[HLW_hexin]dis cu
#
version 5.20, Release 7710P03
#
sysname HLW_hexin
#
password-control enable
password-control length 8
password-control composition type-number 3 type-length 4
password-control login-attempt 5 exceed lock-time 60
password-control complexity user-name check
#
domain default enable system
#
telnet server enable
#
undo portal local-server https
#
switch-mode standard
#
switch-mode route-normal
#
password-recovery enable
#
acl number 2000
rule 1 permit source 192.168.0.0 0.0.255.255
#
vlan 1
#
vlan 10
#
vlan 20
#
vlan 30
#
vlan 50
#
vlan 120
description guanli
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool vlan20
network 192.168.20.0 mask 255.255.255.0
gateway-list 192.168.20.254
dns-list 202.96.134.33 202.96.128.86
#
dhcp server ip-pool vlan30
network 192.168.30.0 mask 255.255.255.0
gateway-list 192.168.30.254
dns-list 202.96.134.33 202.96.128.86
#
dhcp server ip-pool vlan50
network 192.168.50.0 mask 255.255.254.0
gateway-list 192.168.51.254
dns-list 202.96.134.33 202.96.128.86
#
user-group system
group-attribute allow-guest
#
local-user admin
authorization-attribute user-role guest-manager
service-type ssh telnet terminal
local-user audit
authorization-attribute level 3
authorization-attribute user-role security-audit
service-type ssh telnet
#
stp enable
#
interface NULL0
#
interface Vlan-interface1
ip address dhcp-alloc client-identifier mac Vlan-interface1
#
interface Vlan-interface20
ip address 192.168.20.254 255.255.255.0
#
interface Vlan-interface30
ip address 192.168.30.254 255.255.255.0
#
interface Vlan-interface50
ip address 192.168.51.254 255.255.254.0
#
interface Vlan-interface120
ip address 192.168.120.254 255.255.255.0
#
interface GigabitEthernet0/0/1
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/2
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/3
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/4
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/5
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/6
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/7
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/8
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/9
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/10
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/11
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/12
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/13
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/14
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/15
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/16
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/17
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/18
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/19
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/20
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet0/0/21
port link-mode bridge
port link-type trunk
port trunk permit vlan all
shutdown
#
interface GigabitEthernet0/0/22
port link-mode bridge
port link-type trunk
port trunk permit vlan all
shutdown
#
interface GigabitEthernet0/0/23
port link-mode bridge
port link-type trunk
port trunk permit vlan all
shutdown
#
interface GigabitEthernet0/0/24
port link-mode bridge
port link-type trunk
port trunk permit vlan all
shutdown
#
interface GigabitEthernet0/0/25
port link-mode bridge
shutdown
#
interface GigabitEthernet0/0/26
port link-mode bridge
shutdown
#
interface GigabitEthernet0/0/27
port link-mode bridge
shutdown
#
interface GigabitEthernet0/0/28
port link-mode bridge
shutdown
#
interface GigabitEthernet0/0/29
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet0/0/30
port link-mode bridge
port access vlan 50
#
interface GigabitEthernet0/0/31
port link-mode bridge
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 to 4094
#
interface GigabitEthernet0/0/32
port link-mode bridge
port access vlan 120
#
interface M-Ethernet0/0/0
#
ip route-static 0.0.0.0 0.0.0.0 192.168.120.253
#
info-center trapbuffer size 1024
info-center security-logfile enable
#
dhcp enable
#
ntp-service unicast-server 192.168.120.253
#
ssh server enable
ssh server acl 2000
ssh user admin service-type stelnet authentication-type password
#
load xml-configuration
#
load tr069-configuration
#
user-interface aux 0
authentication-mode scheme
idle-timeout 5 0
user-interface vty 0 4
acl 2000 inbound
authentication-mode scheme
set authentication password cipher $c$3$FTOKEWEqRPghNZkpZoMO646GNX08MnKKpIINLns=
idle-timeout 5 0
protocol inbound ssh
user-interface vty 5 15
authentication-mode scheme
#
return
ssh服务已经启用,死活连接不了(ssh2/ssh1都连接不了)
(0)
最佳答案
1,,远程连接的终端的ip地址,是这个地址范围内的吗:
192.168.0.0 0.0.255.255
你的acl已将限定源为这个地址了
2, user-interface vty 0 4下,删掉这个命令:
undo set authentication password
3,建立用户名:
local-user ssh
pass s admin@123
service-type ssh
authorization-attribute level 3
qu
(1)
也不行
也不行
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
是192.168.0.0 0.0.255.255 这个地址段的 我配置其它的H3c机器都没有这个问题···就S7003这个设备出现这个问题 FTP也是怪怪的 我也是醉了