港湾交换机u24配置802.1X的实例

!HammerOSsystemconfigfile

hostnameu24

!Syslogconfig

!Stackconfig

!Portconfig

configport1learningdisable/*设备开启802.1x后将自动关闭端口的地址学习功能*/

configport2learningdisable

configport3learningdisable

configport4learningdisable

configport5learningdisable

configport6learningdisable

configport7learningdisable

configport8learningdisable

configport9learningdisable

configport10learningdisable

configport11learningdisable

configport12learningdisable

configport13learningdisable

configport14learningdisable

configport15learningdisable

configport16learningdisable

configport17learningdisable

configport18learningdisable

configport19learningdisable

configport20learningdisable

configport21learningdisable

configport22learningdisable

configport23learningdisable

configport24learningdisable

!Vlanconfig

configipaddress192.168.2.254255.255.255.0/*设置设备的管理IP地址*/

!Arpconfig

!STPDconfig

!FDBentryconfig

createfdbentry00053b8015edport24/*在24端口静态设置上联三层设备的MAC地址*/

!Igmpsnoopingconfig

!Mirroringconfig

!Tracerouteconfig

!Sntpconfig

!Timezoneconfig

!Rstpconfig

!Dot1xconfig

configdot1xenable/*开启802.1x认证功能*/

configport1dot1xport-control-modeport-based/*设定1-23端口打开认证,认证模式为

configport2dot1xport-control-modeport-based基于端口认证*/

configport3dot1xport-control-modeport-based

configport4dot1xport-control-modeport-based

configport5dot1xport-control-modeport-based

configport6dot1xport-control-modeport-based

configport7dot1xport-control-modeport-based

configport8dot1xport-control-modeport-based

configport9dot1xport-control-modeport-based

configport10dot1xport-control-modeport-based

configport11dot1xport-control-modeport-based

configport12dot1xport-control-modeport-based

configport13dot1xport-control-modeport-based

configport14dot1xport-control-modeport-based

configport15dot1xport-control-modeport-based

configport16dot1xport-control-modeport-based

configport17dot1xport-control-modeport-based

configport18dot1xport-control-modeport-based

configport19dot1xport-control-modeport-based

configport20dot1xport-control-modeport-based

configport21dot1xport-control-modeport-based

configport22dot1xport-control-modeport-based

configport23dot1xport-control-modeport-based

configport24dot1xauthcontrolledportcontrolforceunauth/*24口作为上联口不认证*/

configdot1xkeepaliveenable

!Portbindconfig

!RADIUSclientconfig

radiusauthenticationadd-serverid0server-ip192.168.110.252client-ip192.168.2.254udp-port1812/*设定认证服务器为192.168.110.252,使用UDP端口1812*/

radiusauthenticationconfig-serverid0shared-secret123456

/*设定认证服务器交换信息密码123456*/

radiusaccountingadd-serverid0server-ip192.168.110.252client-ip192.168.2.254udp-port1813

/*设定计费服务器为192.68.110.252,使用UDP端口1813*/

radiusaccountingconfig-serverid0shared-secret123456

/*设定计费服务器交换信息的密码为123456*/

radiusauthenticationenable/*开启认证服务器*/

radiusaccountingenable/*开启计费服务器*/

configisp-domaindefaultauthenticationtypepap/*设定与认证服务器的加密方式为PAP*/

configisp-domaindefaultauthenticationconfig-serverid0typeprimary

configisp-domaindefaultaccountingconfig-serverid0typeprimary

!Loopdetectconfig

!Dot1pconfig

!BroadcastLimitconfig

!Bandwidthconfig

!Usermanageconfig

!SNMPconfig

!Webmanageserviceconfig

!IProuteconfig

iproute0.0.0.00.0.0.0192.168.2.254/*指定管理地址的网关*/

!H.Linkconfig

!Networkaccess-controlserviceconfig

!lldpconfig

!!Endofconfig

(编辑:aisy)

【已有0位网友发表了看法,点击查看。】

推荐资讯 »

视频推荐

最近更新软件推荐

打造电脑爱好者者乐园 766it.com

电脑爱好者QQ群1:8225196群2:2375353群3:41112669