1、密 码:h3capadmin2. 新建无线网段vlan2网络vlan,新建3. 新建interface vlan 2,地址192.168.10.1设备端口管理,新建4. 创建dhcp服务器,为无线终端分配地址网络DHCP,运营商给了DNS地址就填写运营商给的DNS,没给就填写网关5. 配置上网,以拨号为例(静态ip直接修改interface vlan 1地址即可)网络PPPoE6. 创建aclQoSACL IPv47. 配置NAT,以拨号为例(静态ip接口选择vlan-interface1,其他不变)8. 配置默认路由,以拨号为例(静态ip下一跳输入外网网关即可)9. 创建无线服务,其所属vl
2、an修改为2无线服务接入服务10. 配置完成后不要忘记保存配置完成后,无线终端通过ssid 123连接并获得192.168.10.0网段地址上网命令行信息:dis cu# version 5.20, Release 1508 sysname domain default enable system telnet server enable port-security enable password-recovery enable undo attack-defense tcp fragment enableacl number 2000 rule 0 permitvlan 1vlan 2dom
3、ain system access-limit disable state active idle-cut disable self-service-url disabledhcp server ip-pool vlan2 network 192.168.10.0 mask 255.255.255.0 gateway-list 192.168.10.1 dns-list 192.168.10.1 expired day 0 hour 2user-group system group-attribute allow-guestlocal-user admin password cipher $c
4、$3$jvHusdA/+2jovz+k0/tBMlWA+oeoRoUCoxGYKJo= authorization-attribute level 3 service-type telnet service-type webwlan rrm dot11a mandatory-rate 6 12 24 dot11a supported-rate 9 18 36 48 54 dot11b mandatory-rate 1 2 dot11b supported-rate 5.5 11 dot11g mandatory-rate 1 2 5.5 11 dot11g supported-rate 6 9
5、 12 18 24 36 48 54wlan service-template 1 clear ssid H3C service-template enablewlan service-template 2 crypto ssid 123 cipher-suite ccmp security-ie rsncwmp undo cwmp enableinterface Dialer10 nat outbound 2000 link-protocol ppp ppp chap user 123 ppp chap password cipher $c$3$gj+V0+H4CkHE6N7cXOi3Il6
6、7a1CL5Q= ppp pap local-user 123 password cipher $c$3$4OwWg8nN4s0B8kG11cbg30MOnycEwA= ppp ipcp dns request ip address ppp-negotiate dialer user pppoeclient dialer-group 10 dialer bundle 10interface NULL0interface Vlan-interface1 pppoe-client dial-bundle-number 10 ip address 192.168.0.50 255.255.255.0
7、interface Vlan-interface2 ip address 192.168.10.1 255.255.255.0interface GigabitEthernet1/0/1interface GigabitEthernet1/0/2interface WLAN-BSS32 port link-type hybrid port hybrid vlan 1 untaggedinterface WLAN-BSS33interface WLAN-BSS34 port hybrid vlan 1 to 2 untagged port hybrid pvid vlan 2 port-secu
8、rity port-mode psk port-security tx-key-type 11key port-security preshared-key pass-phrase cipher $c$3$XoS+0NX77ZaNCdol742GHh9EuwtRdxRqgxdtinterface WLAN-BSS35interface WLAN-Radio1/0/1 service-template 2 interface wlan-bss 34interface WLAN-Radio1/0/2 service-template 1 interface wlan-bss 33 service-template 2 interface wlan-bss 35 ip route-static 0.0.0.0 0.0.0.0 Dialer10 dhcp enable dialer-rule 10 ip permit arp-snooping enable load xml-configuration load tr069-configurationuser-interface con 0user-interface vty 0 4 authentication-mode schemereturn
copyright@ 2008-2022 冰豆网网站版权所有
经营许可证编号:鄂ICP备2022015515号-1