A three or four-day shift was added. Finally, the three-layer switch has been taken care of. The previous touch was a fool. (Huawei's technical support attitude is not very good),
The configuration environment and configuration files are as follows:
Environment, dual-WAN port routing access to ADSL, the next to the Huawei S3928p-si do core switches. The switch connects the normal PC and the fool-type tp-link switch, which is connected directly to the router with the core switch e 1/0/24 port (ip:192.168.10.80).
Divides 5 VLANs and isolates e 1/0/11 to e 1/0/14 ports.
<quidway>dis cur
#
sysname Quidway
#
Dhcp-server 1 IP 192.168.1.2
#
RADIUS scheme System
#
Domain system
#
VLAN 1
#
VLAN 2
Description Comman
#
VLAN 3
Description Finance
#
VLAN 4
Description AP
#
VLAN 5
Description Server
#
VLAN 6
Description route
#
Interface Vlan-interface2
IP address 192.168.1.1 255.255.255.0
#
Interface Vlan-interface3
IP address 192.168.3.1 255.255.255.0
#
Interface Vlan-interface4
IP address 192.168.6.1 255.255.255.0
Dhcp-server 1
#
Interface Vlan-interface5
IP address 192.168.100.1 255.255.255.0
#
Interface Vlan-interface6
IP address 192.168.10.80 255.255.255.0
More Wonderful content: http://www.bianceng.cnhttp://www.bianceng.cn/Network/jhjs/
#
Interface aux1/0/0
#
Interface ETHERNET1/0/1
Port Access VLAN 2
#
Interface ETHERNET1/0/2
Port Access VLAN 2
#
Interface ETHERNET1/0/3
Port Access VLAN 2
#
Interface ETHERNET1/0/4
Port Access VLAN 2
#
Interface ETHERNET1/0/5
Port Access VLAN 2
#
Interface ETHERNET1/0/6
Port Access VLAN 2
#
Interface ETHERNET1/0/7
Port Access VLAN 2
#
Interface ETHERNET1/0/8
Port Access VLAN 2
#
Interface ETHERNET1/0/9
Port Access VLAN 2
#
Interface ETHERNET1/0/10
Port Access VLAN 2
#
Interface ETHERNET1/0/11
Port Access VLAN 3
Port isolate
#
Interface ETHERNET1/0/12
Port Access VLAN 3
Port isolate
#
Interface ETHERNET1/0/13
Port Access VLAN 4
Port isolate
#
Interface ETHERNET1/0/14
Port Access VLAN 4
Port isolate
#
Interface ETHERNET1/0/15
Port Access VLAN 5
#
Interface ETHERNET1/0/16
Port Access VLAN 5
#
Interface ETHERNET1/0/17
Port Access VLAN 5
#
Interface ETHERNET1/0/18
Port Access VLAN 5
#
Interface Ethernet1/0/19
Port Access VLAN 5
#
Interface ETHERNET1/0/20
Port Access VLAN 5
#
Interface ETHERNET1/0/21
#
Interface ETHERNET1/0/22
#
Interface ETHERNET1/0/23
#
Interface ETHERNET1/0/24
Port Access VLAN 6
#
Interface GIGABITETHERNET1/1/1
#
Interface GIGABITETHERNET1/1/2
#
Interface GIGABITETHERNET1/1/3
#
Interface GIGABITETHERNET1/1/4
#
Undo Irf-fabric Authentication-mode
#
Interface NULL0
#
Voice VLAN mac-address 0001-e300-0000 Mask ffff-ff00-0000
#
IP route-static 0.0.0.0 0.0.0.0 192.168.10.1 Preference 60
#
User-interface aux 0 7
User-interface vty 0 4
#
Return
Additional loops are required on the router, and routing rules for the switch should be added.
192.168.0.0 255.255.0.0 192.168.10.80
The grand router supports multiple subnet segments and also adds 192.168.0.0 255.255.0.0.