您的当前位置:首页正文

S200烽火交换基本配置(自编)

来源:帮我找美食网
 ************************************************ * Switch OS (Version 1.23 ) *

* * * For Fengine S2000MFB * * * * Copyright 2000-2007 FiberHome Networks * ************************************************

User Access Verification

Username: admin (用户名) Password: ***** (密码12345)

S2000MFB#show run (查看系统配置)

Current Configuration: hostname S2000MFB no auth-degenerate !

!logging configuration. logging on

logging history 3 logging terminal 7 no logging syslog ! !

!User configuration.

adduser admin group administrators password 827ccb0eea8a706c4c34a16891f84e7b config-file auto-save disable config-file auto-upload disable !

!SNMP Configuration

snmp location WuHan-China

snmp contact R&D WuHan, FHN Technologies co.,Ltd. snmp auth-trap enable

snmp timertrap interval default snmp timertrap disable

!management ACL configuration management acl disable !syslog server configuration !

line console 1 length 24 monitor timeout 10 0

login local

language english no color line vty 1 5 length 24 no monitor timeout 10 0 login local

language english no color !

!SGM Configuration sgm

sgm role candidate

sgm trap-translation disable !

!Cos Configuration cos

cos disable

cos queue mode weighted-round-robin cos queue 0 weight 1 cos queue 1 weight 2 cos queue 2 weight 4 cos queue 3 weight 8 cos priority 0 queue 0 cos priority 1 queue 0 cos priority 2 queue 1 cos priority 3 queue 1 cos priority 4 queue 2 cos priority 5 queue 2 cos priority 6 queue 3 cos priority 7 queue 3 cos priority remap disable cos priority 0 map-to 0 cos priority 1 map-to 0 cos priority 2 map-to 0 cos priority 3 map-to 0 cos priority 4 map-to 0 cos priority 5 map-to 0 cos priority 6 map-to 0 cos priority 7 map-to 0 ! !

!Vlan Configuration

interface vlan 1

member 1-9 untagged interface vlan 50 member 1 tagged !

!MAC Aging Configuration mac aging-time 300

mac learn-mode independence !

!System Configuration system

management vlan 50 ip address 10.127.41.7/24 gateway 10.127.41.1

out-band ip address 192.168.2.1/24 arp-request timer 0 anti-attack enable

dot1q ingress-filter disable

bpdu tunnel mac 01:80:C2:00:00:03 uplink-port 0 !

!Igmp Snooping Configuration igmp-snooping

igmp-snooping proxy vlan 1 igmp-snooping proxy disable igmp-snooping disable

igmp-snooping fast-leave disable igmp-snooping drop-filtered enable

igmp-snooping proxy igmpv3-support disable igmp-snooping max multicast-group 256 !

!Radius Configuration radius

radius disable !

!Dot1x Configuration dot1x disable

dot1x user lock disable dot1x user lock fail-times 3 dot1x user lock trap enable !

!Loop Check configuration loop-check trap disable loop-check action isolation loop-check expire-time 0

!

!Dtag Configuration !

!Dhcp Configuration !

!Spnm Configuration spnm

spnm disable

spnm password switch

spnm send-access-mac disable spnm community NETMAN !

!Rmon configuration !

!Anti-arp Configuration anti-arp disable !ftpd configuration no ftpd !

!Ethernet Configuration interface ethernet 1 join vlan 50 tagged join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 2 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable

auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 3 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 4 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64

packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 5 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 6 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 7 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 8 join vlan 1 untagged

auto-neg 10M half enable auto-neg 10M full enable auto-neg 100M half enable auto-neg 100M full enable auto-neg pause disable duplex full speed 100 flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0

interface ethernet 9 join vlan 1 untagged duplex auto

flow-ctrl disable

packet-limit broadcast 64 packet-limit multicast 0 packet-limit dlf 64 no shutdown

loop-check enable loop-check vlan 1 dtag disable

security-mac disable user-limit number 0 !

!end (以上是本机系统配置) S2000MFB#configure (进入系统模式)

%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\"

S2000MFB(config)#interface vlan 50 200 (创建上网VLAN 50到200之间的值) 51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79,80,81,82,83,84,85,86,87,88,89,90,91,92,93,94,95,96,97,98,99,100,101,102,103,104,105,106,107,108,109,110,111,112,113,114,115,116,117,118,119,120,121,122,123,124,125,126,127,128,129,130,131,132,133,134,135,136,137,138,139,140,141,142,143,144,145,146,147,148,149,150,151,152,153,154,155,156,157,158,159,160,161,162,163,164,165,166,167,168,169,170,171,172,173,174,175,176,177,178,179,180,181,182,183,184,185,186,187,188,189,190,191,192,193,194,195,196,197,198,199,200,

(以下是一个端口,我以第2个端口为例,下面端口重复操作) S2000MFB(config)#interface vlan 100 (创建上网VLAN 100 )

S2000MFB(config-vlan-100)#member 2 untagged (将上联口2添加到NLAN 100,untag模式) S2000MFB(config-vlan-100)#q (退回)

S2000MFB(config)#port 2-3 pvid 100(设置用户接口的pvid,pvid值与所在vlan值相同 S2000MFB(config)#q S2000MFB#configure

%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\"

S2000MFB(config)#interface ethernet 2(进入端口2设置模式)

S2000MFB(config-eth-2)#description To_LianYunGang(设置描述“To_LianYunGang”) S2000MFB(config-eth-2)#q S2000MFB(config)#q

(以下是上行口的配置) S2000MFB#configure

%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\"

S2000MFB(config)#interface ethernet 1{进入端口1设置模式即上行口(根据设备设端口)} S2000MFB(config-eth-1)#join vlan 50-200 tagged (上行口通过的vlan值,模式为tag) S2000MFB(config-eth-1)#no join vlan 1(不让vlan 1通过) S2000MFB(config-eth-1)#q S2000MFB(config)#q

(以下是管理VLAN的配置) S2000MFB#configure

%Enter configuration commands.End with Ctrl+Z or command \"quit\" & \"end\" S2000MFB(config)#interface vlan 50(创建管理VLAN为50)

S2000MFB(config-vlan-50)#member 1-2 tagged (将上联口1添加到vlan 50,tag模式) S2000MFB(config-vlan-50)#q S2000MFB(config)#sys

syslog system

S2000MFB(config)#system (进入系统配置模式)

S2000MFB(config-system)#ip address 192.168.1.1 255.255.255.0(配置交换机带内远程网管IP地址

和掩码)

S2000MFB(config-system)#gateway 192.168.1.0 (配置网关)

S2000MFB(config-system)#management vlan 50 (指定vlan 50为管理vlan) S2000MFB(config-system)#q S2000MFB(config)#q

S2000MFB#write fil (写入) 确定(Y)

注:1,show run 查看系统配置

2,no XXX no+指令就是删除当前的配置 3,write fil 写入修改后的指令永久保存 蓝色部分为系统指令!红色为要配置的数据!

因篇幅问题不能全部显示,请点此查看更多更全内容

Top