华三交换机配置样例(3 页)Good is good, but better carries it.精益求精,善益求善。三层交换机 s5500-28P:vlan1 port 1-2 192.168.0.1 管理用 vlan2 port 3-12 192.168.30.1 服务器用 vlan3 port 13-22 192.168.20.1 计算机用 vlan4 port 23-24 192.168.10.1 路由防火墙用二层交换机 s5120-52P 作为接入层连电脑,port48 上联三层交换机的 port22 口。port1-2 还是作为管理用可以 WEB 登陆到交换机。请教各位大侠如何配置这两台交换机,给出详细步骤。答案三层交换机 s5500-28P:sys!建立管理用户local-user adminpass ci adminlevel 3service tel !建立需要的 VLANvlan 1des manageport e1/0/1 to e1/0/2vlan 2des serverport e1/0/3 to e1/0/12vlan 3des pcport e1/0/13 to e1/0/22vlan 4des route_linkport eq/0/23 to e1/0/24inte vlan-inte 1ip add 192.168.0.1 255.255.255.0 undo shinte vlan-inte 2ip add 192.168.30.1 255.255.255.0undo shinte vlan-inte 3ip add 192.168.20.1 255.255.255.0undo shinte vlan-inte 4ip add 192.168.10.1 255.255.255.0undo shinte e1/0/22port link-type trunkport trunk permit vlan allip route-static 0.0.0.0 0.0.0.0 x.x.x.x(Router 的 IP 地址)dhcp server ip-pool 1 network 192.168.30.0 mask 255.255.255.0 gateway-list 192.168.30.1 dns-list 61.177.7.1 221.228.255.1(DNS 的 IP)dhcp server ip-pool 2 network 192.168.20.0 mask 255.255.255.0 gateway-list 192.168.20.1 dns-list 61.177.7.1 221.228.255.1(DNS 的 IP)dhcp server ip-pool 3 network 192.168.10.0 mask 255.255.255.0 gateway-list 192.168.10.1 dns-list 61.177.7.1 221.228.255.1(DNS 的 IP)!禁止 DHCP 不分配以下地址dhcp server forbidden-ip 192.168.10.1dhcp server forbidden-ip 192.168.20.1dhcp server forbidden-ip 192.168.30.1!VTY 线路启用认证user-interface vty 0 4authentication-mode scheme二层交换机 s5120-52P!建立管理用户local adminpass ci adminlevel 3service tel!建立 VLANvlan 1port e1/0/1 to e1/0/2vlan 2vlan 3vlan 4inte e1/0/48port link-type trunkport trunk permit vlan allinte vlan-inte 1ip add 192.168.0.2 255.255.255.0undo ship route-static 0.0.0.0 0.0.0.0 192.168.0.1user-inte vty 0 4authentication-mode scheme、》!。$—]'!@$。~,:)…—}"[`>,【[、;!}