H3C认证

H3C无线AP本地转发配置教程

时间:2024-09-15 01:51:15 H3C认证 我要投稿
  • 相关推荐

H3C无线AP本地转发配置教程2016

  H3C无线AP本地转发怎么配置?配置命令是什么?下面跟yjbys小编一起来看看无线AP本地转发配置实例教程,仅供参考学习!

  AC配置

  sys

  System View: return to User View with Ctrl+Z.

  [AC-WX3010E-WLAN]dis cu

  #

  version 5.20, Release 3509P44

  #

  sysname AC-WX3010E-WLAN

  #

  domain default enable system

  #

  telnet server enable

  #

  lldp enable

  lldp compliance cdp

  #

  port-security enable

  #

  oap management-ip 192.168.0.101 slot 0

  #

  wlan auto-ap enable

  #

  password-recovery enable

  #

  vlan 1

  #

  vlan 2 to 5

  #

  vlan 11

  #

  vlan 20

  #

  vlan 30

  #

  vlan 40

  #

  vlan 96 to 101

  #

  vlan 200

  #

  vlan 202

  #

  vlan 210

  #

  vlan 220

  #

  domain system

  access-limit disable

  state active

  idle-cut disable

  self-service-url disable

  #

  dhcp server ip-pool 0

  network 192.168.99.0 mask 255.255.255.0

  gateway-list 192.168.99.253

  dns-list 8.8.8.8

  #

  user-group system

  group-attribute allow-guest

  #

  local-user admin

  password cipher $c$3$HERx/x+M3SPHhEyEfRjZiX1/7nxqymnxhzxr

  authorization-attribute level 3

  service-type telnet

  service-type web

  #

  wlan rrm

  dot11a mandatory-rate 6 12 24

  dot11a supported-rate 9 18 36 48 54

  dot11b mandatory-rate 1 2

  dot11b supported-rate 5.5 11

  dot11g mandatory-rate 1 2 5.5 11

  dot11g supported-rate 6 9 12 18 24 36 48 54

  #

  wlan radio-policy radpolicy1

  beacon-interval 200

  dtim 4

  rts-threshold 2300

  fragment-threshold 2200

  short-retry threshold 6

  long-retry threshold 5

  max-rx-duration 500

  #

  wlan service-template 1 crypto

  ssid SPK

  bind WLAN-ESS 2

  cipher-suite tkip

  cipher-suite ccmp

  security-ie rsn

  security-ie wpa

  service-template enable

  #

  wlan service-template 10 crypto

  ssid COSONIC

  bind WLAN-ESS 10

  cipher-suite tkip

  cipher-suite ccmp

  security-ie rsn

  security-ie wpa

  #

  wlan service-template 11 crypto

  ssid SPK

  bind WLAN-ESS 11

  cipher-suite tkip

  cipher-suite ccmp

  security-ie rsn

  security-ie wpa

  service-template enable

  #

  wlan service-template 12 crypto

  ssid SPK

  bind WLAN-ESS 12

  cipher-suite tkip

  cipher-suite ccmp

  security-ie rsn

  security-ie wpa

  client forwarding-mode local vlan 200

  service-template enable

  #

  wlan service-template 13 crypto

  ssid COSONIC

  bind WLAN-ESS 13

  cipher-suite tkip

  cipher-suite ccmp

  security-ie rsn

  security-ie wpa

  client forwarding-mode local vlan 202

  service-template enable

  #

  wlan service-template 15 clear

  ssid CONSONIC2

  bind WLAN-ESS 15

  client forwarding-mode local vlan 210

  service-template enable

  #

  wlan service-template 16 clear

  ssid SPK2

  bind WLAN-ESS 16

  client forwarding-mode local vlan 220

  service-template enable

  #

  wlan service-template 5 crypto

  ssid SPK2

  bind WLAN-ESS 5

  cipher-suite tkip

  cipher-suite ccmp

  security-ie rsn

  security-ie wpa

  service-template enable

  #

  wlan ap-group default_group

  ap 5cdd-7097-cba0

  ap 5cdd-7097-cc80

  ap 5cdd-7097-cca0

  ap 5cdd-7097-cee0

  ap 741f-4acd-f1a0

  ap 741f-4acd-f380

  ap 741f-4acd-f440

  ap 741f-4acd-f500

  ap 741f-4acd-f520

  ap 741f-4acd-f900

  #

  interface Bridge-Aggregation1

  port link-type trunk

  port trunk permit vlan all

  #

  interface NULL0

  #

  interface Vlan-interface1

  ip address 192.168.40.253 255.255.255.0

  #

  interface Vlan-interface97

  ip address 192.168.97.253 255.255.255.0

  #

  interface Vlan-interface98

  ip address 192.168.98.253 255.255.255.0

  #

  interface Vlan-interface99

  ip address 192.168.99.253 255.255.255.0

  #

  interface Vlan-interface100

  ip address 192.168.100.3 255.255.254.0

  #

  interface Vlan-interface101

  ip address 192.168.101.253 255.255.255.0

  #

  interface Vlan-interface200

  ip address dhcp-alloc

  #

  interface Vlan-interface202

  ip address dhcp-alloc

  #

  interface Vlan-interface210

  ip address dhcp-alloc

  #

  interface Vlan-interface220

  ip address dhcp-alloc

  #

  interface GigabitEthernet1/0/1

  port link-type trunk

  port trunk permit vlan all

  port link-aggregation group 1

  #

  interface GigabitEthernet1/0/2

  port link-type trunk

  port trunk permit vlan all

  port link-aggregation group 1

  #

  interface WLAN-ESS0

  port link-type hybrid

  port hybrid vlan 1 3 untagged

  #

  interface WLAN-ESS2

  port link-type hybrid

  port hybrid vlan 1 to 5 20 30 40 untagged

  port-security port-mode psk

  port-security tx-key-type 11key

  port-security preshared-key pass-phrase cipher $c$3$5jvtWC17SrMAhKhWKFqKWdcoqXC2afnkkteR0V5TzeDXdw==

  #

  interface WLAN-ESS5

  port link-type hybrid

  undo port hybrid vlan 1

  port hybrid vlan 100 untagged

  port hybrid pvid vlan 100

  port-security port-mode psk

  port-security tx-key-type 11key

  port-security preshared-key pass-phrase cipher $c$3$iGaW9s9pFBX69rZQH0j3h6D0DdRg5t7kIPcU

  #

  interface WLAN-ESS10

  port access vlan 100

  port-security port-mode psk

  port-security tx-key-type 11key

  port-security preshared-key pass-phrase cipher $c$3$1L6A1k4s0K2npWhYpU0YbsLBoTuZ1UdhX1PPKWAXRUw=

  #

  interface WLAN-ESS11

  port access vlan 100

  port-security port-mode psk

  port-security tx-key-type 11key

  port-security preshared-key pass-phrase cipher $c$3$w6mcn3Elf41ruLdTUN7NfeqGNXBJoagt7xA0rs6c5jIZAQ==

  #

  interface WLAN-ESS12

  port link-type hybrid

  undo port hybrid vlan 1

  port hybrid vlan 200 untagged

  port hybrid pvid vlan 200

  port-security port-mode psk

  port-security tx-key-type 11key

  port-security preshared-key pass-phrase cipher $c$3$w6mcn3Elf41ruLdTUN7NfeqGNXBJoagt7xA0rs6c5jIZAQ==

  #

  interface WLAN-ESS13

  port link-type hybrid

  undo port hybrid vlan 1

  port hybrid vlan 202 untagged

  port hybrid pvid vlan 202

  port-security port-mode psk

  port-security tx-key-type 11key

  port-security preshared-key pass-phrase cipher $c$3$1L6A1k4s0K2npWhYpU0YbsLBoTuZ1UdhX1PPKWAXRUw=

  #

  interface WLAN-ESS15

  port link-type hybrid

  undo port hybrid vlan 1

  port hybrid vlan 210 untagged

  port hybrid pvid vlan 210

  #

  interface WLAN-ESS16

  port link-type hybrid

  undo port hybrid vlan 1

  port hybrid vlan 220 untagged

  port hybrid pvid vlan 220

  #

  wlan ap 5cdd-7097-cba0 model WA2620-AGN-C id 5

  map-configuration apcfg.txt

  serial-id 219801A0KXM143000167

  radio 1

  service-template 12

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 12

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 5cdd-7097-cc80 model WA2620-AGN-C id 3

  map-configuration apcfg.txt

  serial-id 219801A0KXM143000164

  radio 1

  service-template 12

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 12

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 5cdd-7097-cca0 model WA2620-AGN-C id 4

  map-configuration apcfg.txt

  serial-id 219801A0KXM143000103

  radio 1

  radio-policy radpolicy1

  service-template 12

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 12

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 5cdd-7097-cee0 model WA2620-AGN-C id 2

  map-configuration apcfg.txt

  serial-id 219801A0KXM143000157

  radio 1

  service-template 12

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 12

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 741f-4acd-f1a0 model WA4320i-ACN id 7

  map-configuration apcfg.txt

  serial-id 210235A1GQC158000743

  radio 1

  service-template 13

  radio enable

  radio 2

  service-template 13

  radio enable

  #

  wlan ap 741f-4acd-f380 model WA4320i-ACN id 8

  map-configuration apcfg.txt

  serial-id 210235A1GQC158000758

  radio 1

  service-template 13

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 13

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 741f-4acd-f440 model WA4320i-ACN id 11

  map-configuration apcfg.txt

  serial-id 210235A1GQC158000764

  radio 1

  service-template 15

  radio enable

  radio 2

  service-template 15

  radio enable

  #

  wlan ap 741f-4acd-f500 model WA4320i-ACN id 9

  map-configuration apcfg.txt

  serial-id 210235A1GQC158000770

  radio 1

  service-template 13

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 13

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 741f-4acd-f520 model WA4320i-ACN id 10

  map-configuration apcfg.txt

  serial-id 210235A1GQC158000771

  radio 1

  service-template 13

  service-template 15

  service-template 16

  radio enable

  radio 2

  service-template 13

  service-template 15

  service-template 16

  radio enable

  #

  wlan ap 741f-4acd-f900 model WA4320i-ACN id 6

  map-configuration apcfg.txt

  serial-id 210235A1GQC158000803

  radio 1

  service-template 12

  radio enable

  radio 2

  service-template 12

  radio enable

  #

  wlan ips

  malformed-detect-policy default

  signature deauth_flood signature-id 1

  signature broadcast_deauth_flood signature-id 2

  signature disassoc_flood signature-id 3

  signature broadcast_disassoc_flood signature-id 4

  signature eapol_logoff_flood signature-id 5

  signature eap_success_flood signature-id 6

  signature eap_failure_flood signature-id 7

  signature pspoll_flood signature-id 8

  signature cts_flood signature-id 9

  signature rts_flood signature-id 10

  signature addba_req_flood signature-id 11

  signature-policy default

  countermeasure-policy default

  attack-detect-policy default

  virtual-security-domain default

  attack-detect-policy default

  malformed-detect-policy default

  signature-policy default

  countermeasure-policy default

  #

  ip route-static 0.0.0.0 0.0.0.0 192.168.98.2

  #

  dhcp server forbidden-ip 192.168.99.1

  dhcp server forbidden-ip 192.168.99.2

  dhcp server forbidden-ip 192.168.200.1 192.168.200.20

  dhcp server forbidden-ip 192.168.202.1 192.168.202.20

  dhcp server forbidden-ip 192.168.203.240 192.168.203.254

  #

  dhcp enable

  #

  user-interface con 0

  user-interface vty 0 4

  authentication-mode scheme

  user privilege level 3

  idle-timeout 40 0

  #

  return

  [AC-WX3010E-WLAN]

  [AC-WX3010E-WLAN]

  交换机上接AP的端口配置为:

  interface GigabitEthernet1/0/43

  port link-type trunk

  port trunk permit vlan all

  port trunk pvid vlan 99

  MAP文档

  system-view

  vlan 200

  vlan 202

  vlan 210

  vlan 220

  vlan 230

  vlan 240

  interface GigabitEthernet 1/0/1

  port link-type trunk

  port trunk permit vlan all

  interface GigabitEthernet 1/0/2

  port link-type trunk

  port trunk permit vlan all

【H3C无线AP本地转发配置教程】相关文章:

h3c交换机配置telnet配置教程11-02

本地连接提示没有有效的ip配置教程06-28

h3c交换机配置教程「图文」08-24

H3C交换机SSH配置教程09-11

h3c交换机配置telnet实例教程10-25

IPsecVPN配置教程08-18

无线AP和无线路由有什么区别08-18

H3C配置三层交换机配置06-24

h3c交换机配置10-06

H3C NQA联动配置举例06-04