marty001 发表于 2018-7-25 06:37:23

华为S5700实战配置

  公司S5700配置实例
  #dis cur
  Software Version V200R003C00SPC300
  #
  sysname yundaHW
  #
  FTP server enable
  #
  vlan batch 10 20 30 40 50 60 70 90
  #
  undo nap slave enable
  #
  clock timezone BJ add 08:00:00
  #
  dhcp enable
  #
  ip pool vlan10ips
  gateway-list 172.16.1.254
  network 172.16.1.0 mask 255.255.255.0
  excluded-ip-address 172.16.1.100 172.16.1.253
  lease day 8 hour 0 minute 0
  dns-list 172.16.1.10 114.114.114.114
  #
  ip pool vlan20ips
  gateway-list 172.16.2.254
  network 172.16.2.0 mask 255.255.255.0
  excluded-ip-address 172.16.2.100 172.16.2.253
  lease day 8 hour 0 minute 0
  dns-list 172.16.1.10 114.114.114.114
  #
  ip pool vlan30ips
  gateway-list 172.16.3.254
  network 172.16.3.0 mask 255.255.255.0
  excluded-ip-address 172.16.3.100 172.16.3.253
  lease day 8 hour 0 minute 0
  dns-list 172.16.1.10 114.114.114.114
  #
  ip pool vlan40ips
  gateway-list 172.16.4.254
  network 172.16.4.0 mask 255.255.255.0
  excluded-ip-address 172.16.4.100 172.16.4.253
  lease day 8 hour 0 minute 0
  dns-list 172.16.1.10 114.114.114.114
  #
  ip pool vlan50ips
  gateway-list 172.16.5.254
  network 172.16.5.0 mask 255.255.255.0
  excluded-ip-address 172.16.5.100 172.16.5.253
  lease day 8 hour 0 minute 0
  dns-list 172.16.1.10 114.114.114.114
  #
  ip pool vlan60ips
  gateway-list 172.16.6.254
  network 172.16.6.0 mask 255.255.255.0
  excluded-ip-address 172.16.6.100 172.16.6.253
  lease day 8 hour 0 minute 0
  dns-list 172.16.1.10 114.114.114.114
  #
  aaa
  authentication-scheme default
  authorization-scheme default
  accounting-scheme default
  domain default
  domain default_admin
  local-user gl password cipher %@%@LJ"lGs<^G<CoYhGQKJ#"\&xk%@%@
  local-user gl privilege level 3
  local-user gl service-type telnet web http
  local-user admin password cipher %@%@5d~9:M^ipCfL\iB)EQd>3Uwe%@%@
  local-user admin service-type http
  #
  interface Vlanif10
  ip address 172.16.1.254 255.255.255.0
  dhcp select global
  #
  interface Vlanif20
  ip address 172.16.2.254 255.255.255.0
  dhcp select global
  #
  interface Vlanif30
  ip address 172.16.3.254 255.255.255.0
  dhcp select global
  #
  interface Vlanif40
  ip address 172.16.4.254 255.255.255.0
  dhcp select global
  #
  interface Vlanif50
  ip address 172.16.5.254 255.255.255.0
  dhcp select global
  #
  interface Vlanif60
  ip address 172.16.6.254 255.255.255.0
  dhcp select global
  #
  interface Vlanif70
  ip address 192.168.0.3 255.255.255.0
  #
  interface Vlanif90
  ip address 10.10.10.3 255.255.255.0
  #
  interface MEth0/0/1
  #
  interface GigabitEthernet0/0/1
  port link-type access
  port default vlan 10
  loopback-detect recovery-time 30
  loopback-detect packet vlan 10
  loopback-detect enable
  #
  interface GigabitEthernet0/0/2
  port link-type access
  port default vlan 10
  loopback-detect recovery-time 30
  loopback-detect packet vlan 10
  loopback-detect enable
  #
  interface GigabitEthernet0/0/3
  port link-type access
  port default vlan 20
  loopback-detect recovery-time 30
  loopback-detect packet vlan 20
  loopback-detect enable
  #
  interface GigabitEthernet0/0/4
  port link-type access
  port default vlan 20
  loopback-detect recovery-time 30
  loopback-detect packet vlan 20
  loopback-detect enable
  #
  interface GigabitEthernet0/0/5
  port link-type access
  port default vlan 30
  loopback-detect recovery-time 30
  loopback-detect packet vlan 30
  loopback-detect enable
  #
  interface GigabitEthernet0/0/6
  port link-type access
  port default vlan 30
  loopback-detect recovery-time 30
  loopback-detect packet vlan 30
  loopback-detect enable
  #
  interface GigabitEthernet0/0/7
  port link-type access
  port default vlan 40
  loopback-detect recovery-time 30
  loopback-detect packet vlan 40
  loopback-detect enable
  #
  interface GigabitEthernet0/0/8
  port link-type access
  port default vlan 40
  loopback-detect recovery-time 30
  loopback-detect packet vlan 40
  loopback-detect enable
  #
  interface GigabitEthernet0/0/9
  port link-type access
  port default vlan 50
  loopback-detect recovery-time 30
  loopback-detect packet vlan 50
  loopback-detect enable
  #
  interface GigabitEthernet0/0/10
  port link-type access
  port default vlan 50
  loopback-detect recovery-time 30
  loopback-detect packet vlan 50
  loopback-detect enable
  #
  interface GigabitEthernet0/0/11
  port link-type access
  port default vlan 60
  loopback-detect recovery-time 30
  loopback-detect packet vlan 60
  loopback-detect enable
  #
  interface GigabitEthernet0/0/12
  port link-type access
  port default vlan 60
  loopback-detect recovery-time 30
  loopback-detect packet vlan 60
  loopback-detect enable
  #
  interface GigabitEthernet0/0/13
  port link-type access
  port default vlan 70
  loopback-detect recovery-time 30
  loopback-detect packet vlan 70
  loopback-detect enable
  #
  interface GigabitEthernet0/0/14
  port link-type access
  port default vlan 70
  loopback-detect recovery-time 30
  loopback-detect packet vlan 70
  loopback-detect enable
  #
  interface GigabitEthernet0/0/15
  shutdown
  #
  interface GigabitEthernet0/0/16
  shutdown
  #
  interface GigabitEthernet0/0/17
  port link-type access
  port default vlan 90
  loopback-detect recovery-time 30
  loopback-detect packet vlan 90
  loopback-detect enable
  #
  interface GigabitEthernet0/0/18
  port link-type access
  port default vlan 90
  loopback-detect recovery-time 30
  loopback-detect packet vlan 90
  loopback-detect enable
  #
  interface GigabitEthernet0/0/19
  #
  interface GigabitEthernet0/0/20
  #
  interface GigabitEthernet0/0/21
  shutdown
  #
  interface GigabitEthernet0/0/22
  #
  interface GigabitEthernet0/0/23
  port hybrid pvid vlan 20
  port hybrid untagged vlan 10 20
  #
  interface GigabitEthernet0/0/24
  port hybrid pvid vlan 20
  port hybrid untagged vlan 10 20
  #
  interface NULL0
  #
  ip route-static 0.0.0.0 0.0.0.0 10.10.10.1
  #
  snmp-agent
  snmp-agent local-engineid 800007DB0368A8281865B0
  snmp-agent community read cipher %$%$q1d}@5l-3TWa*us2s41=aFh{\.7:Q2wY0x1sSs;su%$%$
  snmp-agent sys-info version all
  snmp-agent target-host trap address udp-domain 10.10.10.2 params securityname cipher %@%@=NfaA~>OjM$ZK&%=n##OsvYc%@%@ v2c
  snmp-agent trap enable
  #
  user-interface con 0
  authentication-mode password
  set authentication password cipher %@%@Zf6|Jy!kJ-Bk74*)*(PM,,vngu^WD{qyjKBxfkYe>\+),vq,%@%@
  user-interface vty 0 4
  authentication-mode aaa
  idle-timeout 20 0
  user-interface vty 16 20
  #
  port-group vlan10
  group-member GigabitEthernet0/0/1
  group-member GigabitEthernet0/0/2
  #
  port-group vlan20
  group-member GigabitEthernet0/0/3
  group-member GigabitEthernet0/0/4
  #
  port-group vlan30
  group-member GigabitEthernet0/0/5
  group-member GigabitEthernet0/0/6
  #
  port-group vlan40
  group-member GigabitEthernet0/0/7
  group-member GigabitEthernet0/0/8
  #
  port-group vlan50
  group-member GigabitEthernet0/0/9
  group-member GigabitEthernet0/0/10
  #
  port-group vlan60
  group-member GigabitEthernet0/0/11
  group-member GigabitEthernet0/0/12
  #
  port-group vlan70call
  group-member GigabitEthernet0/0/13
  group-member GigabitEthernet0/0/14
  #
  port-group vlan90toac
  group-member GigabitEthernet0/0/17
  group-member GigabitEthernet0/0/18
  #
  return
页: [1]
查看完整版本: 华为S5700实战配置