华为交换设备-企业网络冗余设计-配置

步骤一Vlan、Trunk、Eth-Trunk配置

步骤二 MSTP配置

步骤三VRRP配置

步骤四BFD与VRRP联动配置

步骤五ospf配置

步骤六DHCP中继配置

步骤七telnet 远程配置

华为、华三、思科模拟器会分享给大家,方便大家一起学习。

链接:https://pan.baidu.com/s/1M4HJeOoCJfbaN7eem5PogA

提取码:faty

所有网络设备全部配置:

HX_SW1完整配置

<HX_SW1>sys

Enter system view, return user view with Ctrl+Z.

[HX_SW1]dis cu

#

sysname HX_SW1

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200 800

#

stp instance 1 root primary

stp instance 2 root secondary

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

dhcp enable

#

diffserv domain default

#

stp region-configuration

 region-name faty

 revision-level 1

 instance 1 vlan 10 20 50

 instance 2 vlan 30 40

 active region-configuration

#

bfd

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif10

 ip address 192.168.10.253 255.255.255.0

 vrrp vrid 10 virtual-ip 192.168.10.1

 vrrp vrid 10 priority 120

 vrrp vrid 10 track interface GigabitEthernet0/0/3

 vrrp vrid 10 track bfd-session session-name 1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif20

 ip address 192.168.20.253 255.255.255.0

 vrrp vrid 20 virtual-ip 192.168.20.1

 vrrp vrid 20 priority 120

 vrrp vrid 20 track interface GigabitEthernet0/0/3

 vrrp vrid 20 track bfd-session session-name 1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif30

 ip address 192.168.30.253 255.255.255.0

 vrrp vrid 30 virtual-ip 192.168.30.1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif40

 ip address 192.168.40.253 255.255.255.0

 vrrp vrid 40 virtual-ip 192.168.40.1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif50

 ip address 192.168.50.253 255.255.255.0

 vrrp vrid 50 virtual-ip 192.168.50.1

 vrrp vrid 50 priority 120

 vrrp vrid 50 track interface GigabitEthernet0/0/2

 vrrp vrid 50 track bfd-session session-name 1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif200

 ip address 192.168.200.253 255.255.255.0

#

interface Vlanif800

 ip address 192.168.12.2 255.255.255.0

#

interface MEth0/0/1

#

interface Eth-Trunk2

 port link-type trunk

 port trunk allow-pass vlan 2 to 4094

 mode lacp-static

#

interface GigabitEthernet0/0/1

 port link-type access

 port default vlan 800

#

interface GigabitEthernet0/0/2

 port link-type trunk

 port trunk allow-pass vlan 50 200

#

interface GigabitEthernet0/0/3

 port link-type trunk

 port trunk allow-pass vlan 10 20 200

#

interface GigabitEthernet0/0/4

 port link-type trunk

 port trunk allow-pass vlan 30 40 200

#

interface GigabitEthernet0/0/5

 eth-trunk 2

#

interface GigabitEthernet0/0/6

 eth-trunk 2

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

bfd 1 bind peer-ip 192.168.12.1 source-ip 192.168.12.2 auto

 commit

#

ospf 1

 area 0.0.0.0

  network 192.168.10.0 0.0.0.255

  network 192.168.20.0 0.0.0.255

  network 192.168.30.0 0.0.0.255

  network 192.168.40.0 0.0.0.255

  network 192.168.50.0 0.0.0.255

  network 192.168.12.0 0.0.0.255

  network 192.168.200.0 0.0.0.255

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

HX_SW2完整配置

<HX_SW2>system-view

Enter system view, return user view with Ctrl+Z.

[HX_SW2]dis cu

#

sysname HX_SW2

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200 801

#

stp instance 1 root secondary

stp instance 2 root primary

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

dhcp enable

#

diffserv domain default

#

stp region-configuration

 region-name faty

 revision-level 1

 instance 1 vlan 10 20 50

 instance 2 vlan 30 40

 active region-configuration

#

bfd

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif10

 ip address 192.168.10.254 255.255.255.0

 vrrp vrid 10 virtual-ip 192.168.10.1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif20

 ip address 192.168.20.254 255.255.255.0

 vrrp vrid 20 virtual-ip 192.168.20.1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif30

 ip address 192.168.30.254 255.255.255.0

 vrrp vrid 30 virtual-ip 192.168.30.1

 vrrp vrid 30 priority 120

 vrrp vrid 30 track interface GigabitEthernet0/0/4

 vrrp vrid 30 track bfd-session session-name 2

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif40

 ip address 192.168.40.254 255.255.255.0

 vrrp vrid 40 virtual-ip 192.168.40.1

 vrrp vrid 40 priority 120

 vrrp vrid 40 track interface GigabitEthernet0/0/4

 vrrp vrid 40 track bfd-session session-name 2

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif50

 ip address 192.168.50.254 255.255.255.0

 vrrp vrid 50 virtual-ip 192.168.50.1

 dhcp select relay

 dhcp relay server-ip 192.168.50.100

#

interface Vlanif200

 ip address 192.168.200.254 255.255.255.0

#

interface Vlanif801

 ip address 192.168.23.2 255.255.255.0

#

interface MEth0/0/1

#

interface Eth-Trunk2

 port link-type trunk

 port trunk allow-pass vlan 2 to 4094

 mode lacp-static

#

interface GigabitEthernet0/0/1

 port link-type trunk

 port trunk allow-pass vlan 50 200

#

interface GigabitEthernet0/0/2

 port link-type access

 port default vlan 801

#

interface GigabitEthernet0/0/3

 port link-type trunk

 port trunk allow-pass vlan 10 20 200

#

interface GigabitEthernet0/0/4

 port link-type trunk

 port trunk allow-pass vlan 2 to 4094

#

interface GigabitEthernet0/0/5

 eth-trunk 2

#

interface GigabitEthernet0/0/6

 eth-trunk 2

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

bfd 2 bind peer-ip 192.168.23.1 source-ip 192.168.23.2 auto

 commit

#

ospf 1

 area 0.0.0.0

  network 192.168.10.0 0.0.0.255

  network 192.168.20.0 0.0.0.255

  network 192.168.30.0 0.0.0.255

  network 192.168.40.0 0.0.0.255

  network 192.168.50.0 0.0.0.255

  network 192.168.23.0 0.0.0.255

  network 192.168.200.0 0.0.0.255

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

HJ_SW3配置

<HJ_SW3>system-view

Enter system view, return user view with Ctrl+Z.

[HJ_SW3]dis cu

#

sysname HJ_SW3

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

stp region-configuration

 region-name faty

 revision-level 1

 instance 1 vlan 10 20 50

 instance 2 vlan 30 40

 active region-configuration

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.30 255.255.255.0

#

interface MEth0/0/1

#

interface Eth-Trunk1

 port link-type trunk

 port trunk allow-pass vlan 20 200

 mode lacp-static

#

interface GigabitEthernet0/0/1

 port link-type trunk

 port trunk allow-pass vlan 10 200

#

interface GigabitEthernet0/0/2

 eth-trunk 1

#

interface GigabitEthernet0/0/3

 port link-type trunk

 undo port trunk allow-pass vlan 1

 port trunk allow-pass vlan 10 20 200

#

interface GigabitEthernet0/0/4

 port link-type trunk

 undo port trunk allow-pass vlan 1

 port trunk allow-pass vlan 10 20 200

#

interface GigabitEthernet0/0/5

 eth-trunk 1

#

interface GigabitEthernet0/0/6

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

HJ_SW4配置

<HJ_SW4>system-view

Enter system view, return user view with Ctrl+Z.

[HJ_SW4]dis cu

#

sysname HJ_SW4

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

stp region-configuration

 region-name faty

 revision-level 1

 instance 1 vlan 10 20 50

 instance 2 vlan 30 40

 active region-configuration

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.40 255.255.255.0

#

interface MEth0/0/1

#

interface GigabitEthernet0/0/1

 port link-type trunk

 port trunk allow-pass vlan 30 200

#

interface GigabitEthernet0/0/2

 port link-type trunk

 port trunk allow-pass vlan 40 200

#

interface GigabitEthernet0/0/3

 port link-type trunk

 port trunk allow-pass vlan 30 40 200

#

interface GigabitEthernet0/0/4

 port link-type trunk

 port trunk allow-pass vlan 30 40 200

#

interface GigabitEthernet0/0/5

#

interface GigabitEthernet0/0/6

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

JR_SW5配置:

<JR_SW5>sys

Enter system view, return user view with Ctrl+Z.

[JR_SW5]dis cu

#

sysname JR_SW5

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.50 255.255.255.0

#

interface MEth0/0/1

#

interface Ethernet0/0/1

 port link-type trunk

 port trunk allow-pass vlan 10 200

#

interface Ethernet0/0/2

 port link-type access

 port default vlan 10

#

interface Ethernet0/0/3

#

interface Ethernet0/0/4

#

interface Ethernet0/0/5

#

interface Ethernet0/0/6

#

interface Ethernet0/0/7

#

interface Ethernet0/0/8

#

interface Ethernet0/0/9

#

interface Ethernet0/0/10

#

interface Ethernet0/0/11

#

interface Ethernet0/0/12

#

interface Ethernet0/0/13

#

interface Ethernet0/0/14

#

interface Ethernet0/0/15

#

interface Ethernet0/0/16

#

interface Ethernet0/0/17

#

interface Ethernet0/0/18

#

interface Ethernet0/0/19

#

interface Ethernet0/0/20

#

interface Ethernet0/0/21

#

interface Ethernet0/0/22

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

JR_SW6配置

<JR_SW6>system-view

Enter system view, return user view with Ctrl+Z.

[JR_SW6]dis cu

#

sysname JR_SW6

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.60 255.255.255.0

#

interface MEth0/0/1

#

interface Eth-Trunk1

 port link-type trunk

 port trunk allow-pass vlan 20 200

 mode lacp-static

#

interface Ethernet0/0/1

 port link-type access

 port default vlan 20

#

interface Ethernet0/0/2

 eth-trunk 1

#

interface Ethernet0/0/3

 eth-trunk 1

#

interface Ethernet0/0/4

#

interface Ethernet0/0/5

#

interface Ethernet0/0/6

#

interface Ethernet0/0/7

#

interface Ethernet0/0/8

#

interface Ethernet0/0/9

#

interface Ethernet0/0/10

#

interface Ethernet0/0/11

#

interface Ethernet0/0/12

#

interface Ethernet0/0/13

#

interface Ethernet0/0/14

#

interface Ethernet0/0/15

#

interface Ethernet0/0/16

#

interface Ethernet0/0/17

#

interface Ethernet0/0/18

#

interface Ethernet0/0/19

#

interface Ethernet0/0/20

#

interface Ethernet0/0/21

#

interface Ethernet0/0/22

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

JR_SW7配置:

<JR_SW7>system-view

Enter system view, return user view with Ctrl+Z.

[JR_SW7]dis cu

#

sysname JR_SW7

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.70 255.255.255.0

#

interface MEth0/0/1

#

interface Ethernet0/0/1

 port link-type trunk

 port trunk allow-pass vlan 30 200

#

interface Ethernet0/0/2

 port link-type access

 port default vlan 30

#

interface Ethernet0/0/3

#

interface Ethernet0/0/4

#

interface Ethernet0/0/5

#

interface Ethernet0/0/6

#

interface Ethernet0/0/7

#

interface Ethernet0/0/8

#

interface Ethernet0/0/9

#

interface Ethernet0/0/10

#

interface Ethernet0/0/11

#

interface Ethernet0/0/12

#

interface Ethernet0/0/13

#

interface Ethernet0/0/14

#

interface Ethernet0/0/15

#

interface Ethernet0/0/16

#

interface Ethernet0/0/17

#

interface Ethernet0/0/18

#

interface Ethernet0/0/19

#

interface Ethernet0/0/20

#

interface Ethernet0/0/21

#

interface Ethernet0/0/22

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

JR_SW8配置

<JR_SW8>system-view

Enter system view, return user view with Ctrl+Z.

[JR_SW8]dis cu

#

sysname JR_SW8

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.80 255.255.255.0

#

interface MEth0/0/1

#

interface Ethernet0/0/1

 port link-type access

 port default vlan 40

#

interface Ethernet0/0/2

 port link-type trunk

 port trunk allow-pass vlan 40 200

#

interface Ethernet0/0/3

#

interface Ethernet0/0/4

#

interface Ethernet0/0/5

#

interface Ethernet0/0/6

#

interface Ethernet0/0/7

#

interface Ethernet0/0/8

#

interface Ethernet0/0/9

#

interface Ethernet0/0/10

#

interface Ethernet0/0/11

#

interface Ethernet0/0/12

#

interface Ethernet0/0/13

#

interface Ethernet0/0/14

#

interface Ethernet0/0/15

#

interface Ethernet0/0/16

#

interface Ethernet0/0/17

#

interface Ethernet0/0/18

#

interface Ethernet0/0/19

#

interface Ethernet0/0/20

#

interface Ethernet0/0/21

#

interface Ethernet0/0/22

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

Return

JR_SW9配置:

<JR_SW9>system-view

Enter system view, return user view with Ctrl+Z.

[JR_SW9]dis cu

#

sysname JR_SW9

#

undo info-center enable

#

vlan batch 10 20 30 40 50 200

#

cluster enable

ntdp enable

ndp enable

#

undo nap slave enable

#

drop illegal-mac alarm

#

diffserv domain default

#

stp region-configuration

 region-name faty

 revision-level 1

 instance 1 vlan 10 20 50

 instance 2 vlan 30 40

 active region-configuration

#

drop-profile default

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %O'KCYR90a)NZPO3JBXBHA!!

 local-user admin privilege level 15

 local-user admin service-type telnet

#

interface Vlanif1

#

interface Vlanif200

 ip address 192.168.200.90 255.255.255.0

#

interface MEth0/0/1

#

interface GigabitEthernet0/0/1

 port link-type trunk

 port trunk allow-pass vlan 50 200

#

interface GigabitEthernet0/0/2

 port link-type trunk

 port trunk allow-pass vlan 50 200

#

interface GigabitEthernet0/0/3

 port link-type access

 port default vlan 50

#

interface GigabitEthernet0/0/4

 port link-type access

 port default vlan 50

#

interface GigabitEthernet0/0/5

#

interface GigabitEthernet0/0/6

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

#

return

AR1配置:

<AR1>system-view

Enter system view, return user view with Ctrl+Z.

[AR1]dis cu

[V200R003C00]

#

 sysname AR1

#

 snmp-agent local-engineid 800007DB03000000000000

 snmp-agent

#

 clock timezone China-Standard-Time minus 08:00:00

#

portal local-server load flash:/portalpage.zip

#

 drop illegal-mac alarm

#

 wlan ac-global carrier id other ac id 0

#

 set cpu-usage threshold 80 restore 75

#

bfd

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %$%$e\fH=U&3QV<Ou`NLv":&3Ff`%$%$

 local-user admin privilege level 15

 local-user admin service-type telnet

#

firewall zone Local

 priority 15

#

interface GigabitEthernet0/0/0

 ip address 14.1.1.1 255.255.255.0

#

interface GigabitEthernet0/0/1

 ip address 192.168.12.1 255.255.255.0

#

interface GigabitEthernet0/0/2

 ip address 192.168.23.1 255.255.255.0

#

interface NULL0

#

bfd 1 bind peer-ip 192.168.12.2 source-ip 192.168.12.1 auto

 commit

#

bfd 2 bind peer-ip 192.168.23.2 source-ip 192.168.23.1 auto

 commit

#

ospf 1

 area 0.0.0.0

  network 14.1.1.0 0.0.0.255

  network 192.168.12.0 0.0.0.255

  network 192.168.23.0 0.0.0.255

#

user-interface con 0

 authentication-mode password

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

user-interface vty 16 20

#

wlan ac

#

Return

DHCP(AR2)配置:

<dhcp>system-view

Enter system view, return user view with Ctrl+Z.

[dhcp]dis cu

[V200R003C00]

#

 sysname dhcp

#

 snmp-agent local-engineid 800007DB03000000000000

 snmp-agent

#

 clock timezone China-Standard-Time minus 08:00:00

#

portal local-server load flash:/portalpage.zip

#

 drop illegal-mac alarm

#

 wlan ac-global carrier id other ac id 0

#

 set cpu-usage threshold 80 restore 75

#

dhcp enable

#

ip pool vlan10

 gateway-list 192.168.10.1

 network 192.168.10.0 mask 255.255.255.0

 excluded-ip-address 192.168.10.250 192.168.10.254

 lease day 0 hour 8 minute 0

 dns-list 114.114.114.114

#

ip pool vlan20

 gateway-list 192.168.20.1

 network 192.168.20.0 mask 255.255.255.0

 excluded-ip-address 192.168.20.250 192.168.20.254

 lease day 0 hour 8 minute 0

 dns-list 114.114.114.114

#

ip pool vlan30

 gateway-list 192.168.30.1

 network 192.168.30.0 mask 255.255.255.0

 excluded-ip-address 192.168.30.250 192.168.30.254

 lease day 0 hour 8 minute 0

 dns-list 114.114.114.114

#

ip pool vlan40

 gateway-list 192.168.40.1

 network 192.168.40.0 mask 255.255.255.0

 excluded-ip-address 192.168.40.250 192.168.40.254

 lease day 0 hour 8 minute 0

 dns-list 114.114.114.114

#

ip pool vlan50

 gateway-list 192.168.50.1

 network 192.168.50.0 mask 255.255.255.0

 excluded-ip-address 192.168.50.250 192.168.50.254

 lease day 0 hour 8 minute 0

 dns-list 114.114.114.114

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$

 local-user admin service-type http

#

firewall zone Local

 priority 15

#

interface GigabitEthernet0/0/0

 ip address 192.168.50.100 255.255.255.0

 dhcp select global

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

ip route-static 0.0.0.0 0.0.0.0 192.168.50.1

#

user-interface con 0

 authentication-mode password

user-interface vty 0 4

user-interface vty 16 20

#

wlan ac

#

Return

分支AR3配置:

<FZ_R3>system-view

Enter system view, return user view with Ctrl+Z.

[FZ_R3]dis cu

[V200R003C00]

#

 sysname FZ_R3

#

 snmp-agent local-engineid 800007DB03000000000000

 snmp-agent

#

 clock timezone China-Standard-Time minus 08:00:00

#

portal local-server load flash:/portalpage.zip

#

 drop illegal-mac alarm

#

 wlan ac-global carrier id other ac id 0

#

 set cpu-usage threshold 80 restore 75

#

aaa

 authentication-scheme default

 authorization-scheme default

 accounting-scheme default

 domain default

 domain default_admin

 local-user admin password cipher %$%$VmgH6,xbBEUDo(O6j]=/3FF[%$%$

 local-user admin privilege level 15

 local-user admin service-type telnet

#

firewall zone Local

 priority 15

#

interface GigabitEthernet0/0/0

 ip address 14.1.1.2 255.255.255.0

#

interface GigabitEthernet0/0/1

 ip address 192.168.100.1 255.255.255.0

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

ospf 1

 area 0.0.0.0

  network 14.1.1.0 0.0.0.255

  network 192.168.100.0 0.0.0.255

#

user-interface con 0

 authentication-mode password

user-interface vty 0 4

 authentication-mode aaa

 user privilege level 15

user-interface vty 16 20

#

wlan ac

#

return

猜你喜欢

转载自blog.csdn.net/qq_42966610/article/details/130102087
今日推荐