华为3928与思科2950,VLAN设置问题
点击次数:1506 发布时间:2009年04月02日 作者:计算中心 字体大小:
光纤过思科防火墙后,接入华为3928交换机端口1北加入VLAN2,由华为3928做录由负责单位其它计算机上网.除了默认VLAN1,我还在交换机器上按科室划分的若干VLAN.配置好IP后均可上网.
端口21,连接下属一部门的思科2950交换机,该部门因机器非常多,所以也想划分一下VLAN,21端口已设置成TRUNK模式,并在3928上新添加了VALN19 192.168.150.254 VLAN20192.168.160.254,思科2950上端口1设置为TRUNK 也配置了VALN19 VLAN20,NAME也都一样,但问题是2950上除了默认的VLAN1可以上网外,其余我后加入的VLAN都不能上网,也不能PING通个自的网关.
华为3928配置:
display curr
display current-configuration
#
sysname Quidway
#
radius scheme system
#
domain system
#
local-user huawei
password simple huawei
service-type telnet
level 3
#
acl number 2000 match-order auto
#
vlan 1
#
vlan 2
#
vlan 3
name wangtong
#
vlan 4
description zhaoshang1
#
vlan 5
description zhaoshang2
#
vlan 6
description xinxi
#
vlan 7
description bangongshi
#
vlan 8
description caiwu
#
vlan 10
description jijianbu
#
vlan 11
description linyili
#
vlan 14
description reli
#
vlan 16
description gongdian
#
vlan 19
name shebao
#
vlan 20
description jisheng
#
interface Vlan-interface1
ip address 172.17.1.248 255.255.255.0
#
interface Vlan-interface2
ip address 192.168.2.1 255.255.255.0
#
interface Vlan-interface3
ip address 10.97.101.58 255.255.255.0
#
interface Vlan-interface4
ip address 192.168.10.254 255.255.255.0
#
interface Vlan-interface5
ip address 192.168.20.254 255.255.255.0
#
interface Vlan-interface6
ip address 192.168.12.254 255.255.255.0
#
interface Vlan-interface7
ip address 192.168.40.254 255.255.255.0
#
interface Vlan-interface8
ip address 192.168.50.254 255.255.255.0
#
interface Vlan-interface10
ip address 192.168.70.254 255.255.255.0
#
interface Vlan-interface11
ip address 192.168.80.254 255.255.255.0
#
interface Vlan-interface14
ip address 192.168.110.254 255.255.255.0
#
interface Vlan-interface16
ip address 192.168.130.254 255.255.255.0
#
interface Vlan-interface19
ip address 192.168.150.254 255.255.255.0
#
interface Vlan-interface20
ip address 192.168.160.254 255.255.255.0
#
interface Aux1/0/0
#
interface Ethernet1/0/1
port access vlan 2
#
interface Ethernet1/0/2
#
interface Ethernet1/0/3
#
interface Ethernet1/0/4
#
interface Ethernet1/0/5
flow-control
#
interface Ethernet1/0/6
port access vlan 19
#
interface Ethernet1/0/7
#
interface Ethernet1/0/8
port access vlan 6
#
interface Ethernet1/0/9
flow-control
port access vlan 4
#
interface Ethernet1/0/10
#
interface Ethernet1/0/11
port access vlan 6
#
interface Ethernet1/0/12
port access vlan 10
#
interface Ethernet1/0/13
port access vlan 8
#
interface Ethernet1/0/14
port access vlan 5
#
interface Ethernet1/0/15
port access vlan 5
#
interface Ethernet1/0/16
port access vlan 6
#
interface Ethernet1/0/17
#
interface Ethernet1/0/18
port access vlan 11
#
interface Ethernet1/0/19
port access vlan 16
#
interface Ethernet1/0/20
port access vlan 14
#
interface Ethernet1/0/21
speed 100
port link-type trunk
port trunk permit vlan 1 19 to 20
flow-control
dot1x port-method portbased
dot1x
dot1x supp-proxy-check trap
dot1x supp-proxy-check logoff
#
interface Ethernet1/0/22
#
interface Ethernet1/0/23
duplex full
speed 10
#
interface Ethernet1/0/24
port access vlan 7
line-rate inbound 1024
line-rate outbound 1024
#
interface GigabitEthernet1/1/1
#
interface GigabitEthernet1/1/2
#
interface GigabitEthernet1/1/3
#
interface GigabitEthernet1/1/4
#
undo irf-fabric authentication-mode
#
interface NULL0
#
voice vlan mac-address 0001-e300-0000 mask ffff-ff00-0000
#
ip route-static 0.0.0.0 0.0.0.0 192.168.2.254 preference 60
ip route-static 0.0.0.0 0.0.0.0 10.97.101.57 preference 80
#
snmp-agent
snmp-agent local-engineid 800007DB000FE2307B8A6877
snmp-agent sys-info version all
snmp-agent group v1 admin
snmp-agent group v2c admin write-view ViewDefault notify-view ViewDefault
snmp-agent group v3 admin write-view ViewDefault notify-view ViewDefault
snmp-agent usm-user v1 wlg admin
snmp-agent usm-user v2c wlg admin
snmp-agent usm-user v3 wlg admin
#
user-interface aux 0 7
user-interface vty 0 4
#
return
思科2950配置
Switch#show run
Building configuration...
Current configuration : 1569 bytes
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname Switch
!
!
ip subnet-zero
!
spanning-tree mode pvst
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
!
!
interface FastEthernet0/1
switchport mode trunk
no ip address
!
interface FastEthernet0/2
no ip address
!
interface FastEthernet0/3
no ip address
!
interface FastEthernet0/4
no ip address
!
interface FastEthernet0/5
no ip address
!
interface FastEthernet0/6
no ip address
!
interface FastEthernet0/7
switchport access vlan 19
switchport mode access
no ip address
!
interface FastEthernet0/8
no ip address
!
interface FastEthernet0/9
no ip address
!
interface FastEthernet0/10
no ip address
!
interface FastEthernet0/11
no ip address
!
interface FastEthernet0/12
no ip address
!
interface FastEthernet0/13
no ip address
!
interface FastEthernet0/14
no ip address
!
interface FastEthernet0/15
no ip address
!
interface FastEthernet0/16
no ip address
!
interface FastEthernet0/17
no ip address
!
interface FastEthernet0/18
no ip address
!
interface FastEthernet0/19
no ip address
!
interface FastEthernet0/20
no ip address
!
interface FastEthernet0/21
no ip address
!
interface FastEthernet0/22
no ip address
!
interface FastEthernet0/23
no ip address
!
interface FastEthernet0/24
no ip address
!
interface Vlan1
ip address 172.17.1.247 255.255.255.0
no ip route-cache
!
ip http server
!
snmp-server community pub RW
!
line con 0
line vty 0 4
login
line vty 5 15
login
!
end
Switch#show vlan
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa0/2, Fa0/3, Fa0/4, Fa0/5
Fa0/6, Fa0/8, Fa0/9, Fa0/10
Fa0/11, Fa0/12, Fa0/13, Fa0/14
Fa0/15, Fa0/16, Fa0/17, Fa0/18
Fa0/19, Fa0/20, Fa0/21, Fa0/22
Fa0/23, Fa0/24
4 zhaoshang1 active
19 shebao active Fa0/7
1002 fddi-default active
1003 token-ring-default active
1004 fddinet-default active
1005 trnet-default active
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1 enet 100001 1500 - - - - - 0 0
4 enet 100004 1500 - - - - - 0 0
19 enet 100019 1500 - - - - - 0 0
1002 fddi 101002 1500 - - - - - 0 0
1003 tr 101003 1500 - - - - - 0 0
1004 fdnet 101004 1500 - - - ieee - 0 0
1005 trnet 101005 1500 - - - ibm - 0 0
Remote SPAN VLANs
------------------------------------------------------------------------------
Primary Secondary Type Ports
------- --------- ----------------- ------------------------------------------
Switch#
interface FastEthernet0/1
switchport mode trunk
switchport trunk encapsulation dot1q
switchport trunk allowed vlan all