版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
1、某大型网站在北京某机房的网络核心交换机配置3560A#sh runBuilding configuration.Current configuration : 5756 bytes! Last configuration change at 17:12:04 CST Wed Dec 19 2007 by admin! NVRAM config last updated at 12:07:45 CST Thu Dec 13 2007 by admin!version 12.2no service padservice timestamps debug datetime localtimeserv
2、ice timestamps log datetimeservice password-encryptionservice sequence-numbers!hostname 3560A!enable secret 5 xxxxxxxxxxxxxxxxxxxxxxxxxxxx!username xxxxx privilege 15 password 7 xxxxxxxxxxxxxxxxxxxxno aaa new-modelclock timezone CST 8ip subnet-zeroip routingno ip domain-lookupip host 2970b 172.17.0.
3、5ip host 2950a ip host 2960a ip host 2970a ip host 3560b !login on-failure log!no file verify auto!spanning-tree mode pvstspanning-tree extend system-idspanning-tree vlan 1,10,59,172,192,900-901,1000 priority 24576!vlan internal allocation policy ascending!int
4、erface GigabitEthernet0/1description connection to IDC c6509switchport access vlan 59switchport mode accessip access-group xx_mini_acl in!interface GigabitEthernet0/2switchport access vlan 59switchport mode access!interface GigabitEthernet0/3switchport access vlan 10switchport mode accessshutdown!in
5、terface GigabitEthernet0/4switchport access vlan 10switchport mode accessshutdown!interface GigabitEthernet0/5description connection to outside(eth0|OUT) port of pixswitchport access vlan 10switchport mode accessshutdownduplex full!interface GigabitEthernet0/6description connection to inside(eth1|IN
6、) port of pixswitchport access vlan 172switchport mode accessshutdownduplex full!interface GigabitEthernet0/7switchport access vlan 10switchport mode accessshutdown!interface GigabitEthernet0/8switchport access vlan 10switchport mode accessshutdown!interface GigabitEthernet0/9switchport access vlan
7、10switchport mode accessshutdown!interface GigabitEthernet0/10switchport access vlan 10switchport mode accessshutdown!interface GigabitEthernet0/11switchport access vlan 10switchport mode accessshutdown!interface GigabitEthernet0/12switchport access vlan 10switchport mode accessshutdown!interface Gi
8、gabitEthernet0/13description connection to dlink switch(remote control card)switchport access vlan 192switchport mode access!interface GigabitEthernet0/14switchport access vlan 192shutdown!interface GigabitEthernet0/15shutdown!interface GigabitEthernet0/16shutdown!interface GigabitEthernet0/17shutdo
9、wn!interface GigabitEthernet0/18description snort monitor portswitchport access vlan 59switchport mode accessspanning-tree portfast!interface GigabitEthernet0/19shutdown!interface GigabitEthernet0/20shutdown!interface GigabitEthernet0/21switchport access vlan 900switchport mode access!interface Giga
10、bitEthernet0/22switchport access vlan 900switchport mode access!interface GigabitEthernet0/23description connection to g0/23 of 3560B(trunk)switchport trunk encapsulation dot1qswitchport mode trunkshutdown!interface GigabitEthernet0/24description connection to g0/24 of 2970A(trunk)switchport trunk e
11、ncapsulation dot1qswitchport mode trunk!interface GigabitEthernet0/25spanning-tree port-priority 112!interface GigabitEthernet0/26!interface GigabitEthernet0/27!interface GigabitEthernet0/28!interface Vlan1no ip addressshutdown!interface Vlan2no ip address!interface Vlan10ip address 255.2
12、55.255.0standby 10 ip standby 10 priority 20standby 10 preempt!interface Vlan59ip address 59.151.xx.xx 24!interface Vlan172ip address standby 172 ip standby 172 priority 20standby 172 preempt!interface Vlan192ip address 255.255.255.
13、0standby 192 ip standby 192 priority 20standby 192 preempt!interface Vlan901no ip address!ip classlessip route 59.151.xx.xxip http serverip http access-class 1!ip access-list standard snmp_aclpermit 52permit 53permit 51permit 61.145.xxx.xxxpe
14、rmit permit ip access-list standard telnet_aclpermit 218.19.xx.xxxpermit 52permit 53permit 51!ip access-list extended xx_common_acldeny tcp any any eq 22deny tcp any any eq 199deny udp any any eq 166permit icmp hos
15、t 218.19.xx.xxx anydeny icmp any anypermit ip any anypermit gre any anyip access-list extended xx_mini_aclpermit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 22permit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 62222permit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 22permit tcp
16、host 218.19.xxx.xxx host 59.151.xxx.xxx eq 62222permit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 22permit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 62222permit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 22permit tcp host 218.19.xxx.xxx host 59.151.xxx.xxx eq 62222deny tcp a
17、ny any eq 22deny tcp any any eq 62222permit ip any anypermit ahp any anypermit gre any any!access-list 1 permit 52access-list 1 permit 53access-list 1 permit 51access-list 1 remark acl for controlling who can access the http port of this switch.snmp-server community 3560aro RO snmp_acl!control-plane!line con 0line vty 0 4session-timeout 15access-class telnet_acl inexec-timeout 0 0logging synchronouslogin
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 新员工培训汇报
- 大班科学活动仿生现象
- 名师班主任培训心得
- 数控车削加工技术 教案 项目十 螺纹车削工艺及编程
- 13.1 分子热运动(6大题型)(含答案解析)
- 新疆喀什地区2024-2025学年高二上学期期中地理试卷(无答案)
- 广东顺德德胜学校2024-2025学年高二上学期10月月考英语试题(含答案无听力原文及音频)
- 2025届湖北省部分高中高三上学期11月期中联考数学试题(含答案)
- 2024-2025学年安徽省六安市裕安区六安九中九年级(上)月考物理试卷(10月份)(含答案)
- T-YNZYC 0106-2023 绿色药材 乌天麻产地环境标准
- 培训课程版权合同模板
- 食材配送服务方案投标方案(技术方案)
- 密封条范文模板(A4打印版)
- MOOC 科技英语写作-西安电子科技大学 中国大学慕课答案
- 2024年白银有色集团股份有限公司招聘笔试参考题库含答案解析
- XX元器件选用报告
- 工业设计史论考试模拟题(附答案)
- 主动脉瓣狭窄护理查房-1
- 保卫黄河 殷承宗 独奏钢琴谱 完美完整版13页
- 二次函数的应用 (抛物线型)
- 产前筛查实验室检查ppt课件
评论
0/150
提交评论