配置console口登录验证密码

<H3C>system-view

[H3C]user-interface aux 0

[H3C-ui-aux0]authentication-mode password

[H3C-ui-aux0]set authentication password cipher 123456

[H3C-ui-aux0]user privilege level 3

配置console口登录验证用户和密码

<H3C>system-view

[H3C]user-interface aux 0

[H3C-ui-aux0]authentication-mode scheme

[H3C-ui-aux0]quit

[H3C]local-user admin

[H3C-luser-admin]password cipher 123456

[H3C-luser-admin]authorization-attribute level 3

[H3C-luser-admin]service-type terminal

 

配置telnet远程验证登录密码

<H3C>system-view

[H3C]telnet server enable

[H3C]user-interface vty 0

[H3C-ui-vty0]authentication-mode password

[H3C-ui-vty0]set authentication password cipher 123456

[H3C-ui-vty0]user privilege level 3

配置telnet远程登录验证用户和密码

<H3C>system-view

[H3C]telnet server enable

[H3C]user-interface vty 0

[H3C-ui-vty0]authentication-mode scheme

[H3C]local-user h3c

[H3C-luser-h3c]password cipher h3c

[H3C-luser-h3c]authorization-attribute level 3

[H3C-luser-h3c]service-type telnet

配置ssh远程登录验证用户和密码

<H3C>system-view

#生成SSH公钥

[H3C]public-key local create rsa

#生成SSH密钥

[H3C]public-key local create dsa

#开启ssh服务

[H3C]ssh server enable

#配置同时在线5个VTY用户界面视图

[H3C]user-interface vty 0 4

#SSH用户登录界面认证方式为AAA认证

[H3C-ui-vty0-4]authentication-mode scheme

#远程用户登录协议为SSH(默认情况下系统支持)

[H3C-ui-vty0-4]protocol inbound ssh

[H3C-ui-vty0-4]quit

#创建一个本地用户user01

[H3C]local-user user01

#设置加密密码为123456

[H3C-luser-user01]password cipher 123456

#开启ssh服务类型

[H3C-luser-user01]service-type ssh

#设置用户命令访问级别为3

[H3C-luser-user01]authorization-attribute level 3

[H3C]ssh user user01 service-type stelnet authentication-type password

# 配置SSH用户client001的服务类型为Stelnet,认证方式为password认证。(此步骤可以不配置)

配置web登录验证

<H3C>system-view

[H3C]local-user admin

[H3C-luser-admin]service-type telnet

[H3C-luser-admin]authorization-attribute level 3

[H3C-luser-admin]password cipher 123456

[H3C]display web users     #查看web登录用户

创建VLAN

<H3C>system-view

[H3C]vlan 10

[H3C-vlan10]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/10

[H3C-vlan10]quit

[H3C]interface Vlan-interface 10

[H3C-Vlan-interface10]ip address 192.168.10.1 255.255.255.0

[H3C-Vlan-interface10]quit

##显示与维护

[H3C]display vlan

[H3C]display vlan 10

[H3C]display vlan all

[H3C]display interface Vlan-interface 10

[H3C]undo vlan 20     #删除VLAN

配置DHCP地址

##创建VLAN并分配地址

<H3C>system-view

[H3C]vlan 10

[H3C-vlan10]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/5

[H3C-vlan10]quit

[H3C]interface Vlan-interface 10

[H3C-Vlan-interface10]ip address 192.168.10.1 255.255.255.0

[H3C-Vlan-interface10]quit

##启动DHCP功能

[H3C]dhcp enable

##定义DHCP实例名称、地址池、网关地址、DNS、租期、排除自动获取地址

[H3C]dhcp server ip-pool vlan10

[H3C-dhcp-pool-vlan10]network 192.168.10.0 mask 255.255.255.0

[H3C-dhcp-pool-vlan10]gateway-list 192.168.10.1

[H3C-dhcp-pool-vlan10]dns-list 192.168.10.254 192.168.10.250

[H3C-dhcp-pool-vlan10]expired day 5

[H3C]dhcp server forbidden-ip  192.168.10.1 192.168.10.10

配置DHCP中继代理

##创建DHCP中继组 2 并配置DHCP服务器 192.168.20.20

<H3C>system-view

[H3C]dhcp enable

[H3C]dhcp relay server-group 2 ip 192.168.20.20

##配置VLAN 10和VLAN 20工作在DHCP中继模式,并指定DHCP中继组2

[H3C]interface Vlan-interface 10

[H3C-Vlan-interface10]dhcp select relay

[H3C-Vlan-interface10]dhcp relay server-select 2

[H3C-Vlan-interface10]quit

[H3C]interface Vlan-interface 20

[H3C-Vlan-interface20]dhcp select relay

[H3C-Vlan-interface20]dhcp relay server-select 2

[H3C-Vlan-interface20]quit

创建默认静态出口路由

<H3C>system-view

[H3C]ip route-static  0.0.0.0 0.0.0.0 192.168.10.254        #添加静态路由

[H3C]undo ip route-static  0.0.0.0 0.0.0.0 192.168.10.254   #删除静态路由

##显示与维护

[H3C]display ip routing-table

ARP绑定

[H3C]arp static 192.168.10.11 b888-e33c-c11d         #绑定IP和MAC

[H3C]undo arp static 192.168.10.11 b888-e33c-c11d    #解绑IP和MAC

[H3C]display arp

关闭端口

<H3C>system-view

[H3C]interface GigabitEthernet 1/0/1

[H3C-GigabitEthernet1/0/1]shutdown

##显示与维护

[H3C]display current-configuration

开启端口

<H3C>system-view

[H3C]interface GigabitEthernet 1/0/1

[H3C-GigabitEthernet1/0/1]undo shutdown

##显示与维护

[H3C]display current-configuration

设置端口速率

<H3C>system-view

[H3C]interface GigabitEthernet 1/0/1

[H3C-GigabitEthernet1/0/1]speed 100    #设置端口速率为100M

[H3C-GigabitEthernet1/0/1]undo speed   #取消端口速率,默认是auto自动协商

##显示与维护

[H3C]display interface GigabitEthernet 1/0/2  brief

Qos端口限速

<H3C>system-view

[H3C]interface GigabitEthernet 1/0/1

[H3C-GigabitEthernet1/0/1]qos lr inbound cir 2048    #入站速率限制1024kbps(下载速度2M)

[H3C-GigabitEthernet1/0/1]qos lr outbound cir 1024   #出站速率限制1024kbps(上传速度1M)

[H3C-GigabitEthernet1/0/1]quit

##显示与维护

[H3C]display qos lr interface GigabitEthernet 1/0/1

配置本地端口镜像

<H3C>system-view

[H3C]mirroring-group 1 local

[H3C]mirroring-group 1 mirroring-port GigabitEthernet 1/0/1 to GigabitEthernet 1

/0/5 both   #配置源端口镜像(被监控端口)

[H3C]mirroring-group 1 monitor-port GigabitEthernet 1/0/6  #配置目的端口镜像(监控端口)

##显示与维护

[H3C]display mirroring-group 1

[H3C]display mirroring-group all

[H3C]undo mirroring-group 1 mirroring-port GigabitEthernet 1/0/3 both   #删除源端口镜像

[H3C]undo mirroring-group 1 monitor-port GigabitEthernet 1/0/6        #删除目的端口镜像

两台H3C  S5120交换机配置端口Trunk

(实现相同VLAN互访,H3C S5120属于二层交换机,所以,不能实现不同VLAN 相互访问)

第一台H3CSW01配置如下:

##配置VLAN 10 和 VLAN 20

<H3CSW01>system-view

[H3CSW01]vlan 10

[H3CSW01-vlan10]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/5

[H3CSW01-vlan10]quit

[H3CSW01-Vlan-interface10]ip address 192.168.10.1 255.255.255.0

[H3CSW01]vlan 20

[H3CSW01-vlan20]port GigabitEthernet 1/0/6 to GigabitEthernet 1/0/10

[H3CSW01-vlan20]quit

[H3CSW01]interface Vlan-interface 20

[H3CSW01-Vlan-interface20]ip address 192.168.20.1 255.255.255.0

[H3CSW01-Vlan-interface20]quit

[H3CSW01]display vlan all

##1/0/24端口开启trunk

[H3CSW01]interface GigabitEthernet 1/0/24

[H3CSW01-GigabitEthernet1/0/24]port link-type trunk

[H3CSW01-GigabitEthernet1/0/24]port trunk permit vlan all

[H3CSW01-GigabitEthernet1/0/24]quit

[H3CSW01]display current-configuration interface GigabitEthernet 1/0/24

第二台H3CSW02配置如下:

##配置VLAN 10 和 VLAN 20

<H3CSW02>system-view

[H3CSW02]vlan 10

[H3CSW02-vlan10]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/5

[H3CSW02-vlan10]quit

[H3CSW02-Vlan-interface10]ip address 192.168.10.1 255.255.255.0

[H3CSW02]vlan 20

[H3CSW02-vlan20]port GigabitEthernet 1/0/6 to GigabitEthernet 1/0/10

[H3CSW02-vlan20]quit

[H3CSW02]interface Vlan-interface 20

[H3CSW02-Vlan-interface20]ip address 192.168.20.1 255.255.255.0

[H3CSW02-Vlan-interface20]quit

[H3CSW02]display vlan all

##1/0/24端口开启trunk

[H3CSW02]interface GigabitEthernet 1/0/24

[H3CSW02-GigabitEthernet1/0/24]port link-type trunk

[H3CSW02-GigabitEthernet1/0/24]port trunk permit vlan all

[H3CSW02-GigabitEthernet1/0/24]quit

[H3CSW02]display current-configuration interface GigabitEthernet 1/0/24

两台H3C  S5120交换机配置链路聚合(二层静态链路聚合)

第一台H3CSW01配置如下:

##配置VLAN 10 和 VLAN 20

<H3CSW01>system-view

[H3CSW01]vlan 10

[H3CSW01-vlan10]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/5

[H3CSW01-vlan10]quit

[H3CSW01-Vlan-interface10]ip address 192.168.10.1 255.255.255.0

[H3CSW01]vlan 20

[H3CSW01-vlan20]port GigabitEthernet 1/0/6 to GigabitEthernet 1/0/10

[H3CSW01-vlan20]quit

[H3CSW01]interface Vlan-interface 20

[H3CSW01-Vlan-interface20]ip address 192.168.20.1 255.255.255.0

[H3CSW01-Vlan-interface20]quit

[H3CSW01]display vlan all

##创建二层聚合接口1

[H3CSW01]interface Bridge-Aggregation 1

[H3CSW01-Bridge-Aggregation1]quit

##分别将端口GigabitEthernet 1/0/11至GigabitEthernet 1/0/13加入到聚合组1

[H3CSW01]interface GigabitEthernet 1/0/11

[H3CSW01-GigabitEthernet1/0/11]port link-aggregation group 1

[H3CSW01-GigabitEthernet1/0/11]quit

[H3CSW01]interface GigabitEthernet 1/0/12

[H3CSW01-GigabitEthernet1/0/12]port link-aggregation group 1

[H3CSW01-GigabitEthernet1/0/12]quit

[H3CSW01]interface GigabitEthernet 1/0/13

[H3CSW01-GigabitEthernet1/0/13]port link-aggregation group 1

[H3CSW01-GigabitEthernet1/0/13]quit

##配置二层聚合接口1为Trunk端口,并允许所有VLAN报文通过

[H3CSW01]interface Bridge-Aggregation 1

[H3CSW01-Bridge-Aggregation1]port link-type trunk

[H3CSW01-Bridge-Aggregation1]port trunk permit vlan all

##显示与维护

[H3CSW01]display link-aggregation member-port

[H3CSW01]display link-aggregation  summary

[H3CSW01]display link-aggregation  verbose

*****第二台H3CSW02配置跟第一台H3CSW02一样*****

两台H3C  S5120交换机配置链路聚合(二层动态链路聚合)

第一台H3CSW01配置如下:

##配置VLAN 10 和 VLAN 20

<H3CSW01>system-view

[H3CSW01]vlan 10

[H3CSW01-vlan10]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/5

[H3CSW01-vlan10]quit

[H3CSW01-Vlan-interface10]ip address 192.168.10.1 255.255.255.0

[H3CSW01]vlan 20

[H3CSW01-vlan20]port GigabitEthernet 1/0/6 to GigabitEthernet 1/0/10

[H3CSW01-vlan20]quit

[H3CSW01]interface Vlan-interface 20

[H3CSW01-Vlan-interface20]ip address 192.168.20.1 255.255.255.0

[H3CSW01-Vlan-interface20]quit

[H3CSW01]display vlan all

##创建二层聚合接口1并配置该接口为动态聚合模式

[H3CSW01]interface Bridge-Aggregation 1

[H3CSW01-Bridge-Aggregation1]link-aggregation mode dynamic

[H3CSW01-Bridge-Aggregation1]quit

##分别将端口GigabitEthernet 1/0/11至GigabitEthernet 1/0/13加入到聚合组1

[H3CSW01]interface GigabitEthernet 1/0/11

[H3CSW01-GigabitEthernet1/0/11]port link-aggregation group 1

[H3CSW01-GigabitEthernet1/0/11]quit

[H3CSW01]interface GigabitEthernet 1/0/12

[H3CSW01-GigabitEthernet1/0/12]port link-aggregation group 1

[H3CSW01-GigabitEthernet1/0/12]quit

[H3CSW01]interface GigabitEthernet 1/0/13

[H3CSW01-GigabitEthernet1/0/13]port link-aggregation group 1

[H3CSW01-GigabitEthernet1/0/13]quit

##配置二层聚合接口1为Trunk端口,并允许所有VLAN报文通过

[H3CSW01]interface Bridge-Aggregation 1

[H3CSW01-Bridge-Aggregation1]port link-type trunk

[H3CSW01-Bridge-Aggregation1]port trunk permit vlan all

##显示与维护

[H3CSW01]display link-aggregation member-port

[H3CSW01]display link-aggregation  summary

[H3CSW01]display link-aggregation  verbose

*****第二台H3CSW02配置跟第一台H3CSW02一样*****

 

H3C S5120-52P-WiNet交换机配置的更多相关文章

  1. H3C交换机配置命令(收集)

    1:配置登录用户,口令等 <H3C>                   //用户直行模式提示符,用户视图 <H3C>system-view        //进入配置视图 [ ...

  2. H3C交换机配置的备份与恢复(TFTP方法)

    局域网维护中,有时候我们需要对网络设备的配置进行备份与还原. 相信有很多网管员备份配置都是采用display current命令查询当前设备运行配置信息,然后采用ctrl+c,ctrl+v的方式将信息 ...

  3. H3C交换机配置学习随笔

    1.交换机配置VLAN vlan 创建VLAN: <h3c>system-view [h3c]vlan 10 删除ID为10的vlan:undo vlan 10 注:任何型号的交换机,都支 ...

  4. H3C ER6300 + 两台 H3C S5120 组网举例

    组网需求: 1.H3C ER6300 作出口路由.防火墙及Qos限速等功能(ER6300 配置LAN口 192.168.30.254默认网关) 2.H3C S5120 两台配置相同VLAN10 VLA ...

  5. 思科交换机配置DHCP的四个方面

    这里我们主要讲解了思科交换机配置DHCP的相关内容.我们对网络拓扑先进行一下了解,然后对于其在进行一下说明,之后对于配置的代码和命令再进行一下解析. 思科交换机配置DHCP一.网络拓扑 思科交换机配置 ...

  6. 内网网段划分ciso交换机配置

    内网3750交换机配置: vlan 192 192.168.101.0/24 端口: 1--8vlan 10 10.10.10.0/24 端口: 9--16vlan 172 172.16.172.2/ ...

  7. S5700交换机配置端口镜像

    S5700交换机配置端口镜像 <Quidway>system-view    //进入系统视图 Enter system view, return user view with Ctrl+ ...

  8. Cisco 2960交换机配置

    一. 基本操作 Switch(config)#hostname test01(交换机名称) //全局模式下修改交换机名称 Switch(config)#enable secret 123456 //全 ...

  9. Cisco交换机配置VLAN

    Cisco IOS中有两种方式创建vlan,在全局模式下使用vlan vlanid命令,如switch(config)#vlan 10; 在vlan database 下创建vlan ,如 switc ...

随机推荐

  1. navicat 官方使用手册,中文版,快捷键大全

    2017年1月23日09:52:51 这个官方中文文档很详细 https://www.navicat.com.cn/manual/online_manual/cn/navicat/win_manual ...

  2. PCB封装步骤教程

    疑问解答:为什么要封装? 就是元器件往PCB板上焊接时在板上的焊盘尺寸. 这里我以AT89C51单片机为例: 1.首先新建一个PCB元件库. 再找一个路径保存起来命名为DIP40,方便以后寻找 选择菜 ...

  3. 将java项目传输到centos7服务端

    http://www.xdowns.com/so.asp?keyword=flashfxp 下载flashfxp之后进行一系列配置即可 https://cloud.baidu.com/?from=co ...

  4. shutdown vs close

    shutdown 和 close关闭tcp连接的介绍网上有很多,主要区别如下: 1.调用close后,将中止通信.删除套接字.丢弃数据.但是,注意喽,但是,如果有多个进程共享一个套接字,close每被 ...

  5. Linux下刷新DNS缓存(Ubuntu/CentOS)

    现在很多Linux发行版都没有内置DNS本地缓存,Linux不像Windows那样可以使用ipconfig /flushdns来刷新,在Linux下无需刷新,因为本身没有缓存: 当然,如果非要缓存刷新 ...

  6. 广州移动宽带DNS

    目前还搞不明白这些DNS服务器是怎么得出来的,现在只停留在网上收集. 下面是收集比较靠谱的DNS广州移动宽带的: ns3.gd.cnmobile.net 221.179.38.7 ns4.gd.cnm ...

  7. c++文件打包工具实现

    没事做就来写一个打包的工具吧.很多是网络上面找的,只是我把他修改一下合并在一起. // PacketFile.cpp : 定义控制台应用程序的入口点. #include "stdafx.h& ...

  8. Dll注入经典方法完整版

    总结一下基本的注入过程,分注入和卸载 注入Dll: 1,OpenProcess获得要注入进程的句柄 2,VirtualAllocEx在远程进程中开辟出一段内存,长度为strlen(dllname)+1 ...

  9. anaconda3/lib/libcrypto.so.1.0.0: no version information available (required by wget)

    Solution: sudo ldconfig /lib/x86_64-linux-gnu/ #you need to use the libcrypto.so from /lib/x86_64-li ...

  10. 使用GPStracker自建卫星定位跟踪平台

    经常有人问,我能不能手机定位跟踪谁谁谁,我能不能定位跟踪我的车,等等问题. 话说不难,确实,需要客户端和服务端结合起来就能实现. 今天就给大家介绍一下GPStracker,一套开源的定位跟踪系统,有手 ...