网络拓扑,5500一台,5130三台,多VLAN。
用台式可以联通外网,但是切交换机后,在VLAN下不行。
在交换机上可以PING通公网dns地址。
#interface GigabitEthernet1/0/47
port link-mode bridge
port access vlan 99
#Vlan-interface99
ip address 192.168.28.178 255.255.255.248
# route-static 0.0.0.0 0 192.168.28.177
#
version 7.1.070, ESS 1110P05
#
sysname H3C-1
#
irf mac-address persistent timer
irf auto-update enable
undo irf link-delay
irf member 1 priority 3
#
dhcp enable
#
lldp global enable
#
password-recovery enable
#
vlan 1
description yunwei
#
vlan 10
description HuaBeiPeiXun
#
vlan 11
description kefanggongwang
#
vlan 43
description kefangneiwang
#
vlan 44
description bangongneiwang
#
vlan 99
description WAN
#
vlan 100
description hbpxbg
#
vlan 101
description qiantai
#
stp global enable
#
dhcp server ip-pool 10.52.43.0
gateway-list 10.52.43.1
network 10.52.43.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
expired day 2
#
dhcp server ip-pool 10.52.44.0
gateway-list 10.52.44.1
network 10.52.44.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
expired day 30
#
dhcp server ip-pool 192.168.0.0
gateway-list 192.168.0.1
network 192.168.0.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
expired day 0 hour 8
#
dhcp server ip-pool 192.168.1.0
gateway-list 192.168.1.1
network 192.168.1.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
#
dhcp server ip-pool 192.168.10.0
gateway-list 192.168.10.1
network 192.168.10.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
expired day 7
#
dhcp server ip-pool 192.168.100.0
gateway-list 192.168.100.1
network 192.168.100.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
expired day 100
#
dhcp server ip-pool 192.168.11.0
gateway-list 192.168.11.1
network 192.168.11.0 mask 255.255.255.0
dns-list 223.5.5.5 223.6.6.6 114.114.114.114
expired day 30
#
interface NULL0
#
interface Vlan-interface1
ip address 192.168.100.101 255.255.255.0
#
interface Vlan-interface10
ip address 192.168.0.1 255.255.255.0
#
interface Vlan-interface43
ip address 10.52.43.1 255.255.255.0
#
interface Vlan-interface44
ip address 10.52.44.1 255.255.255.0
#
interface Vlan-interface99
ip address 192.168.28.178 255.255.255.248
#
interface Vlan-interface100
ip address 192.168.10.1 255.255.255.0
#
interface Vlan-interface101
ip address 192.168.11.1 255.255.255.0
#
interface FortyGigE1/0/53
port link-mode bridge
#
interface FortyGigE1/0/54
port link-mode bridge
#
interface GigabitEthernet1/0/1
port link-mode bridge
#
省略
#
interface GigabitEthernet1/0/36
port link-mode bridge
#
interface GigabitEthernet1/0/37
port link-mode bridge
port link-type trunk
port trunk permit vlan 1 to 1000
#
interface GigabitEthernet1/0/38
port link-mode bridge
#
interface GigabitEthernet1/0/39
port link-mode bridge
port link-type trunk
port trunk permit vlan 1 to 1000
#
interface GigabitEthernet1/0/40
port link-mode bridge
#
interface GigabitEthernet1/0/41
port link-mode bridge
port link-type trunk
port trunk permit vlan 1 to 1000
#
interface GigabitEthernet1/0/42
port link-mode bridge
#
interface GigabitEthernet1/0/43
port link-mode bridge
#
interface GigabitEthernet1/0/44
port link-mode bridge
#
interface GigabitEthernet1/0/45
port link-mode bridge
#
interface GigabitEthernet1/0/46
port link-mode bridge
#
interface GigabitEthernet1/0/47
port link-mode bridge
port access vlan 99
#
interface GigabitEthernet1/0/48
port link-mode bridge
#
interface GigabitEthernet1/0/49
port link-mode bridge
#
interface GigabitEthernet1/0/50
port link-mode bridge
#
interface M-GigabitEthernet0/0/0
undo dhcp select server
#
interface Ten-GigabitEthernet1/0/51
port link-mode bridge
#
interface Ten-GigabitEthernet1/0/52
port link-mode bridge
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 63
user-role network-operator
#
ip route-static 0.0.0.0 0 192.168.28.177
#
radius scheme system
user-name-format without-domain
#
domain system
#
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
省略
#
role name level-14
description Predefined level-14 role
#
user-group system
#
local-user hbpx class manage
password hash $h$6$A0boum1NPO7VhAT/$ThJVWfnk2DNdfp50hHT5Qo2tibVcBIm5v7z5QaQT5DVI2CbqO9q+zOMvBjKMPyO4Y4dv0SXX8ZYYr/UKcLZHaA==
service-type http
authorization-attribute user-role network-admin
authorization-attribute user-role network-operator
#
ip http enable
ip https enable
#
return
(0)
最佳答案
能简要描述下互联情况,拓扑吗?配置有些眼花缭乱,
(0)
简单的说,就是我用电脑可以上网,中间加上了交换机就不行了
目的就是三层交换机划分多vlan后通过路由器上网 ,
这个简单,交换机连接路由器接口模式配置为access ,起int vlan 接口做为三层互联使用,交换机接下行接入或者PC,如果是接接入交换机,接入交换机有划VLAN,则三层交换机配置为trunk模式,起int vlan 接口,并配置默认路由指向路由器,路由器写明细路由到交换机下行的三个网段,类似于单臂路由
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
这个简单,交换机连接路由器接口模式配置为access ,起int vlan 接口做为三层互联使用,交换机接下行接入或者PC,如果是接接入交换机,接入交换机有划VLAN,则三层交换机配置为trunk模式,起int vlan 接口,并配置默认路由指向路由器,路由器写明细路由到交换机下行的三个网段,类似于单臂路由