H3C核心交换机配置

H3C核心交换机配置

  H3C每年将销售额的15%以上用于研发投入,在中国的'北京、杭州和深圳设有研发机构,在北京和杭州设有可靠性试验室以及产品鉴定测试中心。以下是小编整理的关于H3C核心交换机配置,希望大家认真阅读!

  1、核心交换机新建用户admin密码admin@h2c,并关联远程登录服务,如telnet web网页登录、ssh远程登录。并开启telnet、web登录服务、ftp服务

  #

  local-user admin

  password cipher admin@h2c

  authorization-attribute level 3

  service-type telnet

  service-type ftp

  service-type web

  #

  telnet server enable

  #

  ip http enable

  #

  user-interface vty 0 15

  authentication-mode scheme

  2、如需新增vlan网段,先新建对应vlan,新建网关、把网线口加入到此vlan,这里例举新增vlan11,网关172.30.162.1/24,把0/0/27-0/0/28口添加到vlan162

  #

  vlan 162

  port GigabitEthernet 0/0/27 to GigabitEthernet 0/0/28

  #

  interface Vlan-interface162

  ip address 172.30.162.1 255.255.255.0

  3、开启DHCP自动获取功能,此功能一般只需要在核心交换机上开启,比如这里开启vlan162网段的DHCP功能,并禁止分配172.30.162.1-100

  #

  dhcp server ip-pool 162

  network 172.30.162.0 mask 255.255.255.0

  gateway-list 172.30.162.1

  dns-list 88.0.0.216 88.0.0.218

  #

  dhcp enable

  #

  dhcp server forbidden-ip 172.30.162.1 172.30.162.100

  关闭192.168.11.0网段的DHCP自动获取功能

  #

  undo dhcp server ip-pool 11

  4、下联交换机口必须配置成trunk口,并允许所有vlan通过,比如2槽位板卡,开启trunk配置,这里例举2/0/1和2/0/2口要下接接入交换机

  #

  interface GigabitEthernet2/0/1

  port link-type trunk

  port trunk permit vlan 10 20 30 40 50 80 162 500 1000

  #

  interface GigabitEthernet2/0/2

  port link-type trunk

  port trunk permit vlan 10 20 30 40 50 80 162 500 1000

  5、查看交换机端口使用情况,可查看端口激活状态up或者DOWN,端口工作速率,端口模式,端口对应的vlan号

  dis interface brief

  The brief information of interface(s) under route mode:

  Link: ADM - administratively down; Stby - standby

  Protocol: (s) - spoofing

  Interface Link Protocol Main IP Description

  M-E0/0/0 DOWN DOWN --

  NULL0 UP UP(s) --

  Vlan1 UP UP --

  Vlan10 UP UP 192.168.10.1 POS

  Vlan20 UP UP 192.168.20.1 KELIU

  Vlan30 UP UP 192.168.30.1 MENJIN

  Vlan40 UP UP 192.168.40.1 TINGCHECHANG

  Vlan50 UP UP 172.15.0.1 KEYONG-WIFI-IP

  Vlan80 UP UP 192.168.80.1 OFFICE-WIFI-IP

  Vlan162 UP UP 172.30.162.1 OFFICE

  Vlan500 UP UP 192.168.60.1 AP-IP

  Vlan1000 UP UP 172.16.100.1 MANGENT&TO-F100-E-G

  Vlan1101 UP UP 11.1.1.2 TO-CISCO-11.1.1.1

  Vlan1102 UP UP 11.1.1.6 TO-CISCO-11.1.1.5

  The brief information of interface(s) under bridge mode:

  Link: ADM - administratively down; Stby - standby

  Speed or Duplex: (a)/A - auto; H - half; F - full

  Type: A - access; T - trunk; H - hybrid

  Interface Link Speed Duplex Type PVID Description

  BAGG1 UP 2G(a) F(a) A 1000 TO-F100-E-G

  BAGG2 UP 2G(a) F(a) T 1 WLAN-COTROL

  GE0/0/1 DOWN auto A T 1

  GE0/0/2 DOWN auto A T 1

  GE0/0/3 DOWN auto A T 1

  6、查看各个vlan所有在线电脑ip,可通过命令查看在线ip地址-mac地址-学习来源(所接端口),下面列举查看管理vlan 1000网段交换机在线情况,可以看到下列ip的交换机都在正常工作,都在线

  dis arp vlan 1000

  Type: S-Static D-Dynamic M-Multiport

  IP Address MAC Address VLAN ID Interface Aging Type

  172.16.100.36 5cdd-703f-6e50 1000 GE0/0/13 18 D

  172.16.100.14 7425-8aef-811a 1000 GE0/0/13 13 D

  172.16.100.37 e468-a38e-ee5b 1000 GE0/0/14 3 D

  172.16.100.2 70ba-ef69-4adf 1000 BAGG1 3 D

  172.16.100.3 70f9-6d0d-e4d6 1000 BAGG2 15 D

版权声明:本文内容由互联网用户自发贡献,该文观点仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如发现本站有涉嫌抄袭侵权/违法违规的内容, 请发送邮件至 yyfangchan@163.com (举报时请带上具体的网址) 举报,一经查实,本站将立刻删除