3COM 4400 CONFIG 設定檔 (教學)
#<header>3Com_DEVICE</header>
#<key>3C17203M1:633C17203M2:6343C17203M3:1343C17203M4:1343C17203M5:1343C17203M6:3413C17203M7:31</key>
#<version>1</version>
#<description>IP address 10.96.16.8, 3Com SuperStack 3</description>
#<usernotes>4400backup</usernotes>
#<mode>ERROR_CHECK_ON</mode>
#
# WARNING: This file is automatically generated and follows specific
# command ordering rules. Users may add or alter commands in this file
# but must do so with caution as it may affect the ability to restore the
# configuration of the device.
#
# Password, community string and IP address information may be added to
# this file but are not automatically saved by the system to avoid breaches
# of security. If these commands are to be added please add them at the
# end of the file.
#
# The following key can be used to disable the error checking while the
# configuration is restored:
# #<mode>ERROR_CHECK_OFF</mode>
# To re-enable error checking use the following key:
# #<mode>ERROR_CHECK_ON</mode>
#
#--------------------------------------------------------------
# PRODUCT INFORMATION SECTION
#--------------------------------------------------------------
# Unit Number : 1
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0a:04:70:31:00
# Serial Number : 7PVV1E7703100
# Software Version : 3.40
# Hardware Version : 05.02.00
# Module Slot 1 : 1000BASE-SX
# Module Slot 2 : Cascade
#
#--------------------------------------------------------------
#
# Unit Number : 2
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0a:04:60:c0:80
# Serial Number : 7PVV1D760C080
# Software Version : 3.40
# Hardware Version : 05.02.00
# Module Slot 1 : 1000BASE-SX
# Module Slot 2 : Cascade
# Module Slot 2 : Cascade Extender
#
#--------------------------------------------------------------
#
# Unit Number : 3
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0a:04:61:36:80
# Serial Number : 7PVV1D7613680
# Software Version : 3.40
# Hardware Version : 05.02.00
# Module Slot 1 : No module fitted
# Module Slot 2 : Cascade
# Module Slot 2 : Cascade Extender
#
#--------------------------------------------------------------
#
# Unit Number : 4
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0a:04:70:35:80
# Serial Number : 7PVV1E7703580
# Software Version : 3.40
# Hardware Version : 05.02.00
# Module Slot 1 : No module fitted
# Module Slot 2 : Cascade
# Module Slot 2 : Cascade Extender
#
#--------------------------------------------------------------
#
# Unit Number : 5
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0a:04:70:3c:c0
# Serial Number : 7PVV1E7703CC0
# Software Version : 3.40
# Hardware Version : 05.02.00
# Module Slot 1 : No module fitted
# Module Slot 2 : Cascade
# Module Slot 2 : Cascade Extender
#
#--------------------------------------------------------------
#
# Unit Number : 6
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0d:54:32:a5:00
# Serial Number : 7PVV2U932A500
# Software Version : 3.40
# Hardware Version : 07.02.00
# Module Slot 1 : Cascade
# Module Slot 1 : Cascade Extender
# Module Slot 2 : No module fitted
#
#--------------------------------------------------------------
#
# Unit Number : 7
# Description : Switch 4400
# Product Number : 3C17203
# MAC Address : 00:0d:54:31:c4:c0
# Serial Number : 7PVV2U931C4C0
# Software Version : 3.40
# Hardware Version : 07.02.00
# Module Slot 1 : Cascade
# Module Slot 2 : No module fitted
#
#--------------------------------------------------------------
# FEATURE SAFE BACKUP SECTION
#--------------------------------------------------------------
bridge spanningTree stpState enable
bridge port lacpState 1:1-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:1-5:24,6:1-6:24,7:1-7:24 disable
bridge linkAggregation modify partnerID 1 0x8000 none
bridge linkAggregation modify partnerID 2 0x8000 none
bridge linkAggregation modify partnerID 3 0x8000 none
bridge linkAggregation modify partnerID 4 0x8000 none
bridge linkAggregation modify partnerID 1 0x8000 00-00-00-00-00-01
bridge linkAggregation modify partnerID 2 0x8000 00-00-00-00-00-02
#--------------------------------------------------------------
# BRIDGE PORT SECTION
#--------------------------------------------------------------
bridge port stpCost 1:1-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:1-5:24,6:1-6:24,7:1-7:24,AL1-AL4 auto
bridge port defaultPriority 1:1-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:1-5:24,6:1-6:24,7:1-7:24,AL1-AL4 0
bridge port stpFastStart 1:1-1:24 auto
bridge port stpFastStart 1:25 disable
bridge port stpFastStart 2:1-2:24 auto
bridge port stpFastStart 2:25 disable
bridge port stpFastStart 3:1-3:24 auto
bridge port stpFastStart 4:1-4:24 auto
bridge port stpFastStart 5:1-5:24 auto
bridge port stpFastStart 6:1-6:24 auto
bridge port stpFastStart 7:1-7:24 auto
bridge port stpFastStart AL1-AL4 disable
#--------------------------------------------------------------
# PHYSICALINTERFACE ETHERNET SECTION
#--------------------------------------------------------------
physicalInterface ethernet flowControl 1:1-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:1-5:24,6:1-6:24,7:1-7:24 on
physicalInterface ethernet portMode 1:1-1:24 enable 100half
physicalInterface ethernet portMode 2:1-2:24 enable 100half
physicalInterface ethernet portMode 3:1-3:24 enable 100half
physicalInterface ethernet portMode 4:1-4:24 enable 100half
physicalInterface ethernet portMode 5:1-5:24 enable 100half
physicalInterface ethernet portMode 6:1-6:24 enable 100half
physicalInterface ethernet portMode 7:1-7:24 enable 100half
physicalInterface ethernet portState 1:1-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:1-5:24,6:1-6:24,7:1-7:24 enable
physicalInterface ethernet smartAutoSense enable
#--------------------------------------------------------------
# PHYSICALINTERFACE POWER SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# BRIDGE VLAN SECTION
#--------------------------------------------------------------
bridge vlan create 2 "ComputerRoom"
bridge vlan create 3 "MMLC"
#--------------------------------------------------------------
# BRIDGE VLAN MODIFY SECTION
#--------------------------------------------------------------
bridge vlan modify removePort 1 1:1-1:24
bridge vlan modify removePort 1 2:1-2:21
bridge vlan modify removePort 1 3:1
bridge vlan modify removePort 1 5:6-5:15
bridge vlan modify removePort 1 6:1-6:24
bridge vlan modify removePort 1 7:1-7:12
bridge vlan modify addPort 2 1:1-1:24,2:1-2:21,7:9,7:11 untagged
bridge vlan modify addPort 3 3:1,5:6-5:15,6:1-6:24,7:1-7:8,7:10,7:12 untagged
bridge vlan modify addPort 3 5:23 tagged
#--------------------------------------------------------------
# BRIDGE ADDRESSDATABASE SECTION
#--------------------------------------------------------------
bridge addressDatabase agingTime 300
#--------------------------------------------------------------
# BRIDGE LINKAGGREGATION SECTION
#--------------------------------------------------------------
bridge linkAggregation modify linkState 1 enable
bridge linkAggregation modify linkState 2 enable
bridge linkAggregation modify linkState 3 enable
bridge linkAggregation modify linkState 4 enable
bridge port lacpState 1:1,5:1 enable
bridge port lacpState 1:2-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:2-5:24,6:1-6:24,7:1-7:24 disable
#--------------------------------------------------------------
# BRIDGE SPANNINGTREE SECTION
#--------------------------------------------------------------
bridge spanningTree stpVersion 2
bridge spanningTree stpDefaultPathCost 1
bridge spanningTree stpPriority 32768
bridge spanningTree stpMaxAge 20
bridge spanningTree stpHelloTime 2
bridge spanningTree stpForwardDelay 15
bridge spanningTree stpState enable
#--------------------------------------------------------------
# BRIDGE MULITICASTFILTER IGMP SECTION
#--------------------------------------------------------------
bridge multicastFilter igmp queryMode disable
bridge multicastFilter igmp snoopMode disable
#--------------------------------------------------------------
# BRIDGE MULTICASTFILTER ROUTERPORT SECTION
#--------------------------------------------------------------
bridge multicastFilter routerPort autoDiscovery enable
#--------------------------------------------------------------
# BRIDGE BROADCASTSTORMCONTROL SECTION
#--------------------------------------------------------------
bridge broadcastStormCont enable 200000
#--------------------------------------------------------------
# FEATURE CACHECONFIG SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# FEATURE ROVINGANALYSIS SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# PROTOCOL IP INTERFACE SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# PROTOCOL IP ROUTE SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# SECURITY RADIUS SECTION
#--------------------------------------------------------------
security radius authentication modify 0.0.0.0 1812 0.0.0.0 1812
security radius accounting modify 0.0.0.0 1813 0.0.0.0 1813 reject
security radius retries 4 2
#--------------------------------------------------------------
# SECURITY DEVICE ACCESS SECTION
#--------------------------------------------------------------
security device access modify monitor enable enable enable enable
security device access modify manager enable enable enable enable
security device access modify security enable enable enable enable
#--------------------------------------------------------------
# SECURITY DEVICE AUTHENTICATION SECTION
#--------------------------------------------------------------
security device authentication systemMode local yes yes
#--------------------------------------------------------------
# SECURITY DEVICE USER SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# SECURITY NETWORK ACCESS SECTION
#--------------------------------------------------------------
security network access systemMode enable
security network access portSecurity 1:1-1:25,2:1-2:25,3:1-3:24,4:1-4:24,5:1-5:24,6:1-6:24,7:1-7:24 noSecurity
#--------------------------------------------------------------
# SYSTEM MANAGEMENT SECTION
#--------------------------------------------------------------
system management name ""
system management location ""
system management contact ""
system management remoteAccess enable
#--------------------------------------------------------------
# SYSTEM MANAGEMENT SNMP TRAP SECTION
#--------------------------------------------------------------
#--------------------------------------------------------------
# SYSTEM MANAGEMENT ALERT SECTION
#--------------------------------------------------------------
system management alert create email 0.0.0.0 25 "" "" ""
system management alert create pager 0.0.0.0 25 "" "" ""
#--------------------------------------------------------------
# SYSTEM MANAGEMENT MONITOR SECTION
#--------------------------------------------------------------
system management monitor modify systemDevice on 1 2
system management monitor modify port 1:1-1:25 off none none
system management monitor modify port 2:1-2:25 off none none
system management monitor modify port 3:1-3:24 off none none
system management monitor modify port 4:1-4:24 off none none
system management monitor modify port 5:1-5:24 off none none
system management monitor modify port 6:1-6:24 off none none
system management monitor modify port 7:1-7:24 off none none
#--------------------------------------------------------------
# TRAFFICMANAGEMENT QOS CLASSIFIER SECTION
#--------------------------------------------------------------
trafficManagement qos classifier modify 1 "All Traffic"
trafficManagement qos classifier modify 2 "3Com NBX Voice-LAN" 0x8868
trafficManagement qos classifier modify 3 "3Com NBX Voice-IP" 46
trafficManagement qos classifier modify 4 "Web-HTTP" tcp 80
trafficManagement qos classifier modify 5 "Network Management-SNMP" udp 161
#--------------------------------------------------------------
# TRAFFICMANAGEMENT QOS SERVICELEVEL SECTION
#--------------------------------------------------------------
trafficManagement qos serviceLevel modify 2 "Best Effort" 0 0
trafficManagement qos serviceLevel modify 3 "Business Critical" 3 16
trafficManagement qos serviceLevel modify 4 "Video Applications" 5 24
trafficManagement qos serviceLevel modify 5 "Voice Applications" 6 46
trafficManagement qos serviceLevel modify 6 "Network Control" 7 48
#--------------------------------------------------------------
# TRAFFICMANAGEMENT QOS PROFILE SECTION
#--------------------------------------------------------------
trafficManagement qos profile modify 1 "No Classifiers"
trafficManagement qos profile modify 2 "Default"
trafficManagement qos profile addClassifier 2 2 5
trafficManagement qos profile addClassifier 2 3 5
trafficManagement qos profile assign 1:1-1:25 2
trafficManagement qos profile assign 2:1-2:25 2
trafficManagement qos profile assign 3:1-3:24 2
trafficManagement qos profile assign 4:1-4:24 2
trafficManagement qos profile assign 5:1-5:24 2
trafficManagement qos profile assign 6:1-6:24 2
trafficManagement qos profile assign 7:1-7:24 2
#--------------------------------------------------------------
# BRIDGE RESILIENTLINKS SECTION
#--------------------------------------------------------------
#
# End of automatically generated configuration.
# You can enter further commands, if they are supported on the product, after these comments:
#
# Note: If you restore RADIUS configuration you can add the shared secret below.
# You can also change the authentication mode to RADIUS with the following
# command:
# security authentication systemMode RADIUS yes yes
#
# Examples:
# physical ethernet portCapabilities 1:1 10h
# protocol ip basicConfig manual 10.16.25.26 255.255.255.0 10.16.25.250
# protocol ip rip authentication 10.16.25.32 password "my rip password" "my rip password"
# security device user create "my name" monitor "my password" "my password" "my community"
# security device user modify admin "secret" "secret" "private"
# security radius sharedSecret "this is my shared secret"
# system management snmp community "private" "manager" "public"
附件: 您所在的用戶組無法下載或查看附件