華為交換機配置流程及示例
配置要求:
1)交換機起名字 sysname TEST
2)交換機里面先起2個vlan,vlan20(用於電信鏈路的互聯)和vlan200(用戶業務地址)
3)Vlan的IP地址設置;
4)把相應的端口划到對應的vlan中;前面2個口用戶互聯電信鏈路,屬於vlan20;后面的口全部划到業務地址段,屬於vlan200;
5)設置路由 ip route-static 0.0.0.0 0.0.0.0 10.17.3.193(互聯地址的電信側);
6)設置今后維護用的telnet功能的啟用;
7)DHCP的配置;
交換機老配置清除
reset save
reboot(注意在提示要不要存現有配置時,請選擇N,不保存)
交換機重啟后就沒有配置了
配置流程:
1)交換機起名字 sysname TEST
<Quidway>
<Quidway> sys
[Quidway]dis cur(看當前配置)
dis arp(看有哪些IP起來了)
dis mac
[Quidway]sysname TEST
2)交換機里面先起2個vlan,vlan20(用於電信鏈路的互聯)和vlan200(用戶業務地址)
[Quidway]vlan 20
description To_DianXin
[Quidway]vlan 200
description LAN
3)Vlan的IP地址設置;
[TEST]interface Vlanif 20
[TEST -Vlanif20]ip address 10.17.3.194 30
[TEST-Vlanif20]des To_DianXin
TEST]interface Vlanif 200
[TEST-Vlanif200]ip address 100.13.1.254 24
[TEST-Vlanif20]des LAN
4)把相應的端口划到對應的vlan中;前面2個口用戶互聯電信鏈路,屬於vlan20;后面的口全部划到業務地址段,屬於vlan200;
[TEST]interface Ethernet 0/0/1
[TEST-Ethernet0/0/1]port link-type access
[TEST-Ethernet0/0/1]port default vlan 20
[TEST-Ethernet0/0/1]des To_DianXin
[TEST]interface Ethernet 0/0/2
[TEST-Ethernet0/0/2]port link-type access
[TEST-Ethernet0/0/2]port default vlan 20
[TEST-Ethernet0/0/2]des To_DianXin
[TEST]port-group LAN
[TEST-port-group-lan]group-member Ethernet 0/0/3 to Ethernet 0/0/24
[TEST-port-group-lan]port link-type access
[TEST-port-group-lan]port default vlan 200
5)設置缺省路由 ip route-static 0.0.0.0 0.0.0.0 10.17.3.193(互聯地址的電信側);
ip route-static 0.0.0.0 0.0.0.0 10.17.3.193
ip route-static 172.16.0.0 255.255.0 .0 10.17.3.193
ip route-static 172.17.0.0 255.255.0 .0 10.17.3.193
ip route-static 100.13.0.0 255.255.0 .0 10.17.3.193
ip route-static 172.31.0.0 255.255.0 .0 10.17.3.193
6)設置今后維護用的telnet功能的啟用;用戶名:TEST,密碼:TEST@000000
[TEST]aaa
[TEST-aaa]local-user TEST password cipher TEST@000000 privilege level 15
[TEST-aaa]local-user TEST service-type telnet
[TEST]user-interface vty 0 4
[TEST-ui-vty0-4]authentication-mode aaa
[TEST]telnet server enable
7)DHCP的配置;
(可選)
[TEST]dhcp enable
interface Vlanif200
dhcp select interface
dhcp server excluded-ip-address 100.13.1.1 100.13.1.100
dhcp server excluded-ip-address 100.13.1.201 100.13.1.253
8)保存配置
<TEST>save
參考交換機配置(配置好后的)
[TEST]
[TEST]dis cur
#
!Software Version V100R006C05
sysname TEST
#
vlan batch 20 200
#
dhcp enable
#
vlan 20
description To_DianXin
vlan 200
description LAN
#
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user TEST password cipher %@%@
local-user TEST privilege level 15
local-user TEST service-type telnet
local-user admin password cipher %@%@
local-user admin service-type http
#
interface Vlanif1
#
interface Vlanif20
description To_DianXin
ip address 10.17.3.194 255.255.255.252
#
interface Vlanif200
description LAN
ip address 100.13.1.254 255.255.255.0
dhcp select interface
dhcp server excluded-ip-address 100.13.1.1 100.13.1.100
dhcp server excluded-ip-address 100.13.1.201 100.13.1.253
#
interface Ethernet0/0/1
description To_Dianxin
port link-type access
port default vlan 20
#
interface Ethernet0/0/2
description To_Dianxin
port link-type access
port default vlan 20
#
interface Ethernet0/0/3
port link-type access
port default vlan 200
#
interface Ethernet0/0/4
port link-type access
port default vlan 200
#
interface Ethernet0/0/5
port link-type access
port default vlan 200
#
interface Ethernet0/0/6
port link-type access
port default vlan 200
#
interface Ethernet0/0/7
port link-type access
port default vlan 200
#
interface Ethernet0/0/8
port link-type access
port default vlan 200
#
interface Ethernet0/0/9
port link-type access
port default vlan 200
#
interface Ethernet0/0/10
port link-type access
port default vlan 200
#
interface Ethernet0/0/11
port link-type access
port default vlan 200
#
interface Ethernet0/0/12
port link-type access
port default vlan 200
#
interface Ethernet0/0/13
port link-type access
port default vlan 200
#
interface Ethernet0/0/14
port link-type access
port default vlan 200
#
interface Ethernet0/0/15
port link-type access
port default vlan 200
#
interface Ethernet0/0/16
port link-type access
port default vlan 200
#
interface Ethernet0/0/17
port link-type access
port default vlan 200
#
interface Ethernet0/0/18
port link-type access
port default vlan 200
#
interface Ethernet0/0/19
port link-type access
port default vlan 200
#
interface Ethernet0/0/20
port link-type access
port default vlan 200
#
interface Ethernet0/0/21
port link-type access
port default vlan 200
#
interface Ethernet0/0/22
port link-type access
port default vlan 200
#
interface Ethernet0/0/23
port link-type access
port default vlan 200
#
interface Ethernet0/0/24
port link-type access
port default vlan 200
#
interface GigabitEthernet0/0/1
#
interface GigabitEthernet0/0/2
#
interface GigabitEthernet0/0/3
#
interface GigabitEthernet0/0/4
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 10.17.3.193
#
user-interface con 0
authentication-mode password
user privilege level 15
set authentication password cipher %@%@
user-interface vty 0 4
authentication-mode aaa
#
port-group lan
group-member Ethernet0/0/3
group-member Ethernet0/0/4
group-member Ethernet0/0/5
group-member Ethernet0/0/6
group-member Ethernet0/0/7
group-member Ethernet0/0/8
group-member Ethernet0/0/9
group-member Ethernet0/0/10
group-member Ethernet0/0/11
group-member Ethernet0/0/12
group-member Ethernet0/0/13
group-member Ethernet0/0/14
group-member Ethernet0/0/15
group-member Ethernet0/0/16
group-member Ethernet0/0/17
group-member Ethernet0/0/18
group-member Ethernet0/0/19
group-member Ethernet0/0/20
group-member Ethernet0/0/21
group-member Ethernet0/0/22
group-member Ethernet0/0/23
group-member Ethernet0/0/24
#
return
[TEST]