恢复出厂设置
>reset saved-configuration
>reboot
配置telnet远程登录
[H3C]user-interfacevty 0 4
[H3C-ui-vty0-4]authentication-mode password
[H3C-ui-vty0-4]set authentication password simple 123456
[H3C-ui-vty0-4]user privilege level 3
[H3C-ui-vty0-4]quit
创建vlan并添加端口到vlan
[H3C]vlan 2
[H3C-vlan2]port gigabitEthernet1/0/1
[H3C-vlan2]quit
配置VLAN的ip地址
[H3C]interface vlan 5
[H3C-Vlan-interface5]ip address 192.168.73.254 255.255.255.0
[H3C-Vlan-interface5]quit
配置接口为trunk模式
[H3C]interface GigabitEthernet1/0/24
[H3C-GigabitEthernet1/0/24]port link-type trunk
[H3C-GigabitEthernet1/0/24]port trunk permit vlan all
DHCP的配置
[H3C]dhcp serverip-pool vlan1
[H3C-dhcp-pool-vlan1]network 192.168.73.0 mask 255.255.255.0
[H3C-dhcp-pool-vlan1]gateway-list 192.168.73.254
[H3C-dhcp-pool-vlan1]dns-list 202.106.0.20
[H3C-dhcp-pool-vlan1]quit
不参与自动分配的ip地址
[H3C]dhcp server forbidden-ip 192.168.73.1 192.168.73.20
[H3C]dhcp server forbidden-ip 192.168.73.254
DHCP自动分配的ip地址与pc的MAC地址绑定
[H3C]interface Vlan-interface 1
[H3C-Vlan-interface1]dhcp server static-bind ip-address 192.168.73.50 mac-address 3C77-EF03-D47B
配置静态路由
[H3C]ip route-static 0.0.0.0 0.0.0.0 192.168.20.254
ACL 访问控制列表
[H3C]acl number3001
[H3C-acl-adv-3001]rule0 deny tcp established source 192.168.75.0 0.0.0.255 destination192.168.76.0 0.0.0.255
[H3C-acl-adv-3001]rule1 permit ip source any destination 192.168.77.34 0.0.0.0
[H3C-acl-adv-3001]quit
[H3C]interfaceGigabitEthernet 1/0/1
[H3C-GigabitEthernet1/0/1]packet-filter inbound ip-group 3001
[H3C-GigabitEthernet1/0/1]quit