意味着安全启动被禁用或者没有正确配置.微软之前曾表示可以进入BIOS菜单打开或重新配置安全启动,或者联系PC厂商.这对于普通用户来说,这并不是什么好的解决方案.现在微软发布了一个补丁KB2902864,用来消除Secure Boot没有正确配置水印.下载地址如下: x86 Windows 8.1版本(KB2902864

MySQL数据库集群进行正确配置步骤

MySQL数据库集群进行正确配置步骤 2010-06-09 10:47 arrowcat 博客园 字号:T | T 我们今天是要和大家一起分享的是对MySQL数据库集群进行正确配置,我前两天在相关网站看见的资料,今天拿出来供大家分享. AD:51CTO 网+首届APP创新评选大赛火热启动——超百万资源等你拿! 此文章主要向大家讲述的是对MySQL数据库集群进行正确配置的实际操作步骤,以及对其概念的讲述,如果你对其相关的实际操作有兴趣了解的话,以下的文章将会给你提供相关的知识. 一.介绍 这篇文档