首页 HC路由器配置命令

HC路由器配置命令

举报
开通vip

HC路由器配置命令文档编制序号:[KK8UY-LL9IO69-TTO6M3-MTOL89-FTT688]HC路由器配置命令H3C路由器配置命令一、路由器基本配置命令1、system-view进入系统视图模式2、sysnameR1为设备命名为R3、displayiprouting-table显示当前路由表4、language-modeChinese|English中英文切换5、interfaceEthernet0/0进入以太网端口视图6、ipaddress配置IP地址和子网掩码7、undoshutdown打开以太网端口8、shutdo...

HC路由器配置命令
文档编制序号:[KK8UY-LL9IO69-TTO6M3-MTOL89-FTT688]HC路由器配置命令H3C路由器配置命令一、路由器基本配置命令1、system-view进入系统视图模式2、sysnameR1为设备命名为R3、displayiprouting-table显示当前路由表4、language-modeChinese|English中英文切换5、interfaceEthernet0/0进入以太网端口视图6、ipaddress配置IP地址和子网掩码7、undoshutdown打开以太网端口8、shutdown关闭以太网端口9、quit退出当前视图模式10、iproute-staticdescriptionTo.R2配置静态路由11、iproute-static0.0.0.0descriptionTo.R2配置默认的路由基本配置案例[Quidway]displayversion?显示版本信息[Quidway]displaycurrent-configuration?显示当前配置[Quidway]displayinterfaces?显示接口信息[Quidway]displayiproute?显示路由信息[Quidway]sysnameaabbcc?更改主机名[Quidway]superpasswrod123456?设置口令[Quidway]interfaceserial0进入接口[Quidway-serial0]ipaddress[Quidway-serial0]undoshutdown?激活端口[Quidway]link-protocolhdlc?绑定hdlc协议[Quidway]user-interfacevty04[Quidway-ui-vty0-4]authentication-modepassword[Quidway-ui-vty0-4]setauthentication-modepasswordsimple2[Quidway-ui-vty0-4]userprivilegelevel3[Quidway-ui-vty0-4]quit[Quidway]debugginghdlcallserial0?显示所有信息[Quidway]debugginghdlceventserial0?调试事件信息[Quidway]debugginghdlcpacketserial0?显示包的信息静态路由配置案例:[Quidway]iproute-static{interfacenumber|nexthop}[value][reject|blackhole]例如:[Quidway]iproute-static1610.0.0.[Quidway]iproute-static[Quidway]iproute-static16Serial[Quidway]iproute-static动态路由配置案例(RIP):[Quidway]rip[Quidway]ripwork[Quidway]ripinput[Quidway]ripoutput[Quidway-rip]network;可以all[Quidway-rip]network[Quidway-rip]peerip-address[Quidway-rip]summary[Quidway]ripversion[Quidway]ripversion2multicast[Quidway-Ethernet0]ripsplit-horizon;水平分隔动态路由配置案例(OSPF):[Quidway]routerid?配置路由器的ID[Quidway]ospfenable?启动OSPF协议[Quidway-ospf]import-routedirect?引入直联路由[Quidway-Serial0]ospfenablearea?配置OSPF区域 标准 excel标准偏差excel标准偏差函数exl标准差函数国标检验抽样标准表免费下载红头文件格式标准下载 访问列表命令格式如下:acl[match-orderconfig|auto]默认前者顺序匹配。rule[normal|special]{permit|deny}[sourcesource-addrsource-wildcard|any]例:[Quidway]acl10[Quidway-acl-10]rulenormalpermitsource10.0.0.0[Quidway-acl-10]rulenormaldenysourceany二、ACL配置扩展访问控制列表配置命令1.配置TCP/UDP协议的扩展访问列表:rule{normal|special}{permit|deny}{tcp|udp}source{|any}destination|any}[operate]2.配置ICMP协议的扩展访问列表:rule{normal|special}{permit|deny}icmpsource{|any]destination{|any][icmp-code][logging]扩展访问控制列表操作符的含义equalportnumber?等于greater-thanportnumber?大于less-thanportnumber?小于not-equalportnumber?不等rangeportnumber1portnumber区间3.扩展访问控制列表案例[Quidway]acl10[Quidway-acl-101]ruledenysouceanydestinationany[Quidway-acl-101]rulepermiticmpsourceanydestinationanyicmp-typeecho[Quidway-acl-101]rulepermiticmpsourceanydestinationanyicmp-typeecho-reply[Quidway]acl10[Quidway-acl-102]rulepermitipsource10.0.0.1destination[Quidway-acl-102]ruledenyipsourceanydestinationany[Quidway]acl103[Quidway-acl-103]rulepermittcpsourceanydestinationdestination-portequalftp[Quidway-acl-103]rulepermittcpsourceanydestination10.0.0.20.0.0.0destination-portequalwww[Quidway]firewallenable[Quidway]firewalldefaultpermit|deny[Quidway]inte0[Quidway-Ethernet0]firewallpacket-filter101inbound|outbound4.NAT的配置地址转换配置案例[Quidway]firewallenable[Quidway]firewalldefaultpermit[Quidway]acl10[Quidway-acl-101]ruledenyipsourceanydestinationany[Quidway-acl-101]rulepermitipsource0destinationany[Quidway-acl-101]rulepermitipsource0destinationany[Quidway-acl-101]rulepermitipsource0destinationany[Quidway-acl-101]rulepermitipsource0destinationany[Quidway]acl10[Quidway-acl-102]rulepermittcpsource0destination0[Quidway-acl-102]rulepermittcpsourceanydestination0destination-portgreat-than1024[Quidway-Ethernet0]firewallpacket-filter101inbound[Quidway-Serial0]firewallpacket-filter102inbound[Quidway]nataddress-grouppool[Quidway]acl[Quidway-acl-1]rulepermitsource[Quidway-acl-1]ruledenysourceany[Quidway-acl-1]intserial0[Quidway-Serial0]natoutbound1address-grouppool[Quidway-Serial0]natserverglobalinsideftptcp[Quidway-Serial0]natserverglobal0.102insidewwwtcp[Quidway-Serial0]natserverglobal8080insidewwwtcp[Quidway-Serial0]natserverglobalinsidesmtpudp5.PPP验证配置:主验方:pap|chap[Quidway]local-useru2password{simple|cipher}aaa[Quidway]interfaceserial0[Quidway-serial0]pppauthentication-mode{pap|chap}[Quidway-serial0]pppchapuseru1//pap时,不用此句pap被验方:[Quidway]interfaceserial0[Quidway-serial0]ppppaplocal-useru2password{simple|cipher}aaachap被验方:[Quidway]interfaceserial0[Quidway-serial0]pppchapuseru1?[Quidway-serial0]local-useru2password{simple|cipher}aaaospf[R2]ospf1router-id[R2-ospf-1]area1[R3]ospf1router-id[R3-ospf-1]area1ppppap[R2]local-userr3[R2-luser-r3]passwordsimple123[R2-luser-r3]service-typeppp[R2-luser-r3]ints0/2/0[R2-Serial0/2/0]pppauthentication-modepap[R3]ints0/2/0[R3-Serial0/2/0]ppppaplocal-userr3passwordsimple123dhcp[R2]dhcpenable[R2]dhcpserverforbidden-ip[R2]dhcpserverforbidden-ip[R2]dhcpserverip-pool1[R2-dhcp-pool-1]networkmask[R2-dhcp-pool-1]gateway-list[R2-dhcp-pool-1]dns-list[R2-dhcp-pool-1]expiredday3[R3]dhcpenable[R3]dhcpserverforbidden-ip[R3]dhcpserverforbidden-ip[R3]dhcpserverip-pool0[R3-dhcp-pool-0]networkmask[R3-dhcp-pool-0]gateway-list[R3-dhcp-pool-0]dns-list[R3-dhcp-pool-0]expiredday3telnet[R3]telnetserverenable[R3]user-interfacevty04[R3-ui-vty0-4]authentication-modescheme[R3-ui-vty0-4]setauthenticationpasswordsimple123[R3-ui-vty0-4]userprivilegelevel3[R3-ui-vty0-4]quit[R3]local-userr3[R3-luser-r3]passwordsimple123[R3-luser-r3]service-typetelnet[R2]telnetserverenable[R2]user-interfacevty04[R2-ui-vty0-4]authentication-modescheme[R2-ui-vty0-4]setauthenticationpasswordsimple123[R2-ui-vty0-4]userprivilegelevel3[R2-ui-vty0-4]quit[R2]local-userr2[R2-luser-r2]passwordsimple123[R2-luser-r2]service-typetelnetacl阻止R2telnetR3[R3]firewallenable[R3]aclnumber3000[R3-acl-adv-3000]ruledenytcpsourcedestinationdestination-porteqtelnet[R3-acl-adv-3000]ints0/2/0[R3-Serial0/2/0]firewallpacket-filter3000inbound[R3-Serial0/2/0]quit阻止SW3telnetR2[R2]aclnumber3000[R2-acl-adv-3000]ruledenytcpsource0destination0destination-porteqtelnet[R2-acl-adv-3000]quit[R2]intvlan3[R2-Vlan-interface3]fir[R2-Vlan-interface3]firewallp[R2-Vlan-interface3]firewallpacket-filter3000in[R2-Vlan-interface3]firewallpacket-filter3000inbound[R2-Vlan-interface3]quit[R2]quit交换机[SW1]superpasswordsimple123[SW1]user-interfacevty04[SW1-ui-vty0-4]authentication-modepassword[SW1-ui-vty0-4]setauthenticationpasswordsimple123[SW1-ui-vty0-4]userprivilegelevel3端口安全[SW1]interfacee0/4/1[SW1-Ethernet0/4/1]port-securitymax-mac-count10[SW1-Ethernet0/4/1]port-securityport-modeautolearn[SW1-Ethernet0/4/1]port-securityintrusion-modedisableport-temporarily端口绑定[SW3]inte0/4/4[SW3-Ethernet0/4/4]user-bindip-addressmac-address0021-973F-F82Cvlan配置(交换机与路由器通过vlan通信)[R2]vlan2[R2-vlan2]int[R2-vlan2]intvlan2[R2-Vlan-interface2]ipadd[R2-Vlan-interface2]vlan2[R2-vlan2]portEthernet0/4/1[SW1]vlan2[SW1-vlan2]intvlan2[SW1-Vlan-interface2]ipadd[SW1-Vlan-interface2]vlan2[SW1-vlan2]portEthernet0/4/0[R2]vlan3[R2-vlan3]intvlan3[R2-Vlan-interface3]ipadd[R2-Vlan-interface3]vlan3[R2-vlan3]portEthernet0/4/2[SW2]vlan3[SW2-vlan3]intvlan3[SW2-Vlan-interface3]ipadd[SW2-Vlan-interface3]vlan3[SW2-vlan3]portEthernet0/4/1
本文档为【HC路由器配置命令】,请使用软件OFFICE或WPS软件打开。作品中的文字与图均可以修改和编辑, 图片更改请在作品中右键图片并更换,文字修改请直接点击文字进行修改,也可以新增和删除文档中的内容。
该文档来自用户分享,如有侵权行为请发邮件ishare@vip.sina.com联系网站客服,我们会及时删除。
[版权声明] 本站所有资料为用户分享产生,若发现您的权利被侵害,请联系客服邮件isharekefu@iask.cn,我们尽快处理。
本作品所展示的图片、画像、字体、音乐的版权可能需版权方额外授权,请谨慎使用。
网站提供的党政主题相关内容(国旗、国徽、党徽..)目的在于配合国家政策宣传,仅限个人学习分享使用,禁止用于任何广告和商用目的。
下载需要: 免费 已有0 人下载
最新资料
资料动态
专题动态
个人认证用户
洁洁
暂无简介~
格式:doc
大小:71KB
软件:Word
页数:0
分类:
上传时间:2021-09-13
浏览量:0