发表于 2013-3-18 22:08 | 来自
51CTO网页
引用:原帖由 shenpq2008 于 2013-2-22 11:00 发表
是不是做了负载设置?超过负载就自动断线hexin-5960-28T#show running-config
!
no service password-encryption
!
hostname hexin-5960-28T
sysLocation China
sysContact 800-810-9119
!
!
!
!
snmp-server enable
snmp-server securityip disable
snmp-server community rw dyjxnet
!
!
!
!
!
!
!
vlan 1;10;31-33;40
!
vlan 8
name manager
!
vlan 9
name to_waiwang
!
firewall enable
!
ip access-list extended virus
deny tcp any-source any-destination d-port 113
deny tcp any-source any-destination d-port 134
deny tcp any-source any-destination d-port 135
deny tcp any-source any-destination d-port 136
deny tcp any-source any-destination d-port 137
deny tcp any-source any-destination d-port 138
deny tcp any-source any-destination d-port 139
deny tcp any-source any-destination d-port 445
deny udp any-source any-destination d-port 134
deny udp any-source any-destination d-port 135
deny udp any-source any-destination d-port 136
deny udp any-source any-destination d-port 137
deny udp any-source any-destination d-port 138
deny udp any-source any-destination d-port 139
deny tcp any-source any-destination d-port 420
deny udp any-source any-destination d-port 445
deny tcp any-source any-destination d-port 593
deny udp any-source any-destination d-port 593
deny tcp any-source any-destination d-port 1068
deny tcp any-source any-destination d-port 1080
deny udp any-source any-destination d-port 1434
deny tcp any-source any-destination d-port 1999
deny tcp any-source any-destination d-port 2745
deny tcp any-source any-destination d-port 3128
deny tcp any-source any-destination d-port 3198
deny tcp any-source any-destination d-port 3333
deny tcp any-source any-destination d-port 4331
deny udp any-source any-destination d-port 4334
deny tcp any-source any-destination d-port 4444
deny udp any-source any-destination d-port 4444
deny tcp any-source any-destination d-port 5554
deny tcp any-source any-destination d-port 5632
deny udp any-source any-destination d-port 5632
deny tcp any-source any-destination d-port 5800
deny udp any-source any-destination d-port 5800
deny udp any-source any-destination d-port 5900
deny tcp any-source any-destination d-port 5900
deny tcp any-source any-destination d-port 6667
deny udp any-source any-destination d-port 7626
deny tcp any-source any-destination d-port 9604
deny tcp any-source any-destination d-port 9995
deny tcp any-source any-destination d-port 9996
deny tcp any-source any-destination d-port 10080
deny tcp any-source any-destination d-port 31270
deny tcp any-source any-destination d-port 39213
deny udp any-source any-destination d-port 39213
deny udp any-source any-destination d-port 1433
deny tcp any-source any-destination d-port 1433
deny tcp any-source any-destination d-port 1434
deny tcp any-source any-destination d-port 1723
deny tcp any-source any-destination d-port 808
permit ip any-source any-destination
!
Interface Ethernet1/0/1
switchport mode trunk
switchport trunk allowed vlan 8;10;31-33
!
Interface Ethernet1/0/2
switchport mode trunk
switchport trunk allowed vlan 8;10
!
Interface Ethernet1/0/3
switchport mode trunk
switchport trunk allowed vlan 8;10
!
Interface Ethernet1/0/4
switchport mode trunk
switchport trunk allowed vlan 8;40
!
Interface Ethernet1/0/5
switchport mode trunk
switchport trunk allowed vlan 8;10
!
Interface Ethernet1/0/6
switchport mode trunk
switchport trunk allowed vlan 8;10;40
!
Interface Ethernet1/0/7
switchport mode trunk
switchport trunk allowed vlan 8;40
!
Interface Ethernet1/0/8
switchport access vlan 40
!
Interface Ethernet1/0/9
!
Interface Ethernet1/0/10
!
Interface Ethernet1/0/11
switchport access vlan 10
!
Interface Ethernet1/0/12
switchport access vlan 10
!
Interface Ethernet1/0/13
switchport access vlan 10
!
Interface Ethernet1/0/14
switchport access vlan 10
!
Interface Ethernet1/0/15
switchport access vlan 10
!
Interface Ethernet1/0/16
switchport access vlan 10
!
Interface Ethernet1/0/17
switchport access vlan 10
!
Interface Ethernet1/0/18
switchport access vlan 10
!
Interface Ethernet1/0/19
switchport access vlan 9
ip access-group virus out
!
Interface Ethernet1/0/20
switchport access vlan 9
ip access-group virus out
!
Interface Ethernet1/0/21
switchport access vlan 9
!
Interface Ethernet1/0/22
switchport access vlan 9
!
Interface Ethernet1/0/23
!
Interface Ethernet1/0/24
!
Interface Ethernet1/0/25
!
Interface Ethernet1/0/26
!
Interface Ethernet1/0/27
!
Interface Ethernet1/0/28
!
interface Vlan8
ip address 192.168.1.254 255.255.255.0
!
interface Vlan9
ip address 172.16.0.106 255.255.255.252
!
interface Vlan10
ip address 172.16.172.1 255.255.254.0
!
interface Vlan31
ip address 172.16.174.1 255.255.255.0
!
interface Vlan32
ip address 172.16.175.1 255.255.255.0
!
interface Vlan33
ip address 172.16.205.1 255.255.255.0
!
interface Vlan40
ip address 172.16.204.1 255.255.255.0
!
ip route 0.0.0.0/0 172.16.0.105
!
!
no login
!
end