console server设置 ,cisco
ip access-list exvlan605-permitpermit udp any anyeq bootpspermit udp any anyeq bootpcpermit udp any anyeq domainpermit udp any eqdomain anypermit icmp any anypermit tcp any10.100.2.0 0.0.0.255 eq wwwp
12:09公司领导要实现二层的安全,其中有一项是DHCP Snooping,我负责实施。实施很简单,在接入层交换机做如下的配置:ip dhcp snoopingip dhcp snooping vlan 603-608ip dhcp snooping trust (上行链路端口)ip dhcp snooping limit rate 15 (untrust)errdisable recovery
ciscoint range storm-control broadcast level 30.00 storm-control action shutdownwrH3Csystem-view interface Ethernet1/0/1broadcast-suppress
ip access-list standard vty-allowpermit 10.206.0.0 0.0.255.255line vty 0 4access-class vty-allow in Acl number 2200Rule perm
line con 0logging synchronouslogin localip domain-name namecrypto key generate rsausername username privilege 15 secret pass
config tip access-list standard snmppermit *.*.*.*permit *.*.*. exitsnmp-server community name RO snmpexitwr system-viewacl numbe
Copyright © 2005-2025 51CTO.COM 版权所有 京ICP证060544号