1.思科三种模式
Cisco>用户-enable——Cisco#特权-configure terminal——Cisco(config)#全局配置
Cisco(config)#全局配置-exit——Cisco#特权-disable——Cisco>用户
接口模式/路由协议模式-disable——Cisco#特权
华为两种模式:
<Huawei>视图模式-system-view——[Huawei]配置模式
[Huawei]配置模式-quit——<Huawei>视图模式
2.修改系统名称
R1(config)#hostname Cisco
[R1]sysname Huawei
3.进入接口
Cisco(config)#int fastEthernet 0/1
Cisco(config)#interface loopback 0
Cisco (config)#int range f1/14 ,f1/15
[Huawei]int g0/0/1
[Huawei]interface LoopBack 0
[Huawei]port-group 1
[Huawei-port-group-1]group-member g0/0/1 to g0/0/2
4.打开接口
Cisco(config-if)#no shutdown //默认关闭,需要手工打开
华为接口默认打开
5.配置接口地址
ip address 地址 mask 点分十进制:cisco(config-if)#ip add 10.1.1.1 255.255.255.0
Cisco(config-if)#no shutdown
Cisco(config-if)#ip add 192.168.2.254 255.255.255.0 secondary //配置备用接口地址
ip address ip 24:[Huawei-GigabitEthernet0/0/1]ip add 10.1.1.1 24
6.退出
exit;end
quit;return
7.关闭
no
undo
8.保存
特权模式下write或copy:cisco#write,cisco#copy startup-config
视图模式下save:<Huawei>save
9.重启
特权模式下reload
视图模式下reboot
10.清除配置
write erase后reload
reset saved-configuration后reboot
11.看配置
Cisco#show running/start conginguration
Cisco(config)#do show running/start conginguration
Cisco#show running-config interface f0/0
Cisco#show ip interface brief
[Huawei]display current-configuration/saved-configuration
[Huawei]display ip interface g0/0/1
[Huawei]display ip interface brief
12.ping命令
ping 10.2.2.2 source 10.1.1.1
ping -a 10.1.1.1 10.2.2.2
13.设置端口模式
switchport mode access
switchport add vlan 1
14.设置默认路由
ip default gateway 192.168.1.2 //不支持三层功能时设置默认静态路由
PC1(config)#ip default-gateway 10.1.1.254 //PC配置默认网关地址
ip route 0.0.0.0 0.0.0.0 192.168.1.2 //支持三层功能时设置默认静态路由
15.交换机启用/关闭三层功能
Cisco(config)#ip routing
Cisco(config)#no ip routing
[Huawei-GigabitEthernet0/0/1]undo portswitch //二层切换到三层接口
[Huawei-GigabitEthernet0/0/1]portswitch //三层切换到二层接口
16.访问控制列表
access-list 1 permit host 1.1.1.1
ip access-group 1 in/out
17.telnet配置
Cisco(config)#line vty 0 4
Cisco(config-line)#password abc@123
Cisco(config-line)#login
[Huawei]user-interface vty 0 4
[Huawei-ui-vty0-4]authentication-mode password
[Huawei-ui-vty0-4]user privilege level 15
18.关闭域名解析
Cisco(config)#no ip domain lookup //关闭域名解析
19.关闭弹出日志信息
Cisco(config)#line console 0 //进入console口
Cisco(config-line)#logging synchronous
[Huawei]undo info-center enable
20.关闭会话超时
Cisco(config)#line console 0
cisco(config-line)#no exec-timeout
<Huawei>undo terminal monitor
<Huawei>system-view
[Huawei]user-interface console 0
[Huawei-ui-console0]idle-timeout 0
21.输入特权密码
Cisco(config)#enable password abc123
[Huawei]super password level 3 cipher abc123
22.配置静态路由
Cisco(config)#ip route 10.1.1.1 255.255.255.0 10.1.1.2
[Huawei]ip route-static 10.1.1.1 24 10.1.1.2
23.查看路由表
Cisco#show ip route
[Huawei]display ip routing-table
24.RIP的配置
Cisco(config-if)#router rip
Cisco(config-router)#network 10.1.1.0
Cisco(config-router)#version 2
Cisco#show running-config | section router rip //筛选查看RIP配置
R2(config-router)#no auto-summary
[Huawei]rip
[Huawei-rip-1]version 2
[Huawei-rip-1]network 10.0.0.0
25.查看路由表
Cisco#show ip route
[Huawei]display ip routing-table
26.修改接口参考带宽为200M,延迟为100
Cisco(config)#int f0/0
Cisco(config-if)#bandwidth 200000
Cisco(config-if)#delay 100
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]bandwidth 200
27.OSPF配置命令
Cisco(config)#router ospf 10
Cisco(config-router)#router-id 1.1.1.1
Cisco(config-router)#network 10.1.1.0 0.0.0.255 area 0
Cisco#show running-config | section router ospf
Cisco#show ip ospf neighbor
Cisco#show ip ospf interface
Cisco(config-router)#int f0/0
Cisco(config-if)#ip ospf authentication message-digest
Cisco(config-if)#ip ospf message-digest-key 1 md5 abc123
[Huawei]router id 1.1.1.1
[Huawei]ospf 10
[Huawei-ospf-10]area 0
[Huawei-ospf-10-area-0.0.0.0]network 10.1.1.0 0.0.0.255
[Huawei]ospf 10
[Huawei-ospf-10]display this
[Huawei]display ospf peer brief
[Huawei]display ospf routing interface GigabitEthernet 0/0/1
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ospf authentication-mode md5 1 abc123
28.交换机VLAN配置
Cisco#show mac-address-table
Cisco#vlan database //进入vlan数据库,GNS3专用
Cisco(vlan)#vlan 10 name IT //创建vlan并命名
Cisco(vlan)#exit //保存并退出
Cisco#show vlan-switch brief
Switch(config)#vlan 10
Cisco(config)#int f1/1
Cisco(config-if)#switchport mode access
Cisco(config-if)#switchport access vlan 10
Cisco(config)#int f1/0
Cisco(config-if)#switchport mode trunk
Cisco(config-if)#switchport trunk encapsulation dot1q
Cisco(config-if)#switchport trunk allowed vlan 10
Cisco(config-if)#switchport trunk native vlan 10
Cisco#show interfaces trunk
Cisco(config-if)#do show interface trunk
Cisco(config-if)#do show vlan-sw
Cisco#show ip interface brief
Cisco(config-if)#do show arp
[Huawei]display mac-address vlan 1
[Huawei]vlan 10
[Huawei]vlan batch 10
[Huawei-GigabitEthernet0/0/1]port link-type access
[Huawei-GigabitEthernet0/0/1]port default vlan 10
[Huawei-GigabitEthernet0/0/2]port link-type trunk
[Huawei-GigabitEthernet0/0/2]port trunk allow-pass vlan 10
[Huawei-GigabitEthernet0/0/2]port trunk pvid vlan 10
[Huawei]display vlan brief
[Huawei]display arp
29.配置子接口
Cisco(config)#int f0/1.1
Cisco(config-subif)#encapsulation dot1Q 10 //封装协议和打vlan
[Huawei]int g0/0/1.1
[Huawei-GigabitEthernet0/0/1.1]dot1q termination vid 10
30.配置三层交换机交换式虚拟接口
Cisco(config)#ip routing //开启路由功能
Cisco(config)#int vlan 10
Cisco(config-if)#ip add 10.1.1.1 255.255.255.0
[Huawei]int Vlanif 10
[Huawei-Vlanif10]ip add 10.1.1.1 24
31.STP配置
Cisco#show spanning-tree
Cisco(config-if)#spanning-tree vlan 1 port-priority 16 //修改接口优先级
Cisco(config)#spanning-tree vlan 1 priority 4096 //修改交换机生成树优先级
<Huawei>display stp brief
[Huawei-GigabitEthernet0/0/1]stp port priority 16
[Huawei-GigabitEthernet0/0/1]stp cost 100
[Huawei]stp priority 4096
32.ACL配置
Cisco(config)#access-list 1 deny 10.1.1.1
Cisco(config)#access-list 1 remark a1
Cisco(config)#access-list 1 permit 10.2.1.1
Cisco(config)#access-list 1 permit 10.1.1.0 0.0.0.255
Cisco(config)#access-list 1 permit host 10.1.1.1
Cisco(config)#int f0/0
Cisco(config-if)#ip access-group 1 in
Cisco(config-if)#ip access-group 1 out
Cisco#show access-lists
Cisco(config)#$ 100 permit ip 10.1.1.0 0.0.0.255 10.1.2.0 0.0.0.255
Cisco(config)#ip access-list extended A2
Cisco(config-ext-nacl)#permit tcp 10.1.1.0 0.0.0.255 10.1.2.0 0.0.0.255 eq 80
Cisco(config)#int f0/1
Cisco(config-if)#ip access-group A2 out
Cisco(config)#int f0/1
Cisco(config-if)#ip ospf network point-to-point
[Huawei]acl 2000
[Huawei-acl-basic-2000]rule 1 permit source 10.1.1.1 0.0.0.0
[Huawei-acl-basic-2000]rule 1 permit source 10.1.1.1 255.255.255.0
[Huawei-GigabitEthernet0/0/1]traffic-filter inbound acl 2000
[Huawei]display acl all
[Huawei]display acl 2000
[Huawei]acl 3000
[Huawei-acl-adv-3000]rule permit tcp source 10.1.1.0 0.0.0.255 destination 10.1.2.0 0.0.0.255 destination-port eq 80
[Huawei]traffic classifier c1
[Huawei-classifier-c1]if-match acl 3000
[Huawei]traffic behavior b1
[Huawei-behavior-b1]deny
[Huawei]traffic policy p1
[Huawei-trafficpolicy-p1]classifier c1 behavior b1
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]traffic-policy p1 outbound
33.开启web服务
Cisco(config)#ip http server
[Huawei]http server enable
34.NAT配置
Cisco(config-if)#int f0/0
Cisco(config-if)#ip nat outside
Cisco(config-if)#int f0/1
Cisco(config-if)#ip nat inside
Cisco(config)#ip nat inside source static 10.1.1.2 12.1.1.1
Cisco(config)#do show run | in in nat
Cisco(config)#ip nat inside source static tcp 10.1.1.1 80 12.1.1.1 80
Cisco(config)#ip nat inside source static tcp 10.1.1.2 80 12.1.1.1 8080
Cisco#show ip nat translations
Cisco(config)#ip nat pool p1 12.1.1.10 12.1.1.20 netmask 255.255.255.0
Cisco(config)#access-list 1 permit 10.1.1.0 0.0.0.255
Cisco(config)#ip nat inside source list 1 pool p1
Cisco(config)#ip nat inside source list 1 interface f0/0 overload
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]nat static global 12.1.1.1 inside 10.1.1.1
[Huawei-GigabitEthernet0/0/1]nat static protocol tcp global 12.1.1.1 80 inside 10.1.1.1 80
[Huawei-GigabitEthernet0/0/1]nat static protocol tcp global 12.1.1.1 8080 inside 10.1.1.3 80
[Huawei]display nat static
[Huawei]display nat session all
[Huawei]nat address-group 1 12.1.1.10 12.1.1.20
[Huawei-acl-basic-2000]rule permit source 10.1.1.0 0.0.0.255
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]nat outbound 2000 address-group 1
[Huawei]display nat outbound
[Huawei]reset nat session all
35.路由策略:route-map, route-policy
Cisco(config)#access-list 1 permit 192.168.1.0
Cisco(config)#route-map r1 permit 10
Cisco(config-route-map)#match ip ad
Cisco(config-route-map)#match ip address 1
Cisco(config-route-map)#set metric 1
Cisco(config)#router rip
Cisco(config-router)#redistribute ospf 110 route-map r1
[Huawei]route-policy a1 permit node 10 //创建Route-Policy,并进入Route-Policy视图
[Huawei-route-policy]if-match acl 2000 //匹配基本ACL
[Huawei-route-policy]apply ip-address next-hop 10.1.1.1 //设置路由的下一跳地址
36.前缀列表prefix-list
Cisco(config)#ip prefix-list 1 permit 10.1.1.0/24 ge 26
Cisco(config)#ip prefix-list 1 permit 10.1.1.0/24 ge 26 le 30
Cisco(config)#ip prefix-list 1 permit 10.1.1.0/24
[Huawei]ip ip-prefix 1 permit 10.1.1.10 24 greater-equal 26
[Huawei]ip ip-prefix 1 permit 10.1.1.10 24 greater-equal 26 less-equal 30
[Huawei]ip ip-prefix 1 permit 10.1.1.0 24
37.路由重发布
Cisco(config)#router ospf 110
Cisco(config-router)#redistribute eigrp 90 subnets metric-type 1 metric 30
[Huawei]ospf 1
[Huawei-ospf-1]import-route rip