1、华为交换机网络规划案例某企业网络规划一、 网络VLAN地址规划VLAN号说明IP地址段网关10互联网有线用户段192.168.10.0/24192.168.10.25420监控网络段192.168.20.0/23192.168.20.25430无线用户段192.168.30.0/24192.168.30.25440无线AP地址段192.168.40.0/24192.168.40.25450保留192.168.50.0/24192.168.50.25460与防火墙互联网段192.168.60.0/24192.168.60.2541000设备管理段10.10.10.0/2410.10.10.254
2、二、 网络设备IP地址规划设备名称设备型号设备地址登录密码防火墙USG2250192.168.60.PASS:admin123核心交换机-WWS770610.10.10.254admin123核心交换机-JKS770610.10.10.253admin123无线控制器AC660510.10.10.100Admin123接入交换机01S5700-28P-PWR-LI-AC10.10.10.11admin123接入交换机02S5700-28P-PWR-LI-AC10.10.10.12admin123接入交换机03S5700-28P-PWR-LI-AC10.10.10.13admin123接入交换机
3、04S5700-28P-PWR-LI-AC10.10.10.14admin123接入交换机05S5700-28P-LI-AC10.10.10.15admin123接入交换机06S5700-28P-LI-AC10.10.10.16admin123接入交换机07S5700-28P-LI-AC10.10.10.17admin123接入交换机08S5700-28P-LI-AC10.10.10.18admin123接入交换机09S5700-28P-LI-AC10.10.10.19admin123接入交换机10S5700-28P-LI-AC10.10.10.20admin123admin123三、 网络拓
4、扑如下图例1:互联网网络拓扑图例2:监控网络拓扑四、 核心交换机接口配置互联网核心交换机02460246810121416182022接防火墙VLAN10VLAN10TRUNKXXXXTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNK13571357911131517192123接ACVLAN10VLAN10TRUNKXXXXTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNK说明:VLAN10-接PC机上网。 TRUNK-接接入交换机。X-光电复用接口。监控交换机02460246810121416182022VLAN20VLAN20V
5、LAN10TRUNKXXXXTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNK13571357911131517192123VLAN20VLAN20VLAN20TRUNKXXXXTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNKTRUNK说明:VLAN20-接监控PC或终端。TRUNK-接接入交换机。五、 网管平台配置IP地址型号密码网管平台密码192.168.10.253HP DL360eGen8Administratoradmin/1234拓扑管理:六、 网络设备参数设置(1) 外网核心交换机配置display current-config
6、uration!Software Version V200R003C00SPC500#sysname TYG-WW-Core#dns server 218.2.135.1#vlan batch 10 20 30 40 50 60 1000#observe-port 1 interface GigabitEthernet3/0/4#lldp enable#undo nap slave enable# dba-profile default0 type3 assure 40000 max 80000#dhcp enable#dhcp snooping enable#diffserv domain
7、default# line-profile default0# service-profile default0 #vlan 10 description NW-netvlan 20 description jiankong-netvlan 30 description NW-AP-clientvlan 40 description NW-APvlan 50 description to_tplinkvlan 60 description to_FWvlan 1000 description management#aaa authentication-scheme default author
8、ization-scheme default accounting-scheme default domain default domain default_admin local-user admin password cipher %5d9:MipCfLiB)EQd3Uwe% local-user admin service-type http #interface Vlanif10 description NW-net ip address 192.168.10.254 255.255.255.0 dhcp select interface dhcp server excluded-ip
9、-address 192.168.10.253 dhcp server dns-list 218.2.135.1 61.147.37.1#interface Vlanif20 description jiankong-net ip address 192.168.20.254 255.255.255.0#interface Vlanif30 description NW-AP-client ip address 192.168.30.254 255.255.254.0 dhcp select interface dhcp server lease day 0 hour 6 minute 0 d
10、hcp server dns-list 218.2.135.1 61.147.37.1#interface Vlanif40 description NW-AP ip address 192.168.40.254 255.255.255.0#interface Vlanif50 description to_tplink#interface Vlanif60 description to_FW ip address 192.168.60.254 255.255.255.0#interface Vlanif1000 description management ip address 10.10.
11、10.254 255.255.255.0#interface Ethernet0/0/0#interface GigabitEthernet3/0/0 description to_FW port link-type access port default vlan 60#interface GigabitEthernet3/0/1 description to_AC6605 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/2 port link-type access
12、 port default vlan 10#interface GigabitEthernet3/0/3 port link-type access port default vlan 10 dhcp snooping enable#interface GigabitEthernet3/0/4 port link-type access port default vlan 10 dhcp snooping enable#interface GigabitEthernet3/0/5 port link-type access port default vlan 10#interface Giga
13、bitEthernet3/0/6 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/7 port link-type trunk port trunk allow-pass vlan 2 to 4094# interface GigabitEthernet3/0/8 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/9 port link-type
14、trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/10 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/11 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/12 port link-type trunk port trunk allow-pass vl
15、an 2 to 4094#interface GigabitEthernet3/0/13 port link-type trunk port trunk allow-pass vlan 2 to 4094# interface GigabitEthernet3/0/14 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/15 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface Gigabi
16、tEthernet3/0/16 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/17 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/18 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/19 port link-type
17、 trunk port trunk allow-pass vlan 2 to 4094# interface GigabitEthernet3/0/20 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/21 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface GigabitEthernet3/0/22 port link-type trunk port trunk allow-pass
18、vlan 2 to 4094#interface GigabitEthernet3/0/23 port link-type trunk port trunk allow-pass vlan 2 to 4094#interface NULL0#ip route-static 0.0.0.0 0.0.0.0 192.168.60.1#snmp-agentsnmp-agent local-engineid 800007DB03D46AA880E600snmp-agent community read cipher %$%$T&Legw4c8h-Y.|!8;Xrp(TP(+e#2C$/)e4,8B:+
19、&Xrs;5+o-feDqC$8Z4A6t$TNr|;X%$%$ mib-view iso-viewsnmp-agent community write cipher %$%$fgbYXV!,O/)x*mGHz$;Ko-Z6l-UA_Ul*gV(moKGKo0;!gLuG:sugKBtx(yroQo9;K%$%$ mib-view iso-viewsnmp-agent sys-info version allsnmp-agent target-host trap address udp-domain 192.168.10.253 params securityname cipher %mmV:
20、Q:v8ciq0YC/U0;Kp8% v2csnmp-agent mib-view included iso-view isosnmp-agent trap source Vlanif1000#user-interface con 0 authentication-mode password set authentication password cipher %WJp(2C;L;B_lSU41o+,#DE,vU6%)EXj&XIOM%GJ#DH,%user-interface vty 0 4 authentication-mode password user privilege level
21、15 set authentication password cipher %dze*2MdUX+WX9.,M=Xa7Iy6U/-PTJ7XhTO7Xa:=%user-interface vty 16 20#port-group 1 group-member GigabitEthernet3/0/0 group-member GigabitEthernet3/0/1 group-member GigabitEthernet3/0/2 group-member GigabitEthernet3/0/3 group-member GigabitEthernet3/0/4 group-member
22、GigabitEthernet3/0/5 group-member GigabitEthernet3/0/6 group-member GigabitEthernet3/0/7 group-member GigabitEthernet3/0/8 group-member GigabitEthernet3/0/9 group-member GigabitEthernet3/0/10 group-member GigabitEthernet3/0/11 group-member GigabitEthernet3/0/12 group-member GigabitEthernet3/0/13 gro
23、up-member GigabitEthernet3/0/14 group-member GigabitEthernet3/0/15 group-member GigabitEthernet3/0/16 group-member GigabitEthernet3/0/17 group-member GigabitEthernet3/0/18 group-member GigabitEthernet3/0/19 group-member GigabitEthernet3/0/20 group-member GigabitEthernet3/0/21 group-member GigabitEth
24、ernet3/0/22 group-member GigabitEthernet3/0/23#return dis int briPHY: Physical*down: administratively downdown: standby(l): loopback(s): spoofing(E): E-Trunk down(b): BFD down(e): ETHOAM down(dl): DLDP down(d): Dampening SuppressedInUti/OutUti: input utility/output utilityInterface PHY Protocol InUt
25、i OutUti inErrors outErrorsGigabitEthernet3/0/0 up up 1.42% 0.50% 0 0GigabitEthernet3/0/1 up up 0.04% 0.44% 0 0GigabitEthernet3/0/2 up up 2.31% 1.82% 0 0GigabitEthernet3/0/3 up up 0% 0% 0 0GigabitEthernet3/0/4 down down 0% 0% 0 0GigabitEthernet3/0/5 down down 0% 0% 0 0GigabitEthernet3/0/6 down down
26、0% 0% 0 0GigabitEthernet3/0/7 down down 0% 0% 0 0GigabitEthernet3/0/8 down down 0% 0% 0 0GigabitEthernet3/0/9 down down 0% 0% 0 0GigabitEthernet3/0/10 down down 0% 0% 0 0GigabitEthernet3/0/11 down down 0% 0% 0 0GigabitEthernet3/0/12 down down 0% 0% 0 0GigabitEthernet3/0/13 down down 0% 0% 0 0Gigabit
27、Ethernet3/0/14 up up 0.01% 0.12% 0 0GigabitEthernet3/0/15 down down 0% 0% 0 0GigabitEthernet3/0/16 up up 0% 0% 0 0GigabitEthernet3/0/17 down down 0% 0% 0 0GigabitEthernet3/0/18 up up 0% 0% 0 0GigabitEthernet3/0/19 down down 0% 0% 0 0GigabitEthernet3/0/20 up up 0.23% 0.68% 0 0GigabitEthernet3/0/21 do
28、wn down 0% 0% 0 0GigabitEthernet3/0/22 up up 0% 0% 0 0GigabitEthernet3/0/23 down down 0% 0% 0 0NULL0 up up(s) 0% 0% 0 0Vlanif10 up up - - 0 0Vlanif20 up up - - 0 0Vlanif30 up up - - 0 0Vlanif40 up up - - 0 0Vlanif50 up down - - 0 0Vlanif60 up up - - 0 0Vlanif1000 up up - - 0 0 dis ip int b*down: administratively down!down: FIB overload downdown: standby(l): loopback(s): spoofing(d): Dampening Suppressed(E): E-Trunk downThe number of interface that is UP in Physical is 8The number of interface that i
copyright@ 2008-2022 冰豆网网站版权所有
经营许可证编号:鄂ICP备2022015515号-1