S5130,设置IPSG ,动态绑定IP和mac地址,一样的操作,有一台设备只要配置就设备无法联网。用的是下面的指令:
interface gigabitethernet 1/0/1
ip verify source ip-address mac-address
ip source binding ip-address 172.16.32.164 mac-address 0060-F7E0-4A8B
系统配置如下:
<H3C>display cu
# version 7.1.070, Release 6126P20
# sysname H3C
# telnet server enable
# irf mac-address persistent timer irf auto-update enable undo irf link-delay irf member 1 priority 1
# dhcp snooping enable
# ip source binding ip-address 172.16.32.164 mac-address 0060-f7e0-4a8b ip source binding ip-address 172.16.32.190 mac-address 0060-f7e0-4ab3 ip source binding ip-address 172.16.32.191 mac-address 0060-f7e0-4ab7 ip source binding ip-address 172.16.32.192 mac-address a4bb-6d43-f602 ip source binding ip-address 172.16.32.193 mac-address 00b0-b7e0-0afd ip source binding ip-address 172.16.32.195 mac-address 0060-f7e0-4967 ip source binding ip-address 172.16.32.196 mac-address 9ca5-259d-addf ip source binding ip-address 172.16.32.197 mac-address 98ee-cbb7-c065 ip source binding ip-address 172.16.32.198 mac-address 98ee-cbc4-1658 ip source binding ip-address 172.16.32.199 mac-address 98ee-cbb7-c040 ip source binding ip-address 172.16.32.203 mac-address e43a-6e3c-6beb ip source binding ip-address 172.16.32.205 mac-address 98ee-cbb7-c06d ip source binding ip-address 172.16.32.220 mac-address 98ee-cbb7-c099
# lldp global enable
# password-recovery enable
# vlan 1
# stp global enable
# interface NULL0
# interface Vlan-interface1 ip address 172.16.35.223 255.255.252.0 # interface GigabitEthernet1/0/1
# interface GigabitEthernet1/0/2
# interface GigabitEthernet1/0/3
# interface GigabitEthernet1/0/4
# interface GigabitEthernet1/0/5
# interface GigabitEthernet1/0/6 # interface GigabitEthernet1/0/7 # interface GigabitEthernet1/0/8
# interface GigabitEthernet1/0/9 # interface GigabitEthernet1/0/10
# interface GigabitEthernet1/0/11 ip verify source ip-address mac-address
# interface GigabitEthernet1/0/12 ip verify source ip-address mac-address
# interface GigabitEthernet1/0/13 ip verify source ip-address mac-address
# interface GigabitEthernet1/0/14 ip verify source ip-address mac-address
# interface GigabitEthernet1/0/15 ip verify source ip-address mac-address
# interface GigabitEthernet1/0/16 ip verify source ip-address mac-address
# interface GigabitEthernet1/0/17 # interface GigabitEthernet1/0/18
# interface GigabitEthernet1/0/19 # interface GigabitEthernet1/0/20
# interface GigabitEthernet1/0/21 # interface GigabitEthernet1/0/22
# interface GigabitEthernet1/0/23 # interface GigabitEthernet1/0/24
# interface GigabitEthernet1/0/25 dhcp snooping trust
# interface GigabitEthernet1/0/26
# interface GigabitEthernet1/0/27
# interface GigabitEthernet1/0/28 dhcp snooping trust
# scheduler logfile size 16
# line class aux user-role network-admin
# line class vty user-role network-operator
# line aux 0 user-role network-admin
# line vty 0 4 authentication-mode scheme user-role level-15 user-role network-operator
# line vty 5 63 user-role network-operator
# radius scheme system user-name-format without-domain
# domain system # domain default enable system
# role name level-0 description Predefined level-0 role
# role name level-1 description Predefined level-1 role
# role name level-2 description Predefined level-2 role
# role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role
# user-group system
# local-user admin class manage password hash $h$6$FOBDjKi6tgt2tuxF$hFBRFMgQ2v4972pw/uRhVjBvx5NRyCzmQf5JCB0QP59 eHAAs+i0YgIS6UGvt7GKs9l9z6xZH51WTUMvD7lfp0g== service-type telnet http https authorization-attribute user-role network-admin authorization-attribute user-role network-operator
# ip http enable ip https enable # return
(0)
您好,请知:
从配置上看没什么问题。
动态绑定IP和MAC不生效,以下是排查要点,请参考:
1、检查绑定IP和MAC信息是否和终端的设置一致。
2、可尝试在接口配置看下,不在全局中指定。
3、看下交换机的软件版本是否最新,可考虑升级到最新。
(0)
我有几台一样的设备,版本也一致,就这台不行,我也不知道咋回事,绑定了13个IP,没有一个是可以的。
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论