网络环境是这样的 出口是H3C的msr-2600路由 中间桥接H3C acg 1000 连接H3C S5560当核心交换想用acg1000 管理无线,想添加网页认证。按照手册配置完成后也出现网页登录页面了。但是就是打不开网页。请问下,除了acg1000需要配置 ,路由和核心交换机也需要配置吗?跪求配置模板
核心配置
[WTXX_S5560_HX]
#
version 7.1.064, ESS 1202
#
sysname WTXX_S5560_HX
#
telnet server enable
# irf mac-address persistent timer irf auto-update enable undo irf link-delay irf member 1 priority 1 #
dhcp enable dhcp server forbidden-ip 172.16.94.1 172.16.94.10
dhcp server forbidden-ip 192.168.3.1 192.168.3.10 #
lldp global enable
#
password-recovery enable
# vlan 1 # vlan 2 to 100 #
stp global enable
#
dhcp server ip-pool AP_zhuce
gateway-list 172.16.94.1
network 172.16.94.0 mask 255.255.255.0
# dhcp server ip-pool wlan gateway-list 192.168.3.1 network 192.168.2.0 mask 255.255.254.0 dns-list 202.99.96.68 202.99.104.68
# dhcp server ip-pool youxian gateway-list 192.168.1.1 network 192.168.1.0 mask 255.255.255.0 dns-list 202.99.96.68 202.99.104.68 #
wlan service-template 2 ssid wutong vlan 3 akm mode psk preshared-key pass-phrase cipher $c$3$YOi3IA+U7F8/i9U+2IOdyLwNVr/TYZkNgrQl cipher-suite ccmp security-ie rsn service-template enable
#
interface NULL0
# interface Vlan-interface1 ip address 192.168.1.1 255.255.255.0
#
interface Vlan-interface3
ip address 192.168.3.1 255.255.254.0
#
interface Vlan-interface10 description to **GuanLi* ip address 192.168.10.1 255.255.255.0 # i
nterface Vlan-interface94 description to **AP_zhuce** ip address 172.16.94.1 255.255.255.0
# interface Vlan-interface100 description to-MSR2600 ip address 192.168.100.2 255.255.255.252 #
interface FortyGigE1/0/53
port link-mode bridge
#
interface FortyGigE1/0/54
port link-mode bridge
# interface GigabitEthernet1/0/1 port link-mode bridge port access vlan 100
#
interface GigabitEthernet1/0/2
port link-mode bridge
port access vlan 100
# interface GigabitEthernet1/0/3 port link-mode bridge #
interface GigabitEthernet1/0/4 port link-mode bridge port access vlan 100 #
interface GigabitEthernet1/0/5 port link-mode bridge #
interface GigabitEthernet1/0/6
port link-mode bridge
#
interface GigabitEthernet1/0/7
port link-mode bridge
#
interface GigabitEthernet1/0/8 port link-mode bridge #
interface GigabitEthernet1/0/9
port link-mode bridge
#
interface GigabitEthernet1/0/10 port link-mode bridge #
interface GigabitEthernet1/0/11
port link-mode bridge
#
interface GigabitEthernet1/0/12
port link-mode bridge
#
interface GigabitEthernet1/0/13 port link-mode bridge #
interface GigabitEthernet1/0/14 port link-mode bridge #
interface GigabitEthernet1/0/15 port link-mode bridge #
interface GigabitEthernet1/0/16
port link-mode bridge
#
interface GigabitEthernet1/0/17
port link-mode bridge
#
interface GigabitEthernet1/0/18
port link-mode bridge
#
interface GigabitEthernet1/0/19 port link-mode bridge #
interface GigabitEthernet1/0/20
port link-mode bridge
#
interface GigabitEthernet1/0/21 port link-mode bridge #
interface GigabitEthernet1/0/22 port link-mode bridge #
interface GigabitEthernet1/0/23 port link-mode bridge #
interface GigabitEthernet1/0/24
port link-mode bridge
#
interface GigabitEthernet1/0/25 port link-mode bridge #
interface GigabitEthernet1/0/26 port link-mode bridge #
interface GigabitEthernet1/0/27 port link-mode bridge # i
nterface GigabitEthernet1/0/28
port link-mode bridge
#
interface GigabitEthernet1/0/29
port link-mode bridge
#
interface GigabitEthernet1/0/30
port link-mode bridge
#
interface GigabitEthernet1/0/31
port link-mode bridge
#
interface GigabitEthernet1/0/32
port link-mode bridge
#
interface GigabitEthernet1/0/33
port link-mode bridge
#
interface GigabitEthernet1/0/34
port link-mode bridge
#
interface GigabitEthernet1/0/35
port link-mode bridge
#
interface GigabitEthernet1/0/36
port link-mode bridge
#
interface GigabitEthernet1/0/37
port link-mode bridge
#
interface GigabitEthernet1/0/38
port link-mode bridge
#
interface GigabitEthernet1/0/39
port link-mode bridge
#
interface GigabitEthernet1/0/40
port link-mode bridge
#
interface GigabitEthernet1/0/41
port link-mode bridge
#
interface GigabitEthernet1/0/42
port link-mode bridge
#
interface GigabitEthernet1/0/43
port link-mode bridge
#
interface GigabitEthernet1/0/44
port link-mode bridge
#
interface GigabitEthernet1/0/45
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/46
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/47
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface GigabitEthernet1/0/48
port link-mode bridge
port link-type trunk
port trunk permit vlan all
#
interface M-GigabitEthernet0/0/0
#
interface M-GigabitEthernet0/0/1
#
interface Ten-GigabitEthernet1/0/49 port link-mode bridge port link-type trunk port trunk permit vlan all # interface Ten-GigabitEthernet1/0/50 port link-mode bridge port link-type trunk port trunk permit vlan all # interface Ten-GigabitEthernet1/0/51 port link-mode bridge port link-type trunk port trunk permit vlan all #
interface Ten-GigabitEthernet1/0/52 port link-mode bridge port link-type trunk port trunk permit vlan all # scheduler logfile size 16 # line class aux user-role network-admin #
line class vty user-role network-operator # line aux 0 user-role network-admin # line vty 0 4 authentication-mode scheme user-role network-operator #
line vty 5 63
user-role network-operator
#
ip route-static 0.0.0.0 0 192.168.100.1
#
radius scheme system
user-name-format without-domain
---- More ----
#
user-group system
#
local-user admin class manage
password hash $h$6$sgDfMB1av2EvS6UV$74FauP7355WXhUg92K6yiMrSspR+geCqvvjrupAoaIo
COtzBhJjHzXhBSqz6wVTTX8MVmmEXPYtLsMgQ01YMaQ==
service-type telnet
authorization-attribute user-role network-admin
authorization-attribute user-role network-operator
#
wlan global-configuration
#
wlan ap-group default-group
#
wlan ap ap01 model WA4320i-ACN
serial-id 210235A1GQC159002241
radio 1
channel 149
radio enable
service-template 2
radio 2
channel 1
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap02 model WA4320i-ACN
serial-id 210235A1GQC159002183
radio 1
channel 153
radio enable
service-template 2
radio 2
channel 6
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap03 model WA4320i-ACN
serial-id 210235A1GQC159002135
radio 1
channel 157
radio enable
service-template 2
radio 2
channel 11
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap04 model WA4320i-ACN
serial-id 210235A1GQC159002247
radio 1
channel 161
radio enable
service-template 2
radio 2
channel 1
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap05 model WA4320i-ACN
serial-id 210235A1GQC159002171
radio 1
channel 165
radio enable
service-template 2
radio 2
channel 6
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap06 model WA4320i-ACN
serial-id 210235A1GQC159002232
radio 1
channel 149
radio enable
service-template 2
radio 2
channel 6
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
wlan ap ap07 model WA4320i-ACN
serial-id 210235A1GQC159002225
radio 1
channel 165
radio enable
service-template 2
radio 2
channel 11
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap08 model WA4320i-ACN
serial-id 210235A1GQC159002202
radio 1
channel 161
radio enable
service-template 2
radio 2
channel 1
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
# wlan ap ap09 model WA4320i-ACN serial-id 210235A1GQC159002122 radio 1 channel 157 radio enable service-template 2 radio 2 channel 6 radio enable service-template 2 gigabitethernet 1 gigabitethernet 2
#
wlan ap ap10 model WA4320i-ACN
serial-id 210235A1GQC159002291
radio 1
channel 153
radio enable
service-template 2
radio 2
channel 11
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap11 model WA4320i-ACN
serial-id 210235A1GQC159002131
radio 1
channel 149
radio enable
service-template 2
radio 2
channel 6
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
#
wlan ap ap12 model WA4320i-ACN
serial-id 210235A1GQC159002197
radio 1
channel 153
radio enable
service-template 2
radio 2
channel 11
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
# wlan ap ap13 model WA4320i-ACN serial-id 210235A1GQC159002238 radio 1 channel 157 radio enable service-template 2 radio 2 channel 1 radio enable service-template 2 gigabitethernet 1 gigabitethernet 2
#
wlan ap ap14 model WA4320i-ACN
serial-id 210235A1GQC159002146
radio 1
channel 161
radio enable
service-template 2
radio 2
channel 6
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
# wlan ap ap15 model WA4320i-ACN serial-id 210235A1GQC159002204 radio 1 channel 165 radio enable service-template 2 radio 2 channel 11 radio enable service-template 2 gigabitethernet 1 gigabitethernet 2
#
wlan ap ap16 model WA4320i-ACN
serial-id 210235A1GQC159002200
radio 1
channel 149
radio enable
service-template 2
radio 2
channel 1
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
# wlan ap ap17 model WA4320i-ACN serial-id 210235A1GQC159002168 radio 1 channel 165 radio enable service-template 2 radio 2 channel 1 radio enable service-template 2 gigabitethernet 1 gigabitethernet 2
#
wlan ap ap18 model WA4320i-ACN
serial-id 210235A1GQC159002220
radio 1
channel 161
radio enable
service-template 2
radio 2
channel 6
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
# wlan ap ap19 model WA4320i-ACN serial-id 210235A1GQC159002088 radio 1 channel 149 radio enable service-template 2 radio 2 channel 11 radio enable service-template 2 gigabitethernet 1 gigabitethernet 2
#
wlan ap ap20 model WA4320i-ACN
serial-id 210235A1GQC159002076
radio 1
channel 153
radio enable
service-template 2
radio 2
channel 1
radio enable
service-template 2
gigabitethernet 1
gigabitethernet 2
路由配置:
version 5.20, Release 2513P21
#
sysname WTXX-2600-router
#
domain default enable system
#
dar p2p signature-file flash:/p2p_default.mtd
#
port-security enable
#
undo ip http enable
#
password-recovery enable
#
acl number 2000 rule 0 permit #
vlan 1 # domain system access-limit disable state active idle-cut disable self-service-url disable
# user-group system group-attribute allow-guest
#
local-user admin
password cipher $c$3$mr9eeMnCuUXSXG3gU+QO50T4KgGwEm+T280b9r+a
authorization-attribute level 3
service-type telnet
#
cwmp
undo cwmp enable
#
interface Aux0
async mode flow
link-protocol ppp
#
interface Cellular0/0
async mode protocol
link-protocol ppp
#
interface Dialer1
nat outbound 2000
link-protocol ppp
ppp chap user 83852330
ppp chap password cipher $c$3$Jc0wZ3Ov8Pe9eH7CMDWyzWXJ2ek23SkNbfF9
ppp pap local-user 83852330 password cipher $c$3$o45oA4NFNiHgA0ZjyNWD9g/64bSbeJ
QmZLDb
ip address ppp-negotiate
tcp mss 1400
dialer user 83852330
dialer-group 1
dialer bundle 1
#
interface NULL0
#
interface GigabitEthernet0/0
port link-mode route
pppoe-client dial-bundle-number 1
#
interface GigabitEthernet0/1
port link-mode route
ip address 192.168.100.1 255.255.255.252
#
interface GigabitEthernet0/2
port link-mode bridge
#
interface GigabitEthernet0/3
port link-mode bridge
#
interface GigabitEthernet0/4
port link-mode bridge
#
interface GigabitEthernet0/5
port link-mode bridge
#
interface GigabitEthernet0/6
port link-mode bridge
#
interface GigabitEthernet0/7
port link-mode bridge
#
interface GigabitEthernet0/8
port link-mode bridge
#
interface GigabitEthernet0/9
port link-mode bridge
#
ip route-static 0.0.0.0 0.0.0.0 Dialer1
ip route-static 192.168.1.0 255.255.255.0 192.168.100.2
ip route-static 192.168.2.0 255.255.254.0 192.168.100.2
ip route-static 192.168.3.0 255.255.255.0 192.168.100.2
# load xml-configuration # load tr069-configuration # user-interface tty 12 user-interface aux 0 user-interface vty 0 4 authentication-mode scheme # return [WTXX-2600-router]
(0)
最佳答案
ACG做认证吗?什么认证方式?
http://www.h3c.com/cn/Service/Document_Software/Document_Center/IP_Security/ACG/H3C_SecPath_ACG1000/Configure/Typical_Configuration_Example/H3C_ACG1000_CE-(E6411_R6609)-6W102/
(0)
用的本地WEB认证
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
用的本地WEB认证