交换机做三层配置添加vlan增加网段,1.3段为之前使用的,后面两个网段是新添加的,交换机上层接一台透明部署上网行为管理地址也是1.3段的,再往上是网关防火墙,现在只有1.3段可以正常上网,其他网段ping上网行为管理是通的,麻烦指导一下怎么解决其他两个网段也能上网
version 7.1.070, Release 3506P12
#
sysname H3C
#
irf mac-address persistent timer
irf auto-update enable
undo irf link-delay
irf member 1 priority 1
#
lldp global enable
#
interface range name 10 interface GigabitEthernet1/0/4 to GigabitEthernet1/0/12
interface range name 20 interface GigabitEthernet1/0/13 to GigabitEthernet1/0/18
interface range name 30 interface GigabitEthernet1/0/21 to GigabitEthernet1/0/26
#
password-recovery enable
#
vlan 1
#
vlan 10
#
vlan 20
#
vlan 30
#
stp global enable
#
interface NULL0
#
interface Vlan-interface1
dhcp client identifier ascii 0060db15180c77-VLAN0001
#
interface Vlan-interface10
ip address 192.1.3.240 255.255.255.0
#
interface Vlan-interface20
ip address 192.1.9.254 255.255.255.0
#
interface Vlan-interface30
ip address 192.168.2.254 255.255.255.0
#
interface GigabitEthernet1/0/1
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/2
port link-mode bridge
#
interface GigabitEthernet1/0/3
port link-mode bridge
port link-type trunk
port trunk permit vlan 1 10 20 30
#
interface GigabitEthernet1/0/4
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/5
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/6
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/7
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/8
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/9
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/10
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/11
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/12
port link-mode bridge
port access vlan 10
#
interface GigabitEthernet1/0/13
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet1/0/14
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet1/0/15
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet1/0/16
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet1/0/17
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet1/0/18
port link-mode bridge
port access vlan 20
#
interface GigabitEthernet1/0/19
port link-mode bridge
#
interface GigabitEthernet1/0/20
port link-mode bridge
#
interface GigabitEthernet1/0/21
port link-mode bridge
port access vlan 30
combo enable auto
#
interface GigabitEthernet1/0/22
port link-mode bridge
port access vlan 30
combo enable auto
#
interface GigabitEthernet1/0/23
port link-mode bridge
port access vlan 30
combo enable auto
#
interface GigabitEthernet1/0/24
port link-mode bridge
port access vlan 30
combo enable auto
#
interface GigabitEthernet1/0/25
port link-mode bridge
port access vlan 30
combo enable auto
#
interface GigabitEthernet1/0/26
port link-mode bridge
port access vlan 30
combo enable auto
#
interface GigabitEthernet1/0/27
port link-mode bridge
combo enable auto
#
interface GigabitEthernet1/0/28
port link-mode bridge
combo enable auto
#
interface M-GigabitEthernet0/0/0
dhcp client identifier hex 0260db15180c77
#
interface M-GigabitEthernet0/0/1
#
interface Ten-GigabitEthernet1/0/29
port link-mode bridge
#
interface Ten-GigabitEthernet1/0/30
port link-mode bridge
#
interface Ten-GigabitEthernet1/0/31
port link-mode bridge
#
interface Ten-GigabitEthernet1/0/32
port link-mode bridge
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 4
authentication-mode scheme
user-role network-operator
protocol inbound ssh
#
line vty 5 63
user-role network-operator
#
ip route-static 0.0.0.0 0 192.1.3.254
#
ssh server enable
#
radius scheme system
user-name-format without-domain
(0)
最佳答案
1、可不可以上网,主要设置在防火墙
2、交换机哪个口在接上面?
(0)
交换机的4口接上面的行为管理
防火墙增加回程路由
ip route-static 192.1.9.0 24 192.1.3.240
ip route-static 192.168.2.0 24 192.1.3.240
(1)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
好的,我写一条回程路由试一下