2023年12月18日发(作者:委弘懿)
[Huawei]dis current-configuration
# http secure-server ssl-policy default_policy http server enable# undo clock timezone#vlan batch 100 to 101#authentication-profile name default_authen_profileauthentication-profile name dot1x_authen_profileauthentication-profile name mac_authen_profileauthentication-profile name portal_authen_profileauthentication-profile name macportal_authen_profile#dns resolve
dns proxy enable#radius-server template default#pki realm default rsa local-key-pair default enrollment self-signed#ssl policy default_policy type server pki-realm default
version tls1.0 tls1.1 tls1.2
ciphersuite rsa_aes_128_cbc_sha rsa_aes_128_sha256 rsa_aes_256_sha256
#
acl name nat 2000
rule 5 permit
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile#
aaa
authentication-scheme default
authentication-scheme radius
authentication-mode radius
authorization-scheme default
accounting-scheme default
domain default
authentication-scheme default
domain default_admin
authentication-scheme default
local-user admin password irreversible-cipher $1a$=VGg7L*Co$$R7i^Uv%u%6e^N*Nj{*9RvhKGmsC{$t:&,A-$4b3$ local-user admin privilege level 15
local-user admin service-type ssh http
#
interface Vlanif1
ip address 169.254.1.1 255.255.0.0
nat outbound 2000
ip address dhcp-alloc unicast
#
interface Vlanif100
ip address 192.168.100.200 255.255.255.0
#
interface Vlanif101
ip address 192.168.1.200 255.255.255.0
#
interface GigabitEthernet0/0/0
port link-type access
port default vlan 101
mac-learning priority 3
#
interface NULL0
#
undo snmp-agent
#
stelnet server enable
undo telnet server enable
ssh server secure-algorithms cipher aes256_ctr aes128_ctrssh server secure-algorithms hmac sha2_256ssh server key-exchange dh_group14_sha1
ssh client secure-algorithms cipher aes256_ctr aes128_ctrssh client secure-algorithms hmac sha2_256ssh client key-exchange dh_group14_sha1
#
user-interface con 0
authentication-mode password
set authentication password cipher %^%#Jln(HwG8$'RnxlJ/{#pWXVd@.#_>D0JoC2~ze/=P;!,;N3}Q8$/%^%#user-interface vty 0 4
authentication-mode aaa
protocol inbound ssh
user-interface vty 16 20
protocol inbound all
#
wlan
traffic-profile name default
traffic-profile name default-ssid
security-profile name default
security-profile name zhiyi-new
security wpa-wpa2 psk pass-phrase %^%#Jc>Q&D61r.%-=GoX0<"08 ssid-profile name default ssid-profile name zhiyi-new ssid zhiyi-new ssid-profile name default-ssid ssid HUAWEI-27A0 vap-profile name default vap-profile name zhiyi-new service-vlan vlan-id 101 ssid-profile zhiyi-new security-profile zhiyi-new vap-profile name default-ssid service-vlan vlan-id 100 ssid-profile default-ssid security-profile default-ssid traffic-profile default-ssid air-scan-profile name default rrm-profile name default radio-2g-profile name default radio-5g-profile name default wids # interface Wlan-Radio0/0/0 vap-profile default-ssid wlan 1 vap-profile zhiyi-new wlan 2 calibrate auto-txpower-select disable # interface Wlan-Radio0/0/1 vap-profile default-ssid wlan 1 vap-profile zhiyi-new wlan 2 calibrate auto-txpower-select disable # dot1x-access-profile name dot1x_access_profile# mac-access-profile name mac_access_profile# undo ntp-service enable # return [Huawei]
2023年12月18日发(作者:委弘懿)
[Huawei]dis current-configuration
# http secure-server ssl-policy default_policy http server enable# undo clock timezone#vlan batch 100 to 101#authentication-profile name default_authen_profileauthentication-profile name dot1x_authen_profileauthentication-profile name mac_authen_profileauthentication-profile name portal_authen_profileauthentication-profile name macportal_authen_profile#dns resolve
dns proxy enable#radius-server template default#pki realm default rsa local-key-pair default enrollment self-signed#ssl policy default_policy type server pki-realm default
version tls1.0 tls1.1 tls1.2
ciphersuite rsa_aes_128_cbc_sha rsa_aes_128_sha256 rsa_aes_256_sha256
#
acl name nat 2000
rule 5 permit
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile#
aaa
authentication-scheme default
authentication-scheme radius
authentication-mode radius
authorization-scheme default
accounting-scheme default
domain default
authentication-scheme default
domain default_admin
authentication-scheme default
local-user admin password irreversible-cipher $1a$=VGg7L*Co$$R7i^Uv%u%6e^N*Nj{*9RvhKGmsC{$t:&,A-$4b3$ local-user admin privilege level 15
local-user admin service-type ssh http
#
interface Vlanif1
ip address 169.254.1.1 255.255.0.0
nat outbound 2000
ip address dhcp-alloc unicast
#
interface Vlanif100
ip address 192.168.100.200 255.255.255.0
#
interface Vlanif101
ip address 192.168.1.200 255.255.255.0
#
interface GigabitEthernet0/0/0
port link-type access
port default vlan 101
mac-learning priority 3
#
interface NULL0
#
undo snmp-agent
#
stelnet server enable
undo telnet server enable
ssh server secure-algorithms cipher aes256_ctr aes128_ctrssh server secure-algorithms hmac sha2_256ssh server key-exchange dh_group14_sha1
ssh client secure-algorithms cipher aes256_ctr aes128_ctrssh client secure-algorithms hmac sha2_256ssh client key-exchange dh_group14_sha1
#
user-interface con 0
authentication-mode password
set authentication password cipher %^%#Jln(HwG8$'RnxlJ/{#pWXVd@.#_>D0JoC2~ze/=P;!,;N3}Q8$/%^%#user-interface vty 0 4
authentication-mode aaa
protocol inbound ssh
user-interface vty 16 20
protocol inbound all
#
wlan
traffic-profile name default
traffic-profile name default-ssid
security-profile name default
security-profile name zhiyi-new
security wpa-wpa2 psk pass-phrase %^%#Jc>Q&D61r.%-=GoX0<"08 ssid-profile name default ssid-profile name zhiyi-new ssid zhiyi-new ssid-profile name default-ssid ssid HUAWEI-27A0 vap-profile name default vap-profile name zhiyi-new service-vlan vlan-id 101 ssid-profile zhiyi-new security-profile zhiyi-new vap-profile name default-ssid service-vlan vlan-id 100 ssid-profile default-ssid security-profile default-ssid traffic-profile default-ssid air-scan-profile name default rrm-profile name default radio-2g-profile name default radio-5g-profile name default wids # interface Wlan-Radio0/0/0 vap-profile default-ssid wlan 1 vap-profile zhiyi-new wlan 2 calibrate auto-txpower-select disable # interface Wlan-Radio0/0/1 vap-profile default-ssid wlan 1 vap-profile zhiyi-new wlan 2 calibrate auto-txpower-select disable # dot1x-access-profile name dot1x_access_profile# mac-access-profile name mac_access_profile# undo ntp-service enable # return [Huawei]