华为s5700交换机划分VLAN100、VLAN110、VLAN120、VLAN130;默认VLAN1
Vlanif100:192.168.0.124
Vlanif110:192.168.1.124
Vlanif120:192.168.2.124
Vlanif130:192.168.3.124\\此VLAN下的交换机端口与路由的LAN相连
并基于vlanif启用vlanif100、vlanif110、vlanif120的DHCP,
配置默认路由ip route static 0.0.0.00.0.0.0 192.168.3.254\\下一跳IP为路由器LAN口地址
在路由上做回程路由指向下一跳192.168.3.1
现在的情况是192.168.1.0段下的电脑ping不通192.168.0.0段的的电脑(注意是某些此网段的电脑哈,不是所有都ping不通
,当然ping 192.168.0.1是所有都通的);192.168.0.0段ping192.168.1.0段目前还没发现有ping不通的现象,并且
192.168.1.0网段内互ping都是有某些电脑不通。请问什么原因?十万火急!400分求帮助
下面是交换机配置信息:
!Software Version V100R005C01SPC100
sysname Quidway
#
vlan batch 11 to 25 100 110 120 130
#
mac-authen
#
dhcp enable
#
http server load flash:/s5700si-v100r005c01spc100.web.zip
#
time-range mac-deny 00:00 to 23:59 daily
#
acl name denyprint 4001
rule 0 deny ether-ii source-mac 00ee-8904-f872 8021p 7
rule 5 deny source-mac 00ee-8904-f872rule 100 permit
rule 100 permit
#
aaa
authentication-scheme default
authentication-mode radius local
authorization-scheme default
accounting-scheme default
domain default
authorization-scheme default
domain default_admin
local-user admin password simple pyxbl1
local-user admin service-type http
local-user user password simple pyxbl1
local-user user privilege level 3
local-user user service-type telnet terminal
#
interface Vlanif100
ip address 192.168.0.1 255.255.255.0
dhcp select interface
dhcp server excluded-ip-address 192.168.0.2 192.168.0.159
dhcp server excluded-ip-address 192.168.0.250 192.168.0.254
dhcp server dns-list 61.139.2.69 8.8.8.8
dhcp server domain-name dhcp100
#
interface Vlanif110
ip address 192.168.1.1 255.255.255.0
dhcp select interface
dhcp server excluded-ip-address 192.168.1.2 192.168.1.86
dhcp server excluded-ip-address 192.168.1.250 192.168.1.254
dhcp server dns-list 61.139.2.69 8.8.8.8
dhcp server lease day 0 hour 1 minute 0
dhcp server domain-name dhcp110
#
interface Vlanif120
ip address 192.168.2.1 255.255.255.0
#
interface Vlanif130
ip address 192.168.3.1 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
port link-type access
port default vlan 11
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 12
#
interface GigabitEthernet0/0/3
port link-type access
port default vlan 13
#
interface GigabitEthernet0/0/4
port link-type access
port default vlan 14
#
interface GigabitEthernet0/0/5
port link-type access
port default vlan 15
#
interface GigabitEthernet0/0/6
port link-type access
port default vlan 16
#
interface GigabitEthernet0/0/7
port link-type access
port default vlan 17
#
interface GigabitEthernet0/0/8
port link-type access
port default vlan 18
#
interface GigabitEthernet0/0/9
port link-type access
port default vlan 19
#
interface GigabitEthernet0/0/10
port link-type access
port default vlan 20
#
interface GigabitEthernet0/0/11
port link-type access
port default vlan 21
#
interface GigabitEthernet0/0/12
port link-type access
port default vlan 22
#
interface GigabitEthernet0/0/13
port link-type access
port default vlan 23
#
interface GigabitEthernet0/0/14
port link-type access
port default vlan 24
#
interface GigabitEthernet0/0/15
port link-type access
port default vlan 25
#
interface GigabitEthernet0/0/16
port link-type access
port default vlan 100
#
interface GigabitEthernet0/0/17
port link-type access
port default vlan 100
traffic-filter inbound acl name denyprint rule 0
traffic-filter inbound acl name denyprint rule 5
traffic-filter inbound acl name denyprint rule 100#
interface GigabitEthernet0/0/18
port link-type access
port default vlan 110
#
interface GigabitEthernet0/0/19
port link-type access
port default vlan 110
#
interface GigabitEthernet0/0/20
port link-type access
port default vlan 110
#
interface GigabitEthernet0/0/21
port link-type access
port default vlan 120
#
interface GigabitEthernet0/0/22
port link-type access
port default vlan 130
#
interface GigabitEthernet0/0/23
port link-type trunk
port trunk allow-pass vlan 11 to 25
#
interface GigabitEthernet0/0/24
#
interface NULL0
#
ip route-static 0.0.0.0 0.0.0.0 192.168.3.254
#
snmp-agent
snmp-agent local-engineid 000007DB7F00000100003D5E
snmp-agent sys-info version v3
#
mac-address blackhole 00ee-8904-f872 vlan 1
#
user-interface con 0
idle-timeout 0 0
user-interface vty 0 4
authentication-mode aaa
#
return
分享至: