sys
sys AR
vlan batch 1020int vlan 10
ip ad 192.168.10.224int vlan 20
ip ad 192.168.20.224int e0/0/0
p l t
p t a v 1020
ip route-static0.0.0.00192.168.10.1
ip route-static0.0.0.00192.168.20.1
CORE:
sys
sys CORE
vlan batch 1020100200
dhcp enable
int vlan 10
ip ad 192.168.10.124
dhcp select interface
q
int vlan 20
ip ad 192.168.20.124
dhcp select interface
q
int vlan 100
ip ad 100.1.1.124
dhcp select relay
dhcp relay server-ip 200.1.1.1
q
int vlan 200
ip ad 200.1.1.224
q
int g0/0/1
p l t
p t a v 1020200
q
int g0/0/2
p l t
p t a v 1020int g0/0/3
p l t
p t a v 100
ip route-static192.168.10.232192.168.10.2
ip route-static192.168.20.232192.168.20.2
ip route-static200.1.1.132200.1.1.1
SW:
sys
sys SW
vlan 100
q
int g0/0/1
p l t
p t a v 100int g0/0/2
p l t
p t a v 100
p t p v 100
port-isolate enable
q
int g0/0/3
p l t
p t a v 100
p t p v 100
port-isolate enable
q
AC(注意改AP的MAC):
sys
sys AC
vlan batch 1020200
dhcp enable
ip pool vlan100
network 100.1.1.0 mask 24
gateway-list 100.1.1.1
option 43 sub-option 3 ascii 200.1.1.1
q
int vlan 200
ip ad 200.1.1.124
dhcp select global
int g0/0/1
p l t
p t a v 1020200
q
wlan
ap auth-mode mac-auth
regulatory-domain-profile name JT
q
ap-group name one
regulatory-domain-profile JT
y
q
ap-group name two
regulatory-domain-profile JT
y
q
ap-id 0 ap-mac 00E0-FCFD-2A70
ap-name AP1
ap-group one
y
q
ap-id 1 ap-mac 00E0-FCEA-58C0
ap-name AP2
ap-group two
y
q
capwap source interface vlanif 200
wlan
ssid-profile name JT
ssid huawei
q
security-profile name JT
security wpa-wpa2 psk pass-phrase 123456789 aes
y
q
vap-profile name JTnew
forward-mode tunnel
service-vlan vlan-id 10
ssid-profile JT
security-profile JT
q
vap-profile name JTold
forward-mode tunnel
service-vlan vlan-id 20
ssid-profile JT
security-profile JT
q
ap-group name one
vap-profile JTnew wlan 1 radio 0
vap-profile JTnew wlan 1 radio 1
q
ap-group name two
vap-profile JTold wlan 2 radio 0
vap-profile JTold wlan 2 radio 1
q
q
ip route-static0.0.0.00200.1.1.2