拓扑图:
配置过程
三层交换机上的配置
#
version 5.20, Release 5303
#
sysname 3f
#
domain default enable system
#
vlan 1
#
vlan 2 to 3
#
vlan 10
#
vlan 20
#
vlan 30
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool vlan2
network 2.2.2.0 mask 255.255.255.252
gateway-list 2.2.2.1
option 43 hex "80070000 01030303 02"
#
dhcp server ip-pool vlan20
network 10.0.1.0 mask 255.255.255.0
gateway-list 10.0.1.1
#
dhcp server ip-pool vlan30
network 10.0.2.0 mask 255.255.255.0
gateway-list 10.0.2.1
#
interface NULL0
#
interface Vlan-interface2
ip address 2.2.2.1 255.255.255.0
#
interface Vlan-interface3
ip address 3.3.3.1 255.255.255.252
#
interface Vlan-interface20
ip address 10.0.1.1 255.255.255.0
#
interface Vlan-interface30
ip address 10.0.2.1 255.255.255.0
#
interface Ethernet1/0/1
port access vlan 2
#
interface Ethernet1/0/2
#
interface Ethernet1/0/3
#
interface Ethernet1/0/4
#
interface Ethernet1/0/5
#
interface Ethernet1/0/6
#
interface Ethernet1/0/7
#
interface Ethernet1/0/8
#
interface Ethernet1/0/9
#
interface Ethernet1/0/10
#
interface Ethernet1/0/11
#
interface Ethernet1/0/12
#
interface Ethernet1/0/13
#
interface Ethernet1/0/14
#
interface Ethernet1/0/15
#
interface Ethernet1/0/16
#
interface Ethernet1/0/17
#
interface Ethernet1/0/18
#
interface Ethernet1/0/19
#
interface Ethernet1/0/20
#
interface Ethernet1/0/21
#
interface Ethernet1/0/22
#
interface Ethernet1/0/23
#
interface Ethernet1/0/24
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/1/1
#
interface GigabitEthernet1/1/2
#
interface GigabitEthernet1/1/3
#
interface GigabitEthernet1/1/4
#
dhcp server forbidden-ip 10.0.1.1 10.0.1.100
dhcp server forbidden-ip 10.0.2.1 10.0.2.100
dhcp server forbidden-ip 2.2.2.1
#
dhcp enable
#
user-interface aux 0
user-interface vty 0 4
#
return
AC上的配置:
#
version 5.20, Release 3106P08
#
sysname ac
#
domain default enable system
#
telnet server enable
#
port-security enable
#
oap management-ip 192.168.0.101 slot 0
#
vlan 1
#
vlan 2 to 3
#
vlan 20
#
vlan 30
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
user-group system
#
local-user admin
password simple admin
authorization-attribute level 3
service-type telnet
#
wlan rrm
dot11a mandatory-rate 6 12 24
dot11a supported-rate 9 18 36 48 54
dot11b mandatory-rate 1 2
dot11b supported-rate 5.5 11
dot11g mandatory-rate 1 2 5.5 11
dot11g supported-rate 6 9 12 18 24 36 48 54
#
wlan service-template 20 clear
ssid vlan20
bind WLAN-ESS 20
service-template enable
#
wlan service-template 30 clear
ssid vlan 30
bind WLAN-ESS 30
service-template enable
#
interface NULL0
#
interface Vlan-interface1
ip address 1.1.1.1 255.255.255.0
#
interface Vlan-interface3
ip address 3.3.3.2 255.255.255.0
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan all
#
interface WLAN-ESS10
#
interface WLAN-ESS20
port access vlan 20
#
interface WLAN-ESS30
port access vlan 30
#
wlan ap fit model WA2220-AG
serial-id 210235A29EB097000899
radio 1
channel auto
max-power 19
radio enable
radio 2
channel auto
max-power 20
service-template 20
service-template 30
radio enable
#
ip route-static 0.0.0.0 0.0.0.0 3.3.3.1
#
load xml-configuration
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
#
return
<ac>oap connect slot 0
Connected to OAP!
<AC-S>
%Oct 17 11:22:08:414 2011 AC-S SHELL/5/LOGIN:- 1 - Console(aux0) in unit1 login
<AC-S>dis cur
#
sysname AC-S
#
oap management-ip 192.168.0.100 slot 0
#
radius scheme system
#
domain system
#
local-user admin
password simple admin
service-type telnet
level 3
#
vlan 1 to 3
#
vlan 20
#
vlan 30
#
interface Vlan-interface2
#
interface Aux1/0/0
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/2
#
interface GigabitEthernet1/0/3
#
interface GigabitEthernet1/0/4
#
interface GigabitEthernet1/0/5
#
interface GigabitEthernet1/0/6
#
interface GigabitEthernet1/0/7
#
interface GigabitEthernet1/0/8
#
interface GigabitEthernet1/0/9
#
interface GigabitEthernet1/0/10
#
interface GigabitEthernet1/0/11
stp disable
port link-type trunk
port trunk permit vlan all
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 3.3.3.1 preference 60
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
#
return
配置过程
三层交换机上的配置
#
version 5.20, Release 5303
#
sysname 3f
#
domain default enable system
#
vlan 1
#
vlan 2 to 3
#
vlan 10
#
vlan 20
#
vlan 30
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool vlan2
network 2.2.2.0 mask 255.255.255.252
gateway-list 2.2.2.1
option 43 hex "80070000 01030303 02"
#
dhcp server ip-pool vlan20
network 10.0.1.0 mask 255.255.255.0
gateway-list 10.0.1.1
#
dhcp server ip-pool vlan30
network 10.0.2.0 mask 255.255.255.0
gateway-list 10.0.2.1
#
interface NULL0
#
interface Vlan-interface2
ip address 2.2.2.1 255.255.255.0
#
interface Vlan-interface3
ip address 3.3.3.1 255.255.255.252
#
interface Vlan-interface20
ip address 10.0.1.1 255.255.255.0
#
interface Vlan-interface30
ip address 10.0.2.1 255.255.255.0
#
interface Ethernet1/0/1
port access vlan 2
#
interface Ethernet1/0/2
#
interface Ethernet1/0/3
#
interface Ethernet1/0/4
#
interface Ethernet1/0/5
#
interface Ethernet1/0/6
#
interface Ethernet1/0/7
#
interface Ethernet1/0/8
#
interface Ethernet1/0/9
#
interface Ethernet1/0/10
#
interface Ethernet1/0/11
#
interface Ethernet1/0/12
#
interface Ethernet1/0/13
#
interface Ethernet1/0/14
#
interface Ethernet1/0/15
#
interface Ethernet1/0/16
#
interface Ethernet1/0/17
#
interface Ethernet1/0/18
#
interface Ethernet1/0/19
#
interface Ethernet1/0/20
#
interface Ethernet1/0/21
#
interface Ethernet1/0/22
#
interface Ethernet1/0/23
#
interface Ethernet1/0/24
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/1/1
#
interface GigabitEthernet1/1/2
#
interface GigabitEthernet1/1/3
#
interface GigabitEthernet1/1/4
#
dhcp server forbidden-ip 10.0.1.1 10.0.1.100
dhcp server forbidden-ip 10.0.2.1 10.0.2.100
dhcp server forbidden-ip 2.2.2.1
#
dhcp enable
#
user-interface aux 0
user-interface vty 0 4
#
return
AC上的配置:
#
version 5.20, Release 3106P08
#
sysname ac
#
domain default enable system
#
telnet server enable
#
port-security enable
#
oap management-ip 192.168.0.101 slot 0
#
vlan 1
#
vlan 2 to 3
#
vlan 20
#
vlan 30
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
user-group system
#
local-user admin
password simple admin
authorization-attribute level 3
service-type telnet
#
wlan rrm
dot11a mandatory-rate 6 12 24
dot11a supported-rate 9 18 36 48 54
dot11b mandatory-rate 1 2
dot11b supported-rate 5.5 11
dot11g mandatory-rate 1 2 5.5 11
dot11g supported-rate 6 9 12 18 24 36 48 54
#
wlan service-template 20 clear
ssid vlan20
bind WLAN-ESS 20
service-template enable
#
wlan service-template 30 clear
ssid vlan 30
bind WLAN-ESS 30
service-template enable
#
interface NULL0
#
interface Vlan-interface1
ip address 1.1.1.1 255.255.255.0
#
interface Vlan-interface3
ip address 3.3.3.2 255.255.255.0
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan all
#
interface WLAN-ESS10
#
interface WLAN-ESS20
port access vlan 20
#
interface WLAN-ESS30
port access vlan 30
#
wlan ap fit model WA2220-AG
serial-id 210235A29EB097000899
radio 1
channel auto
max-power 19
radio enable
radio 2
channel auto
max-power 20
service-template 20
service-template 30
radio enable
#
ip route-static 0.0.0.0 0.0.0.0 3.3.3.1
#
load xml-configuration
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
#
return
<ac>oap connect slot 0
Connected to OAP!
<AC-S>
%Oct 17 11:22:08:414 2011 AC-S SHELL/5/LOGIN:- 1 - Console(aux0) in unit1 login
<AC-S>dis cur
#
sysname AC-S
#
oap management-ip 192.168.0.100 slot 0
#
radius scheme system
#
domain system
#
local-user admin
password simple admin
service-type telnet
level 3
#
vlan 1 to 3
#
vlan 20
#
vlan 30
#
interface Vlan-interface2
#
interface Aux1/0/0
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/2
#
interface GigabitEthernet1/0/3
#
interface GigabitEthernet1/0/4
#
interface GigabitEthernet1/0/5
#
interface GigabitEthernet1/0/6
#
interface GigabitEthernet1/0/7
#
interface GigabitEthernet1/0/8
#
interface GigabitEthernet1/0/9
#
interface GigabitEthernet1/0/10
#
interface GigabitEthernet1/0/11
stp disable
port link-type trunk
port trunk permit vlan all
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 3.3.3.1 preference 60
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
#
return