大家好!
监控平台的地址是192.168.103.253,现在通过 GE0/0/46 接入了核心7500X。
这个GE0/0/46 配置成:172.32.16.2。后面加了静态路由。原来vlan22可以访问监控平台。
现在的问题是,我新,建了一个VLAN45,这个VLAN无法访问192.168.103.253
因为监控上千个摄像头,IP地址和与办公网冲突,海康不愿意改摄像头的地址,所以配置成这个样子。
port link-mode route
ip address 172.32.16.2 255.255.255.252
ip route-static 0.0.0.0 0 10.10.10.254
ip route-static 192.168.103.0 24 172.32.16.1interface GigabitEthernet0/0/46
#
version 7.1.070, Release 7596P10
ip vpn-instance vpn32
route-distinguisher 100:3003
vpn-target 100:303 import-extcommunity
vpn-target 100:303 export-extcommunity
#
forward-path-detection enable
#
irf mode normal
#
dhcp enable
#
lldp global enable
#
system-working-mode standard
xbar load-balance
password-recovery enable
#
vlan 1
#
vlan 2 to 12
#
vlan 16 to 18
#
vlan 20 to 22
#
vlan 25 to 26
#
vlan 28
#
vlan 30
#
vlan 36
#
vlan 39 to 43
#
vlan 45
description 15flor
#
vlan 50
#
vlan 90
#
vlan 100
#
vlan 103
#
vlan 2032
#
ftth
#
dhcp server ip-pool 15floor
gateway-list 192.168.45.1
network 192.168.45.0 mask 255.255.255.0
dns-list 223.5.5.5 114.114.114.114
#
interface Bridge-Aggregation1
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 to 3 8 28 41 to 43
#
interface Bridge-Aggregation2
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 to 3 8 28 41 to 43
#
interface Bridge-Aggregation11
#
interface Vlan-interface20
ip address 192.168.20.1 255.255.255.0
ip address 192.168.200.1 255.255.255.0 sub
#
interface Vlan-interface21
ip address 192.168.21.1 255.255.255.0
ip address 192.168.210.1 255.255.255.0 sub
#
interface Vlan-interface22
ip address 192.168.22.1 255.255.254.0
ip address 192.168.220.1 255.255.255.0 sub
#
interface Vlan-interface45
ip address 192.168.45.1 255.255.255.0
#
interface Vlan-interface50
ip address 192.168.50.1 255.255.255.0
#
interface Vlan-interface90
ip address 192.168.90.254 255.255.255.0
#
interface GigabitEthernet0/0/46
port link-mode route
ip address 172.32.16.2 255.255.255.252
#
scheduler logfile size 16
#
#
ip route-static 0.0.0.0 0 10.10.10.254
ip route-static 192.168.103.0 24 172.32.16.1
#
info-center loghost 192.168.4.30
#
acl basic 2001 match-order auto
rule 0 deny source 172.16.19.19 0
#
acl number 3032
rule 10 permit ip source 192.168.22.0 0.0.0.255 destination 192.168.103.0 0.0.0.255
rule 20 permit ip source 192.168.21.0 0.0.0.255 destination 192.168.103.0 0.0.0.255
rule 30 permit ip source 192.168.23.0 0.0.0.255 destination 192.168.103.0 0.0.0.255
rule 100 permit ip
#
domain system
#
domain default enable system
#
ip https enable
#
return
(0)
最佳答案
监控平台有回vlan45地址段的路由没
原来海康都是192.168.X.X段的,所以不能直接接入办公网,我怀疑是中间用了个172.32.16段做路由。 但是现在我新建的VLAN45网段,是不能访问这个192.168.103.253的。 对了,原来只有22网段可以访问这个监控平台 其他网段,也不能访问。
从核心ping 192.168.103.253,172.32.16.1,172.32.16.2,均正常。
但是从其他VLAN ping不通
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论