vlan batch 3 100 to 114
#
authentication-profile name default_authen_profile
authentication-profile name dot1x_authen_profile
authentication-profile name dot1xmac_authen_profile
authentication-profile name mac_authen_profile
authentication-profile name multi_authen_profile
authentication-profile name portal_authen_profile
#
telnet server enable
#
clock timezone UTC add 00:00:00
#
observe-port 1 interface-range GigabitEthernet3/0/42 to GigabitEthernet3/0/43
observe-port 2 interface GigabitEthernet3/0/38
#
dhcp enable
#
diffserv domain default
#
radius-server template default
#
acl number 3001
rule 5 deny ip source 10.10.3.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 10 deny ip source 10.10.4.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 15 deny ip source 10.10.5.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 20 deny ip source 10.10.7.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 25 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 30 deny ip source 10.10.10.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 35 deny ip source 10.10.11.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
acl number 3002
rule 5 deny ip source 10.10.3.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 10 deny ip source 10.10.4.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 15 deny ip source 10.10.5.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 20 deny ip source 10.10.7.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 25 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 30 deny ip source 10.10.10.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 35 deny ip source 10.10.11.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
acl number 3003
rule 5 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.3.0 0.0.0.255
rule 10 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.4.0 0.0.0.255
rule 15 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.5.0 0.0.0.255
rule 20 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.7.0 0.0.0.255
rule 25 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.9.0 0.0.0.255
rule 30 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.10.0 0.0.0.255
rule 35 deny ip source 10.10.8.0 0.0.0.255 destination 10.10.11.0 0.0.0.255
acl number 3004
rule 5 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.3.0 0.0.0.255
rule 10 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.4.0 0.0.0.255
rule 15 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.5.0 0.0.0.255
rule 20 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.7.0 0.0.0.255
rule 25 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.8.0 0.0.0.255
rule 30 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.10.0 0.0.0.255
rule 35 deny ip source 10.10.9.0 0.0.0.255 destination 10.10.11.0 0.0.0.255
#
traffic classifier c3001 operator or precedence 5
if-match acl 3001
traffic classifier c3002 operator or precedence 10
if-match acl 3002
traffic classifier c3003 operator or precedence 15
if-match acl 3003
traffic classifier c3004 operator or precedence 20
if-match acl 3004
#
traffic behavior b3001
permit
traffic behavior b3002
permit
traffic behavior b3003
permit
traffic behavior b3004
permit
#
traffic policy p3001 match-order config
classifier c3001 behavior b3001
traffic policy p3002 match-order config
classifier c3002 behavior b3002
traffic policy p3003 match-order config
classifier c3003 behavior b3003
traffic policy p3004 match-order config
classifier c3004 behavior b3004
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile
#
drop-profile default
#
vlan 100
description guanli
vlan 101
description beiyong1
vlan 102
description shiyanshi
vlan 103
description BXshengchan
vlan 104
description kuermei
vlan 105
description BX-XZX
vlan 106
description beiyong2
vlan 107
description G-F
vlan 108
description huawei
traffic-policy p3001 inbound
traffic-policy p3003 outbound
vlan 109
description SAMSUNG
vlan 110
description yifeng
vlan 111
description anzhong
vlan 112
description beiyong3
vlan 113
description beiyong4
vlan 114
description ipdianhua
#
aaa
authentication-scheme default
authentication-mode local
authentication-scheme radius
authentication-mode radius
authorization-scheme default
authorization-mode local
accounting-scheme default
accounting-mode none
local-aaa-user password policy administrator
password history record number 0
password expire 0
domain default
authentication-scheme radius
accounting-scheme default
radius-server default
domain default_admin
authentication-scheme default
accounting-scheme default
local-user admin password irreversible-cipher $1c$.gsrL8TY(C$n*V_@3O'kJt*@R$71"cRh\=L!<E>i7efvmR%'9\I$
local-user admin privilege level 15
local-user admin service-type telnet ssh http
local-user huawei password irreversible-cipher $1c$&t)Z835o]7$6eV2>I|U3Vt'Lj#<t*q4%ubd9d~PgBlQT9RkR0G5$
local-user huawei privilege level 15
local-user huawei service-type telnet ssh
#
interface Vlanif100
description guanli
ip address 10.10.0.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.0.200 10.10.0.210
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif101
ip address 10.10.1.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.1.2 10.10.1.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif102
ip address 10.10.2.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.2.2 10.10.2.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif103
ip address 10.10.3.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.3.2 10.10.3.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif104
ip address 10.10.4.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.4.150 10.10.4.200
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif105
ip address 10.10.5.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.5.150 10.10.5.200
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif106
ip address 10.10.6.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.6.2 10.10.6.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif107
ip address 10.10.7.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.7.150 10.10.7.200
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif108
ip address 10.10.8.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.8.2 10.10.8.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif109
ip address 10.10.9.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.9.2 10.10.9.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif110
ip address 10.10.10.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.10.150 10.10.10.200
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif111
ip address 10.10.11.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.11.150 10.10.11.200
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif112
ip address 10.10.12.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.12.2 10.10.12.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif113
ip address 10.10.13.1 255.255.255.0
dhcp select interface
dhcp server ip-range 10.10.13.2 10.10.13.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Vlanif114
ip address 10.10.14.1 255.255.254.0
dhcp select interface
dhcp server ip-range 10.10.14.21 10.10.15.254
dhcp server dns-list 202.96.128.86 114.114.114.114
#
interface Eth-Trunk0
port link-type access
port default vlan 2
#
interface Eth-Trunk45
port link-type trunk
port trunk allow-pass vlan 2 to 4094
#
interface Eth-Trunk46
description link_to_USG6615
port link-type access
port default vlan 2
port-mirroring to observe-port 1 inbound
port-mirroring to observe-port 1 outbound
#
interface Ethernet0/0/0
#
interface GigabitEthernet1/1/0
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/1
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/2
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/3
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/4
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/5
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/6
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/7
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/8
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/9
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/10
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/11
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/12
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/13
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/14
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/15
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/16
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/17
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/18
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/19
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/20
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/21
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/22
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet1/1/23
port link-type trunk
port trunk allow-pass vlan 2 8 10 12 14 to 20
#
interface GigabitEthernet3/0/0
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/1
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/2
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/3
port link-type access
port default vlan 114
#
interface GigabitEthernet3/0/4
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/5
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/6
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/7
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/8
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/9
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/10
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/11
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/12
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/13
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/14
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/15
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/16
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/17
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/18
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/19
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/20
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/21
port link-type access
port default vlan 108
#
interface GigabitEthernet3/0/22
#
interface GigabitEthernet3/0/23
#
interface GigabitEthernet3/0/24
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/25
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/26
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/27
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/28
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/29
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/30
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/31
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/32
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/33
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/34
port link-type access
port default vlan 107
#
interface GigabitEthernet3/0/35
port link-type trunk
port trunk allow-pass vlan 2 8 to 10 12 14 to 19
#
interface GigabitEthernet3/0/36
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/37
port link-type access
port default vlan 100
#
interface GigabitEthernet3/0/38
#
interface GigabitEthernet3/0/39
#
interface GigabitEthernet3/0/40
description link_to_ASG500_G1 _bakup
port link-type access
port default vlan 2
#
interface GigabitEthernet3/0/41
description link_to_ASG500_G1
port link-type access
port default vlan 2
#
interface GigabitEthernet3/0/42
description link_to_ASG5000_g12
#
interface GigabitEthernet3/0/43
description link_to_ASG5000_g12_bakup
#
interface GigabitEthernet3/0/44
port link-type hybrid
voice-vlan 20 enable include-untagged
voice-vlan remark-mode mac-address
port hybrid pvid vlan 2
port hybrid untagged vlan 2 20
#
interface GigabitEthernet3/0/45
port link-type access
port default vlan 100
port-mirroring to observe-port 2 inbound
port-mirroring to observe-port 2 outbound
#
interface GigabitEthernet3/0/46
eth-trunk 46
#
interface GigabitEthernet3/0/47
eth-trunk 46
#
interface XGigabitEthernet1/0/0
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/1
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/2
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/3
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/4
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/5
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/6
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/7
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/8
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/9
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/10
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/11
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/12
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/13
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/14
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/15
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/16
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/17
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/18
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/19
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/20
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/21
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/22
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet1/0/23
port link-type trunk
port trunk allow-pass vlan 100 to 114
#
interface XGigabitEthernet2/0/0
port link-type access
#
interface XGigabitEthernet2/0/1
#
interface XGigabitEthernet2/0/2
#
interface XGigabitEthernet2/0/3
#
interface XGigabitEthernet2/0/4
#
interface XGigabitEthernet2/0/5
#
interface XGigabitEthernet2/0/6
#
interface XGigabitEthernet2/0/7
#
interface XGigabitEthernet2/0/8
#
interface XGigabitEthernet2/0/9
#
interface XGigabitEthernet2/0/10
eth-trunk 0
#
interface XGigabitEthernet2/0/11
eth-trunk 0
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 10.10.0.254
#
snmp-agent
snmp-agent local-engineid 800007DB037817BE3D2A60
snmp-agent sys-info version v3
#
stelnet server enable
ssh user huawei
ssh user huawei authentication-type password
ssh user huawei service-type stelnet
ssh server cipher aes256_ctr aes128_ctr
ssh server hmac sha2_256
ssh client cipher aes256_ctr aes128_ctr
ssh client hmac sha2_256
ssh server dh-exchange min-len 2048
#
user-interface con 0
authentication-mode password
set authentication password cipher $1c$Zez2Z$$er,$5\h"4Dcqs)WvRA5xfro.ME\)C1co<ZJ5ziD#oNGQ$
user-interface vty 0 4
authentication-mode aaa
protocol inbound all
user-interface vty 16 20
#
port-group 1
group-member XGigabitEthernet1/0/0
group-member XGigabitEthernet1/0/1
group-member XGigabitEthernet1/0/2
group-member XGigabitEthernet1/0/3
group-member XGigabitEthernet1/0/4
group-member XGigabitEthernet1/0/5
group-member XGigabitEthernet1/0/6
group-member XGigabitEthernet1/0/7
group-member XGigabitEthernet1/0/8
group-member XGigabitEthernet1/0/9
group-member XGigabitEthernet1/0/10
group-member XGigabitEthernet1/0/11
group-member XGigabitEthernet1/0/12
group-member XGigabitEthernet1/0/13
group-member XGigabitEthernet1/0/14
group-member XGigabitEthernet1/0/15
group-member XGigabitEthernet1/0/16
group-member XGigabitEthernet1/0/17
group-member XGigabitEthernet1/0/18
group-member XGigabitEthernet1/0/19
group-member XGigabitEthernet1/0/20
group-member XGigabitEthernet1/0/21
group-member XGigabitEthernet1/0/22
group-member XGigabitEthernet1/0/23
#
port-group x1_0_1-24
group-member XGigabitEthernet1/0/0
group-member XGigabitEthernet1/0/1
group-member XGigabitEthernet1/0/2
group-member XGigabitEthernet1/0/3
group-member XGigabitEthernet1/0/4
group-member XGigabitEthernet1/0/5
group-member XGigabitEthernet1/0/6
group-member XGigabitEthernet1/0/7
group-member XGigabitEthernet1/0/8
group-member XGigabitEthernet1/0/9
group-member XGigabitEthernet1/0/10
group-member XGigabitEthernet1/0/11
group-member XGigabitEthernet1/0/12
group-member XGigabitEthernet1/0/13
group-member XGigabitEthernet1/0/14
group-member XGigabitEthernet1/0/15
group-member XGigabitEthernet1/0/16
group-member XGigabitEthernet1/0/17
group-member XGigabitEthernet1/0/18
group-member XGigabitEthernet1/0/19
group-member XGigabitEthernet1/0/20
group-member XGigabitEthernet1/0/21
group-member XGigabitEthernet1/0/22
group-member XGigabitEthernet1/0/23
#
wlan
traffic-profile name default
security-profile name default
security-profile name default-wds
security-profile name default-mesh
ssid-profile name default
vap-profile name default
wds-profile name default
mesh-handover-profile name default
mesh-profile name default
regulatory-domain-profile name default
air-scan-profile name default
rrm-profile name default
radio-2g-profile name default
radio-5g-profile name default
wids-profile name default
ap-system-profile name default
port-link-profile name default
wired-port-profile name default
ap-group name default
provision-ap
wlan work-group default
#
dot1x-access-profile name dot1x_access_profile
#
mac-access-profile name mac_access_profile
#
return