路由器三层口连外网(用4GCPE模拟的),地址192.168.7.x
vlan1接口地址192.168.0.1,端口连防火墙,防火墙vlan1获取到192.168.0.2,ping不通192.168.7.x。
(0)
最佳答案
接口加安全域了嘛,放通安全策略
(0)
我加入安全域提示The specified interface has been added to another security zone。防火墙连的接口在LAN域内
已经添加到域了,把你的配置发出来看看
<H3C>dis security-zone Name: Local Members: None Name: Trust Members: None Name: DMZ Members: None Name: Untrust Members: None Name: Management Members: None Name: LAN Members: Vlan-interface1 GigabitEthernet1/0/0 in VLAN 1 GigabitEthernet1/0/2 in VLAN 1 GigabitEthernet1/0/3 in VLAN 1 GigabitEthernet1/0/4 in VLAN 1 GigabitEthernet1/0/5 in VLAN 1 GigabitEthernet1/0/6 in VLAN 1 GigabitEthernet1/0/7 in VLAN 1
把你dis cu的配置方便发出来嘛
=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2023.02.10 10:06:17 =~=~=~=~=~=~=~=~=~=~=~= gateway-list 192.168.0.1 [2023/02/10 10:06:17] ---- More ---- network 192.168.0.0 mask 255.255.255.0 [2023/02/10 10:06:17] ---- More ---- address range 192.168.0.2 192.168.0.254 [2023/02/10 10:06:17] ---- More ---- # [2023/02/10 10:06:18] ---- More ---- controller Cellular1/0/0 [2023/02/10 10:06:19] ---- More ---- # [2023/02/10 10:06:19] ---- More ---- controller Cellular1/0/1 [2023/02/10 10:06:19] ---- More ---- # [2023/02/10 10:06:19] ---- More ---- interface NULL0 [2023/02/10 10:06:20] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface Vlan-interface1 [2023/02/10 10:06:21] ---- More ---- description LAN-interface [2023/02/10 10:06:21] ---- More ---- ip address dhcp-alloc [2023/02/10 10:06:21] ---- More ---- tcp mss 1280 [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/1 [2023/02/10 10:06:21] ---- More ---- port link-mode route [2023/02/10 10:06:21] ---- More ---- combo enable fiber [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/0 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- combo enable fiber [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/2 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/3 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/4 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/5 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:22] ---- More ---- # [2023/02/10 10:06:22] ---- More ---- interface GigabitEthernet1/0/6 [2023/02/10 10:06:22] ---- More ---- port link-mode bridge [2023/02/10 10:06:22] ---- More ---- # [2023/02/10 10:06:22] ---- More ---- interface GigabitEthernet1/0/7 [2023/02/10 10:06:22] ---- More ---- port link-mode bridge [2023/02/10 10:06:23] ---- More ---- # [2023/02/10 10:06:23] ---- More ---- interface GigabitEthernet1/0/8 [2023/02/10 10:06:23] ---- More ---- port link-mode bridge [2023/02/10 10:06:23] ---- More ---- # [2023/02/10 10:06:23] ---- More ---- interface GigabitEthernet1/0/9 [2023/02/10 10:06:23] ---- More ---- port link-mode bridge [2023/02/10 10:06:23] ---- More ---- # [2023/02/10 10:06:24] ---- More ---- interface GigabitEthernet1/0/10 [2023/02/10 10:06:24] ---- More ---- port link-mode bridge [2023/02/10 10:06:24] ---- More ---- # [2023/02/10 10:06:24] ---- More ---- interface GigabitEthernet1/0/11 [2023/02/10 10:06:24] ---- More ---- port link-mode bridge [2023/02/10 10:06:24] ---- More ---- # [2023/02/10 10:06:25] ---- More ---- security-zone name Local [2023/02/10 10:06:25] ---- More ---- # [2023/02/10 10:06:25] ---- More ---- security-zone name Trust [2023/02/10 10:06:25] ---- More ---- # [2023/02/10 10:06:25] ---- More ---- security-zone name DMZ [2023/02/10 10:06:25] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- security-zone name Untrust [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- security-zone name Management [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- security-zone name LAN [2023/02/10 10:06:28] ---- More ---- import interface Vlan-interface1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/0 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/2 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/3 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/4 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/5 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/6 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/7 vlan 1 [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- scheduler logfile size 16 [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line class aux [2023/02/10 10:06:28] ---- More ---- user-role network-operator [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line class console [2023/02/10 10:06:28] ---- More ---- user-role network-admin [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line class vty [2023/02/10 10:06:28] ---- More ---- user-role network-operator [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line aux 0 [2023/02/10 10:06:28] ---- More ---- user-role network-admin [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line con 0 [2023/02/10 10:06:28] ---- More ---- user-role network-admin [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- line vty 0 63 [2023/02/10 10:06:29] ---- More ---- authentication-mode scheme [2023/02/10 10:06:29] ---- More ---- user-role network-admin [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- performance-management [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- ssh server enable [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- arp ip-conflict log prompt [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- domain system [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- domain default enable system [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-0 [2023/02/10 10:06:29] ---- More ---- description Predefined level-0 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-1 [2023/02/10 10:06:29] ---- More ---- description Predefined level-1 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-2 [2023/02/10 10:06:29] ---- More ---- description Predefined level-2 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-3 [2023/02/10 10:06:29] ---- More ---- description Predefined level-3 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-4 [2023/02/10 10:06:29] ---- More ---- description Predefined level-4 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-5 [2023/02/10 10:06:29] ---- More ---- description Predefined level-5 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-6 [2023/02/10 10:06:30] ---- More ---- description Predefined level-6 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-7 [2023/02/10 10:06:30] ---- More ---- description Predefined level-7 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-8 [2023/02/10 10:06:30] ---- More ---- description Predefined level-8 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-9 [2023/02/10 10:06:30] ---- More ---- description Predefined level-9 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-10 [2023/02/10 10:06:30] ---- More ---- description Predefined level-10 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:31] ---- More ---- role name level-11 [2023/02/10 10:06:31] ---- More ---- description Predefined level-11 role [2023/02/10 10:06:31] ---- More ---- # [2023/02/10 10:06:31] ---- More ---- role name level-12 [2023/02/10 10:06:31] ---- More ---- description Predefined level-12 role [2023/02/10 10:06:31] ---- More ---- # [2023/02/10 10:06:32] ---- More ---- role name level-13 [2023/02/10 10:06:32] ---- More ---- description Predefined level-13 role [2023/02/10 10:06:32] ---- More ---- # [2023/02/10 10:06:32] ---- More ---- role name level-14 [2023/02/10 10:06:32] ---- More ---- description Predefined level-14 role [2023/02/10 10:06:32] ---- More ---- # [2023/02/10 10:06:33] ---- More ---- user-group system [2023/02/10 10:06:33] ---- More ---- # [2023/02/10 10:06:33] ---- More ---- local-user admin class manage [2023/02/10 10:06:33] ---- More ---- password hash $h$6$CqeeSHnNReGazcKl$Zb5sFWr4CfITsDTascif1EbCxnG4XOpxkk5/inTedtnO4ikXxjUi0jK67f/c5JUQVlBWCIzjrp8pUbu6XEna3g== [2023/02/10 10:06:33] ---- More ---- service-type ssh telnet terminal http https [2023/02/10 10:06:34] ---- More ---- authorization-attribute user-role level-3 [2023/02/10 10:06:34] ---- More ---- authorization-attribute user-role network-admin [2023/02/10 10:06:34] ---- More ---- authorization-attribute user-role network-operator [2023/02/10 10:06:34] ---- More ---- # [2023/02/10 10:06:34] ---- More ---- ssl renegotiation disable [2023/02/10 10:06:35] ---- More ---- ssl version ssl3.0 disable [2023/02/10 10:06:35] ---- More ---- ssl version tls1.0 disable [2023/02/10 10:06:35] ---- More ---- undo ssl version tls1.1 disable [2023/02/10 10:06:35] ---- More ---- # [2023/02/10 10:06:35] ---- More ---- ipsec logging negotiation enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- ike logging negotiation enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- netconf soap http enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- ip http enable [2023/02/10 10:06:38] ---- More ---- ip https enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- loadbalance isp file flash:/lbispinfo_v1.5.tp [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- smartmc enable [2023/02/10 10:06:38] ---- More ---- smartmc password cipher $c$3$CoCblkYhfq9+JP6Gdep5DtGrs1ZbZqaBFJVeauQ= [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- security-policy ip [2023/02/10 10:06:38] ---- More ---- rule 0 name AUTONET_LOCAL2ANY_DONTMODIFY [2023/02/10 10:06:38] ---- More ---- action pass [2023/02/10 10:06:38] ---- More ---- source-zone local [2023/02/10 10:06:38] ---- More ---- rule 1 name AUTONET_LAN2LOCAL_DONTMODIFY [2023/02/10 10:06:38] ---- More ---- action pass [2023/02/10 10:06:38] ---- More ---- source-zone LAN [2023/02/10 10:06:38] ---- More ---- destination-zone local [2023/02/10 10:06:38] ---- More ---- rule 2 name AUTONET_LAN2LAN_DONTMODIFY [2023/02/10 10:06:38] ---- More ---- action pass [2023/02/10 10:06:38] ---- More ---- source-zone LAN [2023/02/10 10:06:38] ---- More ---- destination-zone LAN [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- cloud-management server domain secops.h3c.com [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- return [2023/02/10 10:06:38] ---- More ---- <H3C> [2023/02/10 10:06:38] <H3C> [2023/02/10 10:06:38] <H3C>
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2023.02.10 10:06:17 =~=~=~=~=~=~=~=~=~=~=~= gateway-list 192.168.0.1 [2023/02/10 10:06:17] ---- More ---- network 192.168.0.0 mask 255.255.255.0 [2023/02/10 10:06:17] ---- More ---- address range 192.168.0.2 192.168.0.254 [2023/02/10 10:06:17] ---- More ---- # [2023/02/10 10:06:18] ---- More ---- controller Cellular1/0/0 [2023/02/10 10:06:19] ---- More ---- # [2023/02/10 10:06:19] ---- More ---- controller Cellular1/0/1 [2023/02/10 10:06:19] ---- More ---- # [2023/02/10 10:06:19] ---- More ---- interface NULL0 [2023/02/10 10:06:20] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface Vlan-interface1 [2023/02/10 10:06:21] ---- More ---- description LAN-interface [2023/02/10 10:06:21] ---- More ---- ip address dhcp-alloc [2023/02/10 10:06:21] ---- More ---- tcp mss 1280 [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/1 [2023/02/10 10:06:21] ---- More ---- port link-mode route [2023/02/10 10:06:21] ---- More ---- combo enable fiber [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/0 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- combo enable fiber [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/2 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/3 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/4 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:21] ---- More ---- # [2023/02/10 10:06:21] ---- More ---- interface GigabitEthernet1/0/5 [2023/02/10 10:06:21] ---- More ---- port link-mode bridge [2023/02/10 10:06:22] ---- More ---- # [2023/02/10 10:06:22] ---- More ---- interface GigabitEthernet1/0/6 [2023/02/10 10:06:22] ---- More ---- port link-mode bridge [2023/02/10 10:06:22] ---- More ---- # [2023/02/10 10:06:22] ---- More ---- interface GigabitEthernet1/0/7 [2023/02/10 10:06:22] ---- More ---- port link-mode bridge [2023/02/10 10:06:23] ---- More ---- # [2023/02/10 10:06:23] ---- More ---- interface GigabitEthernet1/0/8 [2023/02/10 10:06:23] ---- More ---- port link-mode bridge [2023/02/10 10:06:23] ---- More ---- # [2023/02/10 10:06:23] ---- More ---- interface GigabitEthernet1/0/9 [2023/02/10 10:06:23] ---- More ---- port link-mode bridge [2023/02/10 10:06:23] ---- More ---- # [2023/02/10 10:06:24] ---- More ---- interface GigabitEthernet1/0/10 [2023/02/10 10:06:24] ---- More ---- port link-mode bridge [2023/02/10 10:06:24] ---- More ---- # [2023/02/10 10:06:24] ---- More ---- interface GigabitEthernet1/0/11 [2023/02/10 10:06:24] ---- More ---- port link-mode bridge [2023/02/10 10:06:24] ---- More ---- # [2023/02/10 10:06:25] ---- More ---- security-zone name Local [2023/02/10 10:06:25] ---- More ---- # [2023/02/10 10:06:25] ---- More ---- security-zone name Trust [2023/02/10 10:06:25] ---- More ---- # [2023/02/10 10:06:25] ---- More ---- security-zone name DMZ [2023/02/10 10:06:25] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- security-zone name Untrust [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- security-zone name Management [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- security-zone name LAN [2023/02/10 10:06:28] ---- More ---- import interface Vlan-interface1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/0 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/2 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/3 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/4 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/5 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/6 vlan 1 [2023/02/10 10:06:28] ---- More ---- import interface GigabitEthernet1/0/7 vlan 1 [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- scheduler logfile size 16 [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line class aux [2023/02/10 10:06:28] ---- More ---- user-role network-operator [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line class console [2023/02/10 10:06:28] ---- More ---- user-role network-admin [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line class vty [2023/02/10 10:06:28] ---- More ---- user-role network-operator [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line aux 0 [2023/02/10 10:06:28] ---- More ---- user-role network-admin [2023/02/10 10:06:28] ---- More ---- # [2023/02/10 10:06:28] ---- More ---- line con 0 [2023/02/10 10:06:28] ---- More ---- user-role network-admin [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- line vty 0 63 [2023/02/10 10:06:29] ---- More ---- authentication-mode scheme [2023/02/10 10:06:29] ---- More ---- user-role network-admin [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- performance-management [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- ssh server enable [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- arp ip-conflict log prompt [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- domain system [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- domain default enable system [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-0 [2023/02/10 10:06:29] ---- More ---- description Predefined level-0 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-1 [2023/02/10 10:06:29] ---- More ---- description Predefined level-1 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-2 [2023/02/10 10:06:29] ---- More ---- description Predefined level-2 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-3 [2023/02/10 10:06:29] ---- More ---- description Predefined level-3 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-4 [2023/02/10 10:06:29] ---- More ---- description Predefined level-4 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-5 [2023/02/10 10:06:29] ---- More ---- description Predefined level-5 role [2023/02/10 10:06:29] ---- More ---- # [2023/02/10 10:06:29] ---- More ---- role name level-6 [2023/02/10 10:06:30] ---- More ---- description Predefined level-6 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-7 [2023/02/10 10:06:30] ---- More ---- description Predefined level-7 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-8 [2023/02/10 10:06:30] ---- More ---- description Predefined level-8 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-9 [2023/02/10 10:06:30] ---- More ---- description Predefined level-9 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:30] ---- More ---- role name level-10 [2023/02/10 10:06:30] ---- More ---- description Predefined level-10 role [2023/02/10 10:06:30] ---- More ---- # [2023/02/10 10:06:31] ---- More ---- role name level-11 [2023/02/10 10:06:31] ---- More ---- description Predefined level-11 role [2023/02/10 10:06:31] ---- More ---- # [2023/02/10 10:06:31] ---- More ---- role name level-12 [2023/02/10 10:06:31] ---- More ---- description Predefined level-12 role [2023/02/10 10:06:31] ---- More ---- # [2023/02/10 10:06:32] ---- More ---- role name level-13 [2023/02/10 10:06:32] ---- More ---- description Predefined level-13 role [2023/02/10 10:06:32] ---- More ---- # [2023/02/10 10:06:32] ---- More ---- role name level-14 [2023/02/10 10:06:32] ---- More ---- description Predefined level-14 role [2023/02/10 10:06:32] ---- More ---- # [2023/02/10 10:06:33] ---- More ---- user-group system [2023/02/10 10:06:33] ---- More ---- # [2023/02/10 10:06:33] ---- More ---- local-user admin class manage [2023/02/10 10:06:33] ---- More ---- password hash $h$6$CqeeSHnNReGazcKl$Zb5sFWr4CfITsDTascif1EbCxnG4XOpxkk5/inTedtnO4ikXxjUi0jK67f/c5JUQVlBWCIzjrp8pUbu6XEna3g== [2023/02/10 10:06:33] ---- More ---- service-type ssh telnet terminal http https [2023/02/10 10:06:34] ---- More ---- authorization-attribute user-role level-3 [2023/02/10 10:06:34] ---- More ---- authorization-attribute user-role network-admin [2023/02/10 10:06:34] ---- More ---- authorization-attribute user-role network-operator [2023/02/10 10:06:34] ---- More ---- # [2023/02/10 10:06:34] ---- More ---- ssl renegotiation disable [2023/02/10 10:06:35] ---- More ---- ssl version ssl3.0 disable [2023/02/10 10:06:35] ---- More ---- ssl version tls1.0 disable [2023/02/10 10:06:35] ---- More ---- undo ssl version tls1.1 disable [2023/02/10 10:06:35] ---- More ---- # [2023/02/10 10:06:35] ---- More ---- ipsec logging negotiation enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- ike logging negotiation enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- netconf soap http enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- ip http enable [2023/02/10 10:06:38] ---- More ---- ip https enable [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- loadbalance isp file flash:/lbispinfo_v1.5.tp [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- smartmc enable [2023/02/10 10:06:38] ---- More ---- smartmc password cipher $c$3$CoCblkYhfq9+JP6Gdep5DtGrs1ZbZqaBFJVeauQ= [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- security-policy ip [2023/02/10 10:06:38] ---- More ---- rule 0 name AUTONET_LOCAL2ANY_DONTMODIFY [2023/02/10 10:06:38] ---- More ---- action pass [2023/02/10 10:06:38] ---- More ---- source-zone local [2023/02/10 10:06:38] ---- More ---- rule 1 name AUTONET_LAN2LOCAL_DONTMODIFY [2023/02/10 10:06:38] ---- More ---- action pass [2023/02/10 10:06:38] ---- More ---- source-zone LAN [2023/02/10 10:06:38] ---- More ---- destination-zone local [2023/02/10 10:06:38] ---- More ---- rule 2 name AUTONET_LAN2LAN_DONTMODIFY [2023/02/10 10:06:38] ---- More ---- action pass [2023/02/10 10:06:38] ---- More ---- source-zone LAN [2023/02/10 10:06:38] ---- More ---- destination-zone LAN [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- cloud-management server domain secops.h3c.com [2023/02/10 10:06:38] ---- More ---- # [2023/02/10 10:06:38] ---- More ---- return [2023/02/10 10:06:38] ---- More ---- <H3C> [2023/02/10 10:06:38] <H3C> [2023/02/10 10:06:38] <H3C>