V200R009C00SPC500]
#
drop illegal-mac alarm
#
ipv6
#
ip load-balance hash src-ip
#
vlan batch 100
#
authentication-profile name default_authen_profile
authentication-profile name dot1x_authen_profile
authentication-profile name mac_authen_profile
authentication-profile name portal_authen_profile
authentication-profile name dot1xmac_authen_profile
authentication-profile name multi_authen_profile
#
dns resolve
dns proxy enable
#
dhcp enable
#
radius-server template default
#
pki realm default
#
ssl policy default_policy type server
pki-realm default
version tls1.0 tls1.1
ciphersuite rsa_aes_128_cbc_sha
#
acl name GigabitEthernet0/0/2 2998
rule 5 permit source 192.168.1.0 0.0.0.255
acl name GigabitEthernet0/0/1 2999
rule 5 permit source 192.168.200.0 0.0.0.255
#
acl number 3000
rule 10 permit ip
#
ike proposal default
encryption-algorithm aes-256
dh group14
authentication-algorithm sha2-256
authentication-method pre-share
integrity-algorithm hmac-sha2-256
prf hmac-sha2-256
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile
#
dhcpv6 pool vlanif100
address prefix 2019::/64
dns-server 2019::1
#
aaa
authentication-scheme default
authentication-scheme radius
authentication-mode radius
authorization-scheme default
accounting-scheme default
domain default
authentication-scheme default
domain default_admin
authentication-scheme default
local-user admin password irreversible-cipher $1a$:>uT*St.O#5wnIUX+#S+TtQ6QnR6"BgdVr@g>,Z-$
local-user admin privilege level 15
local-user admin service-type terminal http
local-user huawei password irreversible-cipher $1a$3:Gf-u#&@V$%"XrQh[0d3.&5l31T%4O931.CZ!/oBX=)g4NEqi9$
local-user huawei privilege level 15
local-user huawei service-type telnet terminal ssh ftp x25-pad http
#
web
user-set Default
user-set VIP
#
firewall zone Local
#
interface Dialer1
link-protocol ppp
ppp chap user 0937jq537343
ppp chap password cipher %^%#]s'4
ppp pap local-user 0937jq537343 password cipher %^%#f|V!IEY+^0,jOL~y*3l3'\&L0^AKUO2;q^WRgRKE%^%#
ppp ipcp dns admit-any
ppp ipcp dns request
mtu 1200
ipv6 enable
tcp adjust-mss 1200
ip address ppp-negotiate
dialer user arweb
dialer user abc
dialer bundle 1
dialer number 1 autodial
dialer-group 1
ipv6 address auto link-local
ipv6 address auto global default
undo ipv6 nd ra halt
nat outbound 3000
#
interface Dialer2
link-protocol ppp
ppp chap user 15209375276
ppp chap password cipher %^%#q#%;S@`\AT;"t/I/[kg-nwRH21m>a#r'y("pOeZX%^%#
ppp pap local-user 15209375276 password cipher %^%#P"~BS)&i23/@3@6q[*{C}=dA*Rw}3R_83D2(6=k%%^%#
ppp ipcp dns admit-any
ppp ipcp dns request
mtu 1200
ipv6 enable
tcp adjust-mss 1200
ip address ppp-negotiate
dialer user arweb
dialer user abc
dialer bundle 2
dialer number 1 autodial
dialer-group 2
ipv6 address auto link-local
ipv6 address auto global default
undo ipv6 nd ra halt
nat outbound 3000
#
interface Vlanif1
ip address 192.168.1.1 255.255.255.0
nat outbound 2999
nat outbound 3000 interface GigabitEthernet 0/0/1
dhcp select interface
dhcp server dns-list 202.100.64.68 202.100.64.66
#
interface Vlanif100
description IPV6
ipv6 enable
ip address 192.168.200.1 255.255.255.0
ipv6 address 2019::1/64
ipv6 address auto link-local
undo ipv6 nd ra halt
nat outbound 2998
nat outbound 3000 interface GigabitEthernet 0/0/2
dhcp select interface
dhcpv6 server vlanif100
dhcp server dns-list 192.168.200.1
#
interface GigabitEthernet0/0/0
#
interface GigabitEthernet0/0/1
undo portswitch
pppoe-client dial-bundle-number 1
#
interface GigabitEthernet0/0/2
undo portswitch
pppoe-client dial-bundle-number 2
#
interface GigabitEthernet0/0/3
port hybrid pvid vlan 100
undo port hybrid vlan 1
port hybrid untagged vlan 100
#
interface GigabitEthernet0/0/4
portswitch
#
interface GigabitEthernet0/0/5
description VirtualPort
#
interface Wlan-Bss1
port hybrid tagged vlan 1
#
interface Wlan-Bss2
port hybrid tagged vlan 100
#
interface Wlan-Bss5
port hybrid tagged vlan 1
#
interface Wlan-Bss7
port hybrid tagged vlan 1
#
interface NULL0
#
dialer-rule
dialer-rule 1 ip permit
dialer-rule 1 ipv6 permit
dialer-rule 2 ip permit
dialer-rule 2 ipv6 permit
#
snmp-agent local-engineid 800007DB0348D539D6CC0E
#
sftp server enable
stelnet server enable
telnet server enable
#
set web login-style simple
http secure-server ssl-policy default_policy
http server enable
http secure-server enable
http server permit interface Vlanif1
#
ip route-static 0.0.0.0 0.0.0.0 Dialer1
ip route-static 0.0.0.0 0.0.0.0 Dialer2
ip route-static 192.168.1.0 255.255.255.0 Dialer1
#
ipv6 route-static :: 0 Dialer1
ipv6 route-static :: 0 Dialer2
#
fib regularly-refresh disable
#
user-interface con 0
authentication-mode aaa
user-interface vty 0
authentication-mode aaa
user privilege level 15
user-interface vty 1 4
authentication-mode aaa
#
wlan
wmm-profile name wmmf id 0
wmm-profile name arwebwmm id 1
wmm-profile name 5Garwebwmm id 2
traffic-profile name traf id 0
traffic-profile name HUAWEI-5G id 1
traffic-profile name HUAWEI-2.4G id 2
traffic-profile name HUAWEI-5G-IPV6 id 3
security-profile name secf id 0
security-profile name HUAWEI-5G id 1
security-policy wpa2
wpa2 authentication-method psk pass-phrase cipher %^%#*VR\HqU##Rd=#2O'Nk7*}~rm3+-aN.sW4b/=J/;*%^%# encryption-method ccmp
security-profile name HUAWEI-2.4G id 2
security-policy wpa2
wpa2 authentication-method psk pass-phrase cipher %^%#Md
security-profile name HUAWEI-5G-IPV6 id 3
security-policy wpa2
wpa2 authentication-method psk pass-phrase cipher %^%#Dqe$;JajL%-lIp-||^/K+@a[)z2dX28K8A&)z}j$%^%# encryption-method ccmp
service-set name HUAWEI-5G id 0
Wlan-Bss 1
ssid HUAWEI-5G
traffic-profile id 1
security-profile id 1
service-set name HUAWEI-2.4G id 1
Wlan-Bss 5
ssid HUAWEI-2.4G
traffic-profile id 2
security-profile id 2
service-set name HUAWEI-5G-IPV6 id 2
Wlan-Bss 2
ssid HUAWEI-5G-IPV6
traffic-profile id 3
security-profile id 3
radio-profile name radiof id 0
wmm-profile id 0
radio-profile name arwebradio id 1
channel-mode fixed
power-mode fixed
wmm-profile id 1
radio-profile name 5Garwebradio id 2
wmm-profile id 2
#
interface Wlan-Radio0/0/0
radio-profile id 1
channel 20MHz 12
power-level 12
service-set id 1 wlan 1
#
interface Wlan-Radio0/0/1
radio-profile id 2
channel 80MHz 36
service-set id 2 wlan 1
service-set id 0 wlan 2
#
dot1x-access-profile name dot1x_access_profile
#
mac-access-profile name mac_access_profile
#
ops
#
autostart
#
secelog
#
return