华三*锐捷M-LAG模拟实验(核心)

描述

For_业务系统_Server_Gateway

vlan 272

description For_Jituandashuju_Server
#
interface Vlan-interface272
description For_Jituandashuju_Server_Gateway
#

Vlan/Vlanif 互联: 三层交换机之间点到点互联 vlanif 接口
【命名格式】: uT/pT/dT:对端设备逻辑编码:对端设备管理 IP:Hulian.Vlan+vlanid
vlan 272
description uT:TJJJJA2-301-A-01_B-02-SSW-H12516-21U03:10.246.1.1:Hulian:vlan272
#
interface Vlan-interface272
description uT:TJJJJA2-301-A-01_B-02-SSW-H12516-21U03:10.246.1.1:Hulian:vlan272
#

字符:(uT/uTCM/uTCU:上联链路;pT:同 AZ,资源池间平行链路; pTAZ:跨 AZ 间平行链路;dT:
下联链路)

uT/pT/dT:对端设备逻辑编码:对端设备管理 IP.对端端口
----互联网络设备
dT:功能 or 业务字段:对端设备编码.对端端口
----互联服务器
interface XXX
//对接网络设备
uT:SNA02-301-G-03-511-CRT-HWNE40E-14U28:10.255.96.65.10GE1/0/1
#
interface XXX
//对接服务器设备
dT:Cunchu:NMA04-305-B-03-182-SEV-ZX5300-2U28.slot2-1
#

pT:对端设备逻辑编码:对端设备管理 IP.对端端口_M-LAG_PeerLink
pT:对端设备逻辑编码:对端设备管理 IP.对端端口_M-LAG_KeepAlive
M-LAG:
interface XXX
pT:TJJJJA2-301-A-01-CSW-ZX9908-21U06:10.255.96.65.10GE2/2/0/0_M-LAG_PeerLink
#
interface XXX
pT:TJJJJA2-301-A-01-CSW-ZX9908-21U06:10.255.96.65.10GE2/2/0/0_M-LAG_KeepAlive
#

核心1

hostname SHDXYQB4-108-C-06-CSW-RGS6250-M1-01U40
!
load-balance-profile ruijie
 ipv4 field src-ip dst-ip protocol l4-src-port l4-dst-port
 ipv6 field src-ip dst-ip protocol l4-src-port l4-dst-port
 hash-disturb 16
!
mac-address-table flapping-logging
lldp management-address-tlv 10.30.0.41
spanning-tree
!
ip access-list standard 65
 10 permit 10.30.0.0 0.0.1.255 
!
ip access-list extended 2000
 10 permit ip host 10.10.0.136 any 
 15 permit ip host 10.10.0.137 any 
 1000 deny ip any any 
 list-remark For_SNMP
!
ip access-list extended 2001
 10 permit ip 192.168.0.0 0.0.7.255 any 
 15 permit ip 192.168.8.0 0.0.7.255 any 
 20 permit ip 192.168.120.0 0.0.0.255 any 
 25 permit ip 10.254.181.0 0.0.0.255 any 
 30 permit ip 10.252.134.0 0.0.1.255 any 
 35 permit ip 10.10.0.0 0.0.0.127 any 
 40 permit ip 10.30.0.0 0.0.1.255 any 
 45 permit ip 10.243.72.0 0.0.0.255 any 
 1000 deny ip any any 
 list-remark For_Login
!
svi router-acls enable
!
vrf definition DMZ
 rd 1:209
 route-target both 1:209
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition Internet
 rd 1:200
 route-target both 1:200
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition NET-manage
 rd 1:1
 route-target both 1:1
 address-family ipv4
  exit-address-family
!
vrf definition OS_Inside
 rd 1:301
 route-target both 1:301
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition OS_Internet
 rd 2:200
 route-target both 2:200
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!         
username COC_Operator privilege 15 password 7 shixun@2023
username COC_monitor password 7 shixun@2023
username COC_operator privilege 15 password 7 shixun@2023
username admin privilege 15 password 7 Pr@ject2018
username openstackadmin privilege 15 password 7 Pr@ject2018
username sdnadmin privilege 15 password 7 Pr@ject2018
username shixun privilege 15 password 7 Pr@ject2018
username yundiao_read password 7 Pr@ject2018
!
no auto-provision
!
install 0 RG-S6250-48XS8CQ
!
sysmac 7042.d3a3.f7d4
!
nfpp
!
mtu forwarding 9216
netconf max-sessions 10
!
service password-encryption
!
redundancy
!         
ip ssh cipher-mode ctr
ip ssh version 2
service sequence-numbers
service timestamps debug datetime msec
service timestamps log datetime msec
logging userinfo command-log
logging buffered 1048576
logging file flash:LOG 
logging flash interval 1
logging trap warnings
logging source interface Mgmt 0
logging server 10.10.0.136 vrf NET-manage udp-port 5000 level warnings
logging server 10.10.0.137 vrf NET-manage udp-port 5000 level warnings
clock timezone beijing +8 0
!
enable service ssh-server
no enable service telnet-server
!
vlan 200
 name OS_Internet
!
vlan 209
 name For_DMZ
!         
vlan 300
 name OS_storage
!
vlan 301
 name OS_inside
!
vlan 4094
 name vap
!
vlan range 1,201-208,302-309,500-3999
!
interface TenGigabitEthernet 0/1
 description to_PSW
 port-group 1 mode active
!
interface TenGigabitEthernet 0/2
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/3
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/4
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/5
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/6
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/7
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/8
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/9
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/10
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/11
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/12
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/13
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/14
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/15
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/16
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/17
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/18
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/19
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/20
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/21
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/22
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/23
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/24
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/25
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/26
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/27
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/28
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/29
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/30
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/31
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/32
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/33
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/34
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/35
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/36
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/37
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/38
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/39
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/40
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/41
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/42
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/43
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/44
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/45
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/46
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/47
 no switchport
 description pT:SHDXYQB4-108-C-06-CSW-RGS6250-01U40.keepalive
 carrier-delay up 2 down 0
 port-group 254 mode active
!
interface TenGigabitEthernet 0/48
 no switchport
 description pT:SHDXYQB4-108-C-06-CSW-RGS6250-01U40.keepalive
 carrier-delay up 2 down 0
 port-group 254 mode active
!
interface HundredGigabitEthernet 0/49
 description dT:SHDXYQB4-108-C-07-ASW-RGS6250-M1-1U40:10.30.0.43.Hun0/49
 port-group 11 mode active
!
interface HundredGigabitEthernet 0/50
 description dT:SHDXYQB4-108-C-07-ASW-RGS6250-M2-1U37:10.30.0.44.Hun0/50
 port-group 11 mode active
!
interface HundredGigabitEthernet 0/51
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/52
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/53
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/54
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/55
 description pT:SHDXYQB4-108-C-06_C-06-CSW-RGS6250-M2-01U37:10.30.0.42.Hun0/55_MLAG_Peerlink
 carrier-delay up 2 down 0
 port-group 255 mode active
!
interface HundredGigabitEthernet 0/56
 description pT:SHDXYQB4-108-C-06_C-06-CSW-RGS6250-M2-01U37:10.30.0.42.Hun0/56_MLAG_Peerlink
 carrier-delay up 2 down 0
 port-group 255 mode active
!
interface AggregatePort 1
 switchport mode trunk
 switchport trunk allowed vlan only 200
 spanning-tree bpdufilter enable
 vap 1
!
interface AggregatePort 11
 description pT:SHDXYQB4-108-C-06-CSW-RGS6250-01U40.M-LAG
 switchport mode trunk
 switchport trunk allowed vlan only 200-209,300-309,500-3999
 vap 11
!
interface AggregatePort 254
 no switchport
 description pT:SHDXYQB4-108-C-06-CSW-RGS6250-01U40.keepalive
 ip address 1.1.1.1 255.255.255.252
 vap error-down except
!
interface AggregatePort 255
 description M-lag_peer-link
 no mac-address-learning
 switchport mode trunk
 peer-link
!
interface VLAN 1
 description For_other
!
interface VLAN 200
 description OS_Internet
 ip address 7.7.7.252 255.255.255.0
 vrrp 1 ip 7.7.7.254
 vrrp mode dual-active
!
interface VLAN 209
 description For_DMZ
 ip address 100.126.7.252 255.255.248.0
 vrrp 3 ip 100.126.7.254
 vrrp mode dual-active
!
interface VLAN 300
 description FOr_Storage_Outsite
 ip address 10.30.11.252 255.255.248.0
 vrrp 1 ip 10.30.11.254
 vrrp mode dual-active
!
interface VLAN 301
 description For_OS_Inside
 vrf forwarding OS_Inside
 ip address 10.30.7.252 255.255.248.0
 vrrp 2 ip 10.30.7.254
 vrrp mode dual-active
!
interface VLAN 4094
 description For VAP
 ip address 1.1.1.5 255.255.255.252
!
interface Mgmt 0
 description For_management
 vrf forwarding NET-manage
 ip address 10.30.0.41 255.255.254.0
!
aggregateport member linktrap
aggregateport load-balance enhanced profile ruijie
!
ntp update-calendar
ntp server vrf NET-manage 10.30.1.254 source Mgmt 0 prefer
!
vap domain 1
 no fast-convergence
 recover up-delay 120 none-vap 60
 priority 7
 data-sync local 1.1.1.5 peer 1.1.1.6
 peer-keepalive local 1.1.1.1 peer 1.1.1.2
 dual-active auto recovery
!
ip route vrf NET-manage 0.0.0.0 0.0.0.0 10.30.1.254
!
snmp-server user yundiao SNMPGROUP v3 encrypted auth sha
1CEAF5F19D5646D7555D0A141DB16ADDF315D6B7 priv aes128
1CEAF5F19D5646D7555D0A141DB16ADD 
snmp-server group SNMPGROUP v3 priv read default write default access 2000 
snmp-server trap-source Mgmt 0
snmp-server system-shutdown
snmp-server host 10.10.0.136 vrf NET-manage traps version 2c yundiao*&COC2016
snmp-server host 10.10.0.137 vrf NET-manage traps version 2c yundiao*&COC2016
snmp-server enable traps
snmp-server community 7 06343f04281442240e415809713f view GNCVIEW ro 65
snmp-server community 7 131c0744092813246643662e0a60475e5a ro 2000
!
line console 0
 logging synchronous
 session-timeout 10
 privilege level 15
 width 256
line vty 0 9
 transport input ssh 
 access-class 2001 in
 logging synchronous
 session-timeout 10
 privilege level 15
 login local
 width 256
!
end

核心2

hostname SHDXYQB4-108-C-06-CSW-RGS6250-M2-01U37
!
load-balance-profile ruijie
 ipv4 field src-ip dst-ip protocol l4-src-port l4-dst-port
 ipv6 field src-ip dst-ip protocol l4-src-port l4-dst-port
 hash-disturb 16
!
mac-address-table flapping-logging
lldp management-address-tlv 10.30.0.42
no spanning-tree
!
ip access-list standard 65
 10 permit 10.30.0.0 0.0.1.255 
!
ip access-list extended 2000
 10 permit ip host 10.10.0.136 any 
 15 permit ip host 10.10.0.137 any 
 1000 deny ip any any 
 list-remark For_SNMP
!
ip access-list extended 2001
 10 permit ip 192.168.0.0 0.0.7.255 any 
 15 permit ip 192.168.8.0 0.0.7.255 any 
 20 permit ip 192.168.120.0 0.0.0.255 any 
 25 permit ip 10.254.181.0 0.0.0.255 any 
 30 permit ip 10.252.134.0 0.0.1.255 any 
 35 permit ip 10.10.0.0 0.0.0.127 any 
 40 permit ip 10.30.0.0 0.0.1.255 any 
 45 permit ip 10.243.72.0 0.0.0.255 any 
 1000 deny ip any any 
 list-remark For_Login
!
svi router-acls enable
!
vrf definition DMZ
 rd 1:209
 route-target both 1:209
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition Internet
 rd 1:200
 route-target both 1:200
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition NET-manage
 rd 1:1
 route-target both 1:1
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition OS_Inside
 rd 1:301
 route-target both 1:301
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
vrf definition OS_Internet
 rd 2:200
 route-target both 2:200
 address-family ipv4
  exit-address-family
 address-family ipv6
  exit-address-family
!
username COC_monitor password 7 shixun@2023
username COC_operator privilege 15 password 7 shixun@2023
username admin privilege 15 password 7 Pr@ject2018
username openstackadmin privilege 15 password 7 Pr@ject2018
username sdnadmin privilege 15 password 7 Pr@ject2018
username yundiao_read password 7 Pr@ject2018
!
no auto-provision
!
install 0 RG-S6250-48XS8CQ
!
sysmac 7042.d3a3.f7d7
!
nfpp
!
mtu forwarding 9216
netconf max-sessions 10
!
service password-encryption
!
redundancy
!         
ip ssh cipher-mode ctr
ip ssh version 2
service sequence-numbers
service timestamps debug datetime msec
service timestamps log datetime msec
logging userinfo command-log
logging buffered 1048576
logging file flash:LOG 
logging flash interval 1
logging trap warnings
logging source interface Mgmt 0
logging server 10.10.0.136 vrf NET-manage udp-port 5000 level warnings
logging server 10.10.0.137 vrf NET-manage udp-port 5000 level warnings
clock timezone beijing +8 0
!
enable service ssh-server
!
vlan 190
 name inbound-manage
!
vlan 193
 name for_CDN_vm
!
vlan 200  
 name OS_Internet
!
vlan 201
 name Ceph-service
!
vlan 300
 name OS_storage
!
vlan 301
 name OS_inside
!
vlan 302
 name OS_ceph
!
vlan 309
 name BM
!
vlan 4094
 name M-lag_peer-link
!
vlan range 1,202-209,250-259,303-308,500-2198,2200-3999
!
interface TenGigabitEthernet 0/1
 description to_PSW
 port-group 1 mode active
!
interface TenGigabitEthernet 0/2
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/3
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/4
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/5
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/6
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/7
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/8
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/9
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/10
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/11
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/12
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/13
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/14
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/15
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/16
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/17
 description dT:Server1:port1
 shutdown
!
interface TenGigabitEthernet 0/18
 description dT:Server2:port1
 shutdown
!
interface TenGigabitEthernet 0/19
 description dT:Server3:port1
 shutdown
!
interface TenGigabitEthernet 0/20
 description dT:Server1:port2
 shutdown
!
interface TenGigabitEthernet 0/21
 description dT:Server2:port2
 shutdown
!
interface TenGigabitEthernet 0/22
 description dT:Server3:port2
 shutdown
!
interface TenGigabitEthernet 0/23
 description dT: dT:yum1:port1
 shutdown
 lacp individual-port enable
!
interface TenGigabitEthernet 0/24
 description dT: dT:yum2:port1
 shutdown
 lacp individual-port enable
!         
interface TenGigabitEthernet 0/25
 description dT: dT:yum1:port2
 shutdown
 lacp individual-port enable
!
interface TenGigabitEthernet 0/26
 description dT: dT:yum2:port2
 shutdown
 lacp individual-port enable
!
interface TenGigabitEthernet 0/27
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/28
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/29
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/30
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/31
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/32
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/33
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/34
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/35
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/36
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/37
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/38
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/39
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/40
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/41
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/42
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/43
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/44
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/45
 description NO-USE
 shutdown
!
interface TenGigabitEthernet 0/46
!
interface TenGigabitEthernet 0/47
 no switchport
 description pT:SHDXYQB4-108-C-04_C-05-ASW-RGS6250-M2-01U40.10GE0/47:10.30.0.21.MLAG_keepalive
 carrier-delay up 2 down 0
 port-group 254 mode active
!
interface TenGigabitEthernet 0/48
 no switchport
 description pT:SHDXYQB4-108-C-04_C-05-ASW-RGS6250-M2-01U40.10GE0/48:10.30.0.21.MLAG_keepalive
 carrier-delay up 2 down 0
 port-group 254 mode active
!
interface HundredGigabitEthernet 0/49
 description dT:SHDXYQB4-108-C-04-ASW-RGS6250-01U37.Hu0/50.Hulian
 port-group 11 mode active
!
interface HundredGigabitEthernet 0/50
 description dT:SHDXYQB4-108-C-04-ASW-RGS6250-01U37.Hu0/50.Hulian
 port-group 11 mode active
!
interface HundredGigabitEthernet 0/51
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/52
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/53
 description NO-USE
 shutdown
!         
interface HundredGigabitEthernet 0/54
 description NO-USE
 shutdown
!
interface HundredGigabitEthernet 0/55
 description pT:SHDXYQB4-108-C-04_C-05-ASW-RGS6250-M2-01U40.40GE0/55:10.30.0.21.MLAG_PeerLink
 carrier-delay up 2 down 0
 port-group 255 mode active
!
interface HundredGigabitEthernet 0/56
 description pT:SHDXYQB4-108-C-04_C-05-ASW-RGS6250-M2-01U40.40GE0/56:10.30.0.21.MLAG_PeerLink
 carrier-delay up 2 down 0
 port-group 255 mode active
!
interface AggregatePort 1
 switchport mode trunk
 switchport trunk allowed vlan only 200
 spanning-tree bpdufilter enable
 vap 1
!
interface AggregatePort 11
 description dT:SHDXYQB4-108-C-04_C-05-ASW-RGS6250-01U37.AGG1
 switchport mode trunk
 switchport trunk allowed vlan only 200-209,300-309,500-3999
 vap 11
!
interface AggregatePort 254
 no switchport
 description M-lag_keepalive
 ip address 1.1.1.2 255.255.255.252
 vap error-down except
!
interface AggregatePort 255
 description M-lag_peer-link
 no mac-address-learning
 switchport mode trunk
 peer-link
!
interface VLAN 200
 description OS_Internet
 ip address 7.7.7.253 255.255.255.0
 vrrp 1 ip 7.7.7.254
 vrrp mode dual-active
!
interface VLAN 201
 ip address 10.201.211.253 255.255.255.0
 vrrp 1 ip 10.201.211.254
 vrrp mode dual-active
!
interface VLAN 209
 description For_DMZ
 ip address 100.126.7.253 255.255.248.0
 vrrp 3 ip 100.126.7.254
 vrrp mode dual-active
!
interface VLAN 300
 description For_Storage_Outside
 ip address 10.30.11.253 255.255.252.0
 vrrp 1 ip 10.30.11.254
 vrrp mode dual-active
!
interface VLAN 301
 description For_OS_Inside
 vrf forwarding OS_Inside
 ip address 10.30.7.253 255.255.248.0
 vrrp 2 ip 10.30.7.254
 vrrp mode dual-active
!
interface VLAN 4094
 description M-lag_peer-link
 ip address 1.1.1.6 255.255.255.252
!         
interface Mgmt 0
 vrf forwarding NET-manage
 ip address 10.30.0.42 255.255.254.0
!
aggregateport member linktrap
aggregateport load-balance enhanced profile ruijie
!
ntp update-calendar
ntp server vrf NET-manage 10.30.1.254 source Mgmt 0 prefer
!
vap domain 1
 no fast-convergence
 recover up-delay 120 none-vap 60
 data-sync local 1.1.1.6 peer 1.1.1.5
 peer-keepalive local 1.1.1.2 peer 1.1.1.1
 dual-active auto recovery
!
ip route vrf NET-manage 0.0.0.0 0.0.0.0 10.30.1.254
!
snmp-server user yundiao SNMPGROUP v3 encrypted auth sha 1CEAF5F19D5646D7555D0A141DB16ADDF315D6B7 priv aes128 1CEAF5F19D5646D7555D0A141DB16ADD 
snmp-server group SNMPGROUP v3 priv read default write default access 2000 
snmp-server trap-source Mgmt 0
snmp-server system-shutdown
snmp-server host 10.10.0.136 vrf NET-manage traps version 2c yundiao*&COC2016
snmp-server host 10.10.0.136 vrf NET-manage traps version 2c yundiao
snmp-server host 10.10.0.137 vrf NET-manage traps version 2c yundiao
snmp-server host 10.10.0.137 vrf NET-manage traps version 2c yundiao*&COC2016
snmp-server enable traps
snmp-server community 7 073d567816063215027d1830563a071c4e ro 29
snmp-server community 7 06343f04281442240e415809713f view GNCVIEW ro 65
snmp-server community 7 131c0744092813246643662e0a60475e5a ro 2000
!
line console 0
line vty 0 9
 transport input ssh 
 access-class 2001 in
 logging synchronous
 session-timeout 10
 privilege level 15
 login local
 width 256
!

end

汉译

名字
重命名增强模式模板,并进入增强模式模板模式 mpls field 配置指定负载分担增强模板
开启哈希流量均衡扰动功能,并配置流量均衡哈希扰动因子
开启哈希流量均衡扰动功能,并配置流量均衡哈希扰动因子
 配置流量均衡哈希扰动因子
!
开启MAC地址漂移检测功能
配置LLDP报文中发布的管理地址
spanning-tree命令用来开启生成树功能,或配置生成树全局时间参数。
创建IP标准ACL(管理)
创建IP扩展ACLSNMP访问控制列表
添加ACL的注释信息
创建IP扩展ACLSSH等访问控制配置(与netconf共享acl)
本地集群CN2地址
本地带外及CN2地址
添加ACL的注释信息
开启SVI应用的ACL仅对三层转发报文生效的功能
配置多协议VRF
rd命令用来配置VRF的RD值。
route-target { both | export | import } route-value
both:配置导入和导出的路由目标属性。
route-value:配置路由目标属性值。支持三种不同的配置形式:
配置多协议VRF启动IPv4协议或IPv6协议,并进入对应的地址族配置模式
配置退出多协议VRF的地址族配置模式
配置多协议VRF启动IPv4协议或IPv6协议,并进入对应的地址族配置模式
配置退出多协议VRF的地址族配置模式
配置名称为Internet的多协议VRF
用户名密码
命令用来关闭AUTO-PROVISION功能(自动设定)
类似版本补丁
为系统指定MAC地址
 进入NFPP配置模式
 配置转发面MTU
 配置NETCONF支持的会话最大连接个数为10
开启口令加密存储功能
进入冗余配置模式
配置SSH服务器支持的加密模式为ctr模式。
#配置SSH服务器只使用SSH版本2。
在日志信息中加上序号
配置启用Log信息和Debug信息的时间戳,格式为Datetime:,并且支持毫秒显示。
配置启用Log信息和Debug信息的时间戳,格式为Datetime:,并且支持毫秒显示。
开启记录用户操作的Log信息
 
配置记录日志信息的内存缓冲区参数(日志信息严重性级别、缓冲区大小)
配置将日志信息记录在扩展Flash中,文件名为LOG .txt,文件大小为128K,日志信息级别为6。
配置系统日志信息写入扩展Flash中的时间间隔
命令用来设置允许发送给Syslog Server的日志信息级别
 配置将日志记录到指定的日志服务器
 配置时区
当需要打开SSH服务器服务时,通过此命令生成SSH服务器端的公共密钥,同时需要执行enable service ssh-server命令
no enable service命令用来关闭指定的服务。
 创建普通静态VLAN,进入VLAN配置模式
 
配置VLAN名称
创建一组VLAN。
# 配置GigabitEthernet 0/1为LACP链路聚合口AP 1成员口,且聚合模式为主动模式。
no switchport命令可以将接口配置为三层接口
# 配置二层以太网接口GigabitEthernet 0/1链路的DCD信号从Down到Up状态的延迟时间为1秒,从Up到Down状态的延迟时间为0
缺省情况下,以太网物理接口不属于任何静态链路聚合口或者LACP链路聚合口
T口
仅通过200
在二层以太网接口配置模式或二层聚合接口配置模式下,使用spanning-tree bpdufilter enable命令开启本接口的BPDU拦截功能,功能直接在接口上生效,
# 配置AP 1加入VAP组1。
当聚合接口已经创建时,配置interface aggregateport命令将自动进入聚合接口配置模式;当聚合接口未创建时,配置interface aggregateport命令会先创建聚合接口,如果创建成功,则进入聚合接口配置模式。
 配置二层以太网接口为Trunk口
vap error-down except命令用来配置违例例外口。
no mac-address-learning命令用来关闭接口上的MAC地址学习功能。
peer-link命令用来配置聚合接口为Peer Link
则配置的是IPv4 VRRP Plus组。
本命令用于配置SVI接口下VRRP组的运行模式。当配置vrrp mode dual-active,备份组将运行双活模式,该模式下两端的VRRP都将处于MASTER状态。配置no vrrp mode命令后,则恢复为主备模式。
vrf forwarding命令用来配置接口加入多协议VRF。
aggregateport member linktrap命令用来开启链路聚合口成员口发送LinkTrap通告功能。
aggregateport load-balance命令用来配置链路聚合口的全局流量平衡算法或者配置指定链路聚合口的流量平衡算法
ntp update-calendar命令用来配置NTP客户端定期使用从外部时钟源同步得来的时钟值更新设备的硬件时钟。
ntp server命令用来为NTP客户端指定一个NTP服务器。
配置VAP域1
no fast-convergence命令用来关闭VAP快速收敛功能。
# 配置VAP域1的端口UP的延迟时间为30秒,非VAP域UP接口延迟时间为10秒。
# 配置VAP域1的优先级为7
data-sync命令用来配置三层表项同步通道的本地和对端IP地址。
peer-keepalive命令用来配置双主检测三层通道本地和对端IP地址。
dual-active auto recovery命令用来开启双主自动恢复功能。
vrf vrf-name:路由VRF,可以是单协议IPv4 VRF或者已配置IPv4地址族的多协议VRF。缺省为全局VRF
snmp-server user命令用来配置
SNMP用户snmp-server user username
 group-name
snmp-server group命令用来配置SNMP用户组。
snmp-server trap-source命令用来配置发送Trap消息的源地址。
 打开SNMP系统重启通知功能
snmp-server host命令用来配置用于接收Trap消息的SNMP主机地址。
snmp-server enable traps命令用来配置Agent主动向NMS发送Trap消息。
snmp-server community命令用来配置认证名和访问权限。
进cons
logging synchronous命令用来打开用户输入与日志信息输出同步功能,防止用户正在输入字符时被打断。
# 配置Line线路 VTY 0的会话超时时间为10分钟。
# 配置0-4的VTY Line线路的登录权限级别配置为15。
# 配置VTY 1的Line线路的行宽为2256列
配置0-9的VTY Line线路
transport input命令用来配置Line线路下可以通讯的协议。
配置0-9的VTY Line线路只允许ssh通讯协议。
配置编号为2001的ACL过滤来自范围为0-9VTY的连接。
logging synchronous命令用来打开用户输入与日志信息输出同步功能,防止用户正在输入字符时被打断。
配置0-9的VTY Line线路超时时间为10分钟。
# 配置0-4的VTY Line线路的登录权限级别配置为15。
login local命令用来配置Line线路上的本地用户认证
# 配置VTY 1的Line线路的行宽为2256列。
  • 12
    点赞
  • 8
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值