华为旁挂三层组网-直接转发
来源:原创
时间:2024-04-15
作者:脚本小站
分类:网络
三层旁挂与二层旁挂的区别在于:
1、网络图不同
2、管理网段地址池需要添加 option 43 sub-option 3 ascii 192.168.200.10 这个选项,这个示例中管理vlan为vlan 100。
相同点:
1、AC设备上的无线设备的设置命令是相同的。
R1:
[Huawei]sysname S1 [S1]interface GigabitEthernet 0/0/0 [S1-GigabitEthernet0/0/0]ip address 192.168.111.1 24 [S1]ip route-static 192.168.0.0 16 192.168.111.2
S1:
[Huawei]sysname S1 [S1]vlan batch 111 100 101 102 200 [S1]ip pool vlan100 [S1-ip-pool-vlan100]network 192.168.100.0 mask 24 [S1-ip-pool-vlan100]gateway-list 192.168.100.1 [S1-ip-pool-vlan100]option 43 sub-option 3 ascii 192.168.200.10 # 管理网段中配置此项,告诉它AC在哪 [S1]ip pool vlan101 [S1-ip-pool-vlan101]network 192.168.101.0 mask 24 [S1-ip-pool-vlan101]gateway-list 192.168.101.1 [S1-ip-pool-vlan101]dns-list 114.114.114.114 [S1]ip pool vlan102 [S1-ip-pool-vlan102]network 192.168.102.0 mask 24 [S1-ip-pool-vlan102]gateway-list 192.168.102.1 [S1-ip-pool-vlan102]dns-list 114.114.114.114 [S1]dhcp enable [S1]interface Vlanif 111 [S1-Vlanif111]ip address 192.168.111.2 24 [S1]interface Vlanif 100 [S1-Vlanif100]ip address 192.168.100.1 24 [S1-Vlanif100]dhcp select global [S1]interface Vlanif 101 [S1-Vlanif101]ip address 192.168.101.1 24 [S1-Vlanif101]dhcp select global [S1]interface Vlanif 102 [S1-Vlanif102]ip address 192.168.102.1 24 [S1-Vlanif102]dhcp select global [S1]interface Vlanif 200 [S1-Vlanif200]ip address 192.168.200.1 24 [S1]ip route-static 0.0.0.0 0 192.168.111.1 [S1]interface GigabitEthernet 0/0/1 [S1-GigabitEthernet0/0/1]port link-type access [S1-GigabitEthernet0/0/1]port default vlan 111 [S1]interface GigabitEthernet 0/0/2 [S1-GigabitEthernet0/0/2]port link-type trunk [S1-GigabitEthernet0/0/2]port trunk pvid vlan 100 [S1-GigabitEthernet0/0/2]port trunk allow-pass vlan 100 101 102 [S1]interface GigabitEthernet 0/0/3 [S1-GigabitEthernet0/0/3]port link-type access [S1-GigabitEthernet0/0/3]port default vlan 200
AC1:
[AC1]interface Vlanif 200 [AC1-Vlanif200]ip address 192.168.200.10 24 [AC1]interface GigabitEthernet 0/0/1 [AC1-GigabitEthernet0/0/1]port link-type access [AC1-GigabitEthernet0/0/1]port default vlan 200 [AC1]ip route-static 0.0.0.0 0 192.168.200.1
S2:
[Huawei]sysname S2 [S2]vlan batch 100 101 102 [S2]port-group allport [S2-port-group-allport]group-member Ethernet 0/0/1 to Ethernet 0/0/4 [S2-port-group-allport]port link-type trunk [S2-Ethernet0/0/1]port link-type trunk [S2-Ethernet0/0/2]port link-type trunk [S2-Ethernet0/0/3]port link-type trunk [S2-Ethernet0/0/4]port link-type trunk [S2-port-group-allport]port trunk pvid vlan 100 [S2-Ethernet0/0/1]port trunk pvid vlan 100 [S2-Ethernet0/0/2]port trunk pvid vlan 100 [S2-Ethernet0/0/3]port trunk pvid vlan 100 [S2-Ethernet0/0/4]port trunk pvid vlan 100 [S2-port-group-allport]port trunk allow-pass vlan 100 101 102 [S2-Ethernet0/0/1]port trunk allow-pass vlan 100 101 102 [S2-Ethernet0/0/2]port trunk allow-pass vlan 100 101 102 [S2-Ethernet0/0/3]port trunk allow-pass vlan 100 101 102 [S2-Ethernet0/0/4]port trunk allow-pass vlan 100 101 102 [S2]interface GigabitEthernet 0/0/1 [S2-GigabitEthernet0/0/1]port link-type trunk [S2-GigabitEthernet0/0/1]port trunk pvid vlan 100 [S2-GigabitEthernet0/0/1]port trunk allow-pass vlan 100 101 102
AC1:
[AC1]capwap source interface Vlanif 200 [AC1]wlan [AC1-wlan-view]regulatory-domain-profile name default [AC1-wlan-regulate-domain-default]country-code cn [AC1-wlan-view]ap-group name ap-office1 [AC1-wlan-ap-group-ap-office1]regulatory-domain-profile default [AC1-wlan-view]ap auth-mode mac-auth [AC1-wlan-view]ap-id 1 ap-mac 00e0-fc06-0c50 [AC1-wlan-ap-1]ap-name ap1 [AC1-wlan-ap-1]ap-group ap-office1 [AC1-wlan-view]ap-id 2 ap-mac 00e0-fc0e-7f00 [AC1-wlan-ap-2]ap-name ap2 [AC1-wlan-ap-2]ap-group ap-office1 [AC1-wlan-view]ssid-profile name ssid-office1 [AC1-wlan-ssid-prof-ssid-office1]ssid ap-office1 [AC1-wlan-view]security-profile name sec-office1 [AC1-wlan-sec-prof-sec-office1]security wpa-wpa2 psk pass-phrase tanzhi1234 aes [AC1-wlan-view]vap-profile name vap-office1 [AC1-wlan-vap-prof-vap-office1]forward-mode direct-forward [AC1-wlan-vap-prof-vap-office1]service-vlan vlan-id 101 [AC1-wlan-vap-prof-vap-office1]ssid-profile ssid-office1 [AC1-wlan-vap-prof-vap-office1]security-profile sec-office1 [AC1-wlan-view]ap-group name ap-office1 [AC1-wlan-ap-group-ap-office1]vap-profile vap-office1 wlan 1 radio 0 [AC1-wlan-ap-group-ap-office1]vap-profile vap-office1 wlan 1 radio 1 # 添加无线网络office2 [AC1-wlan-view]ap-group name ap-office2 [AC1-wlan-ap-group-ap-office2]regulatory-domain-profile default [AC1-wlan-view]ap-id 3 ap-mac 00ec-fca8-3260 [AC1-wlan-ap-3]ap-name ap3 [AC1-wlan-ap-3]ap-group ap-office2 [AC1-wlan-view]ap-id 4 ap-mac 00e0-fc72-2f60 [AC1-wlan-ap-4]ap-name ap4 [AC1-wlan-ap-4]ap-group ap-office2 [AC1-wlan-view]ssid-profile name ssid-office2 [AC1-wlan-ssid-prof-ssid-office2]ssid ap-office2 [AC1-wlan-view]security-profile name sec-office2 [AC1-wlan-sec-prof-sec-office2]security wpa-wpa2 psk pass-phrase tanzhi1234 aes [AC1-wlan-view]vap-profile name vap-office2 [AC1-wlan-vap-prof-vap-office2]forward-mode direct-forward [AC1-wlan-vap-prof-vap-office2]service-vlan vlan-id 102 [AC1-wlan-vap-prof-vap-office2]ssid-profile ssid-office2 [AC1-wlan-vap-prof-vap-office2]security-profile sec-office2 [AC1-wlan-view]ap-group name ap-office2 [AC1-wlan-ap-group-ap-office2]vap-profile vap-office2 wlan 2 radio 0 [AC1-wlan-ap-group-ap-office2]vap-profile vap-office2 wlan 2 radio 1
在模拟器中如果AP发射不出信号可以重启AP,或重新添加AP设备。