核心交换机相关配置
ipv6 dhcp pool 10
network 2408:8640:F100:100::1040:0/112
dns-server 2408:8888::8
dns-server 2408:8899::8
static-bind address 2408:8640:F100:100::1040:10/112 duid 00010001279d145630d04238ef0c
interface Vlan-interface10
ipv6 dhcp select server
ipv6 address 2408:8640:F100:100::1040:1/112
ipv6 nd autoconfig managed-address-flag
ipv6 nd autoconfig other-flag
undo ipv6 nd ra halt
ipv6 nd ra interval 10 5
interface GigabitEthernet1/0/19
port link-mode bridge
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 10 4000
combo enable auto
接入交换机配置
interface GigabitEthernet1/0/1
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 10 4000
dhcp snooping trust
interface GigabitEthernet1/0/2
port access vlan 1060
ipv6 verify source ip-address mac-address
dhcp snooping binding record
关闭来源验证后可以正常访问互联网,防火墙未做ACL限制
网络拓扑 路由器-防火墙-核心交换机-接入交换机-终端
(0)
最佳答案
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
nat没做,路由正常,不在接入交换机做来源验证是可以正常访问互联网的