我h3c 7500e的配置

dis cur
#
version 5.20, Release 6616P05
#
sysname SW1
#
super password level 3 cipher =-Z`CZ6`()OQ=^Q`MAF4<1!!
#
ftp server enable
#
dhcp relay server-group 1 ip 10.112.200.1
#
domain default enable system
#
telnet server enable
#
mirroring-group 1 local
#
switch-mode standard
switch-mode normal slot 2
#
acl number 3001
rule 0 permit ip source 10.112.1.0 0.0.0.255 destination 10.112.1.254 0
rule 1 permit ip source 10.112.2.0 0.0.0.255 destination 10.112.2.254 0
rule 2 permit ip source 10.112.3.0 0.0.0.255 destination 10.112.3.254 0
rule 3 permit ip source 10.112.5.0 0.0.0.255 destination 10.112.5.254 0
rule 4 permit ip source 10.112.6.0 0.0.0.255 destination 10.112.6.254 0
rule 5 permit ip source 10.112.8.0 0.0.0.255 destination 10.112.8.254 0
rule 6 permit ip source 10.112.9.0 0.0.0.255 destination 10.112.9.254 0
rule 7 permit ip source 10.112.10.0 0.0.0.255 destination 10.112.10.254 0
rule 8 permit ip source 10.112.11.0 0.0.0.255 destination 10.112.11.254 0
rule 9 permit ip source 10.112.12.0 0.0.0.255 destination 10.112.12.254
rule 10 permit ip source 10.112.13.0 0.0.0.255 destination 10.112.13.254 0
rule 11 permit ip source 10.112.15.0 0.0.0.255 destination 10.112.15.254 0
rule 12 permit ip source 10.112.16.0 0.0.0.255 destination 10.112.16.254 0
rule 13 permit ip source 10.112.18.0 0.0.0.255 destination 10.112.18.254 0
rule 14 permit ip source 10.112.200.0 0.0.0.255
acl number 3002
rule 0 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.1.0 0.0.0.255



rule 2 permit ip source 10.112.0.0 0.0.255.255 destination 10.11

rule 3 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.5.0 0.0.0.255

rule 4 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.6.0 0.0.0.255

rule 5 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.8.0 0.0.0.255

rule 6 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.9.0 0.0.0.255

rule 7 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.10.0 0.0.0.25
5
rule 8 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.11.0 0.0.0.25
5
rule 9 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.12.0 0.0.0.25
5
rule 10 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.13.0 0.0.0.2
55
rule 11 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.15.0 0.0.0.2
55
rule 12 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.16.0 0.0.0.2
55
rule 13 permit ip source 10.112.0.0 0.0.255.255 destination 10.112.18.0 0.0.0.2
55
rule 14 permit ip source 10.112.2.0 0.0.0.255 destination 10.112.201.0 0.0.0.25
5
rule 15 permit ip source 10.112.3.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
rule 16 permit ip source 10.112.5.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
rule 17 permit ip source 10.112.6.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
rule 19 permit ip source 10.112.8.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
rule 20 permit ip source 10.112.10.0 0.0.0.255 destination 10.112.2.0 0.0.0.255

rule 21 permit ip source 10.1

12.11.0 0.0.0.255 destination 10.112.2.0 0.0.0.255

rule 22 permit ip source 10.112.12.0 0.0.0.255 destination 10.112.2.0 0.0.0.255er privilege level is 3, and only those commands can be used

rule 23 permit ip source 10.112.13.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
Privilege note: 0-VISIT, 1-MONITOR, 2-SY

rule 24 permit ip source 10.112.15.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
#
version 5.20, Release 6616P05
#


rule 25 permit ip source 10.112.16.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
#
ftp server enable

rule 26 permit ip source 10.112.18.0 0.0.0.255 destination 10.112.2.0 0.0.0.255
#
domain default enable system

#

vlan 1net se
#e
vlan 101 to 103
#
#
vlan 105 to 1061 local
#
vlan 108 to 113
switch-mode st
#d
vlan 115 to 116
switch-
#d
vlan 118 to 119
#
vlan 200 to 2numb
traffic behavior 3001
rule 3 permit ip s
filter permit0 0.0.0.255 de
traffic behavior 3002 0
filter deny
#
qos policy kongzhi
rule 4 per
classifier 3001 behavior 3001255 destination 10.112.6.254 0
classifier 3002 behavior 3002
#
dhcp server ip-pool pool1 source 10.112.8.0 0.0.0.
network 10.112.1.0 mask 255.255.255.0
gateway-list 10.112.1.254rule 6 permit ip source 10
dns-list 211.138.106.2 211.138.106.79.254 0
expired unlimited
#
dns-list 211.138.106.2 211.138.106.7
expired unlimited

#u
dhcp server ip-pool pool112.12.0 0.0.0.255 destinati
network 10.112.11.0 mask 255.255.255.0
gateway-list 10.112.11.254 source 10.112.13.0 0.0.0.2
dns-list 211.138.106.2 211.138.106.7
expired unlimited
rule
#
dhcp server ip-pool pool120 0.0.0.255 destination 10
network 10.112.12.0 mask 255.255.255.0
gateway-list 10.112.12.254 source 10.112.16.0 0.0.0.2
dns-list 211.138.106.2 211.138.106.7
expired unlimited
rule
#
dhcp server ip-pool pool130 0.0.0.255 destination 10
network 10.112.13.0 mask 255.255

expired unlimitedurce 10.112.0.0 0.
#2
dhcp server ip-pool pool15.0 0.0.0.255
network 10.112.15.0 mask 255.255.255.0

rule 2 per
gateway-list 10.112.15.254.255.255 destination 10.11
dns-list 211.138.106.2 211.138.106.7

rule 3 p
expired unlimi

ted112.0.0 0.0.255.25
#d
dhcp server ip-pool pool16.255
network 10.112.16.0 mask 255.255.255.0

rule 4 permit ip s
gateway-list 10.112.16.254 destination 10.112.6.0 0.0
dns-list 211.138.106.2 211.138.106.7
expired unlimited5 permit ip source
#0
dhcp server ip-pool pool18ation 10.112.8.0 0.0.0.255
network 10.112.18.0 mask 255.255.255.0
gateway-list 10.112.18.25410.112.0.0 0.0.255.255 dest
dns-list 211.138.106.2 211.138.
expired unlimited
5
ru
#
dhcp server ip-pool pool2000 0.0.255.255 destination 1
network 10.112.200.0 mask 255.255.255.0
gateway-list 10.112.200.2540 permit ip source 10.112.0.
dns-list 211.138.106.2 211.138.106.70.0.0.2
expired unlimited
#
dhcp server ip-pool pool5ermit ip source 10.112.0.
network 10.112.5.0 mask 255.255.255.0.0.0.2
gateway-list 10.112.5.254
55
dns-list 211.138.106.2 211.138.106.70.0.255.255 destination 10.112.16.0 0
expired unlimited
#
dhcp server ip-pool pool6
55
network 10.112.8.0 mask 255.255.255.0e 15 permit ip source 10.112.3.0 0.0.0
gateway-list 10.112.8.254 0.0.0.255
dns-list 211.138.106.2 211.138.106.7
% Unrecogn
expired unlimitedat '^' position.
#
dhcp server ip-pool pool9
rule 16
network 10.112.9.0 mask 255.255.255.0estination 10.112.2.0 0.0.0.255is 3, a
gateway-list 10.112.9.254be used
dns-list 211.138.106.2 211.138.106.7
expired unlimited
rule 17 p
#m
user-group system2.6.0 0.0.0.255 d
#t
local-user ftp2.0 0.0.0.255
password simple ftp
local-user jz
password cipher =-Z`CZ6`(
rule 19 permit i
authorization-attribute level 3tination 10.112.2.0 0.0.0.255
service-type telnet
local-user user
#
user-profile conRelease 6616P05
#
interface NULL0
#

#s
interface Vlan-interface1 20 permit ip source 10.1
ip address 10.112.202.254 255.255.255.00.0.0.255
#
interface Vlan-interface101
#
ftp
ip address 10.112.1.254 255.255.255.021 permit ip source 10.112.11.0 0.0.0.
dhcp select relay112.2.0 0.0.0.255
dhcp relay server-select 1
#
interface Vlan-interface102main default enable system
ip address 10.112.2.254 255.255.255.0

rule 3 permit ip source 10.112.5
dhcp select relay

rul
dhcp relay server-select 1.18.0 0.0.0.255 destination
#0
interface Vlan-interface103
ip address 10.112.3.2

dhcp select relay
dhcp relay server-select 1stination
#
interface Vlan-interface1069
#
vlan 20
ip address 10.112.6.254 255.255.255.0fier 3001 operator and
dhcp select relay
if-match acl 30
dhcp relay server-select 1
traffic classifier 3002 o
#r
interface Vlan-interface108.112.11.254 0
ip address 10.112.8.254 255.255.255.0
if-match acl 3002
dhcp select relaytraffic behavior 3
dhcp relay server-select 1le 9 per
filter
#e
interface Vlan-interface109
traffic
ip address 10.112.9.254 255.255.255.0
filter deny
dhcp select relayy kongzhi
dhcp relay server-select 1ehavior 300112.13
#
dhcp relay server-select 1
expir
#
interface Vlan-interface112#
dns-list 211.138.106.2
ip address 10.112.12.254 255.255.255.0
r
dhcp select relayed unlimited.112.0
dhcp relay server-select 1
#
dhc
#s
interface Vlan-interface113
ip address 10.112.13.254 255.255.255.00
dhcp select relayp
dhcp relay server-select 15 destination 10.112.3.0 0.
#
interface Vlan-interface115
dn
ip address 10.112.15.254 2
#
interface Vlan-interface118
dns-li
ip address 10.112.18.254 255.255.255.0
expired un
dhcp select relay


#l
dhcp
dhcp relay server-select 1.0.255.255 destinati
#
interface Vlan-interface200
network 10.
ip address 10.112.200.254 255.255.255.0
gateway-list 10.112.15.25
#.
interface Vlan-interface201
dns-list 211.138.106
ip address 10.112.201.1 255.255.255.0
5
rule 9 permit
#
interface GigabitEthernet2/0/1255.255 des
port link-mode bridgedhcp server ip-pool po
port link-type trunk
network 10.
port trunk permit vlan
gateway-list 10.1
port link-mode bridge.0 0.0.255.25
port link-type trunk
port trunk permit vlan 1 109 to 111
5
g
mirroring-group 1 mirroring-port both.0.0.255 de
dhcp-snooping trust
dns-list 211.1
#.
interface GigabitEthernet2/0/4
exp
port link-mode bridge

#

dhcp se
port link-type trunk12.3.0 0.0.0.255 dest
port trunk permit vlan 1 113

gateway-list 10.112.5.254
#
interface GigabitEthernet2/0/79 per
dns-list 21
port link-mode bridge.7tination 10.112.2.0
shutdown
mirroring-group 1 mirroring-port both
expired unlimited
#
interface GigabitEthernet2/0/8-pool pool6


port link-mode bridgepool pool8
shutdown
netw
mirroring-group 1 mirroring-port bothip source 10.112.12.0 0.0.0.255
#
interface GigabitEthernet2/0/9
#
interface GigabitEthernet2/0/10
#n
dhcp server ip-pool pool9
port link-mode bridge
network 10.112.9.0
port access vlan 200
mirroring-group 1 mirroring-port both
gateway-list 10.112
dhcp-snooping trust.112.2.0 0.
#
interface GigabitEthernet2/0/11
dns-list 211.138.106.
port link-mode bridge
port access vlan 200ited 25 permit ip sou
mirroring-group 1 mirroring-port both
user-group system255 destination 1
dhcp-snooping trust
#1
loc
#-
interface GigabitEthernet2/0/12rd simple ftp
port link-mode bridge

password ciph
port access vlan 200
#
v
mirroring-group 1 mirroring-port bothrvice-type telnet#
dhcp-snooping trust

#
port access vlan 200ce101
mirroring-group 1 mirroring-port bothess 10.112.1.254 255.255.255.0
dhcp-snooping trust
#
traffic
#l
interface GigabitEthernet2/0/15
dhcp se
port link-mode bridge
dhcp relay serv
port access vlan 200
traf
mirroring-group 1 mirroring-port both Vlan-interface102
dhcp-snooping trust0.112.2.254 255.255.
#5
interface GigabitEthernet2/0/16
traffic behavior 3001
port link-mode bridgehcp select relayit
port access vlan 200hcp relay server-sele
mirroring-group 1 mirroring-
filter deny

dhcp relay server-
port link-mode bridgel12
port link-type trunk
#
interface Vla
port trunk permit vlan 1 103 105 to 106 108
ip addre
mirroring-group 1 mirroring-port both255.255.0
dhcp-snooping trust
dhcp select
#e
interface GigabitEthernet2/0/20
dhcp
port link-mode bridge
port link-type trunk.
#
port access vlan 102rface Vlan-interface1
mirroring-group 1 mirroring-port bothp address 10.112.13.254 255.255.255.0
dhcp-snooping trust
e
#i
interface GigabitEthernet2/0/22
#
dhcp
dhc
port link-mode bridge
port access vlan 102interface Vlan-interf
mirroring-group 1 mirroring-port bothip address 10.112.15.254 2 10.112
dhcp-snooping trust
#6
interf
#e
interface GigabitEthernet2/0/23

ip address 10.1
port link-mode bridgehcp server ip-pool poo
mirroring-group 1 mirroring-port both
dhcp selec
dhcp-snooping trustsk 2
#
interface GigabitEthernet2/0/server-s
mirroring-group 1 mirroring-

port both
#
interfac
dhcp-snooping trust1-list 10.112.200.25
#
interface GigabitEthernet2/0/26
port link-mod
port link-mode bridge06.2 21
port access vlan 201
port link-ty
mirroring-group 1 mirroring-port bothnk permit vlan

dhcp-snooping trust
port trun
#p
interface GigabitEthernet2/0/27 pool6
port link-mode bridge
mirroring-group 1
port access vlan 201sk 255.255.255.0
mirroring-group 1 mirroring-port both
dhcp-snooping trustatewa
dhcp-snooping trust
#
#
snmp-agent
mirrorin
snmp-agent local-engineid 800063A20374258A14E679
gateway-list 10.112.8.254
snmp-agent community read publicng trust
dns
snmp-agent sys-info version all
interface GigabitEthernet2/0/4
snmp-agent trap enable default-route
port link-mode bridge
#
dhcp server forbidden-ip 10.112.1.230 10.112.1.254k
n
port trunk permit vlan
dhcp server forbidden-ip 10.112.2.230 10.112.2.254rface GigabitEthernet2/0/6
dhcp server forbidden-ip 10.112.3.230 10.112.3.254#
u
shutdowne con
mirroring-group
mirroring-group
qos vlan-policy kongzhi vlan 101 inbound
qos vlan-policy kongzhi vlan 102 inbound
qos vlan-policy kongzhi vlan 106 inbound
qos vlan-policy kongzhi vlan 108 inbound
qos vlan-policy kongzhi vlan 109 inbound
qos vlan-policy kongzhi vlan 110 inbound
qos vlan-policy kongzhi vlan 111 inbound
qos vlan-policy kongzhi vlan 112 inbound
qos vlan-policy kongzhi vlan 113 inbound
qos vlan-policy kongzhi vlan 115 inbound
qos vlan-policy kongzhi vlan 116 inbound
qos vlan-policy kongzhi vlan 118 inbound
qos vlan-policy kongzhi vlan 103 inbound
qos vlan-policy kongzhi vlan 105 inbound
#
load xml-configuration
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user-interface vty 5 15
#
return

相关主题
相关文档
最新文档