huawei:switch:s5735:script_l3_huawei_s5735_s24p4x
!Software Version V200R019C10SPC500
#
sysname SW_A
#
super password level 3 cipher %$%$EMR_'1zl_W:>\VQeg!ORGBVUw|!x*oP't9n{N,VSz}iHBVXG%$%$
super password level 7 cipher %$%$i@:J6}lXMU8ml(ZdKpT/GBV0vpZAY.:~!&Rd;kTHo(%PBV3G%$%$
super password level 15 cipher %$%$5:Q8#]{y5@}dC3>-WUyMGBV~/pAgYrw_+0!id&-w9WETBVBG%$%$
#
dns resolve
#
vcmp role silent
#
vlan batch 700 to 715
#
lnp disable
#
stp mode rstp
#
udp-helper enable
#
authentication-profile name default_authen_profile
authentication-profile name dot1x_authen_profile
authentication-profile name dot1xmac_authen_profile
authentication-profile name mac_authen_profile
authentication-profile name multi_authen_profile
authentication-profile name portal_authen_profile
#
igmp-snooping enable
#
lacp priority 100
#
telnet server enable
#
clock timezone huawei minus 05:00:00
#
undo hwtacacs enable
#
dhcp enable
#
diffserv domain default
#
radius-server template default
#
pki realm default
certificate-check none
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile
#
vlan 1
description vlan1
name vlan1
igmp-snooping enable
igmp-snooping querier enable
vlan 700
description vlan700
name vlan700
igmp-snooping enable
igmp-snooping querier enable
vlan 701
description vlan701
name vlan701
igmp-snooping enable
igmp-snooping querier enable
vlan 702
description vlan702
name vlan702
igmp-snooping enable
igmp-snooping querier enable
vlan 703
description vlan703
name vlan703
igmp-snooping enable
igmp-snooping querier enable
vlan 704
description vlan704
name vlan704
igmp-snooping enable
igmp-snooping querier enable
vlan 705
description vlan705
name vlan705
igmp-snooping enable
igmp-snooping querier enable
vlan 706
description vlan706
name vlan706
igmp-snooping enable
igmp-snooping querier enable
vlan 707
description vlan707
name vlan707
igmp-snooping enable
igmp-snooping querier enable
vlan 708
description vlan708
name vlan708
igmp-snooping enable
igmp-snooping querier enable
vlan 709
description vlan709
name vlan709
igmp-snooping enable
igmp-snooping querier enable
vlan 710
description vlan710
name vlan710
igmp-snooping enable
igmp-snooping querier enable
vlan 711
description vlan711
name vlan711
igmp-snooping enable
igmp-snooping querier enable
vlan 712
description vlan712
name vlan712
igmp-snooping enable
igmp-snooping querier enable
vlan 713
description vlan713
name vlan713
igmp-snooping enable
igmp-snooping querier enable
vlan 714
description vlan714
name vlan714
igmp-snooping enable
igmp-snooping querier enable
vlan 715
description vlan715
name vlan715
igmp-snooping enable
igmp-snooping querier enable
#
aaa
authentication-scheme default
authentication-mode local
authentication-scheme radius
authentication-mode radius
authorization-scheme default
authorization-mode local
accounting-scheme default
accounting-mode none
local-aaa-user password policy administrator
password history record number 0
password expire 0
domain default
authentication-scheme radius
accounting-scheme default
authorization-scheme default
radius-server default
domain default_admin
authentication-scheme default
accounting-scheme default
domain domain_accampus
authentication-scheme default
accounting-scheme default
radius-server default
local-user admin password irreversible-cipher $1c$I|j!GW+4/A$j7Y<KL~0<X6ROA+R`ZT1g:h@~yr^M3@~%XUmQegX$
local-user admin privilege level 15
local-user admin service-type terminal ssh http
local-user accampus@domain_accampus password irreversible-cipher $1c$6HJ9S-4)~P$$2R7!{sfMX5m Lyu2G9>&.f0CQyC=q%ZRDF$ZYM$
local-user accampus@domain_accampus privilege level 15
local-user accampus@domain_accampus service-type ssh http
#
interface Vlanif1
description DEFAULT
ip address 10.57.80.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif706
description TELEFONIA IP
ip address 10.57.82.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif707
description CONTROL ACCESO
ip address 10.57.84.1 255.255.254.0
#
interface Vlanif708
description VIGILANCIA
ip address 10.57.86.1 255.255.254.0
#
interface Vlanif709
description INALAMBRICA INSTITUCIONAL
ip address 10.57.88.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif710
description SISTEMAS
ip address 10.57.90.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif711
description CONTABILIDAD
ip address 10.57.92.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif712
description ADMINISTRATIVOS
ip address 10.57.94.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif713
description PROFESORES
ip address 10.57.96.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface Vlanif714
description SALA COMPUTADORES
ip address 10.57.98.1 255.255.254.0
dhcp select relay
dhcp relay server-ip 10.57.80.100
#
interface MEth0/0/1
ip address 192.168.1.253 255.255.255.0
#
interface MEth0/0/2
ip address 169.254.2.1 255.255.255.252
#
interface Eth-Trunk1
description CONEXION SWITCH IP: 10.57.80.6
port link-type trunk
port trunk allow-pass vlan 2 to 4094
mode lacp
max active-linknumber 2
#
interface GigabitEthernet0/0/1
description CONN UTM LAN
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
broadcast-suppression packets 3000
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 712
trust dscp
#
interface GigabitEthernet0/0/3
description CONEXION SERVER DHCP IP: 10.57.80.100
port link-type access
trust dscp
#
interface GigabitEthernet0/0/4
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/5
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/6
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/7
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/8
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/9
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/10
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/11
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/12
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/13
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/14
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/15
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/16
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/17
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/18
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/19
port link-type hybrid
port hybrid pvid vlan 712
undo port hybrid vlan 1
port hybrid tagged vlan 706
port hybrid untagged vlan 712
trust dscp
#
interface GigabitEthernet0/0/20
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/21
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/22
description CONEXION AP
port link-type trunk
port trunk allow-pass vlan 2 to 4094
trust dscp
#
interface GigabitEthernet0/0/23
description CONEXION SWITCH IP: 10.57.80.6
eth-trunk 1
lacp priority 100
#
interface GigabitEthernet0/0/24
description CONEXION SWITCH IP: 10.57.80.6
eth-trunk 1
lacp priority 100
#
interface XGigabitEthernet0/0/1
trust dscp
#
interface XGigabitEthernet0/0/2
trust dscp
#
interface XGigabitEthernet0/0/3
trust dscp
#
interface XGigabitEthernet0/0/4
trust dscp
#
interface NULL0
#
arp static 10.57.80.2 2cb8-ed1c-7100 vid 1 interface GigabitEthernet0/0/1
#
undo icmp name timestamp-request receive
#
ip route-static 0.0.0.0 0.0.0.0 10.57.80.2
#
snmp-agent
snmp-agent local-engineid 800007DB03A82BCD02A360
snmp-agent sys-info version v3
snmp-agent trap enable
#
stelnet server enable
ssh server cipher aes256_ctr aes128_ctr
ssh server hmac sha2_256
ssh client cipher aes256_ctr aes128_ctr
ssh client hmac sha2_256
ssh server dh-exchange min-len 2048
#
user-interface con 0
authentication-mode aaa
user-interface vty 0 4
authentication-mode aaa
protocol inbound all
user-interface vty 16 20
#
dot1x-access-profile name dot1x_access_profile
#
mac-access-profile name mac_access_profile
#
netconf
callhome CONTROLLER
ip address 201.162.197.193 port 10020
management-vlan 1
source ip 10.57.80.1
smi-server
#
ops
#
return
huawei/switch/s5735/script_l3_huawei_s5735_s24p4x.txt · Last modified: 2021/08/27 13:37 by aperez
