拓補圖
1、進入lsw1
輸入
關掉輸入命令時總是有東西跳出來
2、將名字更改為s5700
system-view
sysname s5700
3、創建vlan 10到13
vlan beatch 10 to 13
4、進入接口10、11、1改為trunk並允許vlan10到13通過
int g0/0/10(重復進入接口配置)
port link-type trunk
port trunk pvid vlan 10
port trunk allow-pass vlan 10 to 13
5、在交換機 S5700 上創建 LoopbackX 接口,設置其地址為“10X.10X.10X.10X”。創建各 VLANIF 接口,作為各業務 VLAN 的網關。
[S5700]interface LoopBack 1
[S5700- LoopBack1]ip address 101.101.101.101 32
[S5700- LoopBack1]quit
[S5700]interface Vlanif 10
[S5700-Vlanif10]ip address 10.1.10.1 24
[S5700-Vlanif10]quit
[S5700]interface Vlanif 11
[S5700-Vlanif11]ip address 10.1.11.1 24
[S5700-Vlanif11]quit
[S5700]interface Vlanif 12
[S5700-Vlanif12]ip address 10.1.12.1 24
[S5700-Vlanif12]quit
[S5700]interface Vlanif 13
[S5700-Vlanif13]ip address 10.1.13.1 24
6、配置ac基礎信息
system-view
[AC6005]sysname AC1 創建 VLANX0~VLANX3。
[AC1]vlan batch 10 to 13 配置 GE0/0/8 接口用來連接交換機 S5700。
[AC1]interface g0/0/8 [AC1-GigabitEthernet0/0/8]port link-type trunk
[AC1-GigabitEthernet0/0/8]port trunk allow-pass vlan 10 to 13
[AC1-GigabitEthernet0/0/8]quit
配置完成后使用 display port vlan 來檢查配置是否正確。
[AC1]display port vlan
Port Link Type PVID Trunk VLAN List ---------------------------------------------------------------------- --- GigabitEthernet0/0/1 hybrid 1 - GigabitEthernet0/0/2 hybrid 1 - GigabitEthernet0/0/3 hybrid 1 - GigabitEthernet0/0/4 hybrid 1 - GigabitEthernet0/0/5 hybrid 1 - GigabitEthernet0/0/6 hybrid 1 - GigabitEthernet0/0/7 access 4090 - GigabitEthernet0/0/8 trunk 1 1 10-13 配置 VLAN 相應的三 層接口 IP 地址。
[AC1]interface vlan 10
[AC1-Vlanif10]ip address 10.1.10.100 24
[AC1-Vlanif10]quit
[AC1]interface vlan 11
[AC1-Vlanif11]ip address 10.1.11.100 24
[AC1-Vlanif11]quit
[AC1]interface vlan 12
[AC1-Vlanif12]ip address 10.1.12.100 24
[AC1-Vlanif12]quit
[AC1]interface Vlanif 13
[AC1-Vlanif13]ip address 10.1.13.100 24
[AC1-Vlanif13]quit
檢查配置的接口是否已經變為 UP 狀態。
[AC1]display ip interface brief
[AC1]ip route-static 0.0.0.0 0.0.0.0 10.1.10.1路由互通
7、配置和測試 AC 遠程管理 telnet 服務(AAA 認證) 開啟並配置 telnet 服務,添 加 AAA 的賬號 huawei 用於 telnet 認證。
[AC1]telnet server enable
Info: TELNET server has been enabled.
[AC1]aaa
[AC1-aaa] local-user huawei password
密碼: Admin@123
[AC1-aaa] local-user huawei service-type telnet
[AC1-aaa] local-user huawei privilege level 3
Warning: This operation may affect online users, are you sure to change the user privilege level ?[Y/N]y
[AC1-aaa]quit
[AC1]user-interface vty 0 4
[AC1-ui-vty0-4]authentication-mode aaa
7、在s5700上遠程登陸
telnet 10.1.10.100