sysname ar
#
drop illegal-mac alarm
#
ipv6
#
vlan batch 10
#
authentication-profile name default_authen_profile
authentication-profile name dot1x_authen_profile
authentication-profile name mac_authen_profile
authentication-profile name portal_authen_profile
authentication-profile name dot1xmac_authen_profile
authentication-profile name multi_authen_profile
#
dns resolve
dns proxy enable
#
dhcp enable
#
radius-server template default
#
pki realm default
#
ssl policy default_policy type server
pki-realm default
version tls1.0 tls1.1
ciphersuite rsa_aes_128_cbc_sha
#
acl number 3000
rule 5 permit ip
#
ike proposal default
encryption-algorithm aes-256
dh group14
authentication-algorithm sha2-256
authentication-method pre-share
integrity-algorithm hmac-sha2-256
prf hmac-sha2-256
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile
#
aaa
authentication-scheme default
authentication-scheme radius
authentication-mode radius
authorization-scheme default
accounting-scheme default
domain default
authentication-scheme default
domain default_admin
authentication-scheme default
local-user admin password irreversible-cipher $1a$f)tDG
T~J>]=Rg>er+yk0^:2WDcE$
local-user admin privilege level 15
local-user admin service-type telnet terminal ssh http
#
web
set fast-configuration state disable
user-set Default
user-set VIP
#
firewall zone Local
#
interface Dialer1
link-protocol ppp
ppp chap user 088300870679
ppp chap password cipher %^%#q[m$4,]AJWi]GP%]*l@3+)Z$D+
ppp pap local-user 088300870679 password cipher %^%#q[m
OQ/xw6.0M`J,K%^%#
ppp ipcp dns admit-any
ppp ipcp dns request
tcp adjust-mss 1200
ip address ppp-negotiate
dialer user arweb
dialer bundle 1
dialer-group 1
nat outbound 3000
#
interface Dialer2
link-protocol ppp
ppp chap user a4349330
ppp chap password cipher %^%#YnfBX4;PW9p[sT#dIa~7UqwDH0
ppp pap local-user a4349330 password cipher %^%#YnfBX4;
bB'0a\F8%%^%#
ppp ipcp dns admit-any
ppp ipcp dns request
tcp adjust-mss 1200
ip address ppp-negotiate
dialer user arweb
dialer bundle 2
dialer-group 2
nat outbound 3000
#
interface Vlanif1
ip address 10.1.1.254 255.255.255.0
#
interface GigabitEthernet0/0/0
undo portswitch
pppoe-client dial-bundle-number 1
description LT
shutdown
#
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 2 to 4094
#
interface GigabitEthernet0/0/2
description ar-ac
#
interface GigabitEthernet0/0/3
#
interface GigabitEthernet0/0/4
pppoe-client dial-bundle-number 2
description DX
#
interface GigabitEthernet0/0/5
description VirtualPort
shutdown
#
interface Cellular0/0/0
#
interface NULL0
#
dialer-rule
dialer-rule 2 ip permit
dialer-rule 1 ip permit
#
info-center timestamp log format-date
#
snmp-agent local-engineid 800007DB032C97B16D032E
#
telnet server enable
#
set web login-style simple
http secure-server ssl-policy default_policy
http server enable
http secure-server enable
http server permit interface Vlanif1
#
ip route-static 0.0.0.0 0.0.0.0 Dialer1 preference 30
ip route-static 0.0.0.0 0.0.0.0 Dialer2 preference 25
ip route-static 10.1.1.0 255.255.255.0 10.1.1.253
ip route-static 10.1.2.0 255.255.255.0 10.1.1.253
#
fib regularly-refresh disable
#
user-interface con 0
authentication-mode aaa
user-interface vty 0
authentication-mode aaa
user privilege level 15
user-interface vty 1 4
authentication-mode aaa
#
wlan ac
traffic-profile name default
security-profile name default
security-profile name default-wds
security wpa2 psk pass-phrase %^%#EGqd0Rgvw,_fI5:.Qe/D
aes
ssid-profile name default
vap-profile name default
wds-profile name default
regulatory-domain-profile name default
air-scan-profile name default
rrm-profile name default
radio-2g-profile name default
radio-5g-profile name default
wids-spoof-profile name default
wids-profile name default
ap-system-profile name default
port-link-profile name default
wired-port-profile name default
ap-group name default
#
dot1x-access-profile name dot1x_access_profile
#
mac-access-profile name mac_access_profile
#
ops
#
autostart
#
secelog
#
return
[ar]
uj5u.com熱心網友回復:
route-static 10.1.1.0 255.255.255.0 10.1.1.253ip route-static 10.1.2.0 255.255.255.0 10.1.1.253
# 只要把這兩條靜態路洗掉就可以,
uj5u.com熱心網友回復:
看配置,是把G0/0/0介面手動shutdown,然后無法切換到另一條撥號線路,G0/0/4介面沒有配置undo portswitch,看配置這板卡應該是二層介面吧,建議G0/0/4口配置undo portswitch,然后route-static 10.1.1.0 255.255.255.0 10.1.1.253這條靜態路由是多余的,可以刪掉,因為本身vlan1介面就是這個網段,有直連路由,不需要寫靜態轉載請註明出處,本文鏈接:https://www.uj5u.com/qita/54449.html
標籤:交換及路由技術
上一篇:分組交換的問題
下一篇:focas 2獲取零件加工時間
