- 相关推荐
H3C无线AP本地转发配置教程2016
H3C无线AP本地转发怎么配置?配置命令是什么?下面跟yjbys小编一起来看看无线AP本地转发配置实例教程,仅供参考学习!
AC配置
sys
System View: return to User View with Ctrl+Z.
[AC-WX3010E-WLAN]dis cu
#
version 5.20, Release 3509P44
#
sysname AC-WX3010E-WLAN
#
domain default enable system
#
telnet server enable
#
lldp enable
lldp compliance cdp
#
port-security enable
#
oap management-ip 192.168.0.101 slot 0
#
wlan auto-ap enable
#
password-recovery enable
#
vlan 1
#
vlan 2 to 5
#
vlan 11
#
vlan 20
#
vlan 30
#
vlan 40
#
vlan 96 to 101
#
vlan 200
#
vlan 202
#
vlan 210
#
vlan 220
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
dhcp server ip-pool 0
network 192.168.99.0 mask 255.255.255.0
gateway-list 192.168.99.253
dns-list 8.8.8.8
#
user-group system
group-attribute allow-guest
#
local-user admin
password cipher $c$3$HERx/x+M3SPHhEyEfRjZiX1/7nxqymnxhzxr
authorization-attribute level 3
service-type telnet
service-type web
#
wlan rrm
dot11a mandatory-rate 6 12 24
dot11a supported-rate 9 18 36 48 54
dot11b mandatory-rate 1 2
dot11b supported-rate 5.5 11
dot11g mandatory-rate 1 2 5.5 11
dot11g supported-rate 6 9 12 18 24 36 48 54
#
wlan radio-policy radpolicy1
beacon-interval 200
dtim 4
rts-threshold 2300
fragment-threshold 2200
short-retry threshold 6
long-retry threshold 5
max-rx-duration 500
#
wlan service-template 1 crypto
ssid SPK
bind WLAN-ESS 2
cipher-suite tkip
cipher-suite ccmp
security-ie rsn
security-ie wpa
service-template enable
#
wlan service-template 10 crypto
ssid COSONIC
bind WLAN-ESS 10
cipher-suite tkip
cipher-suite ccmp
security-ie rsn
security-ie wpa
#
wlan service-template 11 crypto
ssid SPK
bind WLAN-ESS 11
cipher-suite tkip
cipher-suite ccmp
security-ie rsn
security-ie wpa
service-template enable
#
wlan service-template 12 crypto
ssid SPK
bind WLAN-ESS 12
cipher-suite tkip
cipher-suite ccmp
security-ie rsn
security-ie wpa
client forwarding-mode local vlan 200
service-template enable
#
wlan service-template 13 crypto
ssid COSONIC
bind WLAN-ESS 13
cipher-suite tkip
cipher-suite ccmp
security-ie rsn
security-ie wpa
client forwarding-mode local vlan 202
service-template enable
#
wlan service-template 15 clear
ssid CONSONIC2
bind WLAN-ESS 15
client forwarding-mode local vlan 210
service-template enable
#
wlan service-template 16 clear
ssid SPK2
bind WLAN-ESS 16
client forwarding-mode local vlan 220
service-template enable
#
wlan service-template 5 crypto
ssid SPK2
bind WLAN-ESS 5
cipher-suite tkip
cipher-suite ccmp
security-ie rsn
security-ie wpa
service-template enable
#
wlan ap-group default_group
ap 5cdd-7097-cba0
ap 5cdd-7097-cc80
ap 5cdd-7097-cca0
ap 5cdd-7097-cee0
ap 741f-4acd-f1a0
ap 741f-4acd-f380
ap 741f-4acd-f440
ap 741f-4acd-f500
ap 741f-4acd-f520
ap 741f-4acd-f900
#
interface Bridge-Aggregation1
port link-type trunk
port trunk permit vlan all
#
interface NULL0
#
interface Vlan-interface1
ip address 192.168.40.253 255.255.255.0
#
interface Vlan-interface97
ip address 192.168.97.253 255.255.255.0
#
interface Vlan-interface98
ip address 192.168.98.253 255.255.255.0
#
interface Vlan-interface99
ip address 192.168.99.253 255.255.255.0
#
interface Vlan-interface100
ip address 192.168.100.3 255.255.254.0
#
interface Vlan-interface101
ip address 192.168.101.253 255.255.255.0
#
interface Vlan-interface200
ip address dhcp-alloc
#
interface Vlan-interface202
ip address dhcp-alloc
#
interface Vlan-interface210
ip address dhcp-alloc
#
interface Vlan-interface220
ip address dhcp-alloc
#
interface GigabitEthernet1/0/1
port link-type trunk
port trunk permit vlan all
port link-aggregation group 1
#
interface GigabitEthernet1/0/2
port link-type trunk
port trunk permit vlan all
port link-aggregation group 1
#
interface WLAN-ESS0
port link-type hybrid
port hybrid vlan 1 3 untagged
#
interface WLAN-ESS2
port link-type hybrid
port hybrid vlan 1 to 5 20 30 40 untagged
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$5jvtWC17SrMAhKhWKFqKWdcoqXC2afnkkteR0V5TzeDXdw==
#
interface WLAN-ESS5
port link-type hybrid
undo port hybrid vlan 1
port hybrid vlan 100 untagged
port hybrid pvid vlan 100
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$iGaW9s9pFBX69rZQH0j3h6D0DdRg5t7kIPcU
#
interface WLAN-ESS10
port access vlan 100
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$1L6A1k4s0K2npWhYpU0YbsLBoTuZ1UdhX1PPKWAXRUw=
#
interface WLAN-ESS11
port access vlan 100
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$w6mcn3Elf41ruLdTUN7NfeqGNXBJoagt7xA0rs6c5jIZAQ==
#
interface WLAN-ESS12
port link-type hybrid
undo port hybrid vlan 1
port hybrid vlan 200 untagged
port hybrid pvid vlan 200
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$w6mcn3Elf41ruLdTUN7NfeqGNXBJoagt7xA0rs6c5jIZAQ==
#
interface WLAN-ESS13
port link-type hybrid
undo port hybrid vlan 1
port hybrid vlan 202 untagged
port hybrid pvid vlan 202
port-security port-mode psk
port-security tx-key-type 11key
port-security preshared-key pass-phrase cipher $c$3$1L6A1k4s0K2npWhYpU0YbsLBoTuZ1UdhX1PPKWAXRUw=
#
interface WLAN-ESS15
port link-type hybrid
undo port hybrid vlan 1
port hybrid vlan 210 untagged
port hybrid pvid vlan 210
#
interface WLAN-ESS16
port link-type hybrid
undo port hybrid vlan 1
port hybrid vlan 220 untagged
port hybrid pvid vlan 220
#
wlan ap 5cdd-7097-cba0 model WA2620-AGN-C id 5
map-configuration apcfg.txt
serial-id 219801A0KXM143000167
radio 1
service-template 12
service-template 15
service-template 16
radio enable
radio 2
service-template 12
service-template 15
service-template 16
radio enable
#
wlan ap 5cdd-7097-cc80 model WA2620-AGN-C id 3
map-configuration apcfg.txt
serial-id 219801A0KXM143000164
radio 1
service-template 12
service-template 15
service-template 16
radio enable
radio 2
service-template 12
service-template 15
service-template 16
radio enable
#
wlan ap 5cdd-7097-cca0 model WA2620-AGN-C id 4
map-configuration apcfg.txt
serial-id 219801A0KXM143000103
radio 1
radio-policy radpolicy1
service-template 12
service-template 15
service-template 16
radio enable
radio 2
service-template 12
service-template 15
service-template 16
radio enable
#
wlan ap 5cdd-7097-cee0 model WA2620-AGN-C id 2
map-configuration apcfg.txt
serial-id 219801A0KXM143000157
radio 1
service-template 12
service-template 15
service-template 16
radio enable
radio 2
service-template 12
service-template 15
service-template 16
radio enable
#
wlan ap 741f-4acd-f1a0 model WA4320i-ACN id 7
map-configuration apcfg.txt
serial-id 210235A1GQC158000743
radio 1
service-template 13
radio enable
radio 2
service-template 13
radio enable
#
wlan ap 741f-4acd-f380 model WA4320i-ACN id 8
map-configuration apcfg.txt
serial-id 210235A1GQC158000758
radio 1
service-template 13
service-template 15
service-template 16
radio enable
radio 2
service-template 13
service-template 15
service-template 16
radio enable
#
wlan ap 741f-4acd-f440 model WA4320i-ACN id 11
map-configuration apcfg.txt
serial-id 210235A1GQC158000764
radio 1
service-template 15
radio enable
radio 2
service-template 15
radio enable
#
wlan ap 741f-4acd-f500 model WA4320i-ACN id 9
map-configuration apcfg.txt
serial-id 210235A1GQC158000770
radio 1
service-template 13
service-template 15
service-template 16
radio enable
radio 2
service-template 13
service-template 15
service-template 16
radio enable
#
wlan ap 741f-4acd-f520 model WA4320i-ACN id 10
map-configuration apcfg.txt
serial-id 210235A1GQC158000771
radio 1
service-template 13
service-template 15
service-template 16
radio enable
radio 2
service-template 13
service-template 15
service-template 16
radio enable
#
wlan ap 741f-4acd-f900 model WA4320i-ACN id 6
map-configuration apcfg.txt
serial-id 210235A1GQC158000803
radio 1
service-template 12
radio enable
radio 2
service-template 12
radio enable
#
wlan ips
malformed-detect-policy default
signature deauth_flood signature-id 1
signature broadcast_deauth_flood signature-id 2
signature disassoc_flood signature-id 3
signature broadcast_disassoc_flood signature-id 4
signature eapol_logoff_flood signature-id 5
signature eap_success_flood signature-id 6
signature eap_failure_flood signature-id 7
signature pspoll_flood signature-id 8
signature cts_flood signature-id 9
signature rts_flood signature-id 10
signature addba_req_flood signature-id 11
signature-policy default
countermeasure-policy default
attack-detect-policy default
virtual-security-domain default
attack-detect-policy default
malformed-detect-policy default
signature-policy default
countermeasure-policy default
#
ip route-static 0.0.0.0 0.0.0.0 192.168.98.2
#
dhcp server forbidden-ip 192.168.99.1
dhcp server forbidden-ip 192.168.99.2
dhcp server forbidden-ip 192.168.200.1 192.168.200.20
dhcp server forbidden-ip 192.168.202.1 192.168.202.20
dhcp server forbidden-ip 192.168.203.240 192.168.203.254
#
dhcp enable
#
user-interface con 0
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
idle-timeout 40 0
#
return
[AC-WX3010E-WLAN]
[AC-WX3010E-WLAN]
交换机上接AP的端口配置为:
interface GigabitEthernet1/0/43
port link-type trunk
port trunk permit vlan all
port trunk pvid vlan 99
MAP文档
system-view
vlan 200
vlan 202
vlan 210
vlan 220
vlan 230
vlan 240
interface GigabitEthernet 1/0/1
port link-type trunk
port trunk permit vlan all
interface GigabitEthernet 1/0/2
port link-type trunk
port trunk permit vlan all
【H3C无线AP本地转发配置教程】相关文章:
h3c交换机配置telnet配置教程11-02
本地连接提示没有有效的ip配置教程06-28
h3c交换机配置教程「图文」08-24
H3C交换机SSH配置教程09-11
h3c交换机配置telnet实例教程10-25
IPsecVPN配置教程08-18
无线AP和无线路由有什么区别08-18
H3C配置三层交换机配置06-24
h3c交换机配置10-06
H3C NQA联动配置举例06-04