西电华为交换设备的配置(5516)

简介:

华为 5516交换配置细节

#
 sysname XD-JSQ-S5516-02
#
radius scheme system
 server-type huawei
 primary authentication 127.0.0.1 1645
 primary accounting 127.0.0.1 1646
 user-name-format without-domain

domain system
 radius-scheme system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
 messenger time disable

 domain default enable system
#
 local-server nas-ip 127.0.0.1 key huawei

local-user huawei
 password simple huawei
 service-type telnet level 3
#
 dhcp-server 1 ip 128.168.10.3
#
acl number 3000 match-order auto
 rule 0 deny tcp destination-port eq 4444
 rule 1 deny udp destination-port eq 4444
 rule 2 deny udp destination-port eq tftp
 rule 3 deny tcp destination-port eq 135
 rule 4 deny udp destination-port eq 135
 rule 5 deny tcp destination-port eq 139
 rule 6 deny udp destination-port eq netbios-ssn
 rule 7 deny tcp destination-port eq 445
 rule 8 deny udp destination-port eq 445
 rule 9 deny udp destination-port eq 593
 rule 10 deny tcp destination-port eq 593
 rule 11 deny tcp destination-port eq 1434
 rule 12 deny udp destination-port eq 1434
 rule 13 deny udp destination-port eq 5554
 rule 14 deny tcp destination-port eq 5554
 rule 15 deny udp destination-port eq 9996
 rule 16 deny tcp destination-port eq 9996
#
vlan 1
#
vlan 99
 description shebeiguanli
#
vlan 100
 description to_dr.com
#
vlan 130
 description yonghu1#_1
#
vlan 131
 description yonghu1#_2
#
vlan 132
 description yonghu2#_1
#
vlan 133
 description yonghu2#_2
#
vlan 134
 description yonghu3#_1
#
vlan 135
 description yonghu3#_2
#
vlan 136
 description yonghu4#_1
#
vlan 137
 description yonghu4#_2
#
vlan 138
 description yonghu5#
#
vlan 139
 description yonghu6#
#
interface Vlan-interface99
 description shebeiguanli
 ip address 192.168.10.59 255.255.255.0
#
interface Vlan-interface100
 description to_dr.com
 ip address 128.168.10.223 255.255.0.0
ip address 128.168.10.223 255.255.0.0
#
interface Vlan-interface130
 ip address 100.100.15.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface131
 ip address 100.100.16.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface132
 ip address 100.100.17.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface133
 ip address 100.100.18.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface134
 ip address 100.100.19.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface135
interface Vlan-interface135
 ip address 100.100.20.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface136
 ip address 100.100.21.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface137
 ip address 100.100.22.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface138
 ip address 100.100.23.254 255.255.255.0
 dhcp-server 1
#
interface Vlan-interface139
 ip address 100.100.24.254 255.255.255.0
 dhcp-server 1
#
interface Aux0/0
#
interface GigabitEthernet1/1
 description to_dr.com
 speed 1000
 port access vlan 100
#
interface GigabitEthernet1/2
 description to_jsqgc1_2_3
 port link-type trunk
 port trunk permit vlan 99 130 to 135
#
interface GigabitEthernet1/3
 description to_jsqgc4
 port link-type trunk
 port trunk permit vlan 99 136 to 137
#
interface GigabitEthernet1/4
 description to_jsqgc5_6
 port link-type trunk
 port trunk permit vlan 99 138 to 139
#
interface GigabitEthernet2/1
#
interface GigabitEthernet2/2
#
interface GigabitEthernet2/3
#
interface GigabitEthernet2/4
#
interface GigabitEthernet3/1
#
interface GigabitEthernet3/2
#
interface GigabitEthernet3/3
#
interface GigabitEthernet3/4
#
interface GigabitEthernet4/1
 description test
 port access vlan 130
#
interface GigabitEthernet4/2
#
interface GigabitEthernet4/3
#
interface GigabitEthernet4/4
 description to_dr.com(backup)
 port access vlan 100
#
interface NULL0
#
 packet-filter ip-group 3000 rule 0
 packet-filter ip-group 3000 rule 1
 packet-filter ip-group 3000 rule 2
 packet-filter ip-group 3000 rule 3
 packet-filter ip-group 3000 rule 4
 packet-filter ip-group 3000 rule 5
 packet-filter ip-group 3000 rule 6
 packet-filter ip-group 3000 rule 7
 packet-filter ip-group 3000 rule 8
 packet-filter ip-group 3000 rule 9
 packet-filter ip-group 3000 rule 10
 packet-filter ip-group 3000 rule 11
 packet-filter ip-group 3000 rule 12
 packet-filter ip-group 3000 rule 13
 packet-filter ip-group 3000 rule 14
 packet-filter ip-group 3000 rule 15
 packet-filter ip-group 3000 rule 16
#
 ip route-static 0.0.0.0 0.0.0.0 128.168.10.3 preference 60
#
user-interface aux 0
user-interface vty 0 4
 authentication-mode scheme
#
return










本文转自 joysuny 51CTO博客,原文链接:http://blog.51cto.com/joysuny/18058,如需转载请自行联系原作者
目录
相关文章
|
JSON 数据安全/隐私保护 数据格式
【华为ICT大赛】华为云激活设备的方法以及数据上下行
【华为ICT大赛】华为云激活设备的方法以及数据上下行
337 0
|
安全 物联网 数据挖掘
5G的醉翁之意不在手机,在乎物联网也
近日,新基建持续引发热议,尤其是有消息称,数万亿投资已经在路上,市场掀起一股新基建热潮,而这其中,5G建设排在首位。据工信部数据,截止2019年底,国内已建设13万个5G基站,乘新基建东风,5G基站建设态势良好,三大运营商均表示2020年5G投入增加了数倍,预计年底5G基站数超55万个。
透过思科华为看(通信)世界
8月初,几张对话截图在微博和朋友圈广为流传,Cisco(思科)上海部门裁员的消息一时间闹得沸沸扬扬。真所谓“一石激起千层浪,两指弹出万般音”。思科方面向媒体表示,目前正在进行一次全球的业务调整,会有部分员工进行裁撤,但并非像传言称整个部门被“一锅端”。
1023 0
|
网络协议 网络虚拟化 iOS开发
|
网络虚拟化 数据安全/隐私保护 网络架构