undo shutdown user-vlan 200 210 bas
access-type layer2-subscriber default-domain #
interface Ethernet1/0/0.3
pppoe-server bind virtual-template 1 undo shutdown
user-vlan 300 310 authentication xiangtan
bas
access-type layer2-subscriber default-domain #
interface Ethernet1/0/0.10 /*这里用于管理vlan*/ undo shutdown user-vlan 999 bas
access-type layer2-subscriber default-domain authentication-method bind #
interface Ethernet1/0/1 undo shutdown #
interface Ethernet1/0/2 #
interface Ethernet1/0/3 /*此端口用于本地测试*/ pppoe-server bind virtual-template 1 undo shutdown bas
access-type layer2-subscriber default-domain #
interface Ethernet1/0/3.1 pppoe-server bind virtual-template 1 shutdown bas
access-type layer2-subscriber default-domain #
interface Ethernet1/0/4 undo shutdown bas
access-type layer2-subscriber default-domain authentication-method bind #
interface Ethernet1/0/4.1 shutdown
11 / 14
authentication xiangtan
authentication wangguan
authentication test
authentication test
authentication wangguan
bas
access-type layer2-subscriber default-domain authentication wangguan authentication-method bind #
interface Ethernet1/0/5
pppoe-server bind virtual-template 1 undo shutdown negotiation auto
bas access-type layer2-subscriber default-domain authentication wangguan #
interface Ethernet1/0/6 #
interface Ethernet1/0/7 #
interface Ethernet1/0/8 #
interface Ethernet1/0/9 #
interface Ethernet1/0/10 #
interface Ethernet1/0/11 #
interface Ethernet1/0/12 #
interface Ethernet1/0/13 #
interface Ethernet1/0/14 shutdown #
interface Ethernet1/0/15 shutdown #
interface GigabitEthernet2/0/0 /*配置上行接口 description TO xxxxx mtu 1514 /*对端mtu为1514,如果本端mtu不匹配,在启用ospf时会停留在exchang状态,而形成不了邻居*/ undo shutdown
undo negotiation auto /*关掉自协商,要不然灯都不会亮,呵呵*/ #
interface GigabitEthernet2/0/0.1 /*创建子接口*/ vlan-type dot1q vid 2 /*封装成802.1q ,vid为2 mtu 1514
undo shutdown
12 / 14
ip xxx.xxx.xxx.xxx #
interface GigabitEthernet2/0/1 #
interface NULL0 #
l2tp-group default-lac tunnel name Quidway #
l2tp-group default-lns tunnel name Quidway #
local-aaa-server /*这里就是建一些本地的aaa用户,用于telnet登录 user xxx@default_admin password simple ftp user xxx@default_admin ftp-directory hd:/
user xxx password cipher :$1IAC)ZASOQ=^Q`MAF4<1!! level 3 user xxx@test password simple 123 authentication-type P #
ip route-static 0.0.0.0 0.0.0.0 58.20.126.193 /*创建到对端的静态路由*/ #文档来自于网络搜索
snmp-agent /*网管的配置*/
snmp-agent local-engineid 800007DB0300E0FC7E716A snmp-agent community write xxxx /*必须*/ snmp-agent sys-info contact HuaWei-800-8302118
snmp-agent sys-info location HNCNC-XiangTan-GaoXinKeJiDaSha-2F snmp-agent sys-info version all /*指定版本,必须*/
snmp-agent trap enable system /*系统的trap消息,配置standard应该够了*/ snmp-agent trap enable standard /*一般只配置这一条*/ #
ssh user xxx@default_admin service-type stelnet /*这是配置本地3a用户自加上去的*/
ssh xxx xxx@test service-type xxxx
ssh user xxx service-type xxxx #
user-interface con 0 user-interface aux 0 user-interface vty 0 4 authentication-mode aaa /*配置telnet为3a认证模式,不配置的话telnet只有输密码的窗口,不会提示用户名*/
user privilege level 3 /*配置用户的访问级为3*/
set authentication password cipher J+&LKZP9EX'-MUG.\\aD]B1!!文档来自于网络搜索 13 / 14
/*设置认证密码,改成3a之后,这一步就不必了*/ #
return
14 / 14