[HLW_hexin]dis cu
#
 version 5.20, Release 7710P03
#
 sysname HLW_hexin
#
 password-control enable
 password-control length 8
 password-control composition type-number 3 type-length 4
 password-control login-attempt 5 exceed lock-time 60
 password-control complexity user-name check
#
 domain default enable system
#
 telnet server enable
#
 undo portal local-server https
#
switch-mode standard
#
 switch-mode  route-normal
#
 password-recovery enable
#
acl number 2000 
 rule 1 permit source 192.168.0.0 0.0.255.255
#
vlan 1
#
vlan 10
#
vlan 20
#
vlan 30
#
vlan 50
#
vlan 120
 description guanli
#
domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
#
dhcp server ip-pool vlan20
 network 192.168.20.0 mask 255.255.255.0
 gateway-list 192.168.20.254
 dns-list 202.96.134.33 202.96.128.86
#
dhcp server ip-pool vlan30
 network 192.168.30.0 mask 255.255.255.0
 gateway-list 192.168.30.254
 dns-list 202.96.134.33 202.96.128.86
#
dhcp server ip-pool vlan50
 network 192.168.50.0 mask 255.255.254.0
 gateway-list 192.168.51.254
 dns-list 202.96.134.33 202.96.128.86
#
user-group system
 group-attribute allow-guest
#
local-user admin
 authorization-attribute user-role guest-manager
 service-type ssh telnet terminal
local-user audit
 authorization-attribute level 3
 authorization-attribute user-role security-audit
 service-type ssh telnet
#
 stp enable
#
interface NULL0
#
interface Vlan-interface1
 ip address dhcp-alloc client-identifier mac Vlan-interface1
#
interface Vlan-interface20
 ip address 192.168.20.254 255.255.255.0
#
interface Vlan-interface30
 ip address 192.168.30.254 255.255.255.0
#
interface Vlan-interface50
 ip address 192.168.51.254 255.255.254.0
#
interface Vlan-interface120
 ip address 192.168.120.254 255.255.255.0
#
interface GigabitEthernet0/0/1
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/2
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/3
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/4
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/5
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/6
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/7
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/8
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/9
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/10
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/11
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/12
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/13
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/14
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/15
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/16
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/17
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/18
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/19
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#               
interface GigabitEthernet0/0/20
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
#
interface GigabitEthernet0/0/21
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
 shutdown
#
interface GigabitEthernet0/0/22
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
 shutdown
#
interface GigabitEthernet0/0/23
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
 shutdown
#               
interface GigabitEthernet0/0/24
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan all
 shutdown
#
interface GigabitEthernet0/0/25
 port link-mode bridge
 shutdown
#
interface GigabitEthernet0/0/26
 port link-mode bridge
 shutdown
#
interface GigabitEthernet0/0/27
 port link-mode bridge
 shutdown
#
interface GigabitEthernet0/0/28
 port link-mode bridge
 shutdown
#
interface GigabitEthernet0/0/29
 port link-mode bridge
 port access vlan 20
#
interface GigabitEthernet0/0/30
 port link-mode bridge
 port access vlan 50
#
interface GigabitEthernet0/0/31
 port link-mode bridge
 port link-type trunk
 undo port trunk permit vlan 1
 port trunk permit vlan 2 to 4094
#
interface GigabitEthernet0/0/32
 port link-mode bridge
 port access vlan 120
#
interface M-Ethernet0/0/0
#
 ip route-static 0.0.0.0 0.0.0.0 192.168.120.253
#
 info-center trapbuffer size 1024
 info-center security-logfile enable
#
 dhcp enable
#
 ntp-service unicast-server 192.168.120.253
#
 ssh server enable
 ssh server acl 2000
 ssh user admin service-type stelnet authentication-type password
#
 load xml-configuration
#
 load tr069-configuration
#
user-interface aux 0
 authentication-mode scheme
 idle-timeout 5 0
user-interface vty 0 4
 acl 2000 inbound
 authentication-mode scheme
 set authentication password cipher $c$3$FTOKEWEqRPghNZkpZoMO646GNX08MnKKpIINLns=
 idle-timeout 5 0
 protocol inbound ssh
user-interface vty 5 15
 authentication-mode scheme
#
return
ssh服务已经启用,死活连接不了(ssh2/ssh1都连接不了)
(0)
最佳答案
							
							
							1,,远程连接的终端的ip地址,是这个地址范围内的吗:
192.168.0.0 0.0.255.255
你的acl已将限定源为这个地址了
2, user-interface vty 0 4下,删掉这个命令:
undo set authentication password
3,建立用户名:
local-user ssh
pass s admin@123
service-type ssh
authorization-attribute level 3
qu
(1)
也不行
也不行
	
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
是192.168.0.0 0.0.255.255 这个地址段的 我配置其它的H3c机器都没有这个问题···就S7003这个设备出现这个问题 FTP也是怪怪的 我也是醉了