ar18路由器网吧和负载分担配置指导
- 格式:pdf
- 大小:199.10 KB
- 文档页数:14
Quidway AR 18-3XE/18-21X系列路由器安装手册资料版本:T1-08041E-20051216-C-1.01BOM 编码:3104A01E华为技术有限公司为客户提供全方位的技术支持。
通过华为技术有限公司代理商购买产品的用户,请直接与销售代理商联系。
直接向华为技术有限公司购买产品的用户,可与就近的华为办事处或用户服务中心联系,也可直接与公司总部联系。
华为技术有限公司地址:深圳市龙岗区坂田华为总部办公楼邮编:518129网址:声明Copyright ©2005华为技术有限公司版权所有,保留一切权利。
非经本公司书面许可,任何单位和个人不得擅自摘抄、复制本书内容的部分或全部,并不得以任何形式传播。
由于产品版本升级或其它原因,本手册内容会不定期进行更新。
除非另有约定,本手册仅作为使用指导,本手册中的所有陈述、信息和建议不构成任何明示或暗示的担保。
本产品符合关于环境保护方面的设计要求,产品的存放、使用和弃置应遵照相关国家法律、法规要求进行。
安装手册目录目录第1章产品介绍...............................................................................1-11.1 简介....................................................................................1-11.2 AR 18-30E路由器硬件特性................................................1-21.3 AR 18-31E路由器硬件特性................................................1-61.4 AR 18-32E路由器硬件特性................................................1-91.5 AR 18-35E路由器硬件特性..............................................1-121.6 AR 18-21A路由器硬件特性..............................................1-151.7 AR 18-21B路由器硬件特性..............................................1-18第1章产品介绍1.1 简介Quidway AR 18-3XE和AR 18-21X系列路由器是华为公司面向家庭办公、小型办公室(Small Office Home Office,SOHO)开发的ADSL2+路由器产品(下面简称AR 18-3XE/18-21X)。
好网吧好网络——华为3COM网吧网络解决方案之网关配置指导——华为三康技术有限公司Huawei-3Com Technologies Co., Ltd.版权所有侵权必究All rights reserved目录第一部分配置原则概述 (3)1需要注意的配置事项 (3)1.1配置ACL对非法报文进行过滤 (3)1.1.1进行源IP和目的IP过滤 (3)1.1.2限制ICMP报文 (5)1.1.3限制netbios协议端口 (5)1.1.4限制常见病毒使用的端口 (6)1.1.5关闭没有使用的端口 (7)1.2NAT配置注意事项 (7)1.3路由配置注意事项 (7)1.4进行IP-MAC地址绑定 (8)1.5限制P2P应用(根据实际情况可选) (8)1.5.1通过ACL限制端口 (8)1.5.2结合QOS和ACL限制端口流量 (9)1.5.3限制单机的NAT会话数 (11)1.5.4在客户机上通过软件限制 (11)2附:限制常见P2P软件端口的ACL (11)第二部分典型配置实例 (12)1单出口典型配置 (12)1.1局域网内的主机地址是私网IP地址 (12)1.2局域网内的主机地址是公网IP地址 (19)2双出口链路备份典型配置 (27)2.1两条链路都是以太网链路的情况 (27)2.2两条链路是以太网链路+PPPOE链路的情况 (36)3双出口同时实现负载分担和链路备份典型配置 (45)第一部分配置原则概述随着网络建设和应用的不断深入,网络安全问题正逐渐成为一个突出的管理问题。
AR18系列路由器通过多种手段和配置可以控制和管理网络的流量,能够有效地实施各种防攻击策略。
尤其在网吧这种复杂的网络环境中,全面合理的配置能够大大提高网络的稳定性和可靠性。
由于网吧上网人员数量多、构成复杂、流动性大,因此网络流量具有流量大、协议种类多、流量复杂等特点。
一般网吧局域网内均有一定程度主机感染病毒,同时也很容易被用来发起网络攻击,或者被他人攻击,这就对网吧中的核心设备――网关提出了较高的要求。
AR18网吧路由器电信、网通双线路智能切换配置指导在很多地区,网吧用户同时申请了中国电信和中国网通两条宽带接入线路,如果此时双线路采用常规的“负载均衡”方式,就会发生访问网通站点走电信线路,访问电信站点走网通线路的情况,由于当前网通和电信两个运营商之间存在着互联互通速度慢的问题,造成速度瓶颈。
如何实现“访问网通站点走网通线路,访问电信站点走电信线路”呢?在华为AR系列路由器上可以通过配置策略路由的方式满足以上需要。
一。
配置访问控制列表,定义访问目的地址为网通的地址段进入系统视图,创建ACL 3100:<Quidway>systemSystem View: return to User View with Ctrl+Z.[Quidway]acl num 3100[Quidway-acl-adv-3100]可以直接复制粘贴如下规则:rule 0 permit ip destination 60.0.0.0 0.7.255.255rule 1 permit ip destination 60.0.0.0 0.8.255.255rule 2 permit ip destination 60.0.0.0 0.9.255.255rule 3 permit ip destination 60.0.0.0 0.10.255.255rule 4 permit ip destination 60.0.0.0 0.11.255.255rule 5 permit ip destination 60.8.0.0 0.3.255.255rule 6 permit ip destination 60.12.0.0 0.0.255.255rule 7 permit ip destination 60.13.0.0 0.0.63.255rule 8 permit ip destination 60.13.128.0 0.0.127.255rule 9 permit ip destination 60.16.0.0 0.15.255.255rule 10 permit ip destination 60.208.0.0 0.7.255.255rule 11 permit ip destination 60.216.0.0 0.1.255.255rule 12 permit ip destination 60.220.0.0 0.3.255.255rule 13 permit ip destination 61.48.0.0 0.3.255.255rule 14 permit ip destination 61.52.0.0 0.1.255.255rule 15 permit ip destination 61.54.0.0 0.0.255.255rule 16 permit ip destination 61.55.0.0 0.0.255.255rule 17 permit ip destination 61.133.0.0 0.0.127.255rule 18 permit ip destination 61.134.64.0 0.0.63.255rule 19 permit ip destination 61.134.128.0 0.0.127.255rule 20 permit ip destination 61.135.0.0 0.0.255.255rule 21 permit ip destination 61.136.0.0 0.0.255.255rule 22 permit ip destination 61.138.0.0 0.0.127.255rule 23 permit ip destination 61.139.128.0 0.0.63.255rule 24 permit ip destination 61.148.0.0 0.0.255.255rule 25 permit ip destination 61.149.0.0 0.0.255.255rule 26 permit ip destination 61.156.0.0 0.0.255.255rule 27 permit ip destination 61.158.0.0 0.0.255.255rule 28 permit ip destination 61.159.0.0 0.0.63.255rule 29 permit ip destination 61.161.0.0 0.0.63.255rule 31 permit ip destination 61.162.0.0 0.0.255.255 rule 32 permit ip destination 61.163.0.0 0.0.255.255 rule 33 permit ip destination 61.167.0.0 0.0.255.255 rule 34 permit ip destination 61.168.0.0 0.0.255.255 rule 35 permit ip destination 61.176.0.0 0.0.255.255 rule 36 permit ip destination 61.179.0.0 0.0.255.255 rule 37 permit ip destination 61.180.128.0 0.0.127.255 rule 38 permit ip destination 61.181.0.0 0.0.255.255 rule 39 permit ip destination 61.182.0.0 0.0.255.255 rule 40 permit ip destination 61.189.0.0 0.0.127.255 rule 41 permit ip destination 202.32.0.0 0.31.255.255 rule 42 permit ip destination 202.96.64.0 0.0.31.255 rule 43 permit ip destination 202.97.128.0 0.0.127.255 rule 44 permit ip destination 202.98.0.0 0.0.31.255 rule 45 permit ip destination 202.99.0.0 0.0.255.255 rule 46 permit ip destination 202.102.128.0 0.0.63.255 rule 47 permit ip destination 202.102.224.0 0.0.1.255 rule 48 permit ip destination 202.106.0.0 0.0.255.255 rule 49 permit ip destination 202.107.0.0 0.0.127.255 rule 50 permit ip destination 202.108.0.0 0.0.255.255 rule 51 permit ip destination 202.110.0.0 0.0.127.255 rule 52 permit ip destination 202.110.192.0 0.0.63.255 rule 53 permit ip destination 202.111.128.0 0.0.63.255 rule 54 permit ip destination 210.51.0.0 0.0.255.255 rule 55 permit ip destination 210.52.0.0 0.1.255.255 rule 56 permit ip destination 218.4.0.0 0.3.255.255 rule 57 permit ip destination 218.10.0.0 0.1.255.255 rule 58 permit ip destination 218.21.128.0 0.0.127.255 rule 59 permit ip destination 218.24.0.0 0.1.255.255 rule 60 permit ip destination 218.26.0.0 0.0.255.255 rule 61 permit ip destination 218.27.0.0 0.0.255.255 rule 62 permit ip destination 218.28.0.0 0.1.255.255 rule 63 permit ip destination 218.56.0.0 0.3.255.255 rule 64 permit ip destination 218.60.0.0 0.1.255.255 rule 65 permit ip destination 218.62.0.0 0.0.127.255 rule 66 permit ip destination 218.67.128.0 0.0.127.255 rule 67 permit ip destination 218.68.0.0 0.1.255.255 rule 68 permit ip destination 219.141.128.0 0.0.127.255 rule 69 permit ip destination 219.142.0.0 0.1.255.255 rule 70 permit ip destination 219.154.0.0 0.1.255.255 rule 71 permit ip destination 219.156.0.0 0.1.255.255 rule 72 permit ip destination 219.158.0.0 0.0.255.255 rule 73 permit ip destination 219.159.0.0 0.0.63.255rule 75 permit ip destination 221.4.0.0 0.1.255.255rule 76 permit ip destination 221.6.0.0 0.0.255.255rule 77 permit ip destination 221.7.128.0 0.0.127.255rule 78 permit ip destination 221.8.0.0 0.1.255.255rule 79 permit ip destination 221.10.0.0 0.0.255.255rule 80 permit ip destination 221.11.0.0 0.0.127.255rule 81 permit ip destination 221.12.0.0 0.3.255.255rule 82 permit ip destination 221.12.0.0 0.0.127.255rule 83 permit ip destination 221.12.128.0 0.0.63.255rule 84 permit ip destination 221.192.0.0 0.3.255.255rule 85 permit ip destination 221.196.0.0 0.1.255.255rule 86 permit ip destination 221.199.0.0 0.0.31.255rule 87 permit ip destination 221.199.32.0 0.0.15.255rule 88 permit ip destination 221.199.128.0 0.0.63.255rule 89 permit ip destination 221.199.192.0 0.0.15.255rule 90 permit ip destination 221.200.0.0 0.3.255.255rule 91 permit ip destination 221.204.0.0 0.1.255.255rule 92 permit ip destination 221.207.0.0 0.0.63.255rule 93 permit ip destination 221.208.0.0 0.15.255.255rule 94 permit ip destination 222.128.0.0 0.3.255.255rule 95 permit ip destination 222.132.0.0 0.3.255.255rule 96 permit ip destination 222.136.0.0 0.7.255.255rule 97 permit ip destination 222.160.0.0 0.3.255.255注:以上规则已经包含大部分网通地址段,如有更新可以动态添加。
H3CAR18-21路由器快速配置H3C AR 18-21路由器产品介绍H3C AR 18-21路由器是华为3Com公司开发的新一代专业的宽带路由器,它将路由和交换设备有机地结合在一起,为中小企业和网吧提供交换及接入的一体化解决方案。
AR 18-21宽带路由器采用全新的硬件和软件平台,具备更高的数据转发性能和数据加密性能,并且其4个交换网口支持VLAN划分。
该产品功能特性丰富,并支持Web 网管、端口镜像等特性,AR 18-21宽带路由器是中小企业和网吧等用户的理想选择。
产品特点多WAN口(1-3个WAN口),支持负载分担和端到端线路检测的备份机制(Auto-detect)高处理性能,CPU主频从200M到400M,带机数量高支持端口镜像、Web网管、DDNS和防BT等功能特征交换端口支持VLAN划分,带S的机型支持硬件加密功能◆路由和交换一体化AR 18-21路由器产品支持4个不等的交换以太网接口,这是一种典型的路由器集成交换机的路由交换一体化产品,特别适合中小企业、企业分支机构和网吧等的综合应用组网。
18-21有4个10/100M以太网交换端口,这些产品的交换端口均支持VLAN的划分,可以满足大多数中小企业的组网及隔离不同业务的要求。
用户只需一台交换路由器,无需购买交换机设备,便可实现多用户接入Internet,节约用户网络建设的费用、增强用户应用的方便性。
AR 18-21具有1个10/100M以太网WAN接口,可实现单出口线路的通信。
这完美地解决了中小企业和网吧用户实现双线路或多线路的通信接入中的负载分担和备份的问题。
◆VPN解决方案AR 18-21路由器集成了VPN网关的功能,通过在路由器上面建立VPN隧道,可以将远程分支机构通过Internet安全、廉价地接入总部网络。
因此对于有大量分支机构需要接入总部的企业,可以用VPN 技术来代替昂贵的专线接入。
支持L2TP VPN、GRE VPN、IPSec VPN,轻松的实现企业的各种类型的VPN接入要求。
AR18路由器的配置1.连接路由器:1.1:首先,您要找到路由器自带的Console线,该线一端是RJ45头,一头是DB-9的COM头,您把RJ45头插到路由器的CON口,COM头接到您PC的COM1口中,然后把路由器和PC机都通电.1.2:超级终端的设置:点击Windows的"开始"菜单---程序---附件---通讯---超级终端(图片一),打开超级终端程序,初始界面如下(图片二):图片一图片二1.3:在出现的新建连接对话框里,随便输入一个连接名,比如H3C,然后点确定,会弹出连接到对话框:在此对话框里中的"连接时使用"下拉框中,选择COM1,点击确定,出现"端口参数设置"对话框:参数设置如上图,或者直接点击下方的"还原为默认值",即可,点击确定后,如果您的PC和Console线都没有问题,您搞几下回车键,您就可以看到以下画面,表明已经进入了路由器的命令设置模式:到此,路由器的初始连接就已经完成了,剩下的就是我们进行命令配置了.2.命令配置:syslocal-user adminpassword cipher adminservice-type telnet level 3quituser-interface vty 0 4authentication-mode schemequitsave此时,您可以用IE浏览器打开路由器了,将PC连接到任意一个LAN口,设置一个与网关地址在同一网段的IP地址,保证能Ping通网关,再在IE浏览器中输入网关地址,即能打开路由器的Web配置页面,用户名和密码如上红颜色的.1.将路由器重启后,按Ctrl+B,进入BootRom菜单,会提示要密码,默认没有,输入回车即可以进去,如果回车不行的话,有:WhiteLily2970013这个万能密码进入。
注意大小写。
2.进入后,会有这样一个菜单:Boot Menu:1: Download application program with XMODEM2: Download application program with NET3: Start up and ignore configuration4: Enter debugging environment5: Boot Rom Operation Menu6: Do not check the version of the software7: Exit and rebootEnter your choice(1-7):3.选择3,输入Y,再选择7,重启路由器。
H3C AR 18系列路由器web配置手册杭州华三通信技术有限公司资料版本:T1-08016G-20071017-C-1.03声明Copyright ©2006-2007 杭州华三通信技术有限公司及其许可者版权所有,保留一切权利。
未经本公司书面许可,任何单位和个人不得擅自摘抄、复制本书内容的部分或全部,并不得以任何形式传播。
H3C、、Aolynk、、H3Care、、TOP G、、IRF、NetPilot、Neocean、NeoVTL、SecPro、SecPoint、SecEngine、SecPath、Comware、Secware、Storware、NQA、VVG、V2G、V n G、PSPT、XGbus、N-Bus、TiGem、InnoVision、HUASAN、华三均为杭州华三通信技术有限公司的商标。
对于本手册中出现的其它公司的商标、产品标识及商品名称,由各自权利人拥有。
除非另有约定,本手册仅作为使用指导,本手册中的所有陈述、信息和建议不构成任何明示或暗示的担保。
如需要获取最新手册,请登录。
技术支持用户支持邮箱:customer_service@技术支持热线电话:800-810-0504(固话拨打)400-810-0504(手机、固话均可拨打)网址:前言相关手册手册名称用途《Comware V3 操作手册》对用户使用Comware V3进行操作指导。
包括入门、系统管理、接口、链路层协议、网络协议、路由协议、组播、安全、VPN、可靠性、QoS和拨号部分。
《Comware V3 命令手册》详细解释Comware V3中的操作命令。
包括入门、系统管理、接口、链路层协议、网络协议、路由协议、组播、安全、VPN、可靠性、QoS、拨号部分。
本书简介《H3C AR 18系列路由器 web 配置手册》各章节内容如下:z第1章概述。
介绍web网管及配置准备。
z第2章设备概览。
介绍web网管设备概要页面。
静态路由配置命令目录第1章静态路由配置命令1.1 路由表的显示命令1.1.1 display ip routing-table1.1.2 display ip routing-table acl1.1.3 display ip routing-table ip-address1.1.4 display ip routing-table ip-address1 ip-address2 1.1.5 display ip routing-table ip-prefix1.1.6 display ip routing-table protocol1.1.7 display ip routing-table radix1.1.8 display ip routing-table statistics1.1.9 display ip routing-table verbose1.1.10 display ip routing-table vpn-instance1.1.11 reset ip routing-table1.2 静态路由配置命令1.2.1 delete static-routes all1.2.2 ip route-static1.3 基于带宽的非平衡负载分担命令1.3.1 band-based-sharing1.3.2 display loadsharing ip address1.3.3 loadbandwidth1.3.4 reset loadsharing第2章 RIP配置命令2.1 RIP配置命令2.1.1 checkzero2.1.2 debugging rip2.1.3 default cost2.1.4 display rip2.1.5 display rip interface2.1.6 display rip routing2.1.7 display rip vpn-instance2.1.8 filter-policy export2.1.9 filter-policy import2.1.10 host-route2.1.11 import-route2.1.12 ipv4-family vpn-instance2.1.13 network2.1.14 peer2.1.15 preference2.1.16 reset2.1.17 rip2.1.18 rip authentication-mode2.1.19 rip input2.1.20 rip metricin2.1.21 rip metricout2.1.22 rip output2.1.23 rip split-horizon2.1.24 rip triggered2.1.25 rip version2.1.26 rip work2.1.27 summary2.1.28 timers2.1.29 traffic-share-across-interface2.1.30 validate-source-address第3章 OSPF配置命令3.1 OSPF配置命令3.1.1 abr-summary3.1.2 area3.1.3 asbr-summary3.1.4 authentication-mode3.1.5 debugging ospf3.1.6 default cost3.1.7 default interval3.1.8 default limit3.1.9 default tag3.1.10 default type3.1.11 default-cost3.1.12 default-route-advertise 3.1.13 display debugging ospf3.1.14 display ospf abr-asbr3.1.15 display ospf asbr-summary 3.1.16 display ospf brief3.1.17 display ospf cumulative 3.1.18 display ospf error3.1.19 display ospf interface3.1.20 display ospf lsdb3.1.21 display ospf nexthop3.1.22 display ospf peer3.1.23 display ospf request-queue 3.1.24 display ospf retrans-queue3.1.25 display ospf routing3.1.26 display ospf vlink3.1.27 display ospf memory3.1.28 filter-policy export3.1.29 filter-policy import3.1.30 import-route3.1.31 log-peer-change3.1.32 multi-path-number3.1.33 network3.1.34 nssa3.1.35 opaque-capbility3.1.36 ospf3.1.37 ospf authentication-mode 3.1.38 ospf cost3.1.39 ospf dr-priority3.1.40 ospf mib-binding3.1.41 ospf mtu-enable3.1.42 ospf network-type3.1.43 ospf timer dead3.1.44 ospf timer hello3.1.45 ospf timer poll3.1.46 ospf timer retransmit 3.1.47 ospf trans-delay3.1.48 peer3.1.49 preference3.1.50 reset ospf3.1.51 router id3.1.52 silent-interface3.1.53 snmp-agent trap enable ospf 3.1.54 spf-schedule-interval3.1.55 stub3.1.56 vlink-peer第4章集成化IS-IS配置命令4.1 集成化IS-IS配置命令4.1.1 area-authentication-mode4.1.2 cost-style4.1.3 debugging isis4.1.4 default-route-advertise4.1.5 display isis brief4.1.6 display isis interface4.1.7 display isis lsdb4.1.8 display isis mesh-group4.1.9 display isis peer4.1.10 display isis routing4.1.11 display isis spf-log4.1.12 domain-authentication-mode 4.1.13 filter-policy export4.1.14 filter-policy import4.1.15 ignore-lsp-checksum-error 4.1.16 import-route4.1.17 import-route isis4.1.18 isis4.1.19 isis authentication-mode 4.1.20 isis circuit-level4.1.21 isis cost4.1.22 isis dis-priority4.1.23 isis enable4.1.24 isis mesh-group4.1.25 isis small-hello4.1.26 isis timer csnp4.1.27 isis timer hello4.1.28 isis timer holding-multiplier 4.1.29 isis timer lsp4.1.30 isis timer retransmit4.1.31 is-level4.1.32 log-peer-change4.1.33 md5-compatible4.1.34 network-entity4.1.35 preference4.1.36 reset isis all4.1.37 reset isis peer4.1.38 set-overload4.1.39 silent-interface4.1.40 spf-delay-interval4.1.41 spf-slice-size4.1.42 summary4.1.43 timer lsp-max-age4.1.44 timer lsp-refresh4.1.45 timer spf第5章 BGP配置命令5.1 BGP配置命令5.1.1 aggregate5.1.2 balance5.1.3 bgp5.1.4 compare-different-as-med5.1.5 confederation id5.1.6 confederation nonstandard5.1.7 confederation peer-as5.1.8 dampening5.1.9 debugging bgp5.1.10 default-route imported5.1.11 default local-preference5.1.12 default med5.1.13 display bgp group5.1.14 display bgp network5.1.15 display bgp paths5.1.16 display bgp peer5.1.17 display bgp routing5.1.18 display bgp routing as-path-acl5.1.19 display bgp routing cidr5.1.20 display bgp routing community5.1.21 display bgp routing community-list5.1.22 display bgp routing dampened5.1.23 display bgp routing different-origin-as5.1.24 display bgp routing flap-info5.1.25 display bgp routing peer5.1.26 display bgp routing peer dampened5.1.27 display bgp routing peer regular-expression5.1.28 display bgp routing regular-expression 5.1.29 display bgp routing statistic5.1.30 filter-policy export5.1.31 filter-policy import5.1.32 group5.1.33 import-route5.1.34 ip as-path-acl5.1.35 ip community-list5.1.36 log-peer-change5.1.37 network5.1.38 peer advertise-community5.1.39 peer allow-as-loop5.1.40 peer as-number5.1.41 peer as-path-acl5.1.42 peer connect-interface5.1.43 peer default-route-advertise5.1.44 peer description5.1.45 peer ebgp-max-hop5.1.46 peer enable5.1.47 peer filter-policy5.1.48 peer group5.1.49 peer ip-prefix5.1.50 peer next-hop-local5.1.51 peer password5.1.52 peer public-as-only5.1.53 peer reflect-client5.1.54 peer route-policy5.1.55 peer route-update-interval 5.1.56 peer shutdown5.1.57 peer timer5.1.58 preference5.1.59 reflect between-clients 5.1.60 reflector cluster-id5.1.61 refresh bgp5.1.62 reset bgp5.1.63 reset bgp flap-info5.1.64 reset bgp group5.1.65 reset dampening5.1.66 summary5.1.67 timer keep-alive hold5.1.68 undo synchronization5.2 MBGP配置命令5.2.1 ipv4-family5.2.2 ipv4-family vpnv4第6章 IP路由策略配置命令6.1 IP路由策略配置命令6.1.1 apply as-path6.1.2 apply community6.1.3 apply cost6.1.4 apply cost-type6.1.5 apply ip-address6.1.6 apply isis6.1.7 apply local-preference6.1.8 apply origin6.1.9 apply tag6.1.10 display ip ip-prefix6.1.11 display route-policy6.1.12 filter-policy export6.1.13 filter-policy import6.1.14 if-match acl6.1.15 if-match as-path6.1.16 if-match community6.1.17 if-match cost6.1.18 if-match interface6.1.19 if-match ip next-hop6.1.20 if-match ip-prefix6.1.21 if-match tag6.1.22 ip ip-prefix6.1.23 route-policy第7章路由容量配置命令7.1 路由容量配置命令7.1.1 display memory7.1.2 memory auto-establish disable 7.1.3 memory auto-establish enable 7.1.4 memory第1章静态路由配置命令说明:本章中有关VPN实例的参数解释及举例,请参见本手册的“MPLS”模块。
华为H3Car18-23-1路由器设置华为H3C ar 18-23-1路由器设置,帮忙写下命令,高分求2009-02-01 18:18yangli1321|分类:网络连接|浏览2487次IP:221.130.71.114255.255.255.248221.130.71.113211.138.200.69211.103.13.101以下是我配的,没DNS高分求命令,急需[H3C]acl number 2000[H3C-acl-basic-2000][H3C-acl-basic-2000]rule 0 permit source 192.168.1.0 0.0.0.255[H3C-acl-basic-2000]rule 1 deny[H3C-acl-basic-2000]quit[H3C]quidway^% Unrecognized command found at '^' position.[H3C]interface ethernet1/0[H3C-Ethernet1/0][H3C-Ethernet1/0]ip address 192.168.1.1 255.255.255.0 Warning: Address already exists![H3C-Ethernet1/0]ip address 192.168.1.1 255.255.255.0 Warning: Address already exists![H3C-Ethernet1/0]quit[H3C]interface ethernet3/0[H3C-Ethernet3/0]ip address 221.130.71.114 255.255.255.248 [H3C-Ethernet3/0]nat outbound 2000[H3C-Ethernet3/0]quit[H3C]ip route-static 0.0.0.0 0.0.0.0 221.130.71.113 preference 60 [H3C]quitsaveThe configuration will be written to the device.Are you sure?[Y/N]yNow saving current configuration to the device.Saving configuration flash:/config.cfg. Please wait.........Current configuration has been saved to the device successfully.分享到:2009-02-02 08:56知识大富翁,挑战答题赢iPhone!提问者采纳不清楚你的网络具体拓扑,这是大概的命令,你自己改一下IP地址就行了# 1、配置NAT的ACL[Quidway] acl number 2001 match-order auto[Quidway-acl-basic-2001] rule 0 permit source 192.168.1.0 0.0.0.255 [Quidway-acl-basic-2001] rule 1 deny# 2、创建拨号规则、配置Dialer接口[Quidway] dialer-rule 1 ip permit[Quidway] interface Dialer 1[Quidway-dialer1] link-protocol ppp[Quidway-dialer1] ppp pap local-user ********** password simple ******** /我的ADSL帐号和密码/ [Quidway-dialer1] ip address ppp-negotiate [Quidway-dialer1] mtu 1450[Quidway-dialer1] tcp mss 1024[Quidway-dialer1] dialer user mypppoe[Quidway-dialer1] dialer-group 1[Quidway-dialer1] dialer bundle 1[Quidway-dialer1] nat outbound 2001# 3、配置PPPoE会话[Quidway] interface Ethernet2/0[Quidway-Ethernet2/0] pppoe-client dial-bundle-number 1 # 4、配置内网DHCP[Quidway] dhcp enable[Quidway] dhcp server forbidden-ip 192.168.1.1[Quidway] dhcp server forbidden-ip 192.168.1.2 192.168.1.100[Quidway] dhcp server ip-pool 1[Quidway-dhcp-pool-1] network 192.168.1.0 mask 255.255.255.0[Quidway-dhcp-pool-1] gateway-list 192.168.1.1[Quidway-dhcp-pool-1] expired day 8 hour 12[Quidway-dhcp-pool-1] dns-list 202.96.209.5 202.96.209.133 # 5、配置局域网接口[Quidway] interface Ethernet1/0[Quidway-Ethernet1/0] ip address 192.168.1.1 255.255.255.0 [Quidway-Ethernet1/0] tcp mss 1024[Quidway-Ethernet1/0] dhcp select interface# 6、配置Dialer接口为默认路由出口[Quidway] ip route-static 0.0.0.0 0.0.0.0 Dialer 1 preference 60# 8、保存配置save不过在配置局域网接口加上:[Quidway-Ethernet1/0] dhcp server dns-list 202.96.209.5 202.96.209.133 (此处DNS是你当地的DNS,自行更改)o华为h3c的路由器命令包含端口绑定.doc【预览中】o华为路由器设置图解(1).doc【可预览】标签:华为路由器基础命令。
AR18路由器负载分担配置指导华为三康技术有限公司Huawei-3Com Technologies Co., Ltd.版权所有侵权必究All rights reserved前言在很多地区,网吧用户同时申请了中国电信和中国网通两条宽带接入线路,如果此时双线路采用常规的“负载均衡”方式,就会发生访问网通站点走电信线路,访问电信站点走网通线路的情况,由于当前网通和电信两个运营商之间存在着互联互通速度慢的问题,造成速度瓶颈。
如何实现“访问网通站点走网通线路,访问电信站点走电信线路”呢?在华为AR系列路由器上可以通过配置策略路由的方式满足以上需要。
1 路由器连接 第一步:建立本地配置环境,只需将微机(或终端)的串口通过标准RS-232电缆与路由器的Console 口连接,如0所示。
搭建本地配置环境通过Console 口搭建本地配置环境第二步:在微机上运行终端仿真程序(Win9X 的超级终端等),设置终端通信参数为9600bps 、8位数据位、1位停止位、无奇偶校验和无流量控制,并选择终端类型为VT100,如0至0所示。
新建连接连接端口设置端口通信参数设置第三步:路由器上电自检,系统自动进行配置,自检结束后提示用户键入回车,直到出现命令行提示符(如<Quidway>)。
2 负载分担配置指导2.1 定义监测组,分别监测电信和网通网关:进入系统视图,创建detect-group 1,监测电信网关:<Quidway>systemSystem View: return to User View with Ctrl+Z.[Quidway] detect-group 1[Quidway-detect-group-1][Quidway-detect-group-1]detect-list 1 ip address 60.190.80.113[Quidway-detect-group-1]quit创建detect-group 1,监测网通网关:[Quidway]detect-group 2[Quidway-detect-group-2]detect-list 1 ip address 221.12.79.49[Quidway-detect-group-2]quit[Quidway]注:以上以地址60.190.80.113最为电信网关地址,地址221.12.79.49为网通网关地址为例,可以根据实际组网情况修改。
2.2 配置两条默认路由互为备份,优先走电信线路:[Quidway]ip route-static 0.0.0.0 0.0.0.0 60.190.80.113 preference 60 detect-group 1[Quidway]ip route-static 0.0.0.0 0.0.0.0 221.12.79.49 preference 100 detect-group 2注:以上以地址60.190.80.113最为电信网关地址,地址221.12.79.49为网通网关地址为例,可以根据实际组网情况修改。
2.3 配置静态路由与监测组关联,使访问网通流量优先走网通线路:以下配置较多,配置过程中可以用实际网通网关地址替换地址221.12.79.49后直接复制粘贴:ip route-static 58.16.0.0 255.248.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 58.100.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 58.240.0.0 255.240.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 60.0.0.0 255.248.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 60.8.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 60.12.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 60.13.0.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 60.13.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 60.16.0.0 255.240.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 60.24.0.0 255.248.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 60.31.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 60.208.0.0 255.248.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 60.216.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 60.220.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.48.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.52.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.54.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.55.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.133.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.134.64.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.134.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.135.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.136.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.138.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.139.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.148.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.149.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.156.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.158.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.159.0.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.161.0.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.161.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.162.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.163.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.167.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.168.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.176.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.179.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.180.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.181.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 61.182.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 61.189.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 124.90.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 124.162.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 192.168.2.246 255.255.255.255 192.168.2.254 preference 60ip route-static 202.32.0.0 255.224.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.96.64.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.97.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.98.0.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.99.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.102.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.102.224.0 255.255.254.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.106.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 202.107.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.108.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.110.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.110.192.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 202.111.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.79.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.80.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.81.0.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2ip route-static 203.86.32.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2ip route-static 203.86.64.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.90.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.90.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.90.192.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 203.92.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.12.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.12.192.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.13.0.0 255.255.255.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.14.160.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.14.192.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.15.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.15.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.16.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.21.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.22.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.51.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.52.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.52.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2ip route-static 210.53.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.74.64.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.74.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.78.0.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 210.82.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 211.100.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 211.101.0.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 211.147.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 211.167.96.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.4.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 218.10.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 218.21.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.24.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.26.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.27.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.28.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.56.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.60.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 218.62.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.67.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.68.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 218.109.159.0 255.255.255.0 221.12.79.49 preference 60 detect-group 2 ip route-static 219.141.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 219.142.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 219.154.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 219.156.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 219.158.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 219.159.0.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 220.248.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 220.252.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.0.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 221.4.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 221.6.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 221.7.128.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.8.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 221.10.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.11.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.12.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.12.0.0 255.255.128.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.12.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2ip route-static 221.192.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.195.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.196.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.199.0.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.199.32.0 255.255.240.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.199.128.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.199.192.0 255.255.240.0 221.12.79.49 preference 60 detect-group 2ip route-static 221.200.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.204.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.207.0.0 255.255.192.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.208.0.0 255.240.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.208.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.213.0.0 255.255.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 221.214.0.0 255.254.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 222.128.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2ip route-static 222.132.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 222.136.0.0 255.248.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 222.160.0.0 255.252.0.0 221.12.79.49 preference 60 detect-group 2 ip route-static 222.163.0.0 255.255.224.0 221.12.79.49 preference 60 detect-group 2ip route-static 0.0.0.0 0.0.0.0 20.1.1.2 preference 60注:以上路由已经包含大部分网通地址段,如有更新可以动态添加。