• 华为交换机vlan划分、telnet 管理地址配置


    ------1---
    1台核心交换时s5700
    2台汇聚交换机S3700
    6台PC
    -----2------
    创建vlan 10 20 30
    s3700下PC1,PC2,PC3
    S3700下PC4,PC5,PC6
    VLAN10 PC1,PC2
    VLAN20 PC3,PC4
    VLAN30 PC5,PC6
    -------3-----
    要求实现:
    PC1,PC2互通;
     PC3,PC4互通;
      PC5,PC6互通;
    ------------4-----s5700配置----
    undo terminal monitor   //关闭终端模拟
    dis cur  //查看配置
    #
    sysname s5700-Core  //重命名
    #
    vlan batch 10 to 30   //批量创建vlan
    #

    #
    dhcp enable     //启用dhcp
    #

    #
    ip pool 10                  //配置地址池
     gateway-list 192.168.10.1
     network 192.168.10.0 mask 255.255.255.0
     lease day 5 hour 0 minute 0
    #
    aaa
     authentication-scheme default
     authorization-scheme default
     accounting-scheme default
     domain default
     domain default_admin
     local-user admin password simple admin
     local-user admin service-type http
    #
    interface Vlanif1
    #
    interface Vlanif10   //进入vlan 10
     ip address 192.168.10.1 255.255.255.0  //设置网关 掩码
     dhcp select global
    #
    interface Vlanif20
     ip address 192.168.20.1 255.255.255.0
    #
    interface Vlanif30
     ip address 192.168.30.1 255.255.255.0
    #
    interface MEth0/0/1
    #
    interface GigabitEthernet0/0/1    //进入接口
     port link-type trunk                   //设置端口访问模式
     port trunk allow-pass vlan 10 20   //允许vlan 10 20 通过
    #
    interface GigabitEthernet0/0/2
     port link-type trunk
     port trunk allow-pass vlan 20 30
    #

    #
    user-interface con 0
    user-interface vty 0 4
    #
    return

    ----------s3700-h2------配置telnet------
    1.使能服务器功能。
    system-view              //进入用户视图模式
    [s3700-h2]telnet server enable     //使能telnet
    Info: The Telnet server has been enabled.
    [s3700-h2]

    2•配置VTY用户界面的认证方式为AAA:

    选择AAA认证,需要配置AAA用户的认证信息、接入类型和用户级别。
    [s3700-h2]aaa         //进入3a模式

    [s3700-h2-aaa]local-user huawei password simple huawei123  //设置明文用户名、密码
    Info: Add a new user.
    [s3700-h2-aaa]local-user  huawei privilege level 15       //设置用户权限    
    [s3700-h2-aaa]local-user huawei service-type telnet       //设置用户访问类型
    [s3700-h2-aaa]q
    [s3700-h2]
    3.配置VTY用户界面的认证方式和用户级别。配置VTY用户界面的支持协议类型。
    [s3700-h2]user-interface vty 0 4

    [s3700-h2-ui-vty0-4]authentication-mode aaa    //配置认证方式为AAA
    [s3700-h2-ui-vty0-4]protocol inbound telnet  //指定VTY用户界面所支持的协议为Telnet
    [s3700-h2-ui-vty0-4]q
    [s3700-h2]
    4.管理地址配置
    [s3700-h2]vlan 100           //创建vlan100
    [s3700-h2]interface Vlanif 100            //进入vlan100逻辑接口
    [s3700-h2-Vlanif100]ip address 10.10.100.3 24   //配置该虚接口下的ip\掩码
    [s3700-h2-Vlanif100]q

    [s3700-h2]interface GigabitEthernet 0/0/1
    [s3700-h2-GigabitEthernet0/0/1]dis this
    #
    interface GigabitEthernet0/0/1
     port link-type trunk
     port trunk allow-pass vlan 20 30
    [s3700-h2-GigabitEthernet0/0/1]port trunk allow-pass vlan 20 30 100
    [s3700-h2-GigabitEthernet0/0/1]

    -----------s5700----配置trunk--
    system-view 
    [s5700-Core]interface GigabitEthernet 0/0/2  //进入2接口
    [s5700-Core-GigabitEthernet0/0/2]dis this    //查看接口配置
    #
    interface GigabitEthernet0/0/2
     port link-type trunk
     port trunk allow-pass vlan 20 30
    #
    [s5700-Core-GigabitEthernet0/0/2]port trunk allow-pass vlan 20 30 100  //允许vlan通过
    [s5700-Core-GigabitEthernet0/0/2]q
    [s5700-Core]ping 10.10.100.3                 //ping 通测试;
      PING 10.10.100.3: 56  data bytes, press CTRL_C to break
        Reply from 10.10.100.3: bytes=56 Sequence=1 ttl=255 time=100 ms
        Reply from 10.10.100.3: bytes=56 Sequence=2 ttl=255 time=10 ms
        Reply from 10.10.100.3: bytes=56 Sequence=3 ttl=255 time=50 ms
        Reply from 10.10.100.3: bytes=56 Sequence=4 ttl=255 time=50 ms
        Reply from 10.10.100.3: bytes=56 Sequence=5 ttl=255 time=30 ms

      --- 10.10.100.3 ping statistics ---
        5 packet(s) transmitted
        5 packet(s) received
        0.00% packet loss
        round-trip min/avg/max = 10/48/100 ms

    telnet 10.10.100.3      //telnet 测试
    Trying 10.10.100.3 ...
    Press CTRL+K to abort
    Connected to 10.10.100.3 ...
    Login authentication


    Username:

    附件:三台交换机具体配置如下:

    1. #
    2. sysname s5700-Core
    3. #
    4. vlan batch 10 to 30 100
    5. #
    6. cluster enable
    7. ntdp enable
    8. ndp enable
    9. #
    10. drop illegal-mac alarm
    11. #
    12. dhcp enable
    13. #
    14. diffserv domain default
    15. #
    16. drop-profile default
    17. #
    18. ip pool 10
    19. gateway-list 192.168.10.1
    20. network 192.168.10.0 mask 255.255.255.0
    21. lease day 5 hour 0 minute 0
    22. #
    23. aaa
    24. authentication-scheme default
    25. authorization-scheme default
    26. accounting-scheme default
    27. domain default
    28. domain default_admin
    29. local-user admin password simple admin
    30. local-user admin service-type http
    31. local-user huawei password cipher -J&7(SW'E2AI>,Z,88J\:Q!!
    32. local-user huawei privilege level 15
    33. local-user huawei service-type telnet
    34. #
    35. interface Vlanif1
    36. #
    37. interface Vlanif10
    38. ip address 192.168.10.1 255.255.255.0
    39. dhcp select global
    40. #
    41. interface Vlanif20
    42. ip address 192.168.20.1 255.255.255.0
    43. #
    44. interface Vlanif30
    45. ip address 192.168.30.1 255.255.255.0
    46. #
    47. interface Vlanif100
    48. ip address 10.10.100.1 255.255.255.0
    49. #
    50. interface MEth0/0/1
    51. #
    52. interface GigabitEthernet0/0/1
    53. port link-type trunk
    54. port trunk allow-pass vlan 10 20 100
    55. #
    56. interface GigabitEthernet0/0/2
    57. port link-type trunk
    58. port trunk allow-pass vlan 20 30 100
    59. #
    60. interface GigabitEthernet0/0/3
    61. #
    62. interface GigabitEthernet0/0/4
    63. #
    64. interface GigabitEthernet0/0/5
    65. #
    66. interface GigabitEthernet0/0/6
    67. #
    68. interface GigabitEthernet0/0/7
    69. #
    70. interface GigabitEthernet0/0/8
    71. #
    72. interface GigabitEthernet0/0/9
    73. #
    74. interface GigabitEthernet0/0/10
    75. #
    76. interface GigabitEthernet0/0/11
    77. #
    78. interface GigabitEthernet0/0/12
    79. #
    80. interface GigabitEthernet0/0/13
    81. #
    82. interface GigabitEthernet0/0/14
    83. #
    84. interface GigabitEthernet0/0/15
    85. #
    86. interface GigabitEthernet0/0/16
    87. #
    88. interface GigabitEthernet0/0/17
    89. #
    90. interface GigabitEthernet0/0/18
    91. #
    92. interface GigabitEthernet0/0/19
    93. #
    94. interface GigabitEthernet0/0/20
    95. #
    96. interface GigabitEthernet0/0/21
    97. #
    98. interface GigabitEthernet0/0/22
    99. #
    100. interface GigabitEthernet0/0/23
    101. #
    102. interface GigabitEthernet0/0/24
    103. #
    104. interface NULL0
    105. #
    106. user-interface con 0
    107. user-interface vty 0 4
    108. authentication-mode aaa
    109. #
    110. return
    1. #
    2. sysname s3700-h1
    3. #
    4. vlan batch 10 20 100
    5. #
    6. cluster enable
    7. ntdp enable
    8. ndp enable
    9. #
    10. drop illegal-mac alarm
    11. #
    12. diffserv domain default
    13. #
    14. drop-profile default
    15. #
    16. aaa
    17. authentication-scheme default
    18. authorization-scheme default
    19. accounting-scheme default
    20. domain default
    21. domain default_admin
    22. local-user admin password simple admin
    23. local-user admin service-type http
    24. local-user huawei password simple huawei123
    25. local-user huawei privilege level 15
    26. local-user huawei service-type telnet
    27. #
    28. interface Vlanif1
    29. #
    30. interface Vlanif100
    31. ip address 10.10.100.2 255.255.255.0
    32. #
    33. interface MEth0/0/1
    34. #
    35. interface Ethernet0/0/1
    36. #
    37. interface Ethernet0/0/2
    38. port link-type access
    39. port default vlan 10
    40. #
    41. interface Ethernet0/0/3
    42. port link-type access
    43. port default vlan 10
    44. #
    45. interface Ethernet0/0/4
    46. port link-type access
    47. port default vlan 20
    48. #
    49. interface Ethernet0/0/5
    50. #
    51. interface Ethernet0/0/6
    52. #
    53. interface Ethernet0/0/7
    54. #
    55. interface Ethernet0/0/8
    56. #
    57. interface Ethernet0/0/9
    58. #
    59. interface Ethernet0/0/10
    60. #
    61. interface Ethernet0/0/11
    62. #
    63. interface Ethernet0/0/12
    64. #
    65. interface Ethernet0/0/13
    66. #
    67. interface Ethernet0/0/14
    68. #
    69. interface Ethernet0/0/15
    70. #
    71. interface Ethernet0/0/16
    72. #
    73. interface Ethernet0/0/17
    74. #
    75. interface Ethernet0/0/18
    76. #
    77. interface Ethernet0/0/19
    78. #
    79. interface Ethernet0/0/20
    80. #
    81. interface Ethernet0/0/21
    82. #
    83. interface Ethernet0/0/22
    84. #
    85. interface GigabitEthernet0/0/1
    86. port link-type trunk
    87. port trunk allow-pass vlan 10 20 100
    88. #
    89. interface GigabitEthernet0/0/2
    90. #
    91. interface NULL0
    92. #
    93. ip route-static 0.0.0.0 0.0.0.0 10.10.100.1
    94. #
    95. user-interface con 0
    96. user-interface vty 0 4
    97. authentication-mode aaa
    98. #
    99. return
    1. #
    2. sysname s3700-h2
    3. #
    4. vlan batch 20 to 30 100
    5. #
    6. cluster enable
    7. ntdp enable
    8. ndp enable
    9. #
    10. drop illegal-mac alarm
    11. #
    12. diffserv domain default
    13. #
    14. drop-profile default
    15. #
    16. aaa
    17. authentication-scheme default
    18. authorization-scheme default
    19. accounting-scheme default
    20. domain default
    21. domain default_admin
    22. local-user admin password simple admin
    23. local-user admin service-type http
    24. local-user huawei password simple huawei123
    25. local-user huawei privilege level 15
    26. local-user huawei service-type telnet
    27. #
    28. interface Vlanif1
    29. #
    30. interface Vlanif100
    31. ip address 10.10.100.3 255.255.255.0
    32. #
    33. interface MEth0/0/1
    34. #
    35. interface Ethernet0/0/1
    36. #
    37. interface Ethernet0/0/2
    38. port link-type access
    39. port default vlan 20
    40. #
    41. interface Ethernet0/0/3
    42. port link-type access
    43. port default vlan 30
    44. #
    45. interface Ethernet0/0/4
    46. port link-type access
    47. port default vlan 30
    48. #
    49. interface Ethernet0/0/5
    50. #
    51. interface Ethernet0/0/6
    52. #
    53. interface Ethernet0/0/7
    54. #
    55. interface Ethernet0/0/8
    56. #
    57. interface Ethernet0/0/9
    58. #
    59. interface Ethernet0/0/10
    60. #
    61. interface Ethernet0/0/11
    62. #
    63. interface Ethernet0/0/12
    64. #
    65. interface Ethernet0/0/13
    66. #
    67. interface Ethernet0/0/14
    68. #
    69. interface Ethernet0/0/15
    70. #
    71. interface Ethernet0/0/16
    72. #
    73. interface Ethernet0/0/17
    74. #
    75. interface Ethernet0/0/18
    76. #
    77. interface Ethernet0/0/19
    78. #
    79. interface Ethernet0/0/20
    80. #
    81. interface Ethernet0/0/21
    82. #
    83. interface Ethernet0/0/22
    84. #
    85. interface GigabitEthernet0/0/1
    86. port link-type trunk
    87. port trunk allow-pass vlan 20 30 100
    88. #
    89. interface GigabitEthernet0/0/2
    90. #
    91. interface NULL0
    92. #
    93. user-interface con 0
    94. user-interface vty 0 4
    95. authentication-mode aaa
    96. #
    97. return

  • 相关阅读:
    JMeter参数化方式:三招让你的性能测试更灵活!
    交通物流模型 | 基于双向时空自适应Transformer的城市交通流预测
    30分钟带你熟练性能优化的那点儿事儿(案例说明)
    sql表关联查询,表查询出数据插入到另一张,使用正则查询,查询结果集转换为JSON数据
    本节作业之求1~100平均数、奇数和、偶数和、能被3整除数的和、班级总成绩、平均成绩、打印星星、倒三角、正三角、九九乘法表、人的一生
    02-2、PyCharm中文乱码的三处解决方法
    电脑启动引导的两种方式
    资源:加快进入区块链的5种最佳编程语言
    CentOS6.6下安装git 2.6.2
    硕鼠——视频下载利器
  • 原文地址:https://blog.csdn.net/weixin_44662991/article/details/133765264