打印

S6503的典型配置

S6503的典型配置

<MS-6503>dis current-configuration
#
sysname MS-6503
#
super password level 3 cipher ZZ^AASTT@^A4T5;-%$Z@7A!!
#
local-server nas-ip 127.0.0.1 key huawei
#
domain default enable system
#
temperature-limit 0 10 80
temperature-limit 1 10 80
#
poe power max-value 2400
#
qos cos-local-precedence-map 0 1 2 3 4 5 6 7
#
radius scheme system
primary authentication 127.0.0.1 1645
primary accounting 127.0.0.1 1646
user-name-format without-domain
#
domain system
vlan-assignment-mode integer
access-limit disable                     
state active
idle-cut disable
self-service-url disable
messenger time disable
#
local-user admin
password cipher 1K]]J=S8Z27.^XNO51!!
service-type telnet
level 3
service-type ftp
#
dhcp server ip-pool manager
network 10.10.11.32 mask 255.255.255.224
gateway-list 10.10.11.62
dns-list 202.96.128.166 202.96.128.143 202.96.144.47
#
dhcp server ip-pool zhbg1
network 10.10.12.0 mask 255.255.255.192
gateway-list 10.10.12.62
dns-list 202.96.128.166 202.96.128.143 202.96.144.47
#
dhcp server ip-pool zhbg2
network 10.10.12.64 mask 255.255.255.192
gateway-list 10.10.12.126
dns-list 202.96.128.166 202.96.128.143 202.96.144.47
#
stp TC-protection enable
#
acl number 2000
rule 0 deny source 192.168.0.0 0.0.255.255
rule 1 permit
acl number 2001
rule 0 permit source 10.10.10.0 0.0.0.15
rule 1 permit source 10.10.11.0 0.0.0.255
rule 2 deny
#
acl number 3004
rule 0 permit ip destination 192.168.0.0 0.0.255.255
rule 1 permit ip destination 10.10.10.0 0.0.0.255
rule 2 permit ip destination 10.10.11.0 0.0.0.255
rule 3 deny ip
acl number 3005
rule 0 permit tcp destination-port eq 1434
rule 1 deny tcp
acl number 3889
rule 0 permit ip destination 172.16.5.0 0.0.0.255
rule 1 permit ip destination 172.16.6.0 0.0.0.255
rule 2 permit ip destination 172.16.7.0 0.0.0.255
rule 3 permit ip destination 172.16.8.0 0.0.0.255
#
vlan 1
#
vlan 2
description BackBone
#
vlan 4
description link-router
#
vlan 8
name CaiWUBu
#
vlan 10
name Servers
#
vlan 11
name Servers-HIS
#
vlan 12
description manager                     
#
vlan 15
name XZBG-1
#
vlan 16
name XZBG-2
#
interface Vlan-interface2
ip address 10.10.10.14 255.255.255.240
ospf dr-priority 255
#
interface Vlan-interface4
description link router-163
ip address 10.10.11.254 255.255.255.252
#
interface Vlan-interface10
ip address 10.10.11.30 255.255.255.224
#
interface Vlan-interface11
ip address 192.168.100.30 255.255.255.224
#
interface Vlan-interface12
ip address 10.10.11.62 255.255.255.224   
#
interface Vlan-interface15
ip address 10.10.12.62 255.255.255.192
#
interface Vlan-interface16
ip address 10.10.12.126 255.255.255.192
#
interface Aux0/0/0
#
interface M-Ethernet0/0/0
#
interface GigabitEthernet0/0/1
stp loop-protection
description ==Link TO MZL-3526/g1/1==
duplex full
speed 1000
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 8 12 15 to 16
#
interface GigabitEthernet0/0/2
stp loop-protection                     
description ==Link TO ZYL-3526/g1/1==
duplex full
speed 1000
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2
#
interface GigabitEthernet0/0/3
stp loop-protection
description ==Link To ZZL02-3526/g1/1==
duplex full
speed 1000
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2
shutdown
#
interface GigabitEthernet0/0/4
stp loop-protection
description ==Link To ZZL04-3526/g1/1==
duplex full
speed 1000                              
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2
shutdown
#
interface GigabitEthernet1/0/1
port access vlan 11
qos
packet-filter inbound ip-group 3004 rule 0 system-index 1
packet-filter inbound ip-group 3004 rule 1 system-index 2
packet-filter inbound ip-group 3004 rule 2 system-index 3
packet-filter inbound ip-group 3004 rule 3 system-index 4
#
interface GigabitEthernet1/0/2
port access vlan 10
#
interface GigabitEthernet1/0/3
port access vlan 8
#
interface GigabitEthernet1/0/4
port access vlan 8
#
interface GigabitEthernet1/0/5            
#
interface GigabitEthernet1/0/6
#
interface GigabitEthernet1/0/7
#
interface GigabitEthernet1/0/8
#
interface GigabitEthernet1/0/9
#
interface GigabitEthernet1/0/10
#
interface GigabitEthernet1/0/11
#
interface GigabitEthernet1/0/12
port access vlan 11
#
interface GigabitEthernet1/0/13
#
interface GigabitEthernet1/0/14
#
interface GigabitEthernet1/0/15
#                                         
interface GigabitEthernet1/0/16
#
interface GigabitEthernet1/0/17
port access vlan 15
#
interface GigabitEthernet1/0/18
#
interface GigabitEthernet1/0/19
port access vlan 12
#
interface GigabitEthernet1/0/20
description ==Link Router AR2831==
port access vlan 4
#
interface NULL0
#
ospf 100
import-route direct type 1
import-route static type 1
default-route-advertise type 1
area 0.0.0.0
  network 10.10.10.0 0.0.0.15            
#
dhcp server forbidden-ip 10.10.11.62
dhcp server forbidden-ip 10.10.12.62
dhcp server forbidden-ip 10.10.12.126
#
ip route-static 0.0.0.0 0.0.0.0 10.10.11.253 preference 60
#
snmp-agent
snmp-agent local-engineid 800007DB00E0FC6B61B46877
snmp-agent community read  msyy
snmp-agent community write  msyyadmin
snmp-agent sys-info version all
#
ntp-service source-interface Vlan-interface2
ntp-service unicast-server 202.104.234.56
ntp-service unicast-server 202.104.234.55
#
user-interface aux 0
user-interface vty 0 4
acl 2001 inbound
user privilege level 3
set authentication password cipher DT!\S'9P3(#Q=^Q`MAF4<1!!
#                                         
return

TOP


感谢一直以来您对我们的支持!
当前时区 GMT+8, 现在时间是 2008-12-5 16:26 京ICP证060528 号

Designed By 17DST