WX2540E AC控制器和WA4320-ACN-E瘦AP,旁路在核心上。配置完成后 ap获取不到ip地址 dhcp是在ac控制器上做的 不知道配置哪里出现问题了。
ac配置#
[AC-3]dis cu
#
version 5.20, ESS 3703P61
#
sysname AC-3
#
dhcp relay server-group 1 ip 172.20.1.2
dhcp relay server-group 2 ip 172.30.1.2
#
domain default enable system
#
telnet server enable
#
port-security enable
#
wlan auto-ap enable
wlan auto-persistent enable
#
password-recovery enable
#
vlan 1
#
vlan 20
#
vlan 30
#
vlan 50
#
vlan 60
#
vlan 70
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool pipe
network 172.20.0.0 mask 255.255.0.0
gateway-list 172.20.1.1
dns-list 202.99.96.68
expired unlimited
#
dhcp server ip-pool pipe-guest
network 172.30.0.0 mask 255.255.0.0
gateway-list 172.30.1.1
dns-list 202.99.96.68
expired unlimited
#
user-group system
group-attribute allow-guest
#
local-user admin
password cipher
authorization-attribute level 3
service-type ssh telnet
service-type web
service-type ssh telnet terminal
service-type ftp
service-type web
#
wlan rrm
dot11a mandatory-rate 6 12 24
dot11a supported-rate 9 18 36 48 54
dot11b mandatory-rate 1 2
dot11b supported-rate 5.5 11
dot11g mandatory-rate 1 2 5.5 11
dot11g supported-rate 6 9 12 18 24 36 48 54
#
wlan service-template 1 crypto
ssid TJISV
bind WLAN-ESS 0
cipher-suite ccmp
security-ie rsn
security-ie wpa
service-template enable
#
wlan service-template 2 crypto
ssid TJISV-Guest
bind WLAN-ESS 1
cipher-suite ccmp
security-ie rsn
security-ie wpa
key-derivation sha1-and-sha256
service-template enable
#
wlan service-template 3 crypto
ssid PIPE
bind WLAN-ESS 2
cipher-suite wep40
cipher-suite ccmp
security-ie rsn
wep default-key 1 wep40 raw-key cipher $c$3$n1B+VM7HMi/RFqVWPEi6nCgoCLIhzXE0PVi7UeQ=
wep default-key 2 wep40 raw-key cipher $c$3$7OFryabbmENjjR0fWFZYA3v5ukBJjS0Dsn9kKgo=
wep key-id 2
service-template enable
#
wlan ap-group default_group
ap 222
ap 74ea-cb88-92e0
ap 74ea-cb88-93a0
ap 74ea-cb88-9440
ap 74ea-cb88-95e0
ap 74ea-cb88-9740
ap 74ea-cb88-9e20
ap 74ea-cb88-9ec0
ap 9428-2ef0-bda0
ap 9428-2ef0-cfc0
ap 9428-2ef1-1780
ap 9428-2ef1-2ba0
ap 9428-2ef1-42a0
ap 9c06-1bd8-d3a0
ap 9c06-1bd9-0200
ap 9c06-1bd9-0440
dot11a service-template 1
dot11a service-template 3
dot11bg service-template 1
dot11bg service-template 3
dot11a radio enable
dot11bg radio enable
#
interface Cellular1/0/1
async mode protocol
link-protocol ppp
#
interface NULL0
#
interface Vlan-interface1
#
interface Vlan-interface20
ip address 172.20.1.2 255.255.0.0
#
interface Vlan-interface30
ip address 172.30.1.2 255.255.0.0
#
interface GigabitEthernet1/0/3
port link-mode route
ip address 172.16.100.19 255.255.0.0
undo dhcp select server global-pool
#
interface GigabitEthernet1/0/5
port link-mode route
#
interface GigabitEthernet1/0/6
port link-mode route
#
interface GigabitEthernet1/0/1
port link-mode bridge
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 2 to 4094
#
interface GigabitEthernet1/0/2
port link-mode bridge
port link-type trunk
port trunk permit vlan all
dhcp-snooping trust
dhcp-snooping information enable
#
interface GigabitEthernet1/0/4
port link-mode bridge
#
interface WLAN-ESS0
port link-type hybrid
port hybrid vlan 1 50 70 untagged
port hybrid pvid vlan 50
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$d599mjyWKo1W+cMeTYlZRkeHplsiRdf5b/QE
#
interface WLAN-ESS1
port link-type hybrid
port hybrid vlan 1 60 untagged
port hybrid pvid vlan 60
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$TRBeAAWZLqCArshjNiFmjvP7Ug+2ica1ZlMp
#
interface WLAN-ESS2
port link-type hybrid
port hybrid vlan 1 20 30 untagged
port hybrid pvid vlan 20
dhcp-snooping trust
dhcp-snooping information enable
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$1qhp9jdG3JnQEHM4f7ekJELjsMIirkyVy+6VbQ==
#
wlan ap 222 model WA4320-ACN-E id 2
serial-id auto
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-92e0 model WA4320-ACN-E id 8
serial-id 219801A0X78177E00201
backup-ac ip 172.20.1.1
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-93a0 model WA4320-ACN-E id 5
serial-id 219801A0X78177E00207
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-9440 model WA4320-ACN-E id 12
serial-id 219801A0X78177E00212
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-95e0 model WA4320-ACN-E id 10
serial-id 219801A0X78177E00225
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-9740 model WA4320-ACN-E id 6
serial-id 219801A0X78177E00236
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-9e20 model WA4320-ACN-E id 11
serial-id 219801A0X78177E00291
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 74ea-cb88-9ec0 model WA4320-ACN-E id 7
serial-id 219801A0X78177E00296
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9428-2ef0-bda0 model WA4320-ACN-E id 15
serial-id 219801A0X78178E00399
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9428-2ef0-cfc0 model WA4320-ACN-E id 14
serial-id 219801A0X78178E00544
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9428-2ef1-1780 model WA4320-ACN-E id 16
serial-id 219801A0X78178E01118
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9428-2ef1-2ba0 model WA4320-ACN-E id 1
serial-id 219801A0X78178E01279
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9428-2ef1-42a0 model WA4320-ACN-E id 13
serial-id 219801A0X78178E01463
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9c06-1bd8-d3a0 model WA4320-ACN-E id 9
serial-id 219801A0X78174E02381
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9c06-1bd9-0200 model WA4320-ACN-E id 3
serial-id 219801A0X78174E02752
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ap 9c06-1bd9-0440 model WA4320-ACN-E id 4
serial-id 219801A0X78174E02770
radio 1
service-template 1
service-template 2
service-template 3
radio enable
radio 2
service-template 1
service-template 2
service-template 3
radio enable
#
wlan ips
malformed-detect-policy default
signature deauth_flood signature-id 1
signature broadcast_deauth_flood signature-id 2
signature disassoc_flood signature-id 3
signature broadcast_disassoc_flood signature-id 4
signature eapol_logoff_flood signature-id 5
signature eap_success_flood signature-id 6
signature eap_failure_flood signature-id 7
signature pspoll_flood signature-id 8
signature cts_flood signature-id 9
signature rts_flood signature-id 10
signature addba_req_flood signature-id 11
signature-policy default
countermeasure-policy default
attack-detect-policy default
virtual-security-domain default
attack-detect-policy default
malformed-detect-policy default
signature-policy default
countermeasure-policy default
#
ip route-static 0.0.0.0 0.0.0.0 172.20.1.1
#
undo info-center enable
#
ntp-service refclock-master 2
#
ssh server enable
#
load xml-configuration
#
user-interface con 0
user-interface tty 4
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
#
return
[AC-3]
--------------------------------------------------------------------------------------------------------------------------------------------
poe交换机配置
version 5.20.99, Release 1111
#
sysname H3C
#
dhcp relay server-group 1 ip 172.20.1.2
dhcp relay server-group 2 ip 172.30.1.2
#
domain default enable system
#
ipv6
#
telnet server enable
#
port-group-vlan 1
#
password-recovery enable
#
vlan 1
#
vlan 10
#
vlan 20
#
vlan 30
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
user-group system
group-attribute allow-guest
#
local-user admin
password cipher
authorization-attribute level 3
service-type telnet
service-type web
#
interface NULL0
#
interface Vlan-interface1
dhcp select relay
#
interface Vlan-interface10
ip address 172.16.100.18 255.255.0.0
#
interface Vlan-interface20
ip address 172.20.1.3 255.255.0.0
dhcp select relay
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/2
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
dhcp-snooping trust
#
interface GigabitEthernet1/0/3
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/4
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/5
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/6
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/7
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/8
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/9
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/10
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/11
port link-type trunk
port trunk permit vlan 1 10
poe enable
#
interface GigabitEthernet1/0/12
port link-type trunk
port trunk permit vlan all
poe enable
dhcp-snooping trust
#
interface GigabitEthernet1/0/13
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/14
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/15
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/16
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/17
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/18
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/19
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/20
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/21
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/22
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/23
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/24
port link-type trunk
port trunk permit vlan 1 20 30
poe enable
#
interface GigabitEthernet1/0/25
#
interface GigabitEthernet1/0/26
#
interface GigabitEthernet1/0/27
#
interface GigabitEthernet1/0/28
#
ip route-static 0.0.0.0 0.0.0.0 172.20.1.1
#
undo info-center logfile enable
#
dhcp enable
#
ssh server enable
#
load xml-configuration
#
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
protocol inbound ssh
user-interface vty 5 15
authentication-mode scheme
#
(0)
版本太低了。非受限局点请升级到最新版本
H3C WX2500E-CMW520-E3703P73版本软件及说明书-新华三集团-H3C
如果还异常,说明配置有问题或局点网络有问题
不过当前设备已停止技术支持,不太推荐升级。风险有点大。慎重考虑。
(0)
ac控制器上刚开启了dhcp功能,ac上的g1/0/1口连接poe交换机的g1/0/12口,vlan放通的全部。 现在ap还是获取不到ip地址
(0)
POE接口要port trunk pvid vlan
POE接口要port trunk pvid vlan
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明