h3c路由器命令大全

热点事件 2023-08-21 07:35www.nygn.cn今日热点事件

  路由器命令

  ~~~~~~~~~~

  [Quiday]display version 显示版本信息

  [Quiday]display current-configuration 显示当前配置

  [Quiday]display interfaces 显示接口信息

  [Quiday]display ip route 显示路由信息

  [Quiday]sysname aabbcc 更改主机名

  [Quiday]super passrod 123456 设置口令

  [Quiday]interface serial0 进入接口

  [Quiday-serial0]ip address

  [Quiday-serial0]undo shutdon 激活端口

  [Quiday]link-protocol hdlc 绑定hdlc协议

  [Quiday]user-interface vty 0 4

  [Quiday-ui-vty0-4]authentication-mode passord

  [Quiday-ui-vty0-4]set authentication-mode passord simple 222

  [Quiday-ui-vty0-4]user privilege level 3

  [Quiday-ui-vty0-4]quit

  [Quiday]debugging hdlc all serial0 显示所有信息

  [Quiday]debugging hdlc event serial0 调试事件信息

  [Quiday]debugging hdlc packet serial0 显示包的信息

  静态路由

  [Quiday]ip route-static {interface number|nexthop}[value][reject|blackhole]

  例如

  [Quiday]ip route-static 129.1.0.0 16 10.0.0.2

  [Quiday]ip route-static 129.1.0.0 255.255.0.0 10.0.0.2

  [Quiday]ip route-static 129.1.0.0 16 Serial 2

  [Quiday]ip route-static 0.0.0.0 0.0.0.0 10.0.0.2

  动态路由

  [Quiday]rip

  [Quiday]rip ork

  [Quiday]rip input

  [Quiday]rip output

  [Quiday-rip]netork 1.0.0.0 ;可以all

  [Quiday-rip]netork 2.0.0.0

  [Quiday-rip]peer ip-address

  [Quiday-rip]summary

  [Quiday]rip version 1

  [Quiday]rip version 2 multicast

  [Quiday-Ethernet0]rip split-horizon ;水平分隔

  [Quiday]router id A.B.C.D 配置路由器的ID

  [Quiday]ospf enable 启动OSPF协议

  [Quiday-ospf]import-route direct 引入直联路由

  [Quiday-Serial0]ospf enable area 配置OSPF区域

  标准访问列表命令格式如下

  acl [match-order config|auto] 默认前者顺序匹配。

  rule [normal|special]{permit|deny} [source source-addr source-ildcard|any]

  例

  [Quiday]acl 10

  [Quiday-acl-10]rule normal permit source 10.0.0.0 0.0.0.255

  [Quiday-acl-10]rule normal deny source any

  扩展访问控制列表配置命令

  配置TCP/UDP协议的扩展访问列表

  rule {normal|special}{permit|deny}{tcp|udp}source {|any}destination |any}

  [operate]

  配置ICMP协议的扩展访问列表

  rule {normal|special}{permit|deny}icmp source {|any]destination {|any]

  [icmp-code] [logging]

  扩展访问控制列表操作符的含义

  equal portnumber 等于

  greater-than portnumber 大于

  less-than portnumber 小于

  not-equal portnumber 不等

  range portnumber1 portnumber2 区间

  扩展访问控制列表举例

  [Quiday]acl 101

  [Quiday-acl-101]rule deny souce any destination any

  [Quiday-acl-101]rule permit icmp source any destination any icmp-type echo

  [Quiday-acl-101]rule permit icmp source any destination any icmp-type echo-reply

  [Quiday]acl 102

  [Quiday-acl-102]rule permit ip source 10.0.0.1 0.0.0.0 destination 202.0.0.1 0.0.0.0

  [Quiday-acl-102]rule deny ip source any destination any

  [Quiday]acl 103

  [Quiday-acl-103]rule permit tcp source any destination 10.0.0.1 0.0.0.0 destination-port equal ftp

  [Quiday-acl-103]rule permit tcp source any destination 10.0.0.2 0.0.0.0 destination-port equal

  [Quiday]fireall enable

  [Quiday]fireall default permit|deny

  [Quiday]int e0

  [Quiday-Ethernet0]fireall packet-filter 101 inbound|outbound

  地址转换配置举例

  [Quiday]fireall enable

  [Quiday]fireall default permit

  [Quiday]acl 101

  [Quiday-acl-101]rule deny ip source any destination any

  [Quiday-acl-101]rule permit ip source 129.38.1.4 0 destination any

  [Quiday-acl-101]rule permit ip source 129.38.1.1 0 destination any

  [Quiday-acl-101]rule permit ip source 129.38.1.2 0 destination any

  [Quiday-acl-101]rule permit ip source 129.38.1.3 0 destination any

  [Quiday]acl 102

  [Quiday-acl-102]rule permit tcp source 202.39.2.3 0 destination 202.38.160.1 0

  [Quiday-acl-102]rule permit tcp source any destination 202.38.160.1 0 destination-port great-than

  1024

  [Quiday-Ethernet0]fireall packet-filter 101 inbound

  [Quiday-Serial0]fireall packet-filter 102 inbound

  [Quiday]nat address-group 202.38.160.101 202.38.160.103 pool1

  [Quiday]acl 1

  [Quiday-acl-1]rule permit source 10.110.10.0 0.0.0.255

  [Quiday-acl-1]rule deny source any

  [Quiday-acl-1]int serial 0

  [Quiday-Serial0]nat outbound 1 address-group pool1

  [Quiday-Serial0]nat server global 202.38.160.101 inside 10.110.10.1 ftp tcp

  [Quiday-Serial0]nat server global 202.38.160.102 inside 10.110.10.2 tcp

  [Quiday-Serial0]nat server global 202.38.160.102 8080 inside 10.110.10.3 tcp

  [Quiday-Serial0]nat server global 202.38.160.103 inside 10.110.10.4 tp udp

  PPP验证

  主验方pap|chap

  [Quiday]local-user u2 passord {simple|cipher} aaa

  [Quiday]interface serial 0

  [Quiday-serial0]ppp authentication-mode {pap|chap}

  [Quiday-serial0]ppp chap user u1 //pap时,不用此句

  pap被验方

  [Quiday]interface serial 0

  [Quiday-serial0]ppp pap local-user u2 passord {simple|cipher} aaa

  chap被验方

  [Quiday]interface serial 0

  [Quiday-serial0]ppp chap user u1

  [Quiday-serial0]local-user u2 passord {simple|cipher} aaa

Copyright © 2016-2025 www.nygn.cn 趣怪网 版权所有 Power by