H3C设备配置命令集2 联系客服

发布时间 : 星期五 文章H3C设备配置命令集2更新完毕开始阅读9be5461971fe910ef02df82c

H3C设备配置命令集 基本命令:

system-view //进入系统试图

--------------------------------------------------------------------- [H3C]quit //返回上一个菜单

--------------------------------------------------------------------- display current-configuration //查看全局配置 --------------------------------------------------------------------- [H3C]display vlan 1 //查看vlan 1的配置

--------------------------------------------------------------------- [H3C]sysname yourname //更改系统名称 ---------------------------------------------------------------------

将交换机F0/1端口的通信方式设置为全双工,端口速率设置为100Mbps S3760_01(config-if-FastEthernet 0/1)#duplex full //端口设置为全双工

S3760_01(config-if-FastEthernet 0/1)#speed 100 //端口速率设置为100Mbp

---------------------------------------------------------------------

[yourname]undo sysname //undo删除一条命令(当前为删除更改系统名称命令。还原为H3C默认系统名称) [H3C]

--------------------------------------------------------------------- save

The current configuration will be written to the device. Are you sure?[Y/N]:Y //保存配置,确定将当前运行配置写进设备存储介质中。 --------------------------------------------------------------------- reset saved-configuration

The saved configuration file will be erased.Are you sure?[Y/N]:Y reboot

This command will reboot the device.Current configuration may be lost in next startup if you continue.Continue?[Y/N]:y

//当需要恢复到出厂默认配置时,首先在用户试图下执行reset saved-configuration命令用于清空保存配置(只是清楚保存配置,当前配置还是存在的),再执行reboot重启整机后,配置恢复到出厂默认配置。

--------------------------------------------------------------------- telnet登录:

[H3C]local-user hss

[H3C-luser-hss]password simple hss [H3C-luser-hss]service-type telnet

[H3C-luser-hss]authorization-attribute level 3 [H3C]super password level 3 simple h3c [H3C]user-interface vty 0 4

[H3C-ui-vty0-4]authentication-mode scheme

[H3C]int vlan 1

[H3C-Vlan-interface1]ip address 192.168.0.1 255.255.255.0 --------------------------------------------------------------------- ---------------------------------------------------------------------

二、三层交换机上创建VLAN 并将相应端口划到相应VLAN 中: [SWA]vlan 10 //创建vlan10

[SWA-vlan10]port Ethernet1/0/1 //将E1/0/1端口划分到vlan10 [SWA]vlan 20 //创建vlan20

[SWA-vlan20]port Ethernet1/0/2 //将E1/0/2端口划分到vlan10 [SWA]interface Ethernet1/0/24 //进入到E1/0/24端口

[SWA-Ethernet1/0/24]port link-type trunk 配置当前端口E1/0/24的链路类型为Trunk类型 [SWA-Ethernet1/0/24]port trunk permit vlan 10 20 允许指定的vlan10 vlan 20通过当前Trunk端口

[HUAWEI]int eth 0/0/1 //进入端口eht0/0/1中 [HUAWEI]port link-type acc //转换端口模式

[HUAWEI]port default vlan 10 //将端口加入到vlan 10 中 --------------------------------------------------------------------- ---------------------------------------------------------------------

配置Trunk链路端口:

[H3C]interface GigabitEthernet 1/0/1 //进入端口G1/0/1

[H3C-GigabitEthernet1/0/1]port link-type trunk //设置端口的链路类型为trunk

[H3C-GigabitEthernet1/0/1]port trunk permit vlan all //允许所有vlan数据通过当前trunk端口

Please wait........................................... Done.

--------------------------------------------------------------------- ---------------------------------------------------------------------

stp的基本配置:

[H3C]stp enable(disable) //开启(关闭)全局或端口的stp特性

%Apr 26 13:34:33:603 2000 H3C MSTP/2/STPSTART:STP is now enabled on the device. [H3C]stp priority 0 //配置设备的优先级为0

[H3C]interface GigabitEthernet 1/0/2 //进入到G1/0/2端口

[H3C-GigabitEthernet1/0/2]stp edged-port enable 将当前的以太网端口配置为边缘端口 Warning: Edge port should only be connected to terminal. It will cause temporar y loops if port GigabitEthernet1/0/2 is connected to bridges. Please use it care fully!

--------------------------------------------------------------------- MSTP的配置:

[ce3]stp region-configuration [ce3]stp enable

[ce3-mst-region]instance 1 vlan 100 [ce3-mst-region]instance 1 vlan 200 [ce3-mst-region]region-name h3c

[ce3-mst-region]active region-configuration [ce3]stp instance 0 root primary [ce3]stp instance 1 root primary

---------------------------------------------------------------------

Vrrp配置:

Int vlan-inter 10

Ip add 192.168.0.252 255.255.255.0 Vrrp vrid 1 virtual-ip 192.168.0.254 Vrrp vrid 1 priority 120

Vrrp vrid 1 track int se 1/0 reduced 30 (指定被监视的接口,优先级自动降低30) Vrrp vrid 1 timer advertise 5 (设置备份组中master发送vrrp时间间隔5秒

--------------------------------------------------------------------- ---------------------------------------------------------------------

配置802.1X:

[H3C]dot1x //开启全局的802.1X特性 802.1x is enabled globally.

[H3C]dot1x interface g1/0/3 g1/0/4 //开启端口g1/0/3 g1/0/4的802.1X特性 802.1x is enabled on port GigabitEthernet1/0/3. 802.1x is enabled on port GigabitEthernet1/0/4.

[H3C]local-user abcde //创建本地用户abcde New local user added.

[H3C-luser-abcde]service-type lan-access //

[H3C-luser-abcde]password simple 12345 //本地用户abcde的密码为12345

---------------------------------------------------------------------

配置端口隔离:

[H3C]interface GigabitEthernet 1/0/5 //进入g1/0/5端口

[H3C-GigabitEthernet1/0/5]port-isolate enable 将指定的端口加入到隔离组中作为隔离组的普通端口

[H3C-GigabitEthernet1/0/5]quit //返回上一个菜单 [H3C]int g 1/0/6

[H3C-GigabitEthernet1/0/6]port-isolate enable [H3C-GigabitEthernet1/0/6]quit H3C]int g 1/0/7

[H3C-GigabitEthernet1/0/7]port-isolateen uplink-port //将指定的端口加入到隔离组中作为隔离组的上行端口

display port-isolate group //显示端口隔离组的信息 --------------------------------------------------------------------- --------------------------------------------------------------------- 端口绑定:

[H3C]interface GigabitEthernet 1/0/8

[H3C-GigabitEthernet1/0/8]user-bind mac-address 001c-233d-5695 vlan 1 //配置当前端口与相应MAC地址和vlan进行绑定

[H3C]interface GigabitEthernet 1/0/9

[H3C-GigabitEthernet1/0/9]user-bind mac-address 001c-233d-4475 ip-address 172.16.0.1 //配置当前端口与相应MAC地址和ip地址进行绑定 --------------------------------------------------------------------- --------------------------------------------------------------------- 交换机静态链路聚合配置:

[H3C]interface Bridge-Aggregation 1 //创建聚合端口1 [H3C-Bridge-Aggregation1]quit

[H3C]interface GigabitEthernet 1/0/9

[H3C-GigabitEthernet1/0/9]port link-aggregation group 1 //将当前g1/0/9以太网端口加入到聚合端口1中

[H3C-GigabitEthernet1/0/9]quit

[H3C]interface GigabitEthernet 1/0/10

[H3C-GigabitEthernet1/0/10]port link-aggregation group 1 //将当前g1/0/10以太网端口加入到聚合端口1中

[H3C]display link-aggregation summary //查看链路聚合的概要信息 --------------------------------------------------------------------- ---------------------------------------------------------------------

DHCP服务器基本配置:

[Router] dhcp enable //开启DHCP功能

[Router] server forbidden-ip 192.168.1.10 //配置DHCP地址池中不参与自动分配的IP地址

[Router] server forbidden-ip 192.168.1.254

[Router] dhcp server ip-pool 0 //创建DHCP 0

[Router-dhcp-pool-0] network 192.168.1.0 mask 255.255.255.0 //配置动态分配的IP地址范围

[Router-dhcp-pool-0] gateway-list 192.168.1.254 //配置为DHCP客户端分配的网关地址 [Router-dhcp-pool-0] dns-list 192.168.1.10 //配置为DHCP客户端分配的DNS服务器地址

[Router-dhcp-pool-0] expired day 5 //配置动态分配的IP地址的租用有效期限 ---------------------------------------------------------------------

[Router] display dhcp server free-ip //显示DHCP地址池的可用地址信息 ---------------------------------------------------------------------