某市级银行数据中心广域网接入区技术规划及配置——配置脚本(2)

某市级银行数据中心广域网接入区技术规划及配置——配置脚本(2)

AR5

sysname AR5
#
 board add 0/4 2SA 
#
 snmp-agent local-engineid 800007DB03000000000000
 snmp-agent 
#
 clock timezone China-Standard-Time minus 08:00:00
#
portal local-server load portalpage.zip
#
 drop illegal-mac alarm
#
 set cpu-usage threshold 80 restore 75
#
acl number 2000  
 rule 5 permit source 220.201.0.1 0.0.15.254 
acl number 2001  
 rule 5 permit source 220.201.0.0 0.0.15.254 
#
aaa 
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default 
 domain default_admin 
 local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$
 local-user admin service-type http
#
firewall zone Local
 priority 15
#
interface Serial4/0/0
 link-protocol ppp
 ppp chap user XGang
 ppp chap password cipher %$%$Jt9}U6:c}GZxe2B2y]d7,Az1%$%$
 ip address 176.0.25.2 255.255.255.252 
#
interface Serial4/0/1
 link-protocol ppp
#
interface GigabitEthernet0/0/0
 ip address 10.0.56.5 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/1
 ip address 10.0.58.5 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/2
#
interface NULL0
#
interface LoopBack0
 ip address 5.5.5.5 255.255.255.255 
#
bgp 65201
 peer 7.7.7.7 as-number 65201 
 peer 7.7.7.7 connect-interface LoopBack0
 peer 176.0.25.1 as-number 65001 
 #
 ipv4-family unicast
  undo synchronization
  network 220.201.5.50 255.255.255.255 
  network 220.201.5.51 255.255.255.255 
  network 220.201.5.52 255.255.255.255 
  network 220.201.5.53 255.255.255.255 
  network 220.201.5.54 255.255.255.255 
  network 220.201.5.55 255.255.255.255 
  network 220.201.5.56 255.255.255.255 
  network 220.201.5.57 255.255.255.255 
  network 220.201.5.58 255.255.255.255 
  network 220.201.5.59 255.255.255.255 
  network 220.201.6.60 255.255.255.255 
  network 220.201.6.61 255.255.255.255 
  network 220.201.6.62 255.255.255.255 
  network 220.201.6.63 255.255.255.255 
  network 220.201.6.64 255.255.255.255 
  network 220.201.6.65 255.255.255.255 
  network 220.201.6.66 255.255.255.255 
  network 220.201.6.67 255.255.255.255 
  network 220.201.6.68 255.255.255.255 
  network 220.201.6.69 255.255.255.255 
  peer 7.7.7.7 enable
  peer 7.7.7.7 next-hop-local 
  peer 7.7.7.7 advertise-community
  peer 176.0.25.1 enable
  peer 176.0.25.1 route-policy fabu export
  peer 176.0.25.1 advertise-community
#
ospf 1 router-id 10.5.5.5 
 filter-policy route-policy jujue import
 import-route bgp route-policy btoo
 area 0.0.0.0 
  network 5.5.5.5 0.0.0.0 
  network 10.0.56.0 0.0.0.255 
  network 10.0.58.0 0.0.0.255 
#
route-policy fabu permit node 10 
 if-match acl 2000 
 apply cost 50 
 apply community 201:1 
#
route-policy fabu permit node 20 
 if-match acl 2001 
 apply cost 100 
 apply community 201:2 
#
route-policy btoo permit node 10 
 if-match community-filter 120 100 
 apply cost 10 
 apply tag 100 
#
route-policy btoo permit node 20 
 if-match community-filter 100 120 
 apply cost 20 
 apply tag 100 
#
route-policy jujue deny node 10 
 if-match tag 100
#
route-policy jujue permit node 10000 
#
ip community-filter 100 permit :1
ip community-filter 120 permit :2
#
user-interface con 0
 authentication-mode password
user-interface vty 0 4
user-interface vty 16 20
#
wlan ac
#
return

AR6

 sysname AR6
#
 board add 0/1 1GEC 
 board add 0/2 1GEC 
 board add 0/3 1GEC 
 board add 0/4 1GEC 
#
 snmp-agent local-engineid 800007DB03000000000000
 snmp-agent 
#
 clock timezone China-Standard-Time minus 08:00:00
#
portal local-server load portalpage.zip
#
 drop illegal-mac alarm
#
 set cpu-usage threshold 80 restore 75
#
aaa 
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default 
 domain default_admin 
 local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$
 local-user admin service-type http
#
firewall zone Local
 priority 15
#
interface GigabitEthernet0/0/0
 ip address 10.0.56.6 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/1
 ip address 10.0.67.6 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/2
 ip address 20.0.56.2 255.255.255.252 
 ospf network-type p2p
#
interface GigabitEthernet1/0/0
 ip address 20.0.66.2 255.255.255.252 
 ospf network-type p2p
#
interface GigabitEthernet2/0/0
#
interface GigabitEthernet3/0/0
#
interface GigabitEthernet4/0/0
#
interface NULL0
#
ospf 1 router-id 10.6.6.6 
 area 0.0.0.0 
  network 10.0.56.0 0.0.0.255 
  network 10.0.67.0 0.0.0.255 
 area 0.0.0.1 
  network 20.0.56.0 0.0.0.3 
  network 20.0.66.0 0.0.0.3 
#
user-interface con 0
 authentication-mode password
user-interface vty 0 4
user-interface vty 16 20
#
wlan ac
#
return

AR7

 sysname AR7
#
 board add 0/4 2SA 
#
 snmp-agent local-engineid 800007DB03000000000000
 snmp-agent 
#
 clock timezone China-Standard-Time minus 08:00:00
#
portal local-server load portalpage.zip
#
 drop illegal-mac alarm
#
 set cpu-usage threshold 80 restore 75
#
acl number 2000  
 rule 5 permit source 220.201.0.1 0.0.15.254 
acl number 2001  
 rule 5 permit source 220.201.0.0 0.0.15.254 
#
aaa 
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default 
 domain default_admin 
 local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$
 local-user admin service-type http
#
firewall zone Local
 priority 15
#
interface Serial4/0/0
 link-protocol ppp
 ppp chap user XGang
 ppp chap password cipher %$%$AX=kPwDGN>)tuVX[LRI#,A4X%$%$
 ip address 176.0.47.2 255.255.255.252 
#
interface Serial4/0/1
 link-protocol ppp
#
interface GigabitEthernet0/0/0
 ip address 10.0.67.7 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/1
 ip address 10.0.78.7 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/2
#
interface NULL0
#
interface LoopBack0
 ip address 7.7.7.7 255.255.255.255 
#
bgp 65201
 peer 5.5.5.5 as-number 65201 
 peer 5.5.5.5 connect-interface LoopBack0
 peer 176.0.47.1 as-number 65001 
 #
 ipv4-family unicast
  undo synchronization
  network 220.201.5.50 255.255.255.255 
  network 220.201.5.51 255.255.255.255 
  network 220.201.5.52 255.255.255.255 
  network 220.201.5.53 255.255.255.255 
  network 220.201.5.54 255.255.255.255 
  network 220.201.5.55 255.255.255.255 
  network 220.201.5.56 255.255.255.255 
  network 220.201.5.57 255.255.255.255 
  network 220.201.5.58 255.255.255.255 
  network 220.201.5.59 255.255.255.255 
  network 220.201.6.60 255.255.255.255 
  network 220.201.6.61 255.255.255.255 
  network 220.201.6.62 255.255.255.255 
  network 220.201.6.63 255.255.255.255 
  network 220.201.6.64 255.255.255.255 
  network 220.201.6.65 255.255.255.255 
  network 220.201.6.66 255.255.255.255 
  network 220.201.6.67 255.255.255.255 
  network 220.201.6.68 255.255.255.255 
  network 220.201.6.69 255.255.255.255 
  peer 5.5.5.5 enable
  peer 5.5.5.5 next-hop-local 
  peer 5.5.5.5 advertise-community
  peer 176.0.47.1 enable
  peer 176.0.47.1 route-policy fabu export
  peer 176.0.47.1 advertise-community
#
ospf 1 router-id 10.7.7.7 
 filter-policy route-policy jujue import
 import-route bgp route-policy btoo
 area 0.0.0.0 
  network 7.7.7.7 0.0.0.0 
  network 10.0.67.0 0.0.0.255 
  network 10.0.78.0 0.0.0.255 
#
route-policy fabu permit node 10 
 if-match acl 2001 
 apply cost 50 
 apply community 201:2 
#
route-policy fabu permit node 20 
 if-match acl 2000 
 apply cost 100 
 apply community 201:1 
#
route-policy btoo permit node 10 
 if-match community-filter 120 
 apply cost 10 
 apply tag 100 
#
route-policy btoo permit node 20 
 if-match community-filter 100 
 apply cost 20 
 apply tag 100 
#
route-policy jujue deny node 10 
 if-match tag 100
#
route-policy jujue permit node 10000 
#
ip community-filter 100 permit :1
ip community-filter 120 permit :2
#
user-interface con 0
 authentication-mode password
user-interface vty 0 4
user-interface vty 16 20
#
wlan ac
#
return

AR8

 sysname AR8
#
 board add 0/1 1GEC 
 board add 0/2 1GEC 
 board add 0/3 1GEC 
 board add 0/4 1GEC 
#
 snmp-agent local-engineid 800007DB03000000000000
 snmp-agent 
#
 clock timezone China-Standard-Time minus 08:00:00
#
portal local-server load portalpage.zip
#
 drop illegal-mac alarm
#
 set cpu-usage threshold 80 restore 75
#
aaa 
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default 
 domain default_admin 
 local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$
 local-user admin service-type http
#
firewall zone Local
 priority 15
#
interface GigabitEthernet0/0/0
 ip address 10.0.78.8 255.255.255.0 
 ospf network-type p2p
#
interface GigabitEthernet0/0/1
 ip address 10.0.58.8 255.255.255.0 
 ospf cost 5
 ospf network-type p2p
#
interface GigabitEthernet0/0/2
 ip address 20.0.58.2 255.255.255.252 
 ospf network-type p2p
#
interface GigabitEthernet1/0/0
 ip address 20.0.68.2 255.255.255.252 
 ospf network-type p2p
#
interface GigabitEthernet2/0/0
#
interface GigabitEthernet3/0/0
#
interface GigabitEthernet4/0/0
#
interface NULL0
#
ospf 1 router-id 10.8.8.8 
 area 0.0.0.0 
  network 10.0.58.0 0.0.0.255 
  network 10.0.78.0 0.0.0.255 
 area 0.0.0.1 
  network 20.0.58.0 0.0.0.3 
  network 20.0.68.0 0.0.0.3 
#
user-interface con 0
 authentication-mode password
user-interface vty 0 4
user-interface vty 16 20
#
wlan ac
#
return
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值