#
Interface Gigabitethernet1/0/35
Enter Switch 35 port view
Port Link-type Trunk
Set the Ethernet port to trunk
Port Trunk Permit VLAN All
Allow all VLANs to pass
Loopback-detection enabled
Turn on loop detection
#
IP route-static 0.0.0.0 0.0.0.0 (two default routes) 10.2.0.254 (message provided to router or server)
This is a command to set the default route when the destination IP address of an IP packet cannot be found in the router's routing table and it matches the entry, the IP packet is forwarded through 10.2.0.254
IP route 0.0.0.0 vlan1 192.168.0.254 enabled
The default route is forwarded from the 192.168.0.254 of the VLAN1 interface
#
SSH server Enable
Turn on the SSH server feature
SSH user XXXX service-type stelnet authentication-type Password
SSH user xxxx service type stelnet (that is, secure Telnet), using the Password authentication method.
#
Load Xml-configuration
Load Web page configuration
Load Tr069-configuration
Load file node information
#
(local) user-interface aux 0
Simultaneous access to an AUX user, auxiliary interface for configuring the console login switch
Authentication-mode scheme
Set Telent mode to login for local user name and password
#
(remote) user-interface vty 0 4
Simultaneous access to 5 vty users, telent login, virtual interface
ACL Inbound
Introducing ACL rules, ACL 2000 acting on the interface feed
#
Authentication-mode scheme
Set Telent mode to login for local user name and password
Protocol Inbound SSH
Set the login type to SSH
User-interface vty 5 15
Simultaneous access to 16 vty users, telent login, virtual interface
#
To configure the authentication policy:
RADIUS scheme System
Specifies that the current ISP domain refers to a RADIUS server group, where the RADIUS server group is "system"
Server-type Extended
Set the RADIUS server type of the RADIUS scheme cams extended
#
Primary authentication 127.0.0.1 1645
Configuring the primary RADIUS authentication/authorization Server IP address 127.0.0.1 Port-1645
Primary accounting 127.0.0.1 1646
Configuring the primary RADIUS billing server IP address 127.0.0.1 Port-1646
User-name-format Without-domain
Switch-to-radius message without domain name
#
Domain system
Access-limit Disable State active
Idle-cut Disable Self-service-url Disable default RADIUS configuration
#
Local-user XXX
Switch configuration-Name
Password cipher XXX
Switch configuration-Password
Authorization-attribute Level 3
Authorization attribute Level 3
#
Service-type SSH Terminal
SSH Terminal Services Type
#
Interface Vlan-interface1
Access to the Management VLAN VLAN 1 view
IP address 10.2.0.199 255.255.255.0
Assigning an IP address and gateway to a device
PS: Use Management-vlan1 to define management VLAN, only manage VLAN to create int VLAN interface
H3C configuration Details