H3C configuration Details

Source: Internet
Author: User
Tags ssh server

#

Interface Gigabitethernet1/0/35

Enter Switch 35 port view

Port Link-type Trunk

Set the Ethernet port to trunk

Port Trunk Permit VLAN All

Allow all VLANs to pass

Loopback-detection enabled

Turn on loop detection

#

IP route-static 0.0.0.0 0.0.0.0 (two default routes) 10.2.0.254 (message provided to router or server)

This is a command to set the default route when the destination IP address of an IP packet cannot be found in the router's routing table and it matches the entry, the IP packet is forwarded through 10.2.0.254

IP route 0.0.0.0 vlan1 192.168.0.254 enabled

The default route is forwarded from the 192.168.0.254 of the VLAN1 interface

#

SSH server Enable

Turn on the SSH server feature

SSH user XXXX service-type stelnet authentication-type Password

SSH user xxxx service type stelnet (that is, secure Telnet), using the Password authentication method.

#

Load Xml-configuration

Load Web page configuration

Load Tr069-configuration

Load file node information

#

(local) user-interface aux 0

Simultaneous access to an AUX user, auxiliary interface for configuring the console login switch

Authentication-mode scheme

Set Telent mode to login for local user name and password

#

(remote) user-interface vty 0 4

Simultaneous access to 5 vty users, telent login, virtual interface

ACL Inbound

Introducing ACL rules, ACL 2000 acting on the interface feed

#

Authentication-mode scheme

Set Telent mode to login for local user name and password

Protocol Inbound SSH

Set the login type to SSH

User-interface vty 5 15

Simultaneous access to 16 vty users, telent login, virtual interface

#

To configure the authentication policy:

RADIUS scheme System

Specifies that the current ISP domain refers to a RADIUS server group, where the RADIUS server group is "system"

Server-type Extended

Set the RADIUS server type of the RADIUS scheme cams extended

#

Primary authentication 127.0.0.1 1645

Configuring the primary RADIUS authentication/authorization Server IP address 127.0.0.1 Port-1645

Primary accounting 127.0.0.1 1646

Configuring the primary RADIUS billing server IP address 127.0.0.1 Port-1646

User-name-format Without-domain

Switch-to-radius message without domain name

#

Domain system

Access-limit Disable State active

Idle-cut Disable Self-service-url Disable default RADIUS configuration

#

Local-user XXX

Switch configuration-Name

Password cipher XXX

Switch configuration-Password

Authorization-attribute Level 3

Authorization attribute Level 3

#

Service-type SSH Terminal

SSH Terminal Services Type

#

Interface Vlan-interface1

Access to the Management VLAN VLAN 1 view

IP address 10.2.0.199 255.255.255.0

Assigning an IP address and gateway to a device

PS: Use Management-vlan1 to define management VLAN, only manage VLAN to create int VLAN interface

H3C configuration Details

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.