请问 H3C S5120V2-10P-LI 能不能实现 多Vlan 上网
1 : 1号 端口接路由器 192.168.1.100/24(路由器内网关地址:192.168.1.1)
2 : 2号端口接一个普通24口交换机(172.118.1.0/24) vlan 100
2 : 3号端口接无线AC(172.118.2.0/24) vlan 200
2 : 2号端口接录像机(172.118.3.0/24) vlan 300
需求:各设备通过1号端口联通外网
(0)
如果2、3、4接口网关都在交换机上查路由表出去就好了。
(0)
谢谢,我在交换机上可以PING 通192.168.1.1 ,可在电脑上就不能PING通 ,也无法上网
可以的,5120交换机支持vlan功能,需要划分三个vlan.分别绑定接口设置ip地址,然后在写一条去往路由器的默认路由,同时路由器上也要添加回程路由。
(0)
谢谢
谢谢
您好,请知:
可以的。以下是部署要点,请参考:
1、配置好相应的VLAN划分到端口,配置VLAN IP。
2、配置设备间的互联,比如三层互联或者VLAN的互联。
3、配置设备间的路由发布或指向。
4、剩下的就是出口设备的上网接入配置,NAT、路由的配置。
(1)
谢谢,没有其它三层设备了,交换机直联一台普通的路由器,可设置好了,就是不通网络
谢谢,没有其它三层设备了,交换机直联一台普通的路由器,可设置好了,就是不通网络
#
version 7.1.070, Release 6318P01
#
sysname SW
#
irf mac-address persistent timer
irf auto-update enable
undo irf link-delay
irf member 1 priority 1
#
dhcp enable
#
lldp global enable
#
password-recovery enable
#
vlan 1
#
vlan 100
description OFFice Computer
#
vlan 200
description WIFI
#
vlan 300
#
vlan 400
description 22F WIFI
#
vlan 1000
#
stp global enable
#
dhcp server ip-pool ip10
gateway-list 10.0.0.1
network 10.0.0.0 mask 255.255.255.0
address range 10.0.0.2 10.0.0.100
dns-list 10.0.0.1
forbidden-ip 10.0.0.19
#
dhcp server ip-pool ip172-1
gateway-list 172.118.1.1
network 172.118.1.0 mask 255.255.255.0
address range 172.118.1.2 172.118.1.100
dns-list 172.118.1.1
#
dhcp server ip-pool ip172-2
gateway-list 172.118.2.1
network 172.118.2.0 mask 255.255.255.0
address range 172.118.2.2 172.118.2.30
dns-list 172.118.2.1
forbidden-ip 172.118.2.18
#
dhcp server ip-pool ip172-3
gateway-list 172.118.3.1
network 172.118.3.0 mask 255.255.255.0
address range 172.118.3.2 172.118.3.100
dns-list 172.118.3.1
#
interface NULL0
#
interface Vlan-interface1
undo dhcp select server
dhcp client identifier ascii 3cd2e55a1b5c-VLAN0001
#
interface Vlan-interface100
ip address 10.0.0.1 255.255.255.0
dhcp server apply ip-pool ip10
#
interface Vlan-interface200
ip address 172.118.1.1 255.255.255.0
dhcp server apply ip-pool ip172-1
#
interface Vlan-interface300
ip address 172.118.2.1 255.255.255.0
dhcp server apply ip-pool ip172-2
#
interface Vlan-interface400
ip address 172.118.3.1 255.255.255.0
dhcp server apply ip-pool ip172-3
#
interface Vlan-interface1000
ip address 192.168.1.200 255.255.255.0
#
interface GigabitEthernet1/0/1
#
interface GigabitEthernet1/0/2
port access vlan 100
#
interface GigabitEthernet1/0/3
port link-type hybrid
port hybrid vlan 1 1000 untagged
#
interface GigabitEthernet1/0/4
port access vlan 200
#
interface GigabitEthernet1/0/5
#
interface GigabitEthernet1/0/6
port access vlan 300
#
interface GigabitEthernet1/0/7
#
interface GigabitEthernet1/0/8
port access vlan 400
#
interface GigabitEthernet1/0/9
#
interface GigabitEthernet1/0/10
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 63
user-role network-operator
#
ip route-static 10.0.0.0 24 Vlan-interface1000
ip route-static 172.0.0.0 24 Vlan-interface1000
#
radius scheme system
user-name-format without-domain
#
domain system
#
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
role name level-2
description Predefined level-2 role
#
role name level-3
description Predefined level-3 role
#
role name level-4
description Predefined level-4 role
#
role name level-5
description Predefined level-5 role
#
role name level-6
description Predefined level-6 role
#
role name level-7
description Predefined level-7 role
#
role name level-8
description Predefined level-8 role
#
role name level-9
description Predefined level-9 role
#
role name level-10
description Predefined level-10 role
#
role name level-11
description Predefined level-11 role
#
role name level-12
description Predefined level-12 role
#
role name level-13
description Predefined level-13 role
#
role name level-14
description Predefined level-14 role
#
user-group system
#
local-user admin class manage
password hash $h$6$BoERaMhSrWVFr6AO$7iKBKkyIyX4rl6Q1P0BB3E1o/uRB36hx49QzTIE1ADGndsUoMJJCCw0Cjc63ZFHQhNuG/3xhAQa+pZSFVtp13g==
service-type http
authorization-attribute user-role level-3
authorization-attribute user-role network-admin
authorization-attribute user-role network-operator
#
ip http enable
#
cloud-management server domain oasis.h3c.com
#
return
这是我配置,为什么网络不通呢?
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
谢谢,我在交换机上可以PING 通192.168.1.1 ,可在电脑上就不能PING通 ,也无法上网