銳捷設(shè)備常用配置命令_第1頁
銳捷設(shè)備常用配置命令_第2頁
銳捷設(shè)備常用配置命令_第3頁
銳捷設(shè)備常用配置命令_第4頁
銳捷設(shè)備常用配置命令_第5頁
已閱讀5頁,還剩8頁未讀, 繼續(xù)免費(fèi)閱讀

下載本文檔

版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請(qǐng)進(jìn)行舉報(bào)或認(rèn)領(lǐng)

文檔簡(jiǎn)介

1、銳捷交換機(jī)常用配置命令設(shè)備配置可通過遠(yuǎn)程Tehiet命令或用配置線通過Console I I進(jìn)行配置創(chuàng)建VLAN100,將它命名為test的例子Switch# configure terminalSwitch(config)# vlan 10()Switch(config-vlan)# name testSwitch(config-vlan)# end把 ethernet 0/10 口加入 VLAN100Switch# configure terminalSwitch(config)# interface fastethernet 0/10Switch(config-if)# switchpo

2、rt access vlan 100Switch(config-if)# end把 Fa 0/1 配成 Trunk 口Switch# configure terminalSwitch(config)# interface fastethernetO/1Switch(config-if)# switchport mode trunkSwitch(config-if)# end給Fa0/l端口綁定IP和MAC地址Switch# configure terminalSwitch(config)# interface fastethernetO/1Switch(config-if)# switchpo

3、rt port-securitySwitch(config-if)#switchport port-security mac-address 00f0.4c87.191e ip-address 192J68.0.1全局綁定IP和MAC地址Switch# configure terminalSwitch(config)#address-bin(l 192.168.0.1 0016.3606.92f2Switch(config)# address-bind installRG-S7610設(shè)備配置LLJGY_S7610#sh runBuildmg configuration.Current conf

4、iguration : 7378 bytes iversion RGNOS 10.2.00(3bll), Release(40622)(Wed Jun25 15:31:28 CST 2008 -ngcf32) install 1 24sfp/8gt install 2 48t vlan 1ivlan 2name jiaoxuelouivlan 3name baiigonglouivlan 4name jiashulouivlan 5name wangluozhongxmivlan 100name guanliiiservice password-encryption / 使設(shè)備的密碼加密顯示

5、Switch# configure terminalSwitch(config)# service password -encryptionip access-list extended 101/ 配置擴(kuò)展訪問控制列表Switch# configure terminal10 deny udp any any eq 136Switch(config)# ip access-list extended 列表序號(hào)20 deny udp any any eq netbios-ns30 deny udp any any eq netbios-dgm40 deny udp any any eq netbi

6、os-ss50 deny udp any any eq 44560 deny udp any any eq 59370 deny udp any any eq 143480 deny tcp any any eq 13590 deny tcp any any eq 136100 deny tcp any any eq 137110 deny tcp any any eq 138120 deny tcp any any eq 445130 deny tcp any any eq 593140 deny tcp any any eq 4444150 deny tcp any any eq 5800

7、160 deny tcp any any eq 5900170 deny tcp any any eq 6667180 deny tcp any any eq 5554190 deny tcp any any eq 9996200 permit ip any anyenable secret 5 SlSsddFSvlArxyyB33qq99A4/在端I I下應(yīng)用訪問控制列Switch(config-if)# ip access-group 101 inhostname LLJGY_S7610 mteiiace FastEthernet 2/1 switchport access vlan 5

8、ip access-gioup 101 indescription TO-502mteiiace FastEthernet 2/2 switchport access vlan 5 ip access-gioup 101 in description TO-503mteiiace FastEthernet 2/3switchport access vlan 5 ip access-group 101 in description TO-503-1mteiiace FastEthernet 2/4 switchport access vlan 5 ip access-group 101 in d

9、escription TO-501mteiiace FastEthernet 2/5 switchport access vlan 5 ip access-group 101 iniiiteiiace FastEthernet 2/6 switchport access vlan 5 ip access-group 101 iniiiteiiace FastEthernet 2/7 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/8 switchport access vlan 5 ip access

10、-group 101 inmteiiace FastEthernet 2/9 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/10 switchport access vlan 5 ip access-group 101 iniiiteiiace FastEthernet 2/11 switchport mode trunk ip access-group 101 in description TO-bangong21ouiiiteiiace FastEthernet 2/12 switchport

11、mode trunk ip access-group 101 in description TO-bangong31ou mteiiace FastEthernet 2/13 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/14 switchport mode trunk ip access-group 101 in description TO-bangong41oumteiiace FastEthernet 2/15 switchport access vlan 5 ip access-group

12、 101 inmteiiace FastEthernet 2/16 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/17 switchport access vlan 5 ip access-group 101 iniiiteiiace FastEthernet 2/18 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/19 switchport access vlan 5 ip access-group 1

13、01 inmteiiace FastEthernet 2/20 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/21 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/22 switchport access vlan 5 ip access-group 101 inmteiiace FastEthernet 2/23 switchport access vlan 5ip access-gioup 101 in

14、!mteiiace FastEthernet 2/24 switchport access vlan 5 ip access-gioup 101 inmteiiace FastEthernet 2/25 switchport access vlan 100 ip access-gioup 101 inmteiiace FastEthernet 2/26 switchport access vlan 100 ip access-gioup 101 in description TO-FIREWALLmteiiace FastEthernet 2/27 switchport access vlan

15、 5 ip access-gioup 101 inmteiiace FastEthernet 2/28 switchport access vlan 5 ip access-gioup 101 inmteiiace FastEthernet 2/29 switchport access vlan 5 ip access-gioup 101 inmteiiace FastEthernet 2/30 switchport access vlan 5 ip access-gioup 101 inmteiiace FastEthernet 2/31 switchport access vlan 5 i

16、p access-gioup 101 inmteiiace FastEthernet 2/32 switchport access vlan 5 ip access-gioup 101 inmteiiace FastEthernet 2/33 switchport access vlan 5 ip access-gioup 101 inswitchport access vlan 5 ip access-gioup 101 inmteiiace FastEthernet 2/35 switchport access vlan 100 ip access-gioup 101 inmteiiace

17、 FastEthernet 2/36 switchport access vlan 5 ip access-gioup 101 iniiiteiiace FastEthernet 2/37 switchport access vlan 5 ip access-gioup 101 in description T O -wanglu ozliongxmmteiiace FastEthernet 2/38 switchport access vlan 5 ip access-gioup 101 in description T O -wanglu ozliongxmiiiteiiace FastE

18、thernet 2/39 switchport access vlan 5 ip access-gioup 101 in description T O -wanglu ozliongxmmteiiace FastEthernet 2/40 switchport access vlan 5 ip access-gioup 101 in description T O -wanglu ozliongxmmteiiace FastEthernet 2/41 switchport access vlan 5 ip access-gioup 101 in description T O -wanglu

19、 ozliongxmmteiiace FastEthernet 2/42 switchport access vlan 5 ip access-gioup 101 in description T O -wanglu ozliongxmmteiiace FastEthernet 2/43 switchport access vlan 5 ip access-gioup 101 indescription T O -wanglu ozliongxmmteiiace FastEthernet 2/44 switchport access vlan 5 ip access-group 101 in

20、description T O -wanglu ozliongxmmteiiace FastEthernet 2/45 switchport access vlan 5 ip access-group 101 in description T O -wanglu ozliongxmiiiteiiace FastEthernet 2/46 switchport access vlan 5 ip access-group 101 in description T O -wanglu ozliongxmiiiteiiace FastEthernet 2/47 switchport access vl

21、an 5 ip access-group 101 in description T O -wanglu ozliongxmmteiiace FastEthernet 2/48 switchport access vlan 5 ip access-group 101 in description T O -wanglu ozliongxm !mteiiace GigabitEthernet 1/1!mteiiace GigabitEthernet 1/2 switchport mode trunk ip access-group 101 in description TOjiaowulou!mt

22、eiiace GigabitEthernet 1/3 !mteiiace GigabitEthernet 1/4 !mteiiace GigabitEthernet 1/5 !mteiiace GigabitEthernet 1/6 !mteiiace GigabitEthernet 1/7iiiteiiace GigabitEthernet 1/8iiiiteiiace GigabitEthernet 1/9iiiiteiiace GigabitEthernet 1/10iiiiteiiace GigabitEthernet 1/11iiiiteiiace GigabitEthernet 1

23、/12iiiiteiiace GigabitEthernet 1/13iiiiteiiace GigabitEthernet 1/14iiiiteiiace GigabitEthernet 1/15iiiiteiiace GigabitEthernet 1/16iiiiteiiace GigabitEthernet 1/17iiiiteiiace GigabitEthernet 1/18iiiiteiiace GigabitEthernet 1/19iiiiteiiace GigabitEthernet 1/20iiiiteiiace GigabitEthernet 1/21iiiiteiia

24、ce GigabitEthernet 1/22iiiiteiiace GigabitEthernet 1/23iiiiteiiace GigabitEthernet 1/24switchport mode trunkmedium-type fiber / 將接 I I 模式轉(zhuǎn)換為光 I I 模式 Switch(coiifig-if)# medium-type fiber ip access-group 101 indescription TOjiashulouiinterface VLAN 1no ip proxy-aipinterface VLAN 2/配置各用戶網(wǎng)段VLAN信息Switch

25、# configure terminalSwitch(config)# VLAN XXXXno ip proxy-aipip address 192.192.2.1 255.255.255.0255.255.0配置VLAN網(wǎng)關(guān)地址Switch(config)# interface VLAN XXSwitch(config-vlan)# ip address xxx.xxx.xxx.xxx xxx.xxx.xxx.xxxinterface VLAN 3no ip proxy-aipip address 192.192.3.1 255.255.255.0 !interface VLAN 4no i

26、p proxy-aipip address 192.192.4.1 255.255.255.0 !interface VLAN 5no ip proxy-aipip address 192.192.5.1 255.255.255.0 !interface VLAN 100no ip proxy-aipip address 192.192.1.1 255.255.255.0 !iiiteiiace Mgmt 0duplex autospeed autoip route 0.0.0.0 0.0.0.0 192.192.1.2配置默認(rèn)路由,路由的卜一跳為防火墻內(nèi)網(wǎng)I I地址Switch# confi

27、gure terminal Switch(config)# ip route 0.0.0.0 O.O.O.O 192.192J.2 ! !sump-server conunumty star rwline vty 0 4Ime vty 0 4配置10.2版本交換機(jī)遠(yuǎn)程登陸密碼loginpassword 7 043bll0b370d28Switch# configure terminalSwitch(config)# line vty 0 4Ime con 0Switch(config-luie)#loginSwitch(config-lme)# password XXXXendRG-S2126

28、G系列配置 bangonglou3-l#sh mnSystem software version : 1.7 Build Nov 12 2007 ReleaseBuildmg configuration. Current configuration : 3508 bytes i version 1.0 i hostname bangonglou3-l/ 配置設(shè)備名稱 Switch# configure terminalSwitch(coiifig)# hostname XXXX vlan 1 i vlan 3 i vlan 100設(shè)備上啟用 VLAN Switch# configure ter

29、minalname guanliSwitch(coiifig)# vlan XX!/ VLAN 命名 Switch(config-vlan)#i】ame XXXXenable secret level 1 5 $28cgkE,3mdlil&-4Paein,.Qbfjo+/配置遠(yuǎn)程登陸密碼以密文顯示 Switch# configure terminalSwitch(config)# enable secret level 1 0 XXXX enable secret level 15 5 S29=GlX)3R:HY*4_;C,tZQ0D+S( /配置設(shè)備管理密碼 Switch# configur

30、e terminalSwitch(config)# enable secret level 15 0 XXXXmteiiace fastEthernet 0/1switchport mode trunk/ 配置接 I 1 trunk 模式 Switch# configure terminalSwitch(config)# interface fastethernet 0/1 Switch(config-if)?r switchport mode trunk如要將接I I模式改回普通交換I I模式需配置 Switch(config-if)# switchport mode access desc

31、riptionTO-bangonglou3-2 / 配置接I I描述信息 Switch(coiifig-if)# description XXXinterface fastEthernet 0/2/ 配置接 I I VLAN Switch# configure terminalswitchport access vlan 3Switch(config-if)# switchport access vlan XXAnti-ARP-Spoofiiig ip 192.192.3.1,7綁定接I網(wǎng)關(guān)地址,該網(wǎng)關(guān)地址為接I I VLAN相應(yīng)網(wǎng)關(guān)Switch(coiifig-if)# Anti-ARP-S

32、poofing ip X.X.X.Xrldp pon loop-detect shutdown-port 開啟端I I環(huán)路檢測(cè)功能,該功能只能用在接用 戶的端I I上。Switch(coiifig-if)# rldp port loop-detect shutdown-portiiiteiiace fastEthernet 0/3Anti-ARP-Spoofiiig ip 192.192.3.1switchport access vlan 3rldp port loop-detect shutdown.port iiiiteiiace fastEthernet 0/4Anti-ARP-Spoo

33、fiiig ip 192.192.3.1switchport access vlan 3rldp port loop-detect shutdown.port iiiiteiiace fastEthernet 0/5Anti-ARP-Spoofiiig ip 192.192.3.1switchport access vlan 3rldp port loop-detect shutdown.portiiiteiiace fastEthernet 0/6Anti-ARP-Spoofiiig ip 192.192.3.1switchport access vlan 3rldp port loop-d

34、etect shutdown.portiiiteiiace fastEthernet 0/7Anti-ARP-Spoofiiig ip 192.192.3.1switchport access vlan 3rldp port loop-detect shutdown.portiiiteiiace fastEthernet 0/8Anti-ARP-Spoofiiig ip 192.192.3.1switchport access vlan 3rldp port loop-detect shutdown.portiiiteiiace fastEthernet 0/9Anti-ARP-Spoofii

35、ig ip 192.192.3.1switchport access vlan 3rldp port loop-detect shutdown.portmteiiace fastEthernet 0/10Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/11Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect

36、 shutdown-portmteiiace fastEthernet 0/12Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/13Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/14Anti-ARP-Spoofiiig ip

37、192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/15Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/16Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/17Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access vlan 3rldp port loop-detect shutdown-portmteiiace fastEthernet 0/18Anti-ARP-Spoofiiig ip 192.192.3.1 switchport access

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請(qǐng)下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請(qǐng)聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會(huì)有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
  • 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
  • 5. 人人文庫網(wǎng)僅提供信息存儲(chǔ)空間,僅對(duì)用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對(duì)用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對(duì)任何下載內(nèi)容負(fù)責(zé)。
  • 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請(qǐng)與我們聯(lián)系,我們立即糾正。
  • 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時(shí)也不承擔(dān)用戶因使用這些下載資源對(duì)自己和他人造成任何形式的傷害或損失。

評(píng)論

0/150

提交評(píng)論