H3C核心交换机S7506E网络维护手册

更新时间:2023-09-19 03:46:01 阅读量: 小学教育 文档下载

说明:文章内容仅供预览,部分内容可能不全。下载后的文档,内容与下面显示的完全一致。下载之前请确认下面内容是否您想要的,是否完整无缺。

网络设备维护手册

第一章 交换机操作手册

此部分档使用本项目交换机型号如下:S7506E/S5120/S5130/WX3024E

1.1设备登陆 1.1.1 Console登陆

1、通过交换机Console 口进行本地登录是登录交换机的最基本的方式,也是配置通过 其他方式登录交换机的基础。连接示意图如下:

2、把电脑和交换机连接好后,交换机上电开机,然后在电脑上进行如下操作,首先点击开始->程序->附件->通讯->超级终端

打开后出现下面图示,输入名称,可以任意输入。

输入完成点击确定,出现下面界面,连接时使用选择COM口,一般台式机为COM1或COM2,

而笔记本经过转接,可能会产生COM3或COM4,也有可能是其他的,你可以在下面的选择项里看到,选择完成后点击确定。

通过上面的选择,现在到了对端口属性进行设置,一般情况下没有进行过修改,默认只要点击还原为默认值就可以了,然后再单击确定。之后敲回车即可,会出现H3C>提示符,说明已经与交换机连接,可以进行配置了,如果没有可以重启交换机或检查连接是否正确。

1.1.2 telnet登陆

1、新建用户名密码

local-user admin /admin为用户名

password cipher h3c@123 /h3c@123为密码

authorization-attribute level 3 /授权admin用户的等级为3,3为最高级

service-type telnet /授权admin用户的登陆方式,可以为ftp、telnet等 #

telnet server enable /开启telnet服务 使用电脑连接至交换机:

开始菜单-输入cmd,如下图,输入telnet 1.1.44.254,输入用户名密码admin/h3c@123即可登录交换机

1.2 交换机加电开机显示

sarting......

*************************************************************

* *

* H3C S5510-24P BOOTROM, Version 142 *

* *

*************************************************************

Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd.

Creation date: Mar 12 2008, 11:17:30

CPU Clock Speed : 200MHz

BUS Clock Speed : 33MHz

Memory Size : 128MB

The switch Mac is: 000F-E2B1-BD60

Press Ctrl-B to enter Boot Menu... 1???? 0

Auto-booting...

Decompress

Image.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................OK!

Starting ...

****************************************************************************** * Copyright (c) 2004-2008 Hangzhou H3C Tech. Co., Ltd. All rights reserved. * * Without the owner's prior written consent, * * no decompiling or reverse-engineering shall be allowed. *

******************************************************************************

It will take a long time to get configuration file, please wait...

Startup configuration file does not exist.

User interface aux0 is available.

//开机自检过程

1.3 交换机常用

Press ENTER to get started.

%Apr 26 12:03:53:611 2000 H3C SHELL/4/LOGIN: Console login from aux0

sys //进入视图模式

System View: return to User View with Ctrl+Z. [H3C]

[H3C]sysname neiwang //对交换机进行命名

[neiwang]dis cu //查看交换机配置 #

version 5.20, Release 5303 #

sysname neiwang #

domain default enable system #

domain system

access-limit disable state active idle-cut disable

self-service-url disable #

interface NULL0 #

interface GigabitEthernet1/0/1 #

interface GigabitEthernet1/0/2 #

interface GigabitEthernet1/0/3 #

interface GigabitEthernet1/0/4 #

interface GigabitEthernet1/0/5 #

interface GigabitEthernet1/0/6 #

interface GigabitEthernet1/0/7 #

interface GigabitEthernet1/0/8 #

interface GigabitEthernet1/0/9 #

interface GigabitEthernet1/0/10 #

interface GigabitEthernet1/0/11 #

interface GigabitEthernet1/0/12 #

interface GigabitEthernet1/0/13 #

interface GigabitEthernet1/0/14 #

interface GigabitEthernet1/0/15 #

interface GigabitEthernet1/0/16 #

interface GigabitEthernet1/0/17 #

interface GigabitEthernet1/0/18 #

interface GigabitEthernet1/0/19 #

interface GigabitEthernet1/0/20 #

interface GigabitEthernet1/0/21 #

interface GigabitEthernet1/0/22 #

interface GigabitEthernet1/0/23 #

interface GigabitEthernet1/0/24 #

interface GigabitEthernet1/0/25 shutdown #

interface GigabitEthernet1/0/26 shutdown #

interface GigabitEthernet1/0/27 shutdown #

interface GigabitEthernet1/0/28 shutdown #

user-interface aux 0 user-interface vty 0 4 # return [neiwang]

[neiwangvlan 25 //创建VLAN

[neiwang-vlan25]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/10 //给VLAN批量添加端口

[neiwang-vlan25]qu //退出VLAN视图

[neiwang]interface vlan 25 //进入VLAN接口视图 [neiwang-Vlan-interface25] ip address 192.168.120.1 24 //给VLAN添加IP地址

[neiwang-Vlan-interface25]qu //退出VLAn接口视图 [neiwang]dis cu

//再次查看交换机配置,可以看到多了一个VLAN及这个VLAN的IP地址 #

version 5.20, Release 5303 #

sysname neiwang #

domain default enable system # vlan 1 #

vlan 25 #

domain system

access-limit disable state active idle-cut disable

self-service-url disable #

interface NULL0 #

interface Vlan-interface25

ip address 192.168.120.1 255.255.255.0 #

interface GigabitEthernet1/0/1 port access vlan 25 #

interface GigabitEthernet1/0/2 port access vlan 25 #

interface GigabitEthernet1/0/3 port access vlan 25 #

interface GigabitEthernet1/0/4 port access vlan 25 #

interface GigabitEthernet1/0/5 port access vlan 25 #

interface GigabitEthernet1/0/6 port access vlan 25 #

interface GigabitEthernet1/0/7 port access vlan 25 #

interface GigabitEthernet1/0/8 port access vlan 25 #

interface GigabitEthernet1/0/9 port access vlan 25 #

interface GigabitEthernet1/0/10 port access vlan 25 #

interface GigabitEthernet1/0/11 #

interface GigabitEthernet1/0/12 #

interface GigabitEthernet1/0/13 #

interface GigabitEthernet1/0/14

#

interface GigabitEthernet1/0/15 #

interface GigabitEthernet1/0/16 #

interface GigabitEthernet1/0/17 #

interface GigabitEthernet1/0/18 #

interface GigabitEthernet1/0/19 #

interface GigabitEthernet1/0/20 #

interface GigabitEthernet1/0/21 #

interface GigabitEthernet1/0/22 #

interface GigabitEthernet1/0/23 #

interface GigabitEthernet1/0/24 #

interface GigabitEthernet1/0/25 shutdown #

interface GigabitEthernet1/0/26 shutdown #

interface GigabitEthernet1/0/27 shutdown #

interface GigabitEthernet1/0/28 shutdown #

user-interface aux 0 user-interface vty 0 4 # return

[neiwang]telnet server enable % Start Telnet server

//下面是为交换机添加一个新用户操作[neiwang]local-user admin New local user added.

[neiwang-luser-admin]pa sin admin //添加新用户 //为新用户设置密码

[neiwang-luser-admin]service-type telnet level 3 //为新用户设置服务及权限 [neiwang-luser-admin]qu

//下面为该用户配置telnet服务 [neiwang]user-interface vty ?

INTEGER<0-4> First user terminal interface number to be configured

[neiwang]user-interface vty 0 4 //进入telnet视图模式

[neiwang-ui-vty0-4]authentication-mode scheme ? //认证模式设置 none Login without checking

password Authentication use password of user terminal interface scheme Authentication use AAA

[neiwang-ui-vty0-4]authentication-mode s

[neiwang-ui-vty0-4]authentication-mode scheme //设备认证模式为用户名密码 [neiwang-ui-vty0-4]qu

[neiwang]telnet server enable //开启telnet服务

[neiwang]save ?

STRING The name of specific file(*.cfg) safely Save current configuration safely

[neiwang]save s

[neiwang]save safely //保存交换机设置,以防断电交换机配置丢失 [neiwang]save s ? save sftp

shutdown-interval snmp-agent ssh ssl stp super

switch-mode sysname

[neiwang]save safely

The current configuration will be written to the device. Are you sure? [Y/N]:y Please input the file name(*.cfg)[flash:/startup.cfg]

(To leave the existing filename unchanged, press the enter key):

Validating file. Please wait...

Now saving current configuration to the device. Saving configuration flash:/startup.cfg. Please wait... .................

Configuration is saved to flash successfully. [neiwang]qu save

The current configuration will be written to the device. Are you sure? [Y/N]:n sys

System View: return to User View with Ctrl+Z. [neiwang]

DHCP Snooping was enabled.

//下面为对VLAN及端口增加删除进行操作

先输入 sys 进入全局模式,必须输,然后输命令前面字母按TAB [neiwang] [neiwang] [neiwang]int

[neiwang]interface g

[neiwang]interface GigabitEthernet 1/0/15 //进入交换机端口模式 [neiwang-GigabitEthernet1/0/15]port acc

[neiwang-GigabitEthernet1/0/15]port access vlan 25 //单一端口添加到VLAN

[neiwang-GigabitEthernet1/0/15]port access vlan 26 //如果VLAN没有创建,提示如下 Error: This VLAN does not exist. [neiwang-GigabitEthernet1/0/15]qu [neiwang]vlan 26 [neiwang-vlan26]

[neiwang-GigabitEthernet1/0/15]port access vlan 26 [neiwang-GigabitEthernet1/0/15]qu //下面为对单一端口属性进行设置 [neiwang]int g 1/0/25

[neiwang-GigabitEthernet1/0/25]sp

[neiwang-GigabitEthernet1/0/25]speed 1000 //把25号端口强制为1000M [neiwang-GigabitEthernet1/0/25]du [neiwang-GigabitEthernet1/0/25]duplex ful

[neiwang-GigabitEthernet1/0/25]duplex full //把25号端口强制为全双工 [neiwang-GigabitEthernet1/0/25]port [neiwang-GigabitEthernet1/0/25]port link-t

[neiwang-GigabitEthernet1/0/25]port link-type ? access Access link-type

hybrid Hybrid VLAN link-type trunk VLAN Trunk link-type

[neiwang-GigabitEthernet1/0/25]port link-type tr

[neiwang-GigabitEthernet1/0/25]port link-type trunk //定义该端口为trunk属性

[neiwang-GigabitEthernet1/0/25]port trunk permit all ?

^ % Unrecognized command found at '^' position.

[neiwang-GigabitEthernet1/0/25]port trunk permit all ? //允许所有VLAN通过该端口 INTEGER<1-4094> VLAN ID all All the VLANs

[neiwang-GigabitEthernet1/0/25]port trunk permit vlan

[neiwang-GigabitEthernet1/0/25]port trunk permit vlan Please wait........... Done.

[neiwang-GigabitEthernet1/0/25]undo port link-type Please wait........... Done.

[neiwang-GigabitEthernet1/0/25]sp [neiwang-GigabitEthernet1/0/25]speed ? 10 Specify speed of current port 10Mb/s 100 Specify speed of current port 100Mb/s 1000 Specify speed of current port 1000Mb/s auto Enable port's speed negotiation automatically

[neiwang-GigabitEthernet1/0/25]speed au [neiwang-GigabitEthernet1/0/25]speed auto [neiwang-GigabitEthernet1/0/25]du [neiwang-GigabitEthernet1/0/25]duplex au [neiwang-GigabitEthernet1/0/25]duplex auto [neiwang-GigabitEthernet1/0/25]qu [neiwang]dhcp

[neiwang]dhcp-snooping ?

[neiwang]dhcp-snooping

DHCP Snooping has already been enabled. [neiwang]int g 1/0/25

[neiwang-GigabitEthernet1/0/25]dhcp

[neiwang-GigabitEthernet1/0/25]dhcp-snooping ? information Specify Option 82 service trust Trusted port

[neiwang-GigabitEthernet1/0/25]dhcp-snooping tr

all ? all //取消该端口属性前面加undo [neiwang-GigabitEthernet1/0/25]dhcp-snooping trust ?

[neiwang-GigabitEthernet1/0/25]dhcp-snooping trust [neiwang-GigabitEthernet1/0/25]qu [neiwang]dis valn ?

INTEGER<1-4094> VLAN ID all All the VLANs

dynamic Dynamic VLAN ID reserved Reserved VLAN ID static Static VLAN ID

[neiwang]dis vlan all //查看显示VLAN VLAN ID: 1

VLAN Type: static

Route Interface: not configured Description: VLAN 0001 Tagged Ports: none Untagged Ports:

GigabitEthernet1/0/11 GigabitEthernet1/0/12 GigabitEthernet1/0/13 GigabitEthernet1/0/14 GigabitEthernet1/0/15 GigabitEthernet1/0/16 GigabitEthernet1/0/17 GigabitEthernet1/0/18 GigabitEthernet1/0/19 GigabitEthernet1/0/20 GigabitEthernet1/0/21 GigabitEthernet1/0/22 GigabitEthernet1/0/23 GigabitEthernet1/0/24 GigabitEthernet1/0/25 GigabitEthernet1/0/26 GigabitEthernet1/0/27 GigabitEthernet1/0/28

VLAN ID: 25

VLAN Type: static

Route Interface: configured IP Address: 192.168.120.1 Subnet Mask: 255.255.255.0 Description: VLAN 0025 Tagged Ports: none Untagged Ports:

GigabitEthernet1/0/1 GigabitEthernet1/0/2 GigabitEthernet1/0/3 GigabitEthernet1/0/4 GigabitEthernet1/0/5 GigabitEthernet1/0/6 GigabitEthernet1/0/7 GigabitEthernet1/0/8 GigabitEthernet1/0/9 GigabitEthernet1/0/10 [neiwang]dis vlan all

%Apr 26 12:28:45:14 2000 neiwang IFNET/4/LINK UPDOWN: GigabitEthernet1/0/13: link status is DOWN

%Apr 26 12:28:46:904 2000 neiwang IFNET/4/LINK UPDOWN: GigabitEthernet1/0/9: link status is UP

%Apr 26 12:28:46:914 2000 neiwang IFNET/4/LINK UPDOWN:

Vlan-interface25: link status is UP

%Apr 26 12:28:46:917 2000 neiwang IFNET/4/UPDOWN: Line protocol on the interface Vlan-interface25 is UP DHCP Snooping has already been enabled.

[neiwang]dis arp //三层交换机查看arp列表 ^

% Incomplete command found at '^' position. [neiwang]dis arp ?

X.X.X.X Display ARP entry by special IP address all Display static&dynamic ARP entry dynamic Display dynamic ARP entry interface Display by Interface

source-suppression Display ARP source suppression static Display static ARP entry timer Display ARP timer vlan Display by VLAN

vpn-instance Display ARP entries by VPN name

[neiwang]dis arp all

Type: S-Static D-Dynamic

IP Address MAC Address VLAN ID Interface Aging Type [neiwang]dis mac-a

[neiwang]dis mac-address ? //查看交换机mac地址列表 H-H-H MAC address aging-time Global aging time

blackhole Blackhole entry, without aging, can be added/deleted, saved to the configuration file count MAC entries count

dynamic Dynamic entry, with aging, can be added/deleted, lost after reset

interface Choose one interface to display

static Static entry, without aging, can be added/deleted, saved to the configuration file vlan VLAN

[neiwang]dis mac-address

No Multicast Mac addresses found. [neiwang]

%Apr 26 12:30:36:527 2000 neiwang SHELL/4/LOGIN: admin login from 192.168.120.15 %Apr 26 12:31:14:141 2000 neiwang SHELL/4/LOGOUT: admin logout from 192.168.120.15

#

interface Vlan-interface4000 //路由添加管理口vlan ip address 1.1.40.72 255.255.255.0 //路由添加管理地址IP #

interface GigabitEthernet1/0/52 //回程路由 #

ip route-static 0.0.0.0 0.0.0.0 1.1.40.254 //指定要回跳的路由

第二章 无线维护手册

2.1 设备登陆

此步骤参考1.1设备登陆

2.2 设备常用操作 2.2.1 注册AP

wlan ap AP1 model WA2620i-AGN /MODEL的型号一定要和实际一样 serial-id 219801A0CNC149002626 /手工注册方式序列号一定要正确 radio 1 /2620i是双频AP service-template 10 /调用服务模板 radio enable /启用射频口 radio 2

service-template 10 radio enable

2.2.2 配置SSID名称

wlan service-template 10 /新建服务模板10 ssid TAXZFWZX /ssid为TAXZFWZX bind WLAN-ESS 10 /绑定无线接口10 authentication-method open-system /以下为加密方案 cipher-suite tkip security-ie wpa

service-template enable /启用服务模板 #

interface WLAN-ESS10 /新建无线接口10,供服务模板调用 port-security port-mode psk /以下为认证信息 port-security tx-key-type 11key

port-security preshared-key pass-phrase si h3c@123

第二章 无线维护手册

2.1 设备登陆

此步骤参考1.1设备登陆

2.2 设备常用操作 2.2.1 注册AP

wlan ap AP1 model WA2620i-AGN /MODEL的型号一定要和实际一样 serial-id 219801A0CNC149002626 /手工注册方式序列号一定要正确 radio 1 /2620i是双频AP service-template 10 /调用服务模板 radio enable /启用射频口 radio 2

service-template 10 radio enable

2.2.2 配置SSID名称

wlan service-template 10 /新建服务模板10 ssid TAXZFWZX /ssid为TAXZFWZX bind WLAN-ESS 10 /绑定无线接口10 authentication-method open-system /以下为加密方案 cipher-suite tkip security-ie wpa

service-template enable /启用服务模板 #

interface WLAN-ESS10 /新建无线接口10,供服务模板调用 port-security port-mode psk /以下为认证信息 port-security tx-key-type 11key

port-security preshared-key pass-phrase si h3c@123

本文来源:https://www.bwwdw.com/article/ru8h.html

Top