DHCP分配以及vlan地址在H3C的6503上做了配置,这个作为网关。
为了方便管理,在下面的H3C 5100三层交换机上配置vlan6作为管理vlan,ip为 172.31.31.11/24,我的电脑接在 H3C 5100 的interface GigabitEthernet1/0/13,也就是vlan2025,vlan2025是10.132.174.0/25,然后在1/0/27口作了trunk口,并允许了vlan 6 2007 2017 2025 to 2027 4050通过,可是现在我配了vlan6的管理地址后,不能ping通172.31.31.11,也不能telnet上去,到底怎么回事啊?
具体配置如下:
#
local-user mingw
password cipher "VD5C6C;UVSQ=^Q`MAF4<1!!
service-type telnet
level 3
#interface Vlan-interface6
ip address 172.31.31.11 255.255.255.0
interface GigabitEthernet1/0/10
#
interface GigabitEthernet1/0/11
port access vlan 2025
#
interface GigabitEthernet1/0/12
port access vlan 2025
#
interface GigabitEthernet1/0/13
port access vlan 2025
#
interface GigabitEthernet1/0/14
port access vlan 4050
#
interface GigabitEthernet1/0/15
port access vlan 2025
#
interface GigabitEthernet1/0/16
port access vlan 2025
#
interface GigabitEthernet1/0/17
port access vlan 2025
#
interface GigabitEthernet1/0/18
port access vlan 4050
#
interface GigabitEthernet1/0/19
port access vlan 2025
#
interface GigabitEthernet1/0/20
port access vlan 2025
#
interface GigabitEthernet1/0/21
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 6 2007 2017 2025 to 2027 4050
shutdown
#
interface GigabitEthernet1/0/22
#
interface GigabitEthernet1/0/23
#
interface GigabitEthernet1/0/24
#
interface GigabitEthernet1/0/25
shutdown
#
interface GigabitEthernet1/0/26
shutdown
#
interface GigabitEthernet1/0/27
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 6 2007 2017 2025 to 2027 4050
#
是这样的:还有一台中兴的路由交换 8905,它是作为DHCP分配以及vlan地址的划分
而H3C的s6503是作为部分vlan的网关,zte 8905与H3C s6503之间是用192.168.128.101作为路由连接的,然后在ZTE 8905上设置了vlan6的地址是172.31.21.1,这个地址就是管理地址,可以telnet172.31.21.1,上面trunk口也是允许所有vlan通过,s5100是连接在华为6503上的,6503上没有设置vlan6的管理地址,更没有路由到172.31.21.1.
不过之前在另外一个交换机,它是直接用光钎trunk口连接交换机,并做了路由,vlan6的管理地址,我只是改了下vlan6的管理地址就不通了
1.两边é½ævlan 6çå°åã2.è·¯ç±ä¹æ¯æ·»å äºçã3.对åºçtrunkå£é½æ¯å
许ææçvlanéè¿ç 4.访é®ç½ç»å¾æ£å¸¸ï¼è½pingèªå·±çç½å
³ï¼ä¹è½pingézteç管çå°å172.31.21.1ï¼å°±æ¯pingä¸é5100ä¸ç172.31.21.11 ï¼è¿æ²¡ætelnetç»å½ã
è¿æå°±æ¯éº»ç¦èå
ççæåçç½ç»çè¿æ¥çå
·ä½æ
åµ!
访é®ç½ç»å¾æ£å¸¸ï¼è½pingèªå·±çç½å
³ï¼ä¹è½pingézteç管çå°å172.31.21.1ï¼å°±æ¯pingä¸é5100ä¸ç172.31.21.11
å¾ææ¾æ¯S5100çé»è®¤è·¯ç±é®é¢ãä½ ä»ç»çä¸ä¸å§ãæ¯ä¸æ¯æ ¸å¿ä¸çvlan6å°åã
å¦ææ¯çè¯ï¼é£è¯·æ¥çæ¯å¦é
ç½®äºacl æç»æäºæ°æ®å
interface Vlan-interface6
ip address 172.31.21.11 255.255.255.0
ip route-static 0.0.0.0 0.0.0.0 172.31.21.1 preference 60
interface GigabitEthernet1/0/27
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 6 2007 2017 2025 to 2027 4050
è¿æ¯5100ä¸çé
ç½®ï¼è¿æå°±æ¯æä¸é¢è¡¥å
äºäºé®é¢ï¼éº»ç¦ä½ ççï¼
请é®zte 8905ä¸H3C s6503ä¹é´æ¯trunkä¹ï¼ä¸å
许äºvlan6ãå¦ææçè¯ï¼è¯·å¨S65ä¸ä½¿ç¨vlan 6 å建ä¸ä¸vlan6 ï¼è¿æ ·trunkæè½è½¬åvlan6æ°æ®ã
å¦æzte 8905ä¸H3C s6503ä¹é´æ¯accessæ¥å£ï¼é£ä¹å¯ä»¥åè¯ä½ ï¼ä½ çS5100è¿æ ·è®¾ç½®æ¯ç®¡çä¸äºçãzte 8905ä¸H3C s6503ä¹é´æ¯éè¿è·¯ç±æ¥è½¬åæ°æ®ãä½ çvlan6æ°æ®æ¯è¿ä¸å»çï¼è¿å»çåªæ¯ipæ°æ®ã
zte 8905ä¸ s6503ä¹é´æ¯accesså£è¿æ¥çï¼å¹¶åäº192.168çè·¯ç±
ä¸è¿ä¹åè¿ä¸¤å°æ ¸å¿è®¾å¤æ²¡æå¨è¿ï¼åªæ¯å¨ä¸é¢çæ¥å
¥å±äº¤æ¢æºåäºç®¡çå°åï¼ä¹æ¯è¿æ ·è®¾ç½®çï¼é½å¯ä»¥telnetä¸å»ï¼æå°±æ¯å 为è¦éæ°æä¸vlan管çå°åï¼å°±æ¹äºå 个交æ¢æºçå°åï¼ç»æé½telnetä¸ä¸å»äºï¼å°åºåªéåºäºé®é¢å¢ï¼ï¼
ä¸é´æ¯accessæ¥å£çè¯è¯å®æ¯è·¯ç±æ¨¡å¼äºãä½ vlan6çä¿¡æ¯æ¯éä¸è¿å»çãä½ ç°å¨å¯ä»¥å¨S65ä¸æ¾ä¸ä¸ªvlanä½ä¸ºä¸è交æ¢æºç管çvlanã
æä¸å¤ªæ¸
æ¥ä½ åæ¥çé
ç½®ï¼æ²¡æ³è¯´é®é¢åºå¨é£ãä½ ç°å¨ææä¸é¢è¯´çæ¹å°±å¯ä»¥äºãæ¢ä¸ä¸ªvlanï¼æ¢ä¸ä¸ªip段ã
ä½æ¯s6503ä¸æ²¡æé
置管çå°åï¼å¨5100ä¸è®¾ç½®æç¨åï¼ï¼
å¯ä¸å¯ä»¥ç´æ¥å¨8905ä¸è¿æ¥äº¤æ¢æºï¼ä½å¨8905ä¸è¿æ¥ç端å£éè¦è®¾ç½®trunk端å£åï¼
è¿æè¿æ¥çä¸å°äº¤æ¢æºç端å£ä¹éè¦è®¾ç½®trunk模å¼åï¼
åµåµãåªè¦S65ä¸æint vlan è¿æ ·çvlan å°±å¯ä»¥å½æ管çvlanãS65ä¸ææçè¿æ ·çæ¥å£å°åé½å¯ä»¥è¢«è¿ç¨ç»å½çã管çvlanå°±æ¯ä¸å¡vlanï¼åªæ¯ç¨éä¸ä¸æ ·èå·²ã
åå¦S65ä¸æ vlan 10
int vlan 10
ip add 192.168.1.1 255.255.255.0
é£ä¹ä½ çS51å°±å¯ä»¥è¿æ ·è®¾ç½®
int vlan 10
ip add 192.168.1.2 255.255.255.0
ip rou 0.0.0.0 0 192.168.1.1
åèèµæï¼H3Céç代çæ²é³èµè«ç½ç»å·¥ç¨å¸-ä¸ºä½ è§£å³ï¼