华为交换机基本配置

一、配置时间

复制代码
sys
ntp-service unicast-server 192.168.1.1
ntp-service unicast-server 192.168.1.2
clock timezone UTC add 8
clock timezone CST add 08:00:00
undo ntp-service disable
q

手动设置一个时间
clock datetime 13:43:00 2023-10-10

save
y


sys

保存!保存!保存!


更改NTP服务器
sys
undo ntp-service unicast-server 192.168.1.1
undo ntp-service unicast-server 192.168.1.2
ntp-service unicast-server 172.16.1.1
q
save
y

保存!保存!保存!

二、重命名

复制代码
sysname hahaha

三、配置VLAN

复制代码
vlan batch 100 200 300
vlan 100                                  
 description fuwuqi
vlan 200
 description jiankong
vlan 300
 description guanli

ip route-static 0.0.0.0 0 192.168.100.1
interface Vlanif 300

ip address 192.168.100.2 24

保存!保存!保存!

四、配置SNMP

复制代码
snmp-agent
snmp-agent sys-info version v2c v3
snmp-agent community read  tuantizi mib-view View_ALL acl 2000
snmp-agent protocol source-status all-interface
snmp-agent mib-view included View_ALL iso

保存!保存!保存!

五、远程登录

复制代码
dsa local-key-pair create


user-interface vty 0 4
authentication-mode aaa
protocol inbound all
quit

aaa
local-user admin password irreversible-cipher mimamimamima
local-user admin privilege level 15
local-user admin service-type ssh http telnet
quit

ssh user admin authentication-type password
stelnet server enable
ssh server-source all-interface
y
ssh user admin service-type all


quit
load-module weakea
install-module weakea.mod
system

undo ssh server hmac
undo ssh server cipher
undo ssh server publickey
undo ssh server key-exchange

ssh server port 10023
y
http server port 10024
y
telnet server port 10025
y
telnet server-source all-interface
y
http secure-server enable
y
http secure-server port 10026
y
http server-source all-interface
y

保存!保存!保存!

六、批量端口配置

复制代码
TRUNK配置
port-group group-member GigabitEthernet 0/0/1 to GigabitEthernet 0/0/22
port link-type trunk
port trunk allow-pass vlan all
q

port-group group-member XGigabitEthernet 0/0/1 to XGigabitEthernet 0/0/2
port link-type trunk
port trunk allow-pass vlan all
q

port-group group-member GigabitEthernet 0/0/9 to GigabitEthernet 0/0/12
port link-type trunk
port trunk allow-pass vlan all
q

ACCESS配置
port-group group-member GigabitEthernet 0/0/1 to GigabitEthernet 0/0/8
port link-type access
port default vlan 100
poe enable
q

保存!保存!保存!

七、ACL规则

复制代码
ssh server acl 2000
telnet server acl 2000
http acl 2000
acl 2000
 rule permit source 192.168.100.0 0.0.0.255
 rule permit source 192.168.12.0 0.0.0.63
 rule permit source 192.168.6.33 0
 rule permit source 172.16.12.39 0
 rule permit source 172.16.12.101 0
 rule permit source 172.16.12.102 0
 rule permit source 172.16.12.103 0
 rule permit source 172.16.12.105 0
 rule permit source 172.16.12.63 0
 rule permit source 172.26.252.113 0
 rule 100 deny
q
q
save
y

保存!保存!保存!

八、手工链路聚合LACP

复制代码
核心-链路聚合-手工模式LACP

interface Eth-Trunk 12
mode lacp
trunkport GigabitEthernet 0/0/12
trunkport GigabitEthernet 1/0/12
port link-type trunk
port trunk allow-pass vlan all

保存!保存!保存!


汇聚-链路聚合-手工模式LACP
interface Eth-Trunk 1
mode lacp
trunkport XGigabitEthernet 0/0/3 to 0/0/4
port link-type trunk
port trunk allow-pass vlan all

保存!保存!保存!
相关推荐
猫林老师2 天前
HarmonyOS数据持久化:Preferences轻量级存储实战
华为·harmonyos
Devil枫3 天前
鸿蒙深链落地实战:从安全解析到异常兜底的全链路设计
安全·华为·harmonyos
广州腾科助你拿下华为认证3 天前
华为考试:HCIE数通考试难度分析
大数据·华为
与天仙漫步星海3 天前
华为基本命令
华为
低调小一3 天前
Android传统开发 vs Android Compose vs HarmonyOS ArkUI 对照表
android·华为·harmonyos
猛码Memmat3 天前
华为HarmonyOS开发文档
华为·harmonyos
流影ng3 天前
【HarmonyOS】MVVM与三层架构
华为·架构·harmonyos
爱笑的眼睛113 天前
HarmonyOS Stage 模型与 ArkUI 声明式开发深度实践:构建高效稳定的应用
华为·harmonyos
安卓开发者3 天前
鸿蒙Next ArkWeb网页文件上传与下载完全指南
华为·harmonyos