拓补图
1、进入lsw1
输入
关掉输入命令时总是有东西跳出来
2、将名字更改为s5700
system-view
sysname s5700
3、创建vlan 10到13
vlan beatch 10 to 13
4、进入接口10、11、1改为trunk并允许vlan10到13通过
int g0/0/10(重复进入接口配置)
port link-type trunk
port trunk pvid vlan 10
port trunk allow-pass vlan 10 to 13
5、在交换机 S5700 上创建 LoopbackX 接口,设置其地址为“10X.10X.10X.10X”。创建各 VLANIF 接口,作为各业务 VLAN 的网关。
[S5700]interface LoopBack 1
[S5700- LoopBack1]ip address 101.101.101.101 32
[S5700- LoopBack1]quit
[S5700]interface Vlanif 10
[S5700-Vlanif10]ip address 10.1.10.1 24
[S5700-Vlanif10]quit
[S5700]interface Vlanif 11
[S5700-Vlanif11]ip address 10.1.11.1 24
[S5700-Vlanif11]quit
[S5700]interface Vlanif 12
[S5700-Vlanif12]ip address 10.1.12.1 24
[S5700-Vlanif12]quit
[S5700]interface Vlanif 13
[S5700-Vlanif13]ip address 10.1.13.1 24
6、配置ac基础信息
system-view
[AC6005]sysname AC1 创建 VLANX0~VLANX3。
[AC1]vlan batch 10 to 13 配置 GE0/0/8 接口用来连接交换机 S5700。
[AC1]interface g0/0/8 [AC1-GigabitEthernet0/0/8]port link-type trunk
[AC1-GigabitEthernet0/0/8]port trunk allow-pass vlan 10 to 13
[AC1-GigabitEthernet0/0/8]quit
配置完成后使用 display port vlan 来检查配置是否正确。
[AC1]display port vlan
Port Link Type PVID Trunk VLAN List ---------------------------------------------------------------------- --- GigabitEthernet0/0/1 hybrid 1 - GigabitEthernet0/0/2 hybrid 1 - GigabitEthernet0/0/3 hybrid 1 - GigabitEthernet0/0/4 hybrid 1 - GigabitEthernet0/0/5 hybrid 1 - GigabitEthernet0/0/6 hybrid 1 - GigabitEthernet0/0/7 access 4090 - GigabitEthernet0/0/8 trunk 1 1 10-13 配置 VLAN 相应的三 层接口 IP 地址。
[AC1]interface vlan 10
[AC1-Vlanif10]ip address 10.1.10.100 24
[AC1-Vlanif10]quit
[AC1]interface vlan 11
[AC1-Vlanif11]ip address 10.1.11.100 24
[AC1-Vlanif11]quit
[AC1]interface vlan 12
[AC1-Vlanif12]ip address 10.1.12.100 24
[AC1-Vlanif12]quit
[AC1]interface Vlanif 13
[AC1-Vlanif13]ip address 10.1.13.100 24
[AC1-Vlanif13]quit
检查配置的接口是否已经变为 UP 状态。
[AC1]display ip interface brief
[AC1]ip route-static 0.0.0.0 0.0.0.0 10.1.10.1路由互通
7、配置和测试 AC 远程管理 telnet 服务(AAA 认证) 开启并配置 telnet 服务,添 加 AAA 的账号 huawei 用于 telnet 认证。
[AC1]telnet server enable
Info: TELNET server has been enabled.
[AC1]aaa
[AC1-aaa] local-user huawei password
密码: Admin@123
[AC1-aaa] local-user huawei service-type telnet
[AC1-aaa] local-user huawei privilege level 3
Warning: This operation may affect online users, are you sure to change the user privilege level ?[Y/N]y
[AC1-aaa]quit
[AC1]user-interface vty 0 4
[AC1-ui-vty0-4]authentication-mode aaa
7、在s5700上远程登陆
telnet 10.1.10.100