港湾交换机u24配置802.1X的实例
- 来源:vlan9
- 发布者: 佚名
- 进入论坛
!HammerOSsystemconfigfile
hostnameu24
!Syslogconfig
!Stackconfig
!Portconfig
configport1learningdisable/*设备开启802.1x后将自动关闭端口的地址学习功能*/
configport2learningdisable
configport3learningdisable
configport4learningdisable
configport5learningdisable
configport6learningdisable
configport7learningdisable
configport8learningdisable
configport9learningdisable
configport10learningdisable
configport11learningdisable
configport12learningdisable
configport13learningdisable
configport14learningdisable
configport15learningdisable
configport16learningdisable
configport17learningdisable
configport18learningdisable
configport19learningdisable
configport20learningdisable
configport21learningdisable
configport22learningdisable
configport23learningdisable
configport24learningdisable
!Vlanconfig
configipaddress192.168.2.254255.255.255.0/*设置设备的管理IP地址*/
!Arpconfig
!STPDconfig
!FDBentryconfig
createfdbentry00053b8015edport24/*在24端口静态设置上联三层设备的MAC地址*/
!Igmpsnoopingconfig
!Mirroringconfig
!Tracerouteconfig
!Sntpconfig
!Timezoneconfig
!Rstpconfig
!Dot1xconfig
configdot1xenable/*开启802.1x认证功能*/
configport1dot1xport-control-modeport-based/*设定1-23端口打开认证,认证模式为
configport2dot1xport-control-modeport-based基于端口认证*/
configport3dot1xport-control-modeport-based
configport4dot1xport-control-modeport-based
configport5dot1xport-control-modeport-based
configport6dot1xport-control-modeport-based
configport7dot1xport-control-modeport-based
configport8dot1xport-control-modeport-based
configport9dot1xport-control-modeport-based
configport10dot1xport-control-modeport-based
configport11dot1xport-control-modeport-based
configport12dot1xport-control-modeport-based
configport13dot1xport-control-modeport-based
configport14dot1xport-control-modeport-based
configport15dot1xport-control-modeport-based
configport16dot1xport-control-modeport-based
configport17dot1xport-control-modeport-based
configport18dot1xport-control-modeport-based
configport19dot1xport-control-modeport-based
configport20dot1xport-control-modeport-based
configport21dot1xport-control-modeport-based
configport22dot1xport-control-modeport-based
configport23dot1xport-control-modeport-based
configport24dot1xauthcontrolledportcontrolforceunauth/*24口作为上联口不认证*/
configdot1xkeepaliveenable
!Portbindconfig
!RADIUSclientconfig
radiusauthenticationadd-serverid0server-ip192.168.110.252client-ip192.168.2.254udp-port1812/*设定认证服务器为192.168.110.252,使用UDP端口1812*/
radiusauthenticationconfig-serverid0shared-secret123456
/*设定认证服务器交换信息密码123456*/
radiusaccountingadd-serverid0server-ip192.168.110.252client-ip192.168.2.254udp-port1813
/*设定计费服务器为192.68.110.252,使用UDP端口1813*/
radiusaccountingconfig-serverid0shared-secret123456
/*设定计费服务器交换信息的密码为123456*/
radiusauthenticationenable/*开启认证服务器*/
radiusaccountingenable/*开启计费服务器*/
configisp-domaindefaultauthenticationtypepap/*设定与认证服务器的加密方式为PAP*/
configisp-domaindefaultauthenticationconfig-serverid0typeprimary
configisp-domaindefaultaccountingconfig-serverid0typeprimary
!Loopdetectconfig
!Dot1pconfig
!BroadcastLimitconfig
!Bandwidthconfig
!Usermanageconfig
!SNMPconfig
!Webmanageserviceconfig
!IProuteconfig
iproute0.0.0.00.0.0.0192.168.2.254/*指定管理地址的网关*/
!H.Linkconfig
!Networkaccess-controlserviceconfig
!lldpconfig
!!Endofconfig
(编辑:aisy)
更多相关文章
- · 使用802.1x进行自动VLAN分配2008-01-27
- · 华为3COM交换机PVLAN配置使用说明2008-01-27
- · 以太网络建立多个VLAN实例2008-01-27
- · 经典配置Catalyst6509交换机配置方案2008-01-27
- · VLAN新用途2008-01-27
- · 局域网实现VLAN实例(1)2008-01-27
- · 交换机VLAN技术在校园网络上的应用2008-01-27
- · 为什么需要VPN2008-01-27
- · 电信管理网采用VLAN分析2008-01-27
- · 大型企业网设VLAN2008-01-27
