HCL模拟器的F1060把VLAN100划分进DMZ,并让DMZ区域内互通,求配置命令
(0)
最佳答案
[H3C]int GigabitEthernet 1/0/4
[H3C-GigabitEthernet1/0/4]port link-mode bridge
[H3C-GigabitEthernet1/0/4]port access vlan 100
[H3C-GigabitEthernet1/0/4]int GigabitEthernet 1/0/5
[H3C-GigabitEthernet1/0/5]port link-mode bridge
[H3C-GigabitEthernet1/0/5]port access vlan 100
[H3C]security-zone name dmz
[H3C-security-zone-DMZ]import interface GigabitEthernet 1/0/4 vlan 100
[H3C-security-zone-DMZ]import interface GigabitEthernet 1/0/5 vlan 100
[H3C]security-policy ip
[H3C-security-policy-ip]rule 13 name 14
[H3C-security-policy-ip-13-14]action pass
[H3C-security-policy-ip-13-14]source-zone dmz
[H3C-security-policy-ip-13-14]destination-zone dmz
(0)
PCping不通192.168.100.254
[H3C]security-policy ip [H3C-security-policy-ip]rule 13 name 14 [H3C-security-policy-ip-13-14]action pass [H3C-security-policy-ip-13-14]source-zone dmz [H3C-security-policy-ip-13-14]source-zone local [H3C-security-policy-ip-13-14]destination-zone dmz [H3C-security-policy-ip-13-14]destination-zone local
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
[H3C]security-policy ip [H3C-security-policy-ip]rule 13 name 14 [H3C-security-policy-ip-13-14]action pass [H3C-security-policy-ip-13-14]source-zone dmz [H3C-security-policy-ip-13-14]source-zone local [H3C-security-policy-ip-13-14]destination-zone dmz [H3C-security-policy-ip-13-14]destination-zone local