天天看点

H3C配置命令

恢复出厂设置

>reset  saved-configuration

>reboot

配置telnet远程登录

[H3C]user-interfacevty 0 4

[H3C-ui-vty0-4]authentication-mode password

[H3C-ui-vty0-4]set authentication password simple 123456

[H3C-ui-vty0-4]user privilege level 3

[H3C-ui-vty0-4]quit

创建vlan并添加端口到vlan

[H3C]vlan 2

[H3C-vlan2]port gigabitEthernet1/0/1

[H3C-vlan2]quit

配置VLAN的ip地址

[H3C]interface  vlan 5

[H3C-Vlan-interface5]ip address 192.168.73.254  255.255.255.0

[H3C-Vlan-interface5]quit

配置接口为trunk模式

[H3C]interface GigabitEthernet1/0/24

[H3C-GigabitEthernet1/0/24]port link-type trunk

[H3C-GigabitEthernet1/0/24]port trunk permit vlan all

DHCP的配置

[H3C]dhcp serverip-pool vlan1

[H3C-dhcp-pool-vlan1]network 192.168.73.0 mask 255.255.255.0

[H3C-dhcp-pool-vlan1]gateway-list 192.168.73.254

[H3C-dhcp-pool-vlan1]dns-list 202.106.0.20

[H3C-dhcp-pool-vlan1]quit

不参与自动分配的ip地址

[H3C]dhcp server  forbidden-ip 192.168.73.1 192.168.73.20

[H3C]dhcp server  forbidden-ip 192.168.73.254

DHCP自动分配的ip地址与pc的MAC地址绑定

[H3C]interface Vlan-interface 1

[H3C-Vlan-interface1]dhcp server static-bind ip-address 192.168.73.50 mac-address 3C77-EF03-D47B

配置静态路由

[H3C]ip route-static 0.0.0.0 0.0.0.0 192.168.20.254

ACL 访问控制列表

[H3C]acl number3001

[H3C-acl-adv-3001]rule0 deny tcp established source 192.168.75.0 0.0.0.255 destination192.168.76.0 0.0.0.255

[H3C-acl-adv-3001]rule1 permit ip source any destination 192.168.77.34 0.0.0.0

[H3C-acl-adv-3001]quit

[H3C]interfaceGigabitEthernet 1/0/1

[H3C-GigabitEthernet1/0/1]packet-filter inbound ip-group 3001

[H3C-GigabitEthernet1/0/1]quit

继续阅读