华为交换机配置流程及示例

配置要求:

1)交换机起名字  sysname  TEST

2)交换机里面先起2个vlan,vlan20(用于电信链路的互联)和vlan200(用户业务地址)

3)Vlan的IP地址设置;

4)把相应的端口划到对应的vlan中;前面2个口用户互联电信链路,属于vlan20;后面的口全部划到业务地址段,属于vlan200;

5)设置路由 ip route-static 0.0.0.0 0.0.0.0 10.17.3.193(互联地址的电信侧);

6)设置今后维护用的telnet功能的启用;

7)DHCP的配置;

交换机老配置清除

reset save

reboot(注意在提示要不要存现有配置时,请选择N,不保存)

交换机重启后就没有配置了

配置流程:

1)交换机起名字  sysname  TEST

<Quidway>
<Quidway> sys
[Quidway]dis cur(看当前配置)
         dis arp(看有哪些IP起来了)
         dis mac
[Quidway]sysname  TEST

 

2)交换机里面先起2个vlan,vlan20(用于电信链路的互联)和vlan200(用户业务地址)

[Quidway]vlan 20
  description To_DianXin
 
[Quidway]vlan 200
  description LAN

3)Vlan的IP地址设置;

[TEST]interface Vlanif 20
[TEST -Vlanif20]ip address 10.17.3.194 30
[TEST-Vlanif20]des To_DianXin
 
TEST]interface Vlanif 200
[TEST-Vlanif200]ip address 100.13.1.254 24
[TEST-Vlanif20]des LAN

4)把相应的端口划到对应的vlan中;前面2个口用户互联电信链路,属于vlan20;后面的口全部划到业务地址段,属于vlan200;

[TEST]interface Ethernet 0/0/1
[TEST-Ethernet0/0/1]port link-type access
[TEST-Ethernet0/0/1]port default vlan 20
[TEST-Ethernet0/0/1]des To_DianXin
 
[TEST]interface Ethernet 0/0/2
[TEST-Ethernet0/0/2]port link-type access
[TEST-Ethernet0/0/2]port default vlan 20
[TEST-Ethernet0/0/2]des To_DianXin
 
[TEST]port-group LAN
[TEST-port-group-lan]group-member Ethernet 0/0/3 to Ethernet 0/0/24
[TEST-port-group-lan]port link-type access
[TEST-port-group-lan]port default vlan 200

 

5)设置缺省路由 ip route-static 0.0.0.0 0.0.0.0 10.17.3.193(互联地址的电信侧);

 

ip route-static 0.0.0.0 0.0.0.0 10.17.3.193
 
 ip route-static 172.16.0.0 255.255.0 .0  10.17.3.193
 ip route-static 172.17.0.0 255.255.0 .0  10.17.3.193
 ip route-static 100.13.0.0 255.255.0 .0  10.17.3.193
 ip route-static 172.31.0.0 255.255.0 .0  10.17.3.193

6)设置今后维护用的telnet功能的启用;用户名:TEST,密码:TEST@000000

[TEST]aaa
[TEST-aaa]local-user TEST password cipher TEST@000000 privilege level 15
[TEST-aaa]local-user TEST service-type telnet
 
[TEST]user-interface vty 0 4
[TEST-ui-vty0-4]authentication-mode aaa
 
[TEST]telnet server enable

7)DHCP的配置;

(可选)

[TEST]dhcp enable
 
interface Vlanif200
 dhcp select interface
 dhcp server excluded-ip-address 100.13.1.1 100.13.1.100
 dhcp server excluded-ip-address 100.13.1.201 100.13.1.253

 

8)保存配置

<TEST>save

 

 

参考交换机配置(配置好后的)

 

[TEST]
[TEST]dis cur
#
!Software Version V100R006C05
 sysname TEST
#
 vlan batch 20 200
#
dhcp enable
#
vlan 20
 description To_DianXin
vlan 200
 description LAN
#
aaa
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default
 domain default_admin
 local-user TEST password cipher %@%@
 local-user TEST privilege level 15
 local-user TEST service-type telnet
 local-user admin password cipher %@%@
 local-user admin service-type http
#                                         
interface Vlanif1
#
interface Vlanif20
 description To_DianXin
 ip address 10.17.3.194 255.255.255.252
#
interface Vlanif200
 description LAN
 ip address 100.13.1.254 255.255.255.0
 dhcp select interface
 dhcp server excluded-ip-address 100.13.1.1 100.13.1.100
 dhcp server excluded-ip-address 100.13.1.201 100.13.1.253
#
interface Ethernet0/0/1
 description To_Dianxin
 port link-type access
 port default vlan 20
#
interface Ethernet0/0/2
 description To_Dianxin
 port link-type access
 port default vlan 20
#
interface Ethernet0/0/3                  
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/4
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/5
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/6
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/7
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/8
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/9                  
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/10
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/11
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/12
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/13
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/14
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/15                 
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/16
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/17
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/18
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/19
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/20
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/21                 
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/22
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/23
 port link-type access
 port default vlan 200
#
interface Ethernet0/0/24
 port link-type access
 port default vlan 200
#
interface GigabitEthernet0/0/1
#
interface GigabitEthernet0/0/2
#
interface GigabitEthernet0/0/3
#
interface GigabitEthernet0/0/4
#
interface NULL0                          
#
 ip route-static 0.0.0.0 0.0.0.0 10.17.3.193
#
user-interface con 0
 authentication-mode password
 user privilege level 15
 set authentication password cipher %@%@
user-interface vty 0 4
 authentication-mode aaa
#
port-group lan
 group-member Ethernet0/0/3
 group-member Ethernet0/0/4
 group-member Ethernet0/0/5
 group-member Ethernet0/0/6
 group-member Ethernet0/0/7
 group-member Ethernet0/0/8
 group-member Ethernet0/0/9
 group-member Ethernet0/0/10
 group-member Ethernet0/0/11
 group-member Ethernet0/0/12
 group-member Ethernet0/0/13
 group-member Ethernet0/0/14
 group-member Ethernet0/0/15             
 group-member Ethernet0/0/16
 group-member Ethernet0/0/17
 group-member Ethernet0/0/18
 group-member Ethernet0/0/19
 group-member Ethernet0/0/20
 group-member Ethernet0/0/21
 group-member Ethernet0/0/22
 group-member Ethernet0/0/23
 group-member Ethernet0/0/24
#
return
[TEST]