3A实现telnet远程连接认证配置
AR1配置
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname AR1
[AR1]int g0/0/0
[AR1-GigabitEthernet0/0/0]ip address 192.168.100.1 24
Aug 10 2024 15:41:10-08:00 AR1 %%01IFNET/4/LINK_STATE(l)[1]:The line protocol IP
on the interface GigabitEthernet0/0/0 has entered the UP state.
[AR1-GigabitEthernet0/0/0]quit
aaa 用户管理
[AR1]aaa
[AR1-aaa]local-user admin password cipher 123456 #创建用户设置密码 cipher表示密码经过加密
[AR1-aaa]local-user admin privilege level 15 #用户级别为15,最高级别
[AR1-aaa]local-user admin service-type telnet #用户通过 telnet 服务类型进行登录
[AR1-aaa]quit
VTY用户配置
[AR1]user-interface vty 0 4 #VTY用户界面的配置模式,并指定了终端线路范围从0到
[AR1-ui-vty0-4]authenttication-mode aaa #VTY终端线路的身份验证模式设置为AAA
AR2配置
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname AR2
[AR2]int g0/0/0
[AR2-GigabitEthernet0/0/0]ip address 192.168.100.2 24
[AR2-GigabitEthernet0/0/0]quit
telnet 服务链接
<AR2>telnet 192.168.100.1
Press CTRL_] to quit telnet mode
Trying 192.168.100.1 ...
Connected to 192.168.100.1 ...
Login authentication
Username:admin
Password:
<AR1>
基于接口划分vlan
同一vlan 下同一网段能互相通信
交换机1配置
<Huawei>system-view #进入系统视图
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l1 #交换机重命名
Info: Information center is disabled.
[l1]vlan batch 10 20 #批量添加vlan 10,vlan 20
Info: This operation may take a few seconds. Please wait for a moment...done..
[l1]interface g0/0/2
[l1-GigabitEthernet0/0/2]port link-type access # 配置接口链路类型为access
[l1-GigabitEthernet0/0/2]port default vlan 10 # 配置接口划分到vlan 10
[l1-GigabitEthernet0/0/2]quit
[l1]interface g0/0/3
[l1-GigabitEthernet0/0/3]port link-type access
[l1-GigabitEthernet0/0/3]port default vlan 20
[l1-GigabitEthernet0/0/3]quit
[l1]interface g0/0/1
[l1-GigabitEthernet0/0/1]port link-type trunk # 配置接口链路类型为trunk
[l1-GigabitEthernet0/0/1]port trunk allow vlan 10 20 #配置允许通过 vlan10 ,vlan20
[l1-GigabitEthernet0/0/1]quit
[l1]quit
<l1>save
交换机2配置
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l2
[l2]un info en
Info: Information center is disabled.
[l2]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[l2]interface g0/0/2
[l2-GigabitEthernet0/0/2]port link-type access
[l2-GigabitEthernet0/0/2]port default vlan 10
[l2-GigabitEthernet0/0/2]quit
[l2]interface g0/0/3
[l2-GigabitEthernet0/0/3]port link-type access
[l2-GigabitEthernet0/0/3]port default vlan 20
[l2-GigabitEthernet0/0/3]quit
[l2]interface g0/0/1
[l2-GigabitEthernet0/0/1]port link-type trunk
[l2-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20
[l2-GigabitEthernet0/0/1]quit
[l2]quit
<l2>save
单臂路由划分vlan
同一个路由器下不同vlan 通信
容易出现单点故障
交换机配置
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l
[l]un info en
Info: Information center is disabled.
[l]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[l]interface g0/0/1
[l-GigabitEthernet0/0/1]port link-type trunk
[l-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20
[l-GigabitEthernet0/0/1]quit
[l]interface g0/0/2
[l-GigabitEthernet0/0/2]port link-type access
[l-GigabitEthernet0/0/2]port default vlan 10
[l-GigabitEthernet0/0/2]quit
[l]interface g0/0/3
[l-GigabitEthernet0/0/3]port link-type access
[l-GigabitEthernet0/0/3]port default vlan 20
[l-GigabitEthernet0/0/3]quit
路由器配置
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]un info en
Info: Information center is disabled.
[Huawei]sysname R1
[R1]interface g0/0/0.10 #创建子接口
[R1-GigabitEthernet0/0/0.10]dot1q termination vid 10 #配置子接口vid 是10
[R1-GigabitEthernet0/0/0.10]ip address 192.168.100.254 24 #配置接口IP地址是192.168.100.254 配置接口子网掩码是255.255.255.0
[R1-GigabitEthernet0/0/0.10]arp broadcast enable #开启arp 广播功能
[R1-GigabitEthernet0/0/0.10]quit
[R1]interface g0/0/0.20
[R1-GigabitEthernet0/0/0.20]dot1q termination vid 20
[R1-GigabitEthernet0/0/0.20]ip address 192.168.200.254 24
[R1-GigabitEthernet0/0/0.20]arp b
[R1-GigabitEthernet0/0/0.20]arp broadcast enable
[R1-GigabitEthernet0/0/0.20]quit
三层交换机vlanif配置
实现不同vlan之间通信
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l
[l]un info en
Info: Information center is disabled.
[l]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[l]interface g0/0/1
[l-GigabitEthernet0/0/1]port link-type trunk
[l-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20
[l-GigabitEthernet0/0/1]quit
[l]interface g0/0