* * * For Fengine S2000MFB * * * * Copyright 2000-2007 FiberHome Networks * ************************************************
User Access Verification
Username: admin (用户名) Password: ***** (密码12345)
S2000MFB#show run (查看系统配置)
Current Configuration: hostname S2000MFB no auth-degenerate !
!logging configuration. logging on
logging history 3 logging terminal 7 no logging syslog ! !
!User configuration.
adduser admin group administrators password 827ccb0eea8a706c4c34a16891f84e7b config-file auto-save disable config-file auto-upload disable !
!SNMP Configuration
snmp location WuHan-China
snmp contact R&D WuHan, FHN Technologies co.,Ltd. snmp auth-trap enable
snmp timertrap interval default snmp timertrap disable
!management ACL configuration management acl disable !syslog server configuration !
line console 1 length 24 monitor timeout 10 0
login local
language english no color line vty 1 5 length 24 no monitor timeout 10 0 login local
language english no color !
!SGM Configuration sgm
sgm role candidate
sgm trap-translation disable !
!Cos Configuration cos
cos disable
cos queue mode weighted-round-robin cos queue 0 weight 1 cos queue 1 weight 2 cos queue 2 weight 4 cos queue 3 weight 8 cos priority 0 queue 0 cos priority 1 queue 0 cos priority 2 queue 1 cos priority 3 queue 1 cos priority 4 queue 2 cos priority 5 queue 2 cos priority 6 queue 3 cos priority 7 queue 3 cos priority remap disable cos priority 0 map-to 0 cos priority 1 map-to 0 cos priority 2 map-to 0 cos priority 3 map-to 0 cos priority 4 map-to 0 cos priority 5 map-to 0 cos priority 6 map-to 0 cos priority 7 map-to 0 ! !
!Vlan Configuration
interface vlan 1
member 1-9 untagged interface vlan 50 member 1 tagged !
!MAC Aging Configuration mac aging-time 300
mac learn-mode independence !
!System Configuration system
management vlan 50 ip address 10.127.41.7/24 gateway 10.127.41.1
out-band ip address 192.168.2.1/24 arp-request timer 0 anti-attack enable
dot1q ingress-filter disable
bpdu tunnel mac 01:80:C2:00:00:03 uplink-port 0 !
!Igmp Snooping Configuration igmp-snooping
igmp-snooping proxy vlan 1 igmp-snooping proxy disable igmp-snooping disable
igmp-snooping fast-leave disable igmp-snooping drop-filtered enable
igmp-snooping proxy igmpv3-support disable igmp-snooping max multicast-group 256 !
!Radius Configuration radius
radius disable !
!Dot1x Configuration dot1x disable
dot1x user lock disable dot1x user lock fail-times 3 dot1x user lock trap enable !
!Loop Check configuration loop-check trap disable loop-check action isolation loop-check expire-time 0
!
!Dtag Configuration !
!Dhcp Configuration !
!Spnm Configuration spnm
spnm disable
spnm password switch
spnm send-access-mac disable spnm community NETMAN !
!Rmon configuration !
!Anti-arp Configuration anti-arp disable !ftpd configuration no ftpd !
!Ethernet Configuration interface ethernet 1 join vlan 50 tagged join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 2 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable
auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 3 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 4 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64
packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 5 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 6 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 7 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 8 join vlan 1 untagged
auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0
interface ethernet 9 join vlan 1 untagged duplex auto
flow-ctrl disable
packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown
loop-check enable loop-check vlan 1 dtag disable
security-mac disable user-limit number 0 !
!end (以上是本机系统配置) S2000MFB#configure (进入系统模式)
%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\"
S2000MFB(config)#interface vlan 50 200 (创建上网VLAN 50到200之间的值) 51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79,80,81,82,83,84,85,86,87,88,89,90,91,92,93,94,95,96,97,98,99,100,101,102,103,104,105,106,107,108,109,110,111,112,113,114,115,116,117,118,119,120,121,122,123,124,125,126,127,128,129,130,131,132,133,134,135,136,137,138,139,140,141,142,143,144,145,146,147,148,149,150,151,152,153,154,155,156,157,158,159,160,161,162,163,164,165,166,167,168,169,170,171,172,173,174,175,176,177,178,179,180,181,182,183,184,185,186,187,188,189,190,191,192,193,194,195,196,197,198,199,200,
(以下是一个端口,我以第2个端口为例,下面端口重复操作) S2000MFB(config)#interface vlan 100 (创建上网VLAN 100 )
S2000MFB(config-vlan-100)#member 2 untagged (将上联口2添加到NLAN 100,untag模式) S2000MFB(config-vlan-100)#q (退回)
S2000MFB(config)#port 2-3 pvid 100(设置用户接口的pvid,pvid值与所在vlan值相同 S2000MFB(config)#q S2000MFB#configure
%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\"
S2000MFB(config)#interface ethernet 2(进入端口2设置模式)
S2000MFB(config-eth-2)#description To_LianYunGang(设置描述“To_LianYunGang”) S2000MFB(config-eth-2)#q S2000MFB(config)#q
(以下是上行口的配置) S2000MFB#configure
%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\"
S2000MFB(config)#interface ethernet 1{进入端口1设置模式即上行口(根据设备设端口)} S2000MFB(config-eth-1)#join vlan 50-200 tagged (上行口通过的vlan值,模式为tag) S2000MFB(config-eth-1)#no join vlan 1(不让vlan 1通过) S2000MFB(config-eth-1)#q S2000MFB(config)#q
(以下是管理VLAN的配置) S2000MFB#configure
%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\" S2000MFB(config)#interface vlan 50(创建管理VLAN为50)
S2000MFB(config-vlan-50)#member 1-2 tagged (将上联口1添加到vlan 50,tag模式) S2000MFB(config-vlan-50)#q S2000MFB(config)#sys
syslog system
S2000MFB(config)#system (进入系统配置模式)
S2000MFB(config-system)#ip address 192.168.1.1 255.255.255.0(配置交换机带内远程网管IP地址
和掩码)
S2000MFB(config-system)#gateway 192.168.1.0 (配置网关)
S2000MFB(config-system)#management vlan 50 (指定vlan 50为管理vlan) S2000MFB(config-system)#q S2000MFB(config)#q
S2000MFB#write fil (写入) 确定(Y)
注:1,show run 查看系统配置
2,no XXX no+指令就是删除当前的配置 3,write fil 写入修改后的指令永久保存 蓝色部分为系统指令!红色为要配置的数据!
因篇幅问题不能全部显示,请点此查看更多更全内容