红色字体为需要自己修改对应的的内容。
#
version Release 3109P09
#
sysname 二基地一区1
#
telnet server enable
#
irf mac-address persistent timer
irf auto-update enable
undo irf link-delay
irf member 1 priority 1
#
dhcp snooping enable
#
lldp global enable
#
loopback-detection global enable vlan 238 loopback-detection global action shutdown #
password-recovery enable
#
vlan 1
#
vlan 200
description guanli
#
vlan 238
#
stp global enable
#
interface NULL0
#
interface Vlan-interface1
#
interface Vlan-interface200
ip address GigabitEthernet1/0/1
port access vlan 238
ip verify source ip-address mac-address
loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/2
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/3
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/4
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/5
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/6
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/7
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/8
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/9
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/10
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/11
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/12
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/13
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/14
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/15
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/16
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/17
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/18
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/19
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/20
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/21
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/22
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown dhcp snooping binding record
#
interface GigabitEthernet1/0/23
port access vlan 238
ip verify source ip-address mac-address
loopback-detection action shutdown
dhcp snooping binding record
#
interface GigabitEthernet1/0/24
port access vlan 238
ip verify source ip-address mac-address loopback-detection action shutdown
dhcp snooping binding record
#
interface Ten-GigabitEthernet1/0/25 description link to 二基地核心S10508-2-29 port link-type trunk
port trunk permit vlan all
dhcp snooping trust
#
interface Ten-GigabitEthernet1/0/26
port link-type trunk
port trunk permit vlan all
dhcp snooping trust
#
interface Ten-GigabitEthernet1/0/27
port link-type trunk
port trunk permit vlan all
dhcp snooping trust
#
interface Ten-GigabitEthernet1/0/28
port link-type trunk
port trunk permit vlan all
dhcp snooping trust
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 15
authentication-mode scheme
user-role network-operator
#
line vty 16 63
user-role network-operator
#
ip route-static 0 snmp-agent
snmp-agent local-engineid 800063A2033822D69CCCC2 snmp-agent community write private
snmp-agent community read public
snmp-agent sys-info version all
#
radius scheme system
user-name-format without-domain
#
domain system
#
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
role name level-2
description Predefined level-2 role
#
role name level-3
description Predefined level-3 role
#
role name level-4
description Predefined level-4 role
#
role name level-5
description Predefined level-5 role
#
role name level-6
description Predefined level-6 role
#
role name level-7
description Predefined level-7 role
#
role name level-8
description Predefined level-8 role
#
role name level-9
description Predefined level-9 role
#
role name level-10
description Predefined level-10 role
#
role name level-11
description Predefined level-11 role
#
role name level-12
description Predefined level-12 role
#
role name level-13
description Predefined level-13 role
#
role name level-14
description Predefined level-14 role
#
user-group system
#
local-user admin class manage
password simple admin@123
service-type ssh telnet
authorization-attribute user-role network-admin authorization-attribute user-role network-operator #
local-user ftp class manage
service-type ftp
authorization-attribute user-role network-operator #
ftp server enable
#