H3C-1-1-N配置命令:
[H3C-1-1-N]DIS CUR
#
sysname H3C-1-1-N
#
super password admin
#
#
#
#
#
local-user admin
password admin
service-type web
local-user h3c
password h3c
#
radius scheme system
#
#
vlan 1
#
vlan 11
#
vlan 111
#
vlan 200
#
vlan 255
description guanli
#
interface vlan-interface255
ip address 172.16.255.100 255.255.255.0
#
#
#stp configuration
stp enable
#
interface Ethernet0/1
port access vlan 100
#
interface Ethernet0/2
port access vlan 255
# interface Ethernet0/3
port access vlan 11
#
interface Ethernet0/4
port access vlan 11
#
interface Ethernet0/5
port access vlan 11
#
interface Ethernet0/6
port access vlan 11
#
interface Ethernet0/7
port access vlan 11
#
interface Ethernet0/8
port access vlan 11
#
interface Ethernet0/9
port access vlan 11
#
interface Ethernet0/10
port access vlan 11
#
interface Ethernet0/11
port access vlan 11
#
interface Ethernet0/12
port access vlan 11
#
interface Ethernet0/13
port access vlan 11
#
interface Ethernet0/14
port access vlan 11
#
interface Ethernet0/15
port access vlan 11
#
interface Ethernet0/16
port access vlan 11
#
interface Ethernet0/17
port access vlan 11
#
interface Ethernet0/18
port access vlan 11
#
interface Ethernet0/19
port access vlan 11
#
interface Ethernet0/20
port access vlan 11
#
interface Ethernet0/21
port access vlan 11
#
interface Ethernet0/22
port access vlan 11
#
interface Ethernet0/23
port access vlan 11
#
interface Ethernet0/24
port access vlan 11
#
interface Ethernet0/25
port access vlan 111
#
interface Ethernet0/26
port access vlan 111
#
interface Ethernet0/27
port access vlan 111
#
interface Ethernet0/28
port access vlan 111
#
interface Ethernet0/29
port access vlan 111
#
interface Ethernet0/30
port access vlan 111
#
interface Ethernet0/31
port access vlan 111
#
interface Ethernet0/32
port access vlan 111
#
interface Ethernet0/33
port access vlan 111
#
interface Ethernet0/34
port access vlan 111
#
interface Ethernet0/35 port access vlan 111
#
interface Ethernet0/36 port access vlan 111
#
interface Ethernet0/37 port access vlan 111
#
interface Ethernet0/38 port access vlan 111
#
interface Ethernet0/39 port access vlan 111
#
interface Ethernet0/40 port access vlan 111
#
interface Ethernet0/41 port access vlan 111
#
interface Ethernet0/42 port access vlan 111
#
interface Ethernet0/43 port access vlan 111
#
interface Ethernet0/44 port access vlan 200
#
interface Ethernet0/45 port access vlan 200
#
interface Ethernet0/46 port access vlan 200
#
interface Ethernet0/47 port access vlan 200
#
interface Ethernet0/48 port access vlan 200
#
interface Ethernet0/49 speed 1000
port link-type trunk
port trunk permit vlan all #
interface Ethernet0/50
port link-type trunk
port trunk permit vlan all
#
#
user-interface aux 0
set authentication password admin
user-interface vty 0
set authentication password admin
user-interface vty 1
set authentication password admin
#
汇聚交换机:
[H3C-1-HJ]dis cur
#
version 5.20, Release 2202P11
#
sysname H3C-1-HJ
#
domain default enable system
#
telnet server enable
#
undo ip ttl-expires
#
link-aggregation load-sharing mode
destination-ip
#
management-vlan 255
#
vlan 1
#
vlan 11 to 17
#
vlan 111 to 117
#
vlan 200 to 201
#
vlan 255
#
radius scheme system
server-type extended
primary authentication 127.0.0.1
1645
primary accounting 127.0.0.1 1646
user-name-format without-domain
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
user-group system
#
interface Bridge-Aggregation1
port link-type trunk
port trunk permit vlan all
#
interface NULL0
#
interface Vlan-interface255
ip address 172.16.255.251
255.255.255.0
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/2
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/3
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/4
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/5
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/6
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/7
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/8
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/9 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/10 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/11 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/12 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/13 port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet1/0/14 port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet1/0/15 port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet1/0/16 port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet1/0/17 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/18 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/19 port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/20
port link-type trunk
port trunk permit vlan all
#
user-interface aux 0
user-interface vty 0 4
user privilege level 3
set authentication password
cipher .]@USE=B,53Q=^Q`MAF4<1
!!
#
Return
核心交换机:
[H3C-S7506E]dis cur
#
version 5.20, Release 6616P01
#
sysname H3C-S7506E
#
domain default enable system
#
dns proxy enable
dns server 8.8.8.8
dns server 202.102.152.3
dns server 219.146.0.130
#
telnet server enable
#
link-aggregation lacp
traffic-redirect-notification enable
link-aggregation load-sharing mode
destination-ip
#
management-vlan 255
#
switch-mode standard
switch-mode normal slot 2
switch-mode normal slot 3
#
acl number 3000
rule 1 permit ip source
172.16.255.209 0 destination
172.16.255.0 0
rule 10 deny ip source
172.16.255.209 0
rule 20 permit ip
#
vlan 1
#
vlan 11 to 17
#
vlan 21 to 25
#
vlan 31 to 33
#
vlan 41 to 45
#
vlan 51
#
vlan 100
description bangong
#
vlan 111 to 117
#
vlan 131
#
vlan 141 to 145
#
vlan 200 to 201
#
vlan 254 to 255
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool vlan100
network 192.168.100.0 mask
255.255.255.0
gateway-list 192.168.100.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan11
network 172.16.11.0 mask
255.255.255.0
gateway-list 172.16.11.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan111
network 172.16.111.0 mask
255.255.255.0
gateway-list 172.16.111.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan112 network 172.16.112.0 mask 255.255.255.0
gateway-list 172.16.112.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan113 network 172.16.113.0 mask 255.255.255.0
gateway-list 172.16.113.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan114 network 172.16.114.0 mask 255.255.255.0
gateway-list 172.16.114.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan115 network 172.16.115.0 mask 255.255.255.0
gateway-list 172.16.115.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan116 network 172.16.116.0 mask 255.255.255.0
gateway-list 172.16.116.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan117 network 172.16.117.0 mask 255.255.255.0
gateway-list 172.16.117.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan12
network 172.16.12.0 mask 255.255.255.0
gateway-list 172.16.12.254
dns-list 202.102.152.3
#
dhcp server ip-pool vlan13
network 172.16.13.0 mask 255.255.255.0
gateway-list 172.16.13.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan14
network 172.16.14.0 mask
255.255.255.0
gateway-list 172.16.14.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan141
network 172.16.141.0 mask
255.255.255.0
gateway-list 172.16.141.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan142
network 172.16.142.0 mask
255.255.255.0
gateway-list 172.16.142.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan143
network 172.16.143.0 mask
255.255.255.0
gateway-list 172.16.143.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan144
network 172.16.144.0 mask
255.255.255.0
gateway-list 172.16.144.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan145
network 172.16.145.0 mask
255.255.255.0
gateway-list 172.16.145.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan15
network 172.16.15.0 mask
255.255.255.0
gateway-list 172.16.15.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan16
network 172.16.16.0 mask
255.255.255.0
gateway-list 172.16.16.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan17
network 172.16.17.0 mask
255.255.255.0
gateway-list 172.16.17.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan200
network 172.16.200.0 mask
255.255.255.0
gateway-list 172.16.200.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan201
network 172.16.201.0 mask
255.255.255.0
gateway-list 172.16.201.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan21
network 172.16.21.0 mask
255.255.255.0
gateway-list 172.16.21.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan22
network 172.16.22.0 mask
255.255.255.0
gateway-list 172.16.22.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan23
network 172.16.23.0 mask
255.255.255.0
gateway-list 172.16.23.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan24
network 172.16.24.0 mask
255.255.255.0
gateway-list 172.16.24.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan25
network 172.16.25.0 mask
255.255.255.0
gateway-list 172.16.25.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan31
network 172.16.31.0 mask 255.255.255.0
gateway-list 172.16.31.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan32
network 172.16.32.0 mask 255.255.255.0
gateway-list 172.16.32.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan33
network 172.16.33.0 mask 255.255.255.0
gateway-list 172.16.33.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan41
network 172.16.41.0 mask 255.255.255.0
gateway-list 172.16.41.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan42
network 172.16.42.0 mask 255.255.255.0
gateway-list 172.16.42.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan43
network 172.16.43.0 mask 255.255.255.0
gateway-list 172.16.43.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan44
network 172.16.44.0 mask 255.255.255.0
gateway-list 172.16.44.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan45
network 172.16.45.0 mask 255.255.255.0
gateway-list 172.16.45.254
dns-list 202.102.152.3 8.8.8.8
#
dhcp server ip-pool vlan51
network 172.16.51.0 mask
255.255.255.0
gateway-list 172.16.51.254
dns-list 202.102.152.3 8.8.8.8
#
user-group system
#
local-user admin
password simple admin
authorization-attribute level 3
service-type telnet
#
interface Bridge-Aggregation1
port link-type trunk
port trunk permit vlan all
#
interface NULL0
#
interface Vlan-interface1
ip address 192.168.0.254
255.255.255.0
#
interface Vlan-interface11
ip address 172.16.11.254
255.255.255.0
#
interface Vlan-interface12
ip address 172.16.12.254
255.255.255.0
#
interface Vlan-interface13
ip address 172.16.13.254
255.255.255.0
#
interface Vlan-interface14
ip address 172.16.14.254
255.255.255.0
#
interface Vlan-interface15
ip address 172.16.15.254
255.255.255.0
#
interface Vlan-interface16
ip address 172.16.16.254
255.255.255.0
#
interface Vlan-interface17
ip address 172.16.17.254
255.255.255.0
#
interface Vlan-interface21
ip address 172.16.21.254
255.255.255.0
#
interface Vlan-interface22
ip address 172.16.22.254
255.255.255.0
#
interface Vlan-interface23
ip address 172.16.23.254
255.255.255.0
#
interface Vlan-interface24
ip address 172.16.24.254
255.255.255.0
#
interface Vlan-interface25
ip address 172.16.25.254
255.255.255.0
#
interface Vlan-interface31
ip address 172.16.31.254
255.255.255.0
#
interface Vlan-interface32
ip address 172.16.32.254
255.255.255.0
#
interface Vlan-interface33
ip address 172.16.33.254
255.255.255.0
#
interface Vlan-interface41
ip address 172.16.41.254
255.255.255.0
#
interface Vlan-interface42
ip address 172.16.42.254
255.255.255.0
#
interface Vlan-interface43
ip address 172.16.43.254
255.255.255.0
#
interface Vlan-interface44
ip address 172.16.44.254 255.255.255.0
#
interface Vlan-interface45
ip address 172.16.45.254 255.255.255.0
#
interface Vlan-interface51
ip address 172.16.51.254 255.255.255.0
#
interface Vlan-interface100
ip address 192.168.100.254 255.255.255.0
#
interface Vlan-interface111
ip address 172.16.111.254 255.255.255.0
#
interface Vlan-interface112
ip address 172.16.112.254 255.255.255.0
#
interface Vlan-interface113
ip address 172.16.113.254 255.255.255.0
#
interface Vlan-interface114
ip address 172.16.114.254 255.255.255.0
#
interface Vlan-interface115
ip address 172.16.115.254 255.255.255.0
#
interface Vlan-interface116
ip address 172.16.116.254 255.255.255.0
#
interface Vlan-interface117
ip address 172.16.117.254 255.255.255.0
#
interface Vlan-interface131
ip address 172.16.131.254 255.255.255.0
#
interface Vlan-interface141
ip address 172.16.141.254
255.255.255.0
#
interface Vlan-interface142
ip address 172.16.142.254
255.255.255.0
#
interface Vlan-interface143
ip address 172.16.143.254
255.255.255.0
#
interface Vlan-interface144
ip address 172.16.144.254
255.255.255.0
#
interface Vlan-interface145
ip address 172.16.145.254
255.255.255.0
#
interface Vlan-interface200
ip address 172.16.200.254
255.255.255.0
#
interface Vlan-interface201
ip address 172.16.201.254
255.255.255.0
#
interface Vlan-interface254
#
interface Vlan-interface255
ip address 172.16.255.254
255.255.255.0
packet-filter 3000 outbound
#
interface GigabitEthernet2/0/1
port link-mode bridge
description telephone
port access vlan 255
#
interface GigabitEthernet2/0/2
port link-mode bridge
description telephone
port access vlan 255
#
interface GigabitEthernet2/0/3
port link-mode bridge
description telephone
port access vlan 255
#
interface GigabitEthernet2/0/4
port link-mode bridge
description telephone
port access vlan 255
#
interface GigabitEthernet2/0/5
port link-mode bridge
port access vlan 255
#
interface GigabitEthernet2/0/6
port link-mode bridge
port access vlan 255
#
interface GigabitEthernet2/0/7
port link-mode bridge
port access vlan 255
#
interface GigabitEthernet2/0/8
port link-mode bridge
port access vlan 255
#
interface GigabitEthernet2/0/9
port link-mode bridge
port access vlan 100
#
interface GigabitEthernet2/0/10
port link-mode bridge
port access vlan 100
#
interface GigabitEthernet2/0/11
port link-mode bridge
port access vlan 255
#
interface GigabitEthernet2/0/12
port link-mode bridge
port access vlan 255
#
interface GigabitEthernet2/0/13
port link-mode bridge
port link-type trunk
port trunk permit vlan all
port link-aggregation group 1
#
interface GigabitEthernet2/0/14
port link-mode bridge
port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet2/0/15 port link-mode bridge
port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet2/0/16 port link-mode bridge
port link-type trunk
port trunk permit vlan all port link-aggregation group 1 #
interface GigabitEthernet2/0/17 port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/18 port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/19 port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/20 port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/21 port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/22 port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/23
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet2/0/24
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/1
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/2
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/3
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/4
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/5
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/6
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/7
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/8
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/9
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/10
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/11
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/12
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/13
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/14
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/15
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/16
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/17
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/18
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/19
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/20
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/21
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/22
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/23
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet3/0/24
port link-mode bridge
port access vlan 255
#
interface M-Ethernet0/0/0
#
rip 1
version 2
network 0.0.0.0
network 172.16.0.0
#
dhcp-snooping
#
ip route-static 0.0.0.0 0.0.0.0 172.16.255.253
#
dhcp enable
#
arp timer aging 5
#
load xml-configuration
#
user-interface aux 0 authentication-mode password
set authentication password cipher admin
user-interface vty 0 4
user privilege level 3
set authentication password cipher admin
idle-timeout 1000 0
user-interface vty 5 15
user privilege level 3
set authentication password cipher admin
#
return
H3C交换机简单配置命令 1、配置主机名 [H3C]systemname H3C 2、配置console口密码 # 进入系统视图。
# 设置通过VTY0口登录交换机的用户进行Password认证。 [H3C-ui-vty0] authentication-mode password # 设置用户的认证口令为密码方式,口令为123456。 [H3C-ui-vty0] set authentication password cipher 123456 # 设置从VTY0用户界面登录后可以访问的命令级别为2级。 [H3C-ui-vty0] user privilege level 2 # 设置VTY0用户界面支持Telnet协议。 [H3C-ui-vty0] protocol inbound telnet 4、配置交换机VLAN 1 管理地址
进入系统视图 system-view 配置设备名 sysname RouterA 查看FLASH目录下内容 dir 指定下次启动配置文件 startup saved-configuration main.cfg 保存配置 save 重启 reboot #置CONSOLE用户登陆的口令认证
用户的命令控制级别设置 [H3C-ui-aux0]user privilege level 0 [H3C]super password level 1 simple 123456 [H3C]super password level 2 simple 123456 [H3C]super password level 3 simple 123456 # 设置super(明文)密码当低权限向高权限切换时使用![RouterA]super password simple quidway # 设置super(密文)密码 [RouterA]super password cipher quidway # 启用telnet 管理功能 [RouterA]user-interface vty 0 4 [RouterA-ui-vty0-4]authentication-mode password [RouterA-ui-vty0-4]set authentication password simple quidway [RouterA-ui-vty0-4]user privilege level 3 [RouterA-ui-vty0-4]quit [RouterA]telnet server enable
华三华为交换机路由器 配置常用命令汇总 HUA system office room 【HUA16H-TTMS2A-HUAS8Q8-HUAH1688】
H3C交换机配置命令大全1、system-view 进入系统视图模式 2、sysname 为设备命名 3、display current-configuration 当前配置情况 4、 language-mode Chinese|English 中英文切换 5、interface Ethernet 1/0/1 进入以太网端口视图 6、 port link-type Access|Trunk|Hybrid 设置端口访问模式 7、 undo shutdown 打开以太网端口 8、 shutdown 关闭以太网端口
9、 quit 退出当前视图模式 10、 vlan 10 创建VLAN 10并进入VLAN 10的视图模式 11、 port access vlan 10 在端口模式下将当前端口加入到vlan 10中 12、port E1/0/2 to E1/0/5 在VLAN模式下将指定端口加入到当前vlan中 13、port trunk permit vlan all 允许所有的vlan通过 H3C路由器配置命令大全华为交换机常用配置实例 H3C交换机路由器telnet和console口登录配置 2009年11月09日星期一 10:00
级别说明 Level 名称 命令 参观 ping、tracert、telnet 1 监控 display、debugging 2 配置 所有配置命令(管理级的命令除外)
H3C交换机配置命令 创建汇聚组link-aggregation group mode{manual / static} 加入端口Port link-aggregation group 汇聚接口配置interface Bridge-Aggregation 1 description ==TO-IDF-1== port link-type trunk undo port trunk permit vlan 1 port trunk permit vlan 21 100 (1)采用手工聚合方式 # 创建汇聚组1。 [H3C] link-aggregation group 1 mode manual # 将以太网端口Ethernet2/1/1至Ethernet2/1/3加入聚合组1。 [H3C] interface ethernet2/1/1 [H3C-Ethernet2/1/1] port link-aggregation group 1 [H3C-Ethernet2/1/1] interface ethernet2/1/2 [H3C-Ethernet2/1/2] port link-aggregation group 1 [H3C-Ethernet2/1/2] interface ethernet2/1/3
[H3C-Ethernet2/1/3] port link-aggregation group 1 # 当聚合组端口序号连续时,可以直接把多个端口聚成一组,组号由系统自行分 配。 [H3C] link-aggregation ethernet2/1/1 to ethernet2/1/3 both (2)采用静态LACP聚合方式 # 创建静态汇聚组1。 [H3C] link-aggregation group 1 mode static # 将以太网端口Ethernet2/1/1至Ethernet2/1/3加入聚合组1。 [H3C] interface ethernet2/1/1 [H3C-Ethernet2/1/1] port link-aggregation group 1 [H3C-Ethernet2/1/1] interface ethernet2/1/2 [H3C-Ethernet2/1/2] port link-aggregation group 1 [H3C-Ethernet2/1/2] interface ethernet2/1/3 [H3C-Ethernet2/1/3] port link-aggregation group 1 (3)采用动态LACP聚合方式 # 开启以太网端口Ethernet2/1/1至Ethernet2/1/3的LACP协议。 [H3C] interface ethernet2/1/1 [H3C-Ethernet2/1/1] lacp enable [H3C-Ethernet2/1/1] interface ethernet2/1/2 [H3C-Ethernet2/1/2] lacp enable [H3C-Ethernet2/1/2] interface ethernet2/1/3 [H3C-Ethernet2/1/3] lacp enable 设置以太网端口的速率speed { 10 | 100 | 1000 | 10000 | auto } 设置以太网端口连接的网线的类型mdi { across | auto | normal }
第1章系统基本配置命令 1、1 系统基本配置命令 1、1、1 clock datetime 【命令】 clock datetime time date 【视图】 用户视图 【参数】 time:当前时间,格式为HH:MM:SS(小时:分钟:秒),HH取值范围为0~23,MM与SS取值范围为0~59。 date:为当前日期,格式为MM/DD/YYYY(月/日/年)或者YYYY/MM/DD(年/月/日),MM得取值范围为1~12,DD得取值范围与月份有关,YYYY得取值范围为2000~2035。 【描述】 clock datetime命令用来设置系统时间与日期。 在需要严格获取绝对时间得应用环境中,必须设定设备当前日期与时钟。在输入时间参数时,可以不输入秒。 设置完成后,可以使用display clock命令进行查瞧。 【举例】 # 设置设备当前日期为2005年8月1日14时10分20秒。
h3c路由器基本配置命令大全 精品文档 H3C路由器基本配置命令大全 H3C路由器基本配置命令有哪些?下面跟gkstk小编一起来学习一下吧! [Quidway]displayversion 显示版本信息 [Quidway]displaycurrent-configuration 显示当前配置 [Quidway]displayinterfaces 显示接口信息 [Quidway]displayip route 显示路由信息 [Quidway]sysnameaabbcc 更改主机名 [Quidway]superpasswrod 12345设置口令 [Quidway]interfaceserial0 进入接口 [Quidway-serial0]ipaddress [Quidway-serial0]undoshutdown 激活端口 [Quidway]link-protocolhdlc 绑定hdlc协议 [Quidway]user-interfacevty 0 [Quidway-ui-vty0-4]authentication-modepassword [Quidway-ui-vty0-4]setauthentication-mode password simple22 [Quidway-ui-vty0-4]userprivilege level [Quidway-ui-vty0-4]quit [Quidway]debugginghdlc all serial0 显示所有信息 [Quidway]debugginghdlc event serial0 调试事件信 1 / 8
精品文档 息 [Quidway]debugginghdlc packet serial0 显示包的信 息 [Quidway]iproute-static {interfacenumber|nexthop}[value][reject|blackhole] 例如: [Quidway]iproute-static 129.1.0.0 110.0.0.2 [Quidway]iproute-static 129.1.0.055.255.0.0 10.0.0.2 [Quidway]iproute-static 129.1.0.0 1Serial [Quidway]iproute-static 0.0.0.0 0.0.0.0 10.0.0.2 [Quidway]rip [Quidway]rip work [Quidway]rip input [Quidway]ripoutput [Quidway-rip]network1.0.0.0 ;可以all [Quidway-rip]network2.0.0.0 [Quidway-rip]peerip-address [Quidway-rip]summary [Quidway]ripversion 1 [Quidway]ripversion multicast [Quidway-Ethernet0]ripsplit-horizon ;水平分隔 2 / 8 精品文档
H3C交换机常用配置命令 一、用户配置
H3C交换机配置命令大全 1、system-view 进入系统视图模式 2、sysname 为设备命名 3、display current-configuration 当前配置情况 4、 language-mode Chinese|English 中英文切换 5、interface Ethernet 1/0/1 进入以太网端口视图 6、 port link-type Access|Trunk|Hybrid 设置端口访问模式 7、 undo shutdown 打开以太网端口 8、 shutdown 关闭以太网端口 9、 quit 退出当前视图模式 10、 vlan 10 创建VLAN 10并进入VLAN 10的视图模式 11、 port access vlan 10 在端口模式下将当前端口加入到vlan 10中 12、port E1/0/2 to E1/0/5 在VLAN模式下将指定端口加入到当前vlan中 13、port trunk permit vlan all 允许所有的vlan通过 H3C路由器 1、system-view 进入系统视图模式 2、sysname R1 为设备命名为R1 3、display ip routing-table 显示当前路由表
4、 language-mode Chinese|English 中英文切换 5、interface Ethernet 0/0 进入以太网端口视图 6、 ip address 192.168.1.1 255.255.255.0 配置IP地址和子网掩码 7、 undo shutdown 打开以太网端口 8、 shutdown 关闭以太网端口 9、 quit 退出当前视图模式 10、 ip route-static 192.168.2.0 255.255.255.0 192.168.12.2 description To.R2 配置静态路由 11、 ip route-static 0.0.0.0 0.0.0.0 192.168.12.2 description To.R2 配 置默认的路由 H3C S3100 Switch H3C S3600 Switch H3C MSR 20-20 Router 1、调整超级终端的显示字号; 2、捕获超级终端操作命令行,以备日后查对; 3、 language-mode Chinese|English 中英文切换; 4、复制命令到超级终端命令行,粘贴到主机; 5、交换机清除配置 :
第1章系统基本配置命令 1.1 系统基本配置命令 1.1.1 clock datetime 【命令】 clock datetime time date 【视图】 用户视图 【参数】 time:当前时间,格式为HH:MM:SS(小时:分钟:秒),HH取值范围为0~23,MM和SS取值范围为0~59。 date:为当前日期,格式为MM/DD/YYYY(月/日/年)或者YYYY/MM/DD(年/月/日),MM的取值范围为1~12,DD的取值范围与月份有关,YYYY的取值范围为2000~2035。 【描述】
clock datetime命令用来设置系统时间和日期。 在需要严格获取绝对时间的应用环境中,必须设定设备当前日期和时钟。在输入时间参数时,可以不输入秒。 设置完成后,可以使用display clock命令进行查看。 【举例】 # 设置设备当前日期为2005年8月1日14时10分20秒。
telnet 防火墙IP地址 用户名 密码 --进入普通用户权限-- --在此命令下可输入一般命令-- --可用?看有哪些命令和命令的作用-- system-view --进入超级管理员权限界面-- --此提示符下可输绝大部分命令-- --(极少数需要在com终端输入)-- quit --退出当前状态,返回上一级-- 一般命令(不一定要把命令写全) display current 展示当前配置 acl number 3050 进入访问控制列表3050号 rule 66 permit ip ........ 在当前访问控制表增加或修改规则66号 rule的具体用法可用rule ?一步步显示出来,亦可参考我原写的命令 我原配置需要涉及的部分 1.ip和mac绑定,绑定方法具体看一下参数文件你就可明白 2.策略号3050 在该条策略中如有permit就是允许你指定的ip或ip段上网 3.策略号3051和305作用是限流 在该策略号具体用法可参考其中的rule规则 最后是save 否则一重启这些改动就会无效 sH3C路由器 ##################################################################### 1、system-view 进入系统视图模式 2、sysname R1 为设备命名为R1 3、display ip routing-table 显示当前路由表 4、 language-mode Chinese|English 中英文切换 5、interface Ethernet 0/0 进入以太网端口视图
6、 ip address 192.168.1.1 255.255.255.0 配置IP地址和子网掩码 7、 undo shutdown 打开以太网端口 8、 shutdown 关闭以太网端口 9、 quit 退出当前视图模式 10、 ip route-static 192.168.2.0 255.255.255.0 192.168.12.2 description To.R2 配置静态路由 11、 ip route-static 0.0.0.0 0.0.0.0 192.168.12.2 description To.R2 配置默认的路由 H3C S3100 Switch H3C S3600 Switch H3C MSR 20-20 Router ##################################################################### 1、调整超级终端的显示字号; 2、捕获超级终端操作命令行,以备日后查对; 3、 language-mode Chinese|English 中英文切换; 4、复制命令到超级终端命令行,粘贴到主机; 5、交换机清除配置 :
监控视图命令: arp-ping ARP-ping backup备份信息 cd改变当前路径check检测版本配套信息clock设置系统时钟compare比较功能 copy拷贝文件debugging打开系统调试开关delete删除文件 dir列出文件系统中的文件display显示 format格式化设备 free释放用户接口 ftp建立一个FTP连接language-mode设置语言环境license激活License文件 lldp链路层发现协议 local-user添加/删除/设置用户lock锁住用户终端 mkdir创建新目录 more显示文件的内容
move移动文件 mpls配置MPLS参数 mtrace跟踪到组播源 patch补丁命令组 patch-state补丁状态 ping检查网络连接或主机是否可达 power上下电操作 pwd显示当前的工作路径 quit退出当前的命令视图 reboot系统重启 refresh软清除方式 rename重命名文件或目录 reset清除 rmdir删除已经存在的目录 save保存当前有效配置 schedule设定系统任务 screen-length设置屏幕显示的行数 send向其他的用户终端接口传送信息 set set start-script在物理终端用户接口上执行一个指定脚本startup配置系统启动参数 super指定当前用户优先级
system-view进入系统视图 telnet建立一个TELNET连接 terminal设置终端特性 test-aaa帐号测试 tftp建立一个TFTP 连接 trace从链路层上trace 路由器(交换机)到主机tracert Trace route到主机 undelete恢复删除的文件 undo取消当前设置 unzip解压缩文件 upgrade更新 xmodem建立一个xmodem连接 zip压缩文件 系统视图命令: aaa AAA 视图 acl指定ACL配置信息 apply应用FIB路由策略 arp指定ARP配置信息 arp-miss ARP miss 消息 arp-ping ARP-ping arp-suppress指定ARP抑制功能配置,缺省值是非使能
H3C 交换机配置命令大全 1、 system-view 进入系统视图模式 2、 sysname 为设备命名 3、 display current-configuration 当前配置情况 4、 language-mode Chinese|English 中英文切换 5、 interface Ethernet 1/0/1 进入以太网端口视图 6、 port link-type Access|Trunk|Hybrid 设置端口访问模式 7、 undo shutdown 打开以太网端口 8、 shutdown 关闭以太网端口 9、 quit 退出当前视图模式 10、 vlan 10 创建 VLAN 10 并进入 VLAN 10 的视图模式 13、 port trunk permit vlan all H3C 路由器 1、 system-view 进入系统视图模式 2、 sysname R1 为设备命名为 R1 3、 display ip routing-table 显示当前路由表 4、 language-mode Chinese|English 中英文切换 5、 interface Ethernet 0/0 进入以太网端口视图 6、 ip address 192.168.1.1 255.255.255.0 配置 IP 地址和子网掩码 7、 undo shutdown 打开以太网端口 8、 shutdown 关闭以太网端口 9、 quit 退出当前视图模式 10、 ip route-static 192.168.2.0 255.255.255.0 192.168.12.2 description To.R2 置 静态路由 11、 ip route-static 0.0.0.0 0.0.0.0 192.168.12.2 description To.R2 H3C S3100 Switch H3C S3600 Switch H3C MSR 20-20 Router 11、 port access vlan 10 12、 port E1/0/2 to E1/0/5 在端口模式下将当前端口加入到 vlan 10 中 在 VLAN 模式下将指定端口加入到当前 vlan 允许所有的 vlan 通过 配 配置默认的路
.用户配置:
一、基本配置
[H3C]displayusers //显示用户 [H3C]displayuser-interface //用户界面状态 三、VLAN配置 [H3C]vlan 2 //创建VLAN2 [H3C]undo vlanall //删除除缺省VLAN外的所有VLAN,缺省VLAN不能被删除 [H3C-vlan2]port Ethernet 0/4 to Ethernet0/7 //将4到7号端口加入到VLAN2中,此命令只能用来加access端口,不能用来增加trunk或者hybrid端口[H3C-vlan2]port-isolateenable //打开VLAN内端口隔离特性,不能二层转发,默认不启用该功能 [H3C-Ethernet0/4]port-isolate uplink-portvlan 2 //设置4为VLAN2的隔离上行端口,用于转发二层数据,只能配置一个上行端口,若为trunk,则建议允许所有VLAN通过,隔离不能与汇聚同时配置 [H3C]display vlanall //显示所有VLAN的详细信息 S1550E支持基于端口的VLAN,通过创建不同的user-group来实现,一个端口可以属于多个user-group,不属于同一个user-group的端口不能互相通信 [H3C]user-group20 //创建user-group 20,默认只存在user-group 1 [H3C-UserGroup20]port Ethernet 0/4 toEthernet 0/7 //将4到7号端口加入到VLAN20中,初始时都属于user-group 1中 [H3C]display user-group20 //显示user-group 20的相关信息
系统及配置文件备份操作 实验任务一:使用系统操作及文件操作的基本命令 步骤一:进入系统视图 执行system-view命令进入系统视图。系统视图的提示符为[系统名]。执行quit命令可以从系统视图切换到用户视图。 步骤二:练习使用帮助特性和补全键 s? sysname ?
步骤七:保存配置 默认配置文件名通常为startup.cfg,某些版本为config.cfg。
目录 H3C 交换机配置命令手册: (2) 交换机端口链路类型介绍: (2) 认证方式为Scheme时Telnet登录方式的配置 (2) Vlan 的创建及描述 (2) 将端口配置为Trunk端口,并允许VLAN10和VLAN20通过 (3) DHCP典型配制举例: (3) 链路聚合典型配置 (4) 三层交换的IP路由配置: (5) (1)配置各接口的IP地址 (5) (2) 配置静态路由 (5) # 在Switch B上配置两条静态路由。 (5) 配置举例:建立SSL Proxy服务器 (5) 1. 组网需求 (5) 2. 组网图 (6) 3. 配置步骤 (6) # 配置接口IP地址。 (6) SSL服务器端策略配置: (6) 证书属性过滤组的配置: (7) 证书ACP策略配置: (7) SSL Proxy服务器策略配置: (7) # 配置目标HTTP服务器。 (8) 运行SSL Proxy服务器: (8) # 配置ACL,用来匹配将要进行SSL代理的数据流。 (8) # 将路由策略应用到接口上。 (9)
H3C 交换机配置命令手册: 交换机端口链路类型介绍: 1.Access类型的端口只能属于1个VLAN,一般用于连接计算机的端口; 2.Trunk类型的端口可以属于多个VLAN,可以接收和发送多个VLAN的报文,一般用于交换机之间连接的端口; 3.Hybrid类型的端口可以属于多个VLAN,可以接收和发送多个VLAN的报文,可以用于交换机之间连接,也可以用于连接用户的计算机。 认证方式为Scheme时Telnet登录方式的配置 # telnet server enable # local-user guest service-type telnet level 3 password simple 123456 # Vlan 的创建及描述 #