核心配置

Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 4

#

version 5.20, Release 1207


#
sysname zhujifang
#
dhcp relay server-group 1 ip 192.168.30.88
#
domain default enable system
#
ipv6
#
telnet server enable
#
vlan 1
#
vlan 16
description wifi
#
vlan 17
#
vlan 21 to 25
#
vlan 30 to 31
#
vlan 172
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
public-key peer 192.168.30.2
public-key-code begin
30820122300D06092A864886F70D01010105000382010F003082010A0282010100B2A91033
C383F92A05BA2C7851ADAAD957C8238F60630EC01761044DD5F74DD2478F4755667E777F88
6F697EF18BC49F17C70807E8C2E234F94DF5C729669254341BDF6DBE3F106CEA51FAA64E3D
A7D6CD80DB1008AB77C93B72E594D70D14EEFDA757E17A323602DD7726F1DDEF0D82353758
D6883A7286E15ABBAC9B3FB4638D185799225C6D22B703960ED2DF3212B6D8352C1043F63B
6D54071724ADF0E17E15D84C59F6C672953DD74CC6E8039AEB4CEE11A11117EB2F33F0BE05
AD6A184F32BE98F47653E54D1F903C6D2940AB98D2939D751902F443FE6C11F2B2C465A3A2
AC580D6F300709E6E07B3F51A9C428CE1ED53AC32288C1560FA28939A5B70203010001
public-key-code end
peer-public-key end
#
traffic classifier ACL_17_NoInSide operator and
if-match acl 3002
#
traffic behavior deny
filter deny
#
qos policy 17_NoInSide
classifier ACL_17_NoInSide behavior deny
#
acl number 3002
rule 0 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.48.0 0.0.0.255
rule 1 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.30.101 0
rule 2 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.29.0 0.0.0.255
rule 3 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.28.0 0.0.0.255
rule 4 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.27.0 0.0.0.255
rule 5 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.26.0 0.0.0.255
rule 6 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.25.0 0.0.0.255
rule 7 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.24.0 0.0.0.255
rule 12 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.23.0 0.0.0.255
rule 13 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.22.0 0.0.0.255
rule 14 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.21.0 0.0.0.255
rule 15 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.19.0 0.0.0.255
rule 16 permit ip source 192.168.17.0 0.0.0.255 destination 192.168.80.0 0.0.0.255
#
interface NULL0
#
interface Vlan-interface1
ip address 199.34.56.1 255.255.0.0
#
interface Vlan-interface16
description wifi
ip address 192.168.16.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface17
ip address 192.168.17.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface22
ip address 192.168.22.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface23
ip address 192.168.23.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface24
ip address 192.168.24.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface25
ip address 192.168.25.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface30
ip address 192.168.30.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface31
ip address 192.168.31.1 255.255.255.0
dhcp select relay
dhcp relay server-select 1
#
interface Vlan-interface172
ip address 172.16.0.1 255.255.0.0
dhcp select relay
dhcp relay server-select 1
#
interface GigabitEthernet1/0/1
port access vlan 23
#
interface GigabitEthernet1/0/2
port access vlan 25
#
interface GigabitEthernet1/0/3
port access vlan 23
#
interface GigabitEthernet1/0/4
port access vlan 23
#
interface GigabitEthernet1/0/5
port access vlan 30
#
interface GigabitEthernet1/0/6
port access vlan 30
#
interface GigabitEthernet1/0/7
port access vlan 30
#
interface GigabitEthernet1/0/8
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/9
port access vlan 30
#
interface GigabitEthernet1/0/10
port access vlan 17
#
interface GigabitEthernet1/0/11
port access vlan 30
speed 1000
duplex full
#
interface GigabitEthernet1/0/12
port access vlan 30
#
interface GigabitEthernet1/0/13
port access vlan 30
#
interface GigabitEthernet1/0/14
port access vlan 30
#
interface GigabitEthernet1/0/15
port access vlan 30
speed 1000
duplex full
#
interface GigabitEthernet1/0/16
port access vlan 30
#
interface GigabitEthernet1/0/17
port access vlan 30
#
interface GigabitEthernet1/0/18
port access vlan 30
#
interface GigabitEthernet1/0/19
port access vlan 30
#
interface GigabitEthernet1/0/20
port access vlan 30
#
interface GigabitEthernet1/0/21
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/22
port access vlan 30
#
interface GigabitEthernet1/0/23
shutdown
#
interface GigabitEthernet1/0/24
port access vlan 30
#
interface GigabitEthernet1/0/25
shutdown
#
interface GigabitEthernet1/0/26
shutdown
#
interface GigabitEthernet1/0/27
shutdown
#
interface GigabitEthernet1/0/28
port link-type trunk
port trunk permit vlan all
#
ip route-static 0.0.0.0 0.0.0.0 192.168.30.2
#
dhcp enable
#
ssh client authentication server 192.168.30.2 assign publickey 192.168.30.2
#
qos vlan-policy 17_NoInSide vlan 17 inbound
#
load xml-configuration
#
user-interface aux 0
user-interface vty 0
user privilege level 3
set authentication password simple cisco
protocol inbound telnet
user-interface vty 1 4
user privilege level 3
set authentication password simple 123456
protocol inbound telnet
#
return

You might also like

pFad - Phonifier reborn

Pfad - The Proxy pFad of © 2024 Garber Painting. All rights reserved.

Note: This service is not intended for secure transactions such as banking, social media, email, or purchasing. Use at your own risk. We assume no liability whatsoever for broken pages.


Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy