H3C网络设备实训指导手册.pdf

上传人:wj151****6093 文档编号:72836700 上传时间:2023-02-13 格式:PDF 页数:207 大小:7.16MB
返回 下载 相关 举报
H3C网络设备实训指导手册.pdf_第1页
第1页 / 共207页
H3C网络设备实训指导手册.pdf_第2页
第2页 / 共207页
点击查看更多>>
资源描述

《H3C网络设备实训指导手册.pdf》由会员分享,可在线阅读,更多相关《H3C网络设备实训指导手册.pdf(207页珍藏版)》请在taowenge.com淘文阁网|工程机械CAD图纸|机械工程制图|CAD装配图下载|SolidWorks_CaTia_CAD_UG_PROE_设计图分享下载上搜索。

1、计算机科学技术系网络设备上机实训指导手册序序言言实训课是计算机网络专业学习的重要实践环节。通过实训,使学生加深理解、验证、巩固课堂教学的内容,掌握对网络的工作原理以及配置应用,从而获得对网络更全面,更深层次的理解。用正确的理论指导实践活动,强化学生的知识实践意识、提高其实际动手能力,发挥学生的想象力和创新能力。本实训手册在教师的指导和学生的亲手操作下,让学生对华为路由器、交换机的基础知识和应用有一个基础、全面的掌握。先通过模拟软件的操作,增加学生对每个实验的感性认识,初步理解其配置过程,然后在此基础之上,让学生在真实的路由器和交换机上加以实习,使之学会对主流路由和交换设备的配置及网络搭建与维护

2、。本实训指导手册是由从事相关专业的老师们,结合本专业学生的实际学习情况和特点,充分利用本系华为设备搭建的实验环境,编写了本手册 34 个基本、典型、实用的试验,所有的试验都是由老师精选出来,并亲手配置、测试通过。它是对课堂教学的补充,让学生在上机实训时,目的明确,思路清楚,具有很高的参考价值。同时也为日后获取 IT 的高端认证,从事网络相关行业,打下了坚实的基础。二六年七月二十五日1-2-目录2计算机科学技术系网络设备上机实训指导手册3-4-实验一:实验一:ConsoleConsole 口登录口登录一、理论基础在对路由器、交换机进行管理的方法中,最常见的就是通过 Console 口进行本地配置

3、和管理。Console 端口是设备的基本端口,在设备初始或者没有进行其它方式的配置管理准备时,都使用 Console 口进行本地配置管理。通过 Console 口进行配置管理的实验组网连接最为简单。连接 console 端口的线缆称为控制台电缆(console cable),也称为反序电缆(rollover cable),即左右插头端的线序完全相反。二、实验案例Console 登录的配置1、配置说明:启动 Windows 2000 下的“开始”“程序”“附件”“通讯”下的“超级终端”,便可以打开以 Console 口登录的对话框。在对话窗口的“名称”一栏中,输入“sunke”(或者其他文字用于

4、标志该连接),并在“图标”一栏内选择一个图标,然后单击“确定”按钮。此时,出现了一个新的对话窗口,如图所示。在“连接时使用”一栏的下拉列表中选择“COM1”,然后单击“确定”按钮。4计算机科学技术系网络设备上机实训指导手册此时出现“COM1 属性”对话窗口,在其中把“每秒位数”一栏的数值改为“9600”,把“数据流控制”一栏的设置更改为“无”,然后单击“确定”按钮。2、具体配置:增加登录时的简单口令认证:(权限不变最高级别即3 级)Quidwayuser-interface aux 0Quidway-ui-aux0authentication-mode?none Login without c

5、hecking password Authentication use password of user terminal interface scheme Authentication use RADIUS schemeQuidway-ui-aux0authentication-mode passwordQuidway-ui-aux0set authentication password simple sunke5-6-重新登录时的结果需要密码即sunkePassword:%Apr 1 23:57:17 2000 Quidway SHELL/5/LOGIN:Console login fro

6、m Aux0/0需要口令认证,同时更改缺省登录权限为0 级,再利用 super 命令设置进行权限切换时的口令。Quidwayuser-interface aux 0Quidway-ui-aux0user privilege level 0Quidway-ui-aux0quitQuidwaysuper password level 1 simple sunke1Quidwaysuper password level 2 simple sunke2Quidwaysuper password level 3 simple sunke3Quidwaydis cursysname Quidwaysupe

7、r password level 1 simple sunke1 super password level 2 simple sunke2 super password level 3 simple sunke3radius scheme system server-type huawei primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domaindomain system radius-scheme system access-limit dis

8、able state active vlan-assignment-mode integer idle-cut disable self-service-url disable messenger time disabledomain default enable systemlocal-server nas-ip 127.0.0.1 key huaweiqueue-scheduler wrr 1 2 4 8vlan 1interface Aux0/06计算机科学技术系网络设备上机实训指导手册interface Ethernet0/1interface Ethernet0/2interface

9、 Ethernet0/3interface Ethernet0/4interface Ethernet0/5interface Ethernet0/6interface Ethernet0/7interface Ethernet0/8interface NULL0user-interface aux 0 authentication-mode password user privilege level 0 set authentication password simple sunkeuser-interface vty 0 4return重新登录时的结果:Password:%Apr 1 23

10、:57:18 2000 Quidway SHELL/5/LOGIN:Console login from Aux0/0?User view commands:cluster Run cluster command debugging Debugging functions language-mode Specify the language environment ping Ping function quit Exit from current command view super Privilege specified user priority level telnet Establis

11、h one TELNET connection tracert Trace route function undo Negate a commond or set its defaultsuper 1 Password:Now user privilege is 1 level,and just commands which level isequal to or less than this level can be used.Privilege note:0-VISIT,1-MONITOR,2-SYSTEM,3-MANAGE?User view commands:7-8-cluster R

12、un cluster command debugging Enable system debugging functions display Display current system information language-mode Specify the language environment ping Ping function quit Exit from current command view reset Reset operation send Send information to other user terminal interface super Privilege

13、 specified user priority level telnet Establish one TELNET connection terminal Specify the terminal characteristics tracert Trace route function undo Cancel current settingsuper 2 Password:Now user privilege is 2 level,and just commands which level isequal to or less than this level can be used.Priv

14、ilege note:0-VISIT,1-MONITOR,2-SYSTEM,3-MANAGE?User view commands:boot Set boot option cluster Run cluster command debugging Enable system debugging functions display Display current system information free Clear user terminal interface language-mode Specify the language environment ntdp Run NTDP co

15、mmands ping Ping function quit Exit from current command view reboot Reset switch reset Reset operation save Save current configuration send Send information to other user terminal interface super Privilege specified user priority level system-view Enter the system view telnet Establish one TELNET c

16、onnection terminal Specify the terminal characteristics tracert Trace route function8计算机科学技术系网络设备上机实训指导手册 undo Cancel current settingsuper 3 Password:Now user privilege is 3 level,and just commands which level isequal to or less than this level can be used.Privilege note:0-VISIT,1-MONITOR,2-SYSTEM,3

17、-MANAGE?User view commands:boot Set boot option cd Change the current path clock Specify the system clock cluster Run cluster command copy Copy the file debugging Enable system debugging functions delete Delete the file dir Display the file list in system display Display current system information f

18、ormat Format the device free Clear user terminal interface ftp Open FTP connection language-mode Specify the language environment lock Lock current user terminal interface mkdir Create new directory more Display the specified file move Move the file ntdp Run NTDP commands ping Ping function pwd Disp

19、lay the current path quit Exit from current command view reboot Reset switch rename Rename file or directory reset Reset operation rmdir Delete existing directory save Save current configuration send Send information to other user terminal interface super Privilege specified user priority level syst

20、em-view Enter the system view telnet Establish one TELNET connection9-10-terminal Specify the terminal characteristics tracert Trace route function undelete Undelete the deleted file undo Cancel current settingsuper 1Now user privilege is 1 level,and just commands which level isequal to or less than

21、 this level can be used.Privilege note:0-VISIT,1-MONITOR,2-SYSTEM,3-MANAGE?User view commands:cluster Run cluster command debugging Enable system debugging functions display Display current system information language-mode Specify the language environment ping Ping function quit Exit from current co

22、mmand view reset Reset operation send Send information to other user terminal interface super Privilege specified user priority level telnet Establish one TELNET connection terminal Specify the terminal characteristics tracert Trace route function undo Cancel current setting三、实验总结通过 CONSOLE 口登录进行配置和

23、管理。A:在缺省的情况下,CONSOLE 口登录的用户具有最高的权限,可以使用所有的命令,并且不需要任何口令的认证。B:但也可以通过 AUX 用户接口视图下进行设置登录的口令认证。有三种认证的方式:NONE 不需要口令认证的;PASSWORD 需要简单的本地口令认证;SCHEME 通过 RADIUS 服务器或本地提供用户名和口令认证。C:登录进去后,利用Super 命令进行权限的切换,观察所能使用命令多少的变化,以及从高权限到低权限,从低权限到高权限时所需提供密码的变化情况。10计算机科学技术系网络设备上机实训指导手册实验二:实验二:TelnetTelnet 登录交换机登录交换机一、理论基础T

24、elnet 管理方法是网络工程师或网络管理员最常用的设备访问方法.它通过局域网或者广域网实现本地或者远程的访问控制.但是它的使用必须要求首先对设备进行初始化配置,否则用户无法正确登录和访问.要想访问某交换机,必须能够唯一确定被访问的交换机.在网络中都使用 IP 地址进行标识,所以我们使用 Telnet 进行登录时,前提是交换机必须有一个唯一的地址,即管理地址.二、实验案例Telnet 登录的配置1、实验拓扑结构图:2、配置说明:交换机的管理 IP 是:192.168.10.100子网掩码是:255.255.255.03、具体配置:没有设置认证的情况下:Quidwayint vlan 1Quid

25、way-Vlan-interface1%Apr 2 00:03:23 2000 Quidway L2INF/5/VLANIF LINK STATUS CHANGE:Vlan-interface1:turns into UP stateQuidway-Vlan-interface1ip address 192.168.10.100 255.255.255.0Quidway-Vlan-interface1%Apr 2 00:03:56 2000 Quidway IFNET/5/UPDOWN:Line protocol on the interface Vlan-interface1 turns i

26、nto UP stateQuidway-Vlan-interface1quitQuidwaydis cursysname Quidwayradius scheme system11-12-server-type huawei primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domaindomain system radius-scheme system access-limit disable state active vlan-assignment

27、-mode integer idle-cut disable self-service-url disable messenger time disable domain default enable systemlocal-server nas-ip 127.0.0.1 key huaweiqueue-scheduler wrr 1 2 4 8vlan 1interface Vlan-interface1 ip address 192.168.10.100 255.255.255.0interface Aux0/0interface Ethernet0/1interface Ethernet

28、0/2interface Ethernet0/3interface Ethernet0/4interface Ethernet0/5interface Ethernet0/6interface Ethernet0/7interface Ethernet0/8interface NULL0user-interface aux 0user-interface vty 0 4Return显示结果图:12计算机科学技术系网络设备上机实训指导手册仅设置口令认证的情况:Quidwayuser-interface vty 0 4Quidway-ui-vty0-4authentication-mode?non

29、e Login without checking password Authentication use password of user terminal interface scheme Authentication use RADIUS schemeQuidway-ui-vty0-4authentication-mode passwordQuidway-ui-vty0-4set authentication password simple djwQuidwaysuper password level 1 simple djw1Quidwaysuper password level 2 s

30、imple djw2Quidwaysuper password level 3 simple djw3Quidwaydis cursysname Quidwaysuper password level 1 simple djw1 super password level 2 simple djw2 super password level 3 simple djw3radius scheme system server-type huawei primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user

31、-name-format without-domaindomain system radius-scheme system access-limit disable state active vlan-assignment-mode integer13-14-idle-cut disable self-service-url disable messenger time disable domain default enable systemlocal-server nas-ip 127.0.0.1 key huaweiqueue-scheduler wrr 1 2 4 8vlan 1inte

32、rface Vlan-interface1 ip address 192.168.10.100 255.255.255.0interface Aux0/0interface Ethernet0/1interface Ethernet0/2interface Ethernet0/3interface Ethernet0/4interface Ethernet0/5interface Ethernet0/6interface Ethernet0/7interface Ethernet0/8interface NULL0user-interface aux 0user-interface vty 0

33、 4 set authentication password simple djwreturn%Apr 2 00:12:20 2000 Quidway SHELL/5/LOGIN:VTY login from 192.168.10.11%Apr 2 00:13:28 2000 Quidway SHELL/5/LOGOUT:VTY logout from 192.168.10.11显示结果图:14计算机科学技术系网络设备上机实训指导手册用户登录前更改缺省的权限为3 级:Quidwayuser-interface vty 0 4Quidway-ui-vty0-4user privilege lev

34、el 3需要口令和用户名认证的情况,同时更改缺省的权限级别:Quidwayuser-interface vty 0 4Quidway-ui-vty0-4authentication-mode scheme Notice:TelnetorSSHusermustbeadded,otherwiseoperatorloginQuidwaylocal-user djwNew local user added.Quidway-luser-djwservice-type telnet level 3Quidway-luser-djwpassword simple djw4Quidway-luser-djwq

35、uitQuidwaydis cursysname Quidwaysuper password level 1 simple djw1 super password level 2 simple djw2 super password level 3 simple djw3radius scheme system server-type huawei primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domaindomain system15cant-1

36、6-radius-scheme system access-limit disable state active vlan-assignment-mode integer idle-cut disable self-service-url disable messenger time disable domain default enable systemlocal-server nas-ip 127.0.0.1 key huaweilocal-user djw password simple djw4 service-type telnet level 3queue-scheduler wr

37、r 1 2 4 8vlan 1interface Vlan-interface1 ip address 192.168.10.100 255.255.255.0interface Aux0/0interface Ethernet0/1interface Ethernet0/2interface Ethernet0/3interface Ethernet0/4interface Ethernet0/5interface Ethernet0/6interface Ethernet0/7interface Ethernet0/8interface NULL0user-interface aux 0u

38、ser-interface vty 0 4 authentication-mode schemereturn%Apr 2 00:37:19 2000 Quidway SHELL/5/LOGIN:djw login from 192.168.10.11显示结果图:16计算机科学技术系网络设备上机实训指导手册三、实验总结A:telnet 登录认证也有三种方法:NONE 不需要口令认证的;PASSWORD 需要简单的本地口令认证;SCHEME 通过 RADIUS 服务器或本地提供用户名和口令认证。B:缺省的情况下,telnet 登录的用户是需要验证的,所以在登录前,必须先设置好。C:缺省的情况下,t

39、elnet 登录的用户的权限是 0 级。17-18-实验三:实验三:FTPFTP 登录交换机登录交换机一、理论基础利用 ftp 登录交换机可以对交换机进行升级VRP 和 bootrom 等工作。二、实验案例FTP 登录交换机的配置1、具体配置:sysEnter system view,return to user view with Ctrl+Z.Quidwayint vlan 1Quidway-Vlan-interface1%Apr 2 00:18:35 2000 Quidway L2INF/5/VLANIF LINK STATUS CHANGE:Vlan-interface1:turns

40、into UP stateQuidway-Vlan-interface1ip address 192.168.10.10 255.255.255.0Quidwayftp server enableQuidwaylocal-user sunkeQuidway-luser-sunkeservice-type ftpNew local user added.Quidway-luser-sunkepassword simple sunkedis cursysname QuidwayFTP server enableradius scheme system server-type huawei prim

41、ary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domaindomain system radius-scheme system access-limit disable state active idle-cut disable self-service-url disable18计算机科学技术系网络设备上机实训指导手册 messenger time disable domain default enable systemlocal-server nas-

42、ip 127.0.0.1 key huaweilocal-user sunke password simple sunke service-type ftpqueue-scheduler wrr 1 2 4 8vlan 1interface Vlan-interface1 ip address 192.168.10.10 255.255.255.0interface Aux0/0interface Ethernet0/1interface Ethernet0/2interface Ethernet0/3interface Ethernet0/4interface Ethernet0/5inte

43、rface Ethernet0/6interface Ethernet0/7interface Ethernet0/8interface NULL0user-interface aux 0user-interface vty 0 4Return2、实验结果:参见登录后的图:19-20-20计算机科学技术系网络设备上机实训指导手册实验四:交换机的基本命令使用实验四:交换机的基本命令使用一、理论基础人们在使用网络设备的过程中,往往要查看设备的配置信息,删除配置或者重新启动设备等等,在此我们介绍几个常用的公用命令,以便大家在后面的实验中能够避免一些不必要的麻烦。二、实验案例交换机的基本命令的使用的配

44、置1、实验拓扑结构图:2、配置说明:交换机的管理地址:192.168.10.100/24PC1 的 IP:192.168.10.10/24 MAC:000d-608b-0c95PC2 的 IP:192.168.10.11/24 MAC:00e0-4c39-6a903、具体配置:交换机的基本命令的使用:Quidwayint vlan 1Quidway-Vlan-interface1%Apr 2 00:08:46 2000 Quidway L2INF/5/VLANIF LINK STATUS CHANGE:Vlan-interface1:turns into UP stateQuidway-Vla

45、n-interface1ip address 192.168.10.100 255.255.255.0Quidway-Vlan-interface1%Apr 2 00:09:02 2000 Quidway IFNET/5/UPDOWN:Line protocol on the interface Vlan21-22-interface1 turns into UP stateQuidwaydis mac-addressMAC ADDR VLAN ID STATE PORT INDEX AGING TIME(s)00e0-4c39-6a90 1 Learned Ethernet0/1 AGING

46、000d-608b-0c95 1 Learned Ethernet0/3 AGING -2 mac address(es)found -Quidwaydis mac-address?H-H-H MAC address aging-time Global aging time count MAC entries count dynamic Dynamic entry,with aging,can be added/deleted,lost after reset interface Choose one interface to display static Static entry,witho

47、ut aging,can be added/deleted,saved to theconfiguration file vlan VLAN Quidwaydis mac-address aging-timeMac address aging time:300sQuidwaydis arpIP Address MAC Address VLAN ID Port Name Aging Type-0 entry found -Quidwayping 192.168.10.10 PING 192.168.10.10:56 data bytes,press CTRL_C to break Reply f

48、rom 192.168.10.10:bytes=56 Sequence=1 ttl=128 time=20 ms Reply from 192.168.10.10:bytes=56 Sequence=2 ttl=128 time=20 ms Reply from 192.168.10.10:bytes=56 Sequence=3 ttl=128 time=20 ms Reply from 192.168.10.10:bytes=56 Sequence=4 ttl=128 time=20 ms Reply from 192.168.10.10:bytes=56 Sequence=5 ttl=12

49、8 time=20 ms -192.168.10.10 ping statistics-5 packet(s)transmitted 5 packet(s)received 0.00%packet loss round-trip min/avg/max=20/20/20 msQuidwaydis arpIP Address MAC Address VLAN ID Port Name Aging Type192.168.10.10 000d-608b-0c95 1 Ethernet0/3 20 Dynamic22计算机科学技术系网络设备上机实训指导手册-1 entry found -Quidwa

50、yping 192.168.10.11 PING 192.168.10.11:56 data bytes,press CTRL_C to break Reply from 192.168.10.11:bytes=56 Sequence=1 ttl=128 time=30 ms Reply from 192.168.10.11:bytes=56 Sequence=2 ttl=128 time=20 ms Reply from 192.168.10.11:bytes=56 Sequence=3 ttl=128 time=20 ms Reply from 192.168.10.11:bytes=56

展开阅读全文
相关资源
相关搜索

当前位置:首页 > 应用文书 > 工作报告

本站为文档C TO C交易模式,本站只提供存储空间、用户上传的文档直接被用户下载,本站只是中间服务平台,本站所有文档下载所得的收益归上传人(含作者)所有。本站仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。若文档所含内容侵犯了您的版权或隐私,请立即通知淘文阁网,我们立即给予删除!客服QQ:136780468 微信:18945177775 电话:18904686070

工信部备案号:黑ICP备15003705号© 2020-2023 www.taowenge.com 淘文阁