管理交换机命令
Huawei 交换机的mac 80fb-06c9-6db9
升级平替 (5560s-28p)
display router id
设置id
router id 192.168.2.2
查ip和mac
dis arp | in 5CDD-709D-FAFD
dis arp | in 192.168.6.199
dis arp | in 94d9-b36c-2a8f
dis arp | in f4b5-203b-1eec
//----只查mac
dis mac-add f4b5-203b-1eec
等价dis arp all
地址漂移日志
display trapbuffer | in move
新一代设备支持
display mac-address flapping
display mac-address mac-move
拓扑变化
disp stp topology-change
CIST Topology Change information
Number of Topology Changes :169
Time since last Topology Change :0 days 12h:11m:6s
Topology Change initiator(notified) :GigabitEthernet0/0/4
Topology Change last received from :a036-9f08-cff3
stp disable #enable #进入端口关闭 stp
环路检查的配置
display loopback-detect
查看mac地址
dis mac-add #//识别到的mac地址
dis mac-add | in Eth0/0/16 #//检索
arp统计
display arp packet statistics
vlan下的所以mac
display mac-address dynamic vlan 11
使用中的vlan
display vlan
ping mac 在指定vlan
ping mac enable
ping mac 0001-0300-0204 vlan 10
端口支持mac-vlan
mac-vlan enable
将mac执行某个vlan
mac-vlan mac-address 0024-8ce8-af88 priority 0
只支持 untagged 的端口
查看路由表
dis vlan #//vlan
dis ip routing-table #//路由表
回环处理
那个端口使用率超高,只能用串口进入
display interface brief | include up
交换机管理(命令)
telnet 10.0.0.2
sys #进入管理 system-view
dis vlan
dis current-configuration #//所以配置 dis cu
配置文件导入导出
ftp server enable
aaa
远程登入下载
环路的协议 MSTP
display stp brief
常用查看
启动自动使用配置
dis startup #//显示启动配置和下一次启动的配置
startup saved-configuration vrpcfg.zip
查看网口/链接(简要)
dis int desc #//接口注解描述 进入端口 设置描述 desc Lin To OA
dis int eth brief #//网口简要/概述 dis int br 是否插入网线
dis int brief #//端口/vlan简要
dis ip int br #//交换机ip简要
查看某个端口
dis cu int eth 0/0/2 # dis cu int gi 0/0/2 # 同 dis this
端口属于那个vlan
display port vlan
查看某个vlan
dis vlan
dis vlan 100 verbose
查看某个虚拟网卡
dis int vlanif
dis int Vlanif201
查看mac属于那个vlan
display mac-vlan mac-address all
查看设备/使用情况
cpu使用率
dis cpu-usage
dis version
dis memory-usage
dis clock
dis alarm urgent #//查看告警
dis device
开启链路发现
lldp enable
发现其他设备
display lldp neighbor brief #发现其他交换机等
管理设置命令
sys #先进入管理模式
保存配置文件
quit
save
查看当前端口
int Ethernet 0/0/1
dis this #vlan配置在接口内
vlan 3 #//进入某个vlna
int Ethernet 0/0/8 #//进入某端口
批量 port-group
port-group 2 #//没有自动创建
group-member gi 0/0/5 to 0/0/10
1.创建vlan 用数字表示
vlan batch 9 to 11 #//批量创建
vlan 89
2.vlanif (虚拟局域网接口)
无需添加到vlan
[Quidway] interface vlanif 10
[Quidway-Vlanif10] ip address 10.1.1.1 255.255.255.128
[Quidway-Vlanif10] dhcp select global
[Quidway-Vlanif10] quit
修改端口模式 trunk/access/hybrid
access普通可访问只属于一个vlan , hybrid 可多个vlan可以交换机和电脑 ,trunk端口只允许缺省vlan的报文不打标签(不建议)
port link-type ?
port link-type access
加入到vlan
数据包打上vlan id
port hybrid pvid vlan 200
与那些vlan相通广播
port hybrid untagged vlan 6 to 200
移除vlan
undo port hybrid pvid vlan
移除加入的vlan
undo port hybrid vlan 6 to 100
基于mac划分vlan
这样可以实现 同一端口服务于不同vlan
vlan 123
mac-vlan mac-address 001d-0f99-f5ad priority 0
路由
ip route-static 0.0.0.0 0.0.0.0 10.0.0.1
ip route-static 192.168.2.0 255.255.255.0 192.168.24.10
ip route-static 192.168.4.0 255.255.255.0 192.168.24.10
交换机dhcp
[Quidway] ip pool 1
[Quidway-ip-pool-1] network 192.68.99.0 mask 255.255.255.128
[Quidway-ip-pool-1] dns-list 8.4.4.8
[Quidway-ip-pool-1] gateway-list 192.68.99.245
[Quidway-ip-pool-1] excluded-ip-address 192.68.99.1
[Quidway-ip-pool-1] excluded-ip-address 192.68.99.10
[Quidway-ip-pool-1] lease day 1
[Quidway-ip-pool-1] quit
删除undo
删除一个虚拟网卡(三层)
undo interface vlanif 1234
undo vlan 12345
snmp管理 (建议v2c)
display snmp-agent sys-info
snmp-agent mib-view included alliso iso #配置开放的内容
snmp-agent sys-info version v2c
snmp-agent community read ruser mib-view alliso
snmp-agent community write wuser mib-view alliso
#-------删除
undo snmp-agent sys-info version all
undo snmp-agent community ruser
undo snmp-agent community wuser
undo snmp-agent mib-view alliso
undo snmp-agent #关闭服务
#开启sn
snmp-agent mib-view included iso iso
#配置用户
snmp-agent usm-user v3 nmser authentication-mode #//-- md5 wsf2010a
snmp-agent usm-user v3 nmser privacy-mode #//-- aes128 wsf2010p
#配置组
snmp-agent group v3 nmsgroup privacy read-view iso notify-view iso
snmp-agent usm-user v3 nmser group groupnms
删除部分snmp
undo snmp-agent usm-user v3
undo snmp-agent mib-view isoview01
undo snmp-agent usm-user v3 nmser authentication-mode engineid 000007DB7F000001000022E6
undo snmp-agent usm-user v3 nmser authentication-mode engineid 000007DB7F00000100004DF1
开启web管理
http server load S3700_28TP-V100R005C01SPC100.web.zip
http server enable
undo http server
display ssh server status
创建web用户
aaa
local-user wsf password simple wsf2010
local-user wsf service-type http
删除端口配置
undo port default vlan
undo port link-type
undo port hybrid pvid vlan
undo port hybrid vlan all
port hybrid untagged vlan 1
这样配置恢复成初始不属于任何vlan,不然会收到提示Error: Please renew the default configurations.
port link-type access
port default vlan 20
port hybrid pvid vlan 20
port hybrid untagged vlan 20
mac-vlan enable
切换端口模式
port link-type hybrid
dns设置
dns 代理proxy 设备太老不支持
display dns dynamic-host
dns server 192.168.0.121
dns resolve
dns proxy enable
启用ssh/stelnet
v1.x版本 非常的老
display ssh server status
rsa local-key-pair create #生成指定长度2048
user-interface vty 0 4
authentication-mode aaa
protocol inbound all #//指定VTY用户界面所支持的协议
ssh server port 22
stelnet server enable
ssh server compatible-ssh1x enable #兼容v1以前的版本
ssh user admin authentication-type all
查看ssh状况
display ssh user-informati
display ssh server session
加入连接参数
由于版本过老
ssh -o KexAlgorithms=+diffie-hellman-group1-sha1 -c 3des-cbc admin@192.168.11.1
字符终端宽度
screen-width 200
screen-length 200 temporary #一次显示行数
日志外发
info-center source default channel 2 log level debugging
info-center loghost source Vlanif100
info-center loghost 192.168.0.123