华为S5700实战配置

公司S5700配置实例

[yundaHW]#dis cur

Software Version V200R003C00SPC300
#
sysname yundaHW
#
FTP server enable
#
vlan batch 10 20 30 40 50 60 70 90
#
undo nap slave enable
#
clock timezone BJ add 08:00:00
#
dhcp enable
#
ip pool vlan10ips
 gateway-list 172.16.1.254
 network 172.16.1.0 mask 255.255.255.0
 excluded-ip-address 172.16.1.100 172.16.1.253
 lease day 8 hour 0 minute 0
 dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan20ips
 gateway-list 172.16.2.254
 network 172.16.2.0 mask 255.255.255.0
 excluded-ip-address 172.16.2.100 172.16.2.253
 lease day 8 hour 0 minute 0
 dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan30ips
 gateway-list 172.16.3.254
 network 172.16.3.0 mask 255.255.255.0
 excluded-ip-address 172.16.3.100 172.16.3.253
 lease day 8 hour 0 minute 0
 dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan40ips
 gateway-list 172.16.4.254
 network 172.16.4.0 mask 255.255.255.0
 excluded-ip-address 172.16.4.100 172.16.4.253
 lease day 8 hour 0 minute 0
 dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan50ips
 gateway-list 172.16.5.254
 network 172.16.5.0 mask 255.255.255.0
 excluded-ip-address 172.16.5.100 172.16.5.253
 lease day 8 hour 0 minute 0
 dns-list 172.16.1.10 114.114.114.114
#
ip pool vlan60ips
 gateway-list 172.16.6.254
 network 172.16.6.0 mask 255.255.255.0
 excluded-ip-address 172.16.6.100 172.16.6.253
 lease day 8 hour 0 minute 0
 dns-list 172.16.1.10 114.114.114.114
#
aaa
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default 
 domain default_admin 
 local-user gl password cipher %@%@LJ"lGs<^G<CoYhGQKJ#"\&xk%@%@
 local-user gl privilege level 3
 local-user gl service-type telnet web http
 local-user admin password cipher %@%@5d~9:M^ipCfL\iB)EQd>3Uwe%@%@
 local-user admin service-type http
#
interface Vlanif10
 ip address 172.16.1.254 255.255.255.0
 dhcp select global
#
interface Vlanif20
 ip address 172.16.2.254 255.255.255.0
 dhcp select global
#
interface Vlanif30
 ip address 172.16.3.254 255.255.255.0
 dhcp select global
#
interface Vlanif40
 ip address 172.16.4.254 255.255.255.0
 dhcp select global
#
interface Vlanif50
 ip address 172.16.5.254 255.255.255.0
 dhcp select global
#
interface Vlanif60
 ip address 172.16.6.254 255.255.255.0
 dhcp select global
#
interface Vlanif70
 ip address 192.168.0.3 255.255.255.0
#
interface Vlanif90
 ip address 10.10.10.3 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
 port link-type access
 port default vlan 10
 loopback-detect recovery-time 30
 loopback-detect packet vlan 10
 loopback-detect enable
#
interface GigabitEthernet0/0/2
 port link-type access
 port default vlan 10
 loopback-detect recovery-time 30
 loopback-detect packet vlan 10
 loopback-detect enable
#
interface GigabitEthernet0/0/3
 port link-type access
 port default vlan 20
 loopback-detect recovery-time 30
 loopback-detect packet vlan 20
 loopback-detect enable
#
interface GigabitEthernet0/0/4
 port link-type access
 port default vlan 20
 loopback-detect recovery-time 30
 loopback-detect packet vlan 20
 loopback-detect enable
#
interface GigabitEthernet0/0/5
 port link-type access
 port default vlan 30
 loopback-detect recovery-time 30
 loopback-detect packet vlan 30
 loopback-detect enable
#
interface GigabitEthernet0/0/6
 port link-type access
 port default vlan 30
 loopback-detect recovery-time 30
 loopback-detect packet vlan 30
 loopback-detect enable
#
interface GigabitEthernet0/0/7
 port link-type access
 port default vlan 40
 loopback-detect recovery-time 30
 loopback-detect packet vlan 40
 loopback-detect enable
#
interface GigabitEthernet0/0/8
 port link-type access
 port default vlan 40
 loopback-detect recovery-time 30
 loopback-detect packet vlan 40
 loopback-detect enable
#
interface GigabitEthernet0/0/9
 port link-type access
 port default vlan 50
 loopback-detect recovery-time 30
 loopback-detect packet vlan 50
 loopback-detect enable
#
interface GigabitEthernet0/0/10
 port link-type access
 port default vlan 50
 loopback-detect recovery-time 30
 loopback-detect packet vlan 50
 loopback-detect enable
#
interface GigabitEthernet0/0/11
 port link-type access
 port default vlan 60
 loopback-detect recovery-time 30
 loopback-detect packet vlan 60
 loopback-detect enable
#
interface GigabitEthernet0/0/12
 port link-type access
 port default vlan 60
 loopback-detect recovery-time 30
 loopback-detect packet vlan 60
 loopback-detect enable
#
interface GigabitEthernet0/0/13
 port link-type access
 port default vlan 70
 loopback-detect recovery-time 30
 loopback-detect packet vlan 70
 loopback-detect enable
#
interface GigabitEthernet0/0/14
 port link-type access
 port default vlan 70
 loopback-detect recovery-time 30
 loopback-detect packet vlan 70
 loopback-detect enable
#
interface GigabitEthernet0/0/15
 shutdown
#
interface GigabitEthernet0/0/16
 shutdown
#
interface GigabitEthernet0/0/17
 port link-type access
 port default vlan 90
 loopback-detect recovery-time 30
 loopback-detect packet vlan 90
 loopback-detect enable
#
interface GigabitEthernet0/0/18
 port link-type access
 port default vlan 90
 loopback-detect recovery-time 30
 loopback-detect packet vlan 90
 loopback-detect enable
#
interface GigabitEthernet0/0/19
#
interface GigabitEthernet0/0/20
#
interface GigabitEthernet0/0/21
 shutdown
#
interface GigabitEthernet0/0/22
#
interface GigabitEthernet0/0/23
 port hybrid pvid vlan 20
 port hybrid untagged vlan 10 20
#
interface GigabitEthernet0/0/24
 port hybrid pvid vlan 20
 port hybrid untagged vlan 10 20
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 10.10.10.1
#
snmp-agent
snmp-agent local-engineid 800007DB0368A8281865B0
snmp-agent community read cipher %$%$q1d}@[Jr6%"2{lG‘d`UTsus/,i!M~$mHa!b]5l-3TWa*us2s41=aFh{\.7:Q2wY0x1sSs;su%$%$
snmp-agent sys-info version all
snmp-agent target-host trap address udp-domain 10.10.10.2 params securityname cipher %@%@=NfaA~>OjM$ZK&%=n##OsvYc%@%@ v2c
snmp-agent trap enable
#
user-interface con 0
 authentication-mode password
 set authentication password cipher %@%@Zf6|Jy!kJ-Bk74*)*(PM,,vngu^WD{qyjKBxfkYe>\+),vq,%@%@
user-interface vty 0 4
 authentication-mode aaa
 idle-timeout 20 0
user-interface vty 16 20
#
port-group vlan10
 group-member GigabitEthernet0/0/1
 group-member GigabitEthernet0/0/2
#
port-group vlan20
 group-member GigabitEthernet0/0/3
 group-member GigabitEthernet0/0/4
#
port-group vlan30
 group-member GigabitEthernet0/0/5
 group-member GigabitEthernet0/0/6
#
port-group vlan40
 group-member GigabitEthernet0/0/7
 group-member GigabitEthernet0/0/8
#
port-group vlan50
 group-member GigabitEthernet0/0/9
 group-member GigabitEthernet0/0/10
#
port-group vlan60
 group-member GigabitEthernet0/0/11
 group-member GigabitEthernet0/0/12
#
port-group vlan70call
 group-member GigabitEthernet0/0/13
 group-member GigabitEthernet0/0/14
#
port-group vlan90toac
 group-member GigabitEthernet0/0/17
 group-member GigabitEthernet0/0/18
#
return

时间: 2024-10-12 08:39:15

华为S5700实战配置的相关文章

华为S5700基础配置----备份和恢复配置文件

一:备份配置文件 设备作为FTP服务器,用户PC作为FTP客户端 # 配置设备的FTP功能及FTP用户信息. <HUAWEI> system-view [HUAWEI] ftp server enable [HUAWEI] aaa [HUAWEI-aaa] local-user admin1234 password irreversible-cipher [email protected] [HUAWEI-aaa] local-user admin1234 privilege level 15

华为S5700配置端口镜像和华三S5120配置802.1X认证记录

一.说明 事情的起因是我们部门有个华为的S5700交换机,想配置端口镜像抓包但让助理买的串口线很久都还没到:而昨天测试部的同事说他们那有台华三的S5120想要配802.1X认证,但只有华为交换机的文档换到华三交换机上命令不一样不懂怎么配,问我们能不能帮看一下. 一是领导觉得他们的任务可以搞得定,二是我们这边需要串口线,所以这笔买卖就做了. 所以也就有了这里“华为S5700配置端口镜像和华三S5120配置802.1X认证”两个不相关的东西在一篇文章里,主要是做个记录用. 二.华为S5700配置端口

三层交换机配置说明(华为S5700设置三个网段互通)

1.配置Switch # 创建VLAN <HUAWEI> system-view[HUAWEI] sysname Switch[Switch] vlan batch 10 20 30# 配置接口加入VLAN [Switch] interface gigabitethernet 0/0/1[Switch-GigabitEthernet0/0/1] port link-type access[Switch-GigabitEthernet0/0/1] port default vlan 10[Swi

华为s5700交换机vlan设置

现有一台华为s5700交换机和普通交换机数台,以及tp-link路由器一台. 1.tp-link路由器连接外网. 2.s5700交换机划分vlan. 3.普通交换机接vlan和pc端. 网络拓扑图如下: 配置说明: s5700默认有vlan1所有端口都在vlan1里面. vlanif1配置路由器网段ip用于连接路由器. 三层交换机要配置一条指向路由器的静态路由. 路由器要配置nat对应个vlan ip. 路由器要配置路由到各个vlan网段. 1.s5700交换机web管理ip和用户配置. 使用C

华为--PPP典型配置举例

  PAP验证举例 1. 配置需求 路由器HangZhou和NingBo之间用接口S0/0/0互联,要求路由器HangZhou(验证方)以PAP方式验证路由器NingBo. [HangZhou] [HangZhou]int s0/0/0 [HangZhou-Serial0/0/0]ip add 192.168.12.1 24 [NingBo]int s0/0/0 [NingBo-Serial0/0/0]ip add 192.168.12.2 24 配置步骤: 1. 配置路由器HangZhou(验

华为RH8100V3RAID 10配置

a)华为RH8100V3RAID 10配置 1)开机按照提示按Ctrl+H键进入RAID卡WEBBIOS管理界面: 2)选中“Start”回车,进入RAID卡管理配置界面: 3)移动鼠标到 “configuration wizard”此项,回车: 4)将光标选中第一个 “clear configuration”清除旧的阵列信息: 5)点击“yes”确认. 6)回到菜单选择第二项“new configuration”,点击next如图 7)点击yes即可进入RAID设置进行下一步.选择第一项“ma

华为路由器基本配置

华为路由器基本配置 1.进入视图模式 <Huawei>sys <Huawei>system-view Enter system view, return user view with Ctrl+Z. [Huawei] 2.进入console口 [Huawei]user-interface console 0 [Huawei-ui-console0] 2.1设置console口认证模式为密码认证 [Huawei-ui-console0]authentication-mode pass

华为路由器交换机配置命令大全

华为路由器交换机配置命令:计算机命令 PCAlogin:root;使用root用户 password:linux;口令是linux #shutdown-hnow;关机 #init0;关机 #logout;用户注销 #login;用户登录 #ifconfig;显示IP地址 #ifconfigeth0netmask;设置IP地址 #ifconfigeht0netmaskdown;禁用IP地址 #routeadd0.0.0.0gw;设置网关 #routedel0.0.0.0gw;删除网关 #route

华为 s5700三层交换机手动绑定IP mac

一台华为S5700交换机作为核心,绑定用户端IP和MAC sys user-bind static ip-address 192.168.20.101 mac-address 0000-0000-0000-0000  <--手动绑定 display dhcp static user-bind all <--查看绑定信息 quit save