AR 150, Front/Back USB interface (host): * Fast Ethernet 0 , puede ser usada como WAN * Fast Ethernet 3, es utilizada para administración y Upgrade 1 Conexión a Consola 2 Interfaz WAN Fast Ethernet 3 * Puertas Lan Fast Ethernet 4 Baton de restauración de Fábrica 5 Conexión a fuente de Poder 6 Correa Seguridad para fuente de Poder 7 Identificación del Modelo 8 Conexión de cable a Tierra 9
AR 157, Front/Back USB interface (host): * Fast Ethernet 0 , puede ser usada como WAN * Fast Ethernet 3, es utilizada para administración y Upgrade 1 Conexión a Consola 2 Interfaz WAN ADSL 3 * Puertas Lan Fast Ethernet 4 Botón de restauración de Fábrica 5 Conexión a fuente de Poder 6 Correa Seguridad para fuente de Poder 7 Identificación del Modelo 8 Conexión de cable a Tierra 9
>Usuario por defecto: admin > Password: Admin@huawei Comandos > system-view , cambia a vista system ( modo de configuración global) > sysname , cambia nombre del equipo > quit , regresa a vista anterior > save, guarda configuración > display current-configuration , muestra config actual > reset saved-configuration, elimina configuración > reboot , reinicia equipo Inicio Press any key to get started Login authentication Username: admin Password: Warning: Auto-Config is working. Before configuring the device, stop Auto-Config. If you perform configurations when Auto-Config is running, the DHCP, routing, DNS, and VTY configurations will be lost. Do you want to stop Auto-Config? [y/n]: y Info: Auto-Config has been stopped. <Huawei> system-view Enter system view, return user view with Ctrl+Z. [Huawei] quit <Huawei> save Warning: The current configuration will be written to the device. Are you sure to continue?[Y/N]: y <Huawei> reset saved-configuration Warning: This will delete the configuration in the flash memory. The device configurations will be erased to reconfigure. Are you sure? (y/n)[n]: y Info: Clear the configuration in the device successfully. AR 150 157, Configuración Básica
Comandos > authentication-mode password > user privilege level 15, nivel de privilegio > set authentication password cipher password, establece password > protocol inbound telnet , establece telnet en vty Aplicaci ó n > authentication-mode [password/ aaa ] > user privilege level [0-15] > set authentication password cipher [password] > protocol inbound [telnet/ ssh ] Password [ Huawei ] user-interface console 0 [Huawei-ui-console0] authentication-mode password [Huawei-ui-console0] set authentication password cipher password [Huawei-ui-console0] user privilege level 15 [ Huawei ] user-interface vty 0 4 [Huawei-ui-vty0-4] protocol inbound telnet [Huawei-ui-vty0-4] set authentication password cipher password [Huawei-ui-vty0-4] user privilege level 15 [Huawei-ui-vty0-4] authentication-mode password AR 150 157, Configuración Básica
Comandos > vlan, crea vlan > vlan batch, crea varias vlan > display vlan summary, resumen de vlan > display vlan brief, asociación a puertos Aplicaci ó n > vlan [número de vlan] > vlan batch [vlan] ó [vlan to vlan] > display vlan summary > display vlan brief VLAN [Huawei] vlan 10 [Huawei] vlan batch 12 14 16 20 to 30 [Huawei] display vlan summary static vlan: Total 16 static vlan exist(s). 1 10 12 14 16 20 to 30 dynamic vlan: Total 0 dynamic vlan exist(s). [Huawei] display vlan brief U:Up;D:Down;TG:Tagged;UT:Untagged; VID Name Status Ports -------------------------------------------------------------------------------- 1 enable UT: Eth0/0/0(D) Eth0/0/1(D) Eth0/0/3(D) Eth0/0/4(D) Eth0/0/5(D) Eth0/0/6(D) Eth0/0/7(D) 10 enable TG: Eth0/0/1(D) 12 enable 14 enable 16 enable 20 enable UT: Eth0/0/2(D) 21 enable 22 enable …… 28 enable 29 enable 30 enable AR 150 157, Configuración Básica
Comandos > port link-type trunk , establece interfaz trunk > port trunk allow-pass vlan, permite vlan > port trunk pvid vlan, establece vlan para untagged frames > port link-type access, establece interfaz access > port default vlan, establece vlan para los frames Aplicaci ó n > port link-type trunk > port trunk allow-pass vlan [vlan id] [vlan id to vlan id] [all] > port trunk pvid vlan [vlan id] > port link-type access > port default vlan [vlan id] Trunk/Access [Huawei] interface Ethernet 0/0/0 [Huawei-Ethernet0/0/0] port link-type trunk [Huawei-Ethernet0/0/0] port trunk allow-pass vlan 10 12 [Huawei-Ethernet0/0/0] undo port trunk allow-pass vlan 1 [Huawei-Ethernet0/0/0] port trunk pvid vlan 20 [Huawei-Ethernet0/0/0] display this # interface Ethernet0/0/0 port link-type trunk port trunk pvid vlan 20 undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 10 12 # [Huawei] interface Ethernet 0/0/1 [Huawei-Ethernet0/0/1] port link-type access [Huawei-Ethernet0/0/1] port default vlan 10 [Huawei-Ethernet0/0/1] display this # interface Ethernet0/0/1 port link-type access port default vlan 10 # AR 150 157, Configuración Básica
Comandos > Interface loopback, permite crear la interfaz. > Undo Interface loopback, permite eliminar la interfaz. > Display interface loopback , Permite desplegar el estado Aplicación > Interface loopback [ loopback-number ] > Undo interface loopback [ loopback-number ] > Display interface loopback [ loopback-number ] Interface Loopback <Huawei> system-view [Huawei] interface loopback 5 [Huawei-LoopBack5] ip address 10.255.255.255 255.255.255.255 <Huawei> display interface LoopBack 5 LoopBack5 current state : UP Line protocol current state : UP (spoofing) Description:HUAWEI, AR Series, LoopBack5 Interface Route Port,The Maximum Transmit Unit is 1500 Internet Address is 10.255.255.255/32 Physical is Loopback Last 300 seconds input rate 0 bits/sec, 0 packets/sec Last 300 seconds output rate 0 bits/sec, 0 packets/sec Realtime 0 seconds input rate 0 bits/sec, 0 packets/sec Realtime 0 seconds output rate 0 bits/sec, 0 packets/sec Input: 0 bytes Output:0 bytes Input bandwidth utilization : 0% Output bandwidth utilization : 0% AR 150 157, Configuración Básica
Comandos > interface , configuración de interfaz > ip address , establece ip > dot1q termination vid , vlan subinterfaz > mtu , establece mtu > adsl standard , establece estándar > pvc , vpi vci > service , tipo de servicio > display interface , información de interfaz > display ip interface brief , resumen de interfaces > display atm pvc-info, información pvc > display dsl interface, status Aplicaci ó n > interface [interfaz] ó [interfaz.subif] [p2p] > ip address [ip] [red] > dot1q termination vid [vlan] > mtu [bytes] > adsl standard [standard] > pvc [vpi/vci] > service [ubr/vbr] > display interface [interfaz] ó [interfaz.subif] > display ip interface brief, información de interfaces > display atm pvc-info, información pvc > display dsl interface , status de interfaz Wan [Huawei-Ethernet0/0/4.10] dot1q termination vid 10 [Huawei-Ethernet0/0/4.10] ip address 10.1.1.2 255.255.255.252 [Huawei] display ip interface Ethernet 0/0/4.10 Ethernet0/0/0.10 current state : UP Line protocol current state : UP The Maximum Transmit Unit : 1500 bytes Internet Address is 10.1.1.2/30 [Huawei-Atm1/0/0] adsl standard adsl2+ [Huawei-atm-pvc-Atm1/0/0.1] pvc 8/35 [Huawei-atm-pvc-Atm1/0/0.1-8/35] service ubr <Huawei> display atm pvc-info Atm1/0/0.1, VPI: 8, VCI: 35, INDEX: 1 AAL5 Encaps: SNAP, Protocol: IP Service-type:UBR Interface State: UP, PVC State: UP <Huawei> display dsl interface atm 1/0/0 -------------------------------------------------------------- DSL driver and PHY status Transmission mode : ADSL2+ Line modulations ADSL2 : Disabled AnnexL : Disabled ADSL2+ : Enabled AnnexM : Disabled AR 150 157, Configuración Básica
Comandos > ip vpn-instance , permite crear vrf > undo ip vpn-instance , permite eliminar vrf > i p binding vpn-instance , aplica vrf a interfaz > undo ip binding vpn-instance , desaplica vrf de interfaz > display ip vpn-instance , muestra vrf Aplicaci ó n > ip vpn-instance [nombre de vrf] > undo ip vpn-instance [nombre de vrf] > ip binding vpn-instance [nombre de vrf] > undo ip binding vpn-instance [nombre de vrf] > display ip vpn-instance [nombre de vrf] VRF <Huawei> system-view [Huawei] ip vpn-instance VRF_01 [Huawei-vpn-instance-VRF_01] route-distinguisher 100:1 [Huawei] interface Ethernet 0/0/4.1 [Huawei-Ethernet0/0/4.1] ip binding vpn-instance VRF_01 [Huawei] display ip vpn-instance VRF_01 VPN-Instance Name RD Address-family VRF_01 100:1 IPv4 AR 150 157, Configuración Básica
Comandos > ip route-static , crea ruta est ática > undo ip route-static , elimina ruta estática > display ip routing-table protocol static , muestra ruta estática Aplicación > ip route-static [red] [mascara] [next hop] > undo ip route-static [red] [mascara] [next hop] > display ip routing-table protocol static Ruta estática [Huawei] ip route-static 0.0.0.0 0.0.0.0 10.0.0.2 [Huawei] display ip routing-table protocol static Destination/Mask Proto Pre Cost Flags NextHop Interface 0.0.0.0/0 Static 60 0 RD 10.0.0.2 Ethernet0/0/4 [Huawei] undo ip route-static 0.0.0.0 0.0.0.0 10.0.0.2 [Huawei] ip route-static 172.16.1.0 255.255.255.0 10.1.1.2 [Huawei] display ip routing-table protocol static Destination/Mask Proto Pre Cost Flags NextHop Interface 172.16.1.0/24 Static 60 0 RD 10.1.1.2 Ethernet0/0/4 AR 150 157, Configuración Básica
Comandos > ospf router-id , crea proceso ospf y router id > area , crea área > network , publica red en área y establece neighbor > import , redistribuye protocolo > undo ospf , elimina proceso > display ospf peer brief , muestra estado de peers > display ip routing-table protocol ospf , muestra rutas Aplicaci ó n > ospf [ id de proceso ] router-id [ ip address ] > area [ número de área ] > network [ ip address ] [ mascara ] > import [ protocolo ] > undo ospf [ id de proceso ] > display ospf peer brief > display ip routing-table protocol ospf OSPF [Huawei] ospf 1 router-id 10.1.1.1 [Huawei-ospf-1] area 0 [Huawei-ospf-1-area-0.0.0.0] network 10.1.1.0 0.0.0.255 [Huawei-ospf-1] import bgp [Huawei] undo ospf 1 [Huawei] display ospf peer brief OSPF Process 1 with Router ID 10.1.1.1 Peer Statistic Information ---------------------------------------------------------------------------- Area Id Interface Neighbor id State 0.0.0.0 Ethernet0/0/4 192.168.1.1 Full ---------------------------------------------------------------------------- Total Peer(s): 1 [Huawei] display ip routing-table protocol ospf Route Flags: R - relay, D - download to fib ------------------------------------------------------------------------------ Public routing table : OSPF Destinations : 1 Routes : 1 OSPF routing table status : <Active> Destinations : 1 Routes : 1 Destination/Mask Proto Pre Cost Flags NextHop Interface 192.168.2.0/24 OSPF 10 1 D 10.1.1.2 Ethernet0/0/4 AR 150 157, Configuración Básica
Comandos > bgp , habilita bgp > peer as-number , indica bgp peer > network , publica red en bgp > import-route , redistribuye protocolo en bgp > display bgp peer , estado de peer > display ip routing-table protocol bgp , muestra rutas bgp en tabla de rutas > display ip routing-table , muestra rutas bgp > undo bgp , elimina configuración bgp Aplicación > bgp [numero de AS] > peer [ip address de peer] as-number [numero de de AS de peer] > network [red] [mascara] > import-route [protocol] > display bgp peer > undo bgp BGP [ Huawei] bgp 64512 [Huawei-bgp] peer 10.1.1.2 as-number 64513 [Huawei-bgp] network 172.16.1.0 255.255.255.0 [Huawei-bgp] import-route ospf 1 [Huawei-bgp] display bgp peer BGP local router ID : 10.1.1.1 Local AS number : 64512 Total number of peers : 1 Peers in established state : 1 Peer V AS MsgRcvd MsgSent OutQ Up/Down State PrefRcv 10.1.1.2 4 64513 2 4 0 00:00:15 Established 0 [Huawei] undo bgp AR 150 157, Configuración Básica
Comandos > stelnet server enable , habilita ssh > authentication-mode aaa , autenticaci ón aaa en vty > protocol inbound ssh , establece ssh > local-user user service-type ssh , servicio ssh a usuario > display ssh server status, estado del ssh server SSH [Huawei] user-interface vty 0 4 [Huawei-ui-vty0-4] authentication-mode aaa [Huawei-ui-vty0-4] protocol inbound ssh [Huawei-ui-vty0-4] aaa [Huawei-aaa] local-user admin service-type terminal ssh [Huawei] display ssh server status SSH version :1.99 SSH connection timeout :60 seconds SSH server key generating interval :0 hours SSH Authentication retries :3 times SFTP Server :Disable Stelnet server :Enable [Huawei] display user-interface vty 0 Idx Type Tx/Rx Modem Privi ActualPrivi Auth Int + 129 VTY 0 - 0 15 A - [Huawei] display users User-Intf Delay Type Network Address AuthenStatus AuthorcmdFlag 129 VTY 0 00:02:41 SSH 192.168.10.253 pass Username : admin AR 150 157, Configuración Básica
Aplicaci ó n > hwtacacs-server template [ nombre de template ] > hwtacacs-server authentication [ server ] > hwtacacs-server authorization [ server ] > hwtacacs-server accounting [ server ] > hwtacacs-server shared-key cipher [ clave ] > aaa > authentication-scheme [ nombre ] > authentication-mode hwtacacs > authorization-scheme [ nombre ] > authorization-mode hwtacacs > accounting-scheme [ nombre ] > accounting-mode hwtacacs > domain domain_01 > authentication-scheme [ nombre ] > authorization-scheme [ nombre ] > accounting-scheme [ nombre ] > hwtacacs-server [ nombre ] > display hwtacacs-server template [ nombre ] > display domain name [ nombre ] TACACS [Huawei] hwtacacs-server template template_01 [Huawei-hwtacacs-template_01] hwtacacs-server authentication 10.1.1.1 [Huawei-hwtacacs-template_01] hwtacacs-server authorization 10.1.1.1 [Huawei-hwtacacs-template_01] hwtacacs-server accounting 10.1.1.1 [Huawei-hwtacacs-template_01] hwtacacs-server shared-key cipher key [Huawei-hwtacacs-template_01] aaa [Huawei-aaa] authentication-scheme tacacs [Huawei-aaa-authen-tacacs] authentication-mode hwtacacs [Huawei-aaa-authen-tacacs] authorization-scheme tacacs [Huawei-aaa-author-tacacs] authorization-mode hwtacacs [Huawei-aaa-author-tacacs] accounting-scheme tacacs [Huawei-aaa-accounting-tacacs] accounting-mode hwtacacs [ Huawei-aaa ] domain default_admin [Huawei-aaa-domain-domain_01] authentication-scheme tacacs [Huawei-aaa-domain-domain_01] authorization-scheme tacacs [Huawei-aaa-domain-domain_01] accounting-scheme tacacs [Huawei-aaa-domain-domain_01] hwtacacs-server template_01 [Huawei-aaa] display hwtacacs-server template template_01 AR 150 157, Configuración Básica
Comandos > nat outbound , habilita nat > undo nat outbound , deshabilita nat nat address-group, especifica ip para nat nat static protocol , nat est á tico display nat outbound , muestra nat display nat static, muestra configuración de nat estático display nat session all, muestra sesiones Aplicaci ó n > nat outbound [acl] o [acl] address-group [index] > undo nat outbound [acl] nat address-group [index] [ ip ] nat static protocol [ tcp / udp ] global [ ip address] [port] inside [ lan ip add] [ puerto ] vpn -instance [ vrf ] NAT <Huawei> system-view [ Huawei ] nat address-group 0 200.0.0.1 200.0.0.1 [Huawei-Ethernet0/0/4] nat outbound 2000 address-group 0 [Huawei-Ethernet0/0/4] display nat outbound NAT Outbound Information: -------------------------------------------------------------------------- Interface Acl Address-group/IP/Interface Type -------------------------------------------------------------------------- Ethernet0/0/4 2000 0 pat [Huawei-Ethernet0/0/4] nat static protocol tcp global 200.0.0.0 80 inside 192.168.10.10 80 vpn -instance VRF [Huawei-Ethernet0/0/8] display nat static Static Nat Information: Interface : Ethernet0/0/8 Global IP/Port : 200.0.0.0/80(www) Inside IP/Port : 192.168.10.10/80(www) Protocol : 6( tcp ) VPN instance-name : VRF AR 150 157, Configuración Básica
Comandos método 1 > dhcp enable , habilita dhcp > dhcp select interface , habilita dhcp en interface > dhcp server excluded-ip-address , excluye ip > dhcp server dns-list , indica dns método 2 > ip pool , crea pool > gateway-list , indica gateway > excluded-ip-address , excluye ip > dhcp select global , selecciona del pool dns -list , indica dns método 3 dhcp select relay , server está en otra red dhcp relay server- ip , indica ip de server Aplicaci ó n > dhcp server excluded-ip-address [rango de ip] > dhcp server dns-list [ip dns] > ip pool [nombre de pool] > gateway-list [gateway] > excluded-ip-address [rango de ip] dns -list [ip dns] dhcp relay server- ip [ ip address] DHCP [Huawei] dhcp enable [Huawei] interface Vlanif100 [Huawei-Vlanif100] ip address 192.168.100.254 255.255.255.0 [Huawei-Vlanif100] dhcp select interface [Huawei-Vlanif100] dhcp server excluded-ip-address 192.168.100.250 192.168.100.253 [Huawei-Vlanif100] dhcp server dns-list 172.16.1.100 [Huawei] ip pool POOL_100 [Huawei-ip-pool-POOL_100] gateway-list 192.168.100.254 [Huawei-ip-pool-POOL_100] network 192.168.100.0 mask 255.255.255.0 [Huawei-ip-pool-POOL_100] excluded-ip-address 192.168.100.250 192.168.100.253 [Huawei-ip-pool-POOL_100] dns-list 172.16.1.100 [ Huawei ] interface Vlanif100 [Huawei-Vlanif100] dhcp select global [Huawei-ip-pool-POOL_100] display ip pool ----------------------------------------------------------------------- Pool-name : POOL_100 Pool-No : 0 Position : Local Status : Unlocked Gateway-0 : 192.168.100.254 Mask : 255.255.255.0 [Huawei-Vlanif30] dhcp select relay [Huawei-Vlanif30] dhcp relay server- ip 10.10.10.10 [Huawei-Vlanif30] display dhcp relay all DHCP relay agent running information of interface Vlanif30 : Server IP address [01] : 10.10.10.10 AR 150 157, Configuración Básica
Comandos > vrrp vrid virtual-ip, establece vip > vrrp vrid priority, establece prioridad > vrrp vrid track, tracking > display vrrp , estado de vrrp Aplicaci ó n > vrrp vrid [ id ] virtual-ip [ vip ] > vrrp vrid [ id ] priority [ prioridad ] > vrrp vrid [ id ] preempt-mode timer delay [ segundos ] > vrrp vrid [ id ] track interface [ interfaz ] > vrrp vrid [ id ] track ip route [ ruta ] reduced [ -prioridad ] > display vrrp VRRP [Huawei] interface vlan 10 [Huawei-Vlanif10] vrrp vrid 10 virtual-ip 192.168.10.254 [Huawei-Vlanif10] vrrp vrid 10 priority 120 [Huawei-Vlanif10] vrrp vrid 10 preempt-mode timer delay 30 [Huawei-Vlanif10] vrrp vrid 10 track ip route 0.0.0.0 0.0.0.0 reduced 40 [Huawei] display vrrp 10 Vlanif10 | Virtual Router 10 State : Master Virtual IP : 192.168.10.254 Master IP : 192.168.10.252 PriorityRun : 120 PriorityConfig : 120 MasterPriority : 120 Preempt : YES Delay Time : 30 s TimerRun : 1 s TimerConfig : 1 s Auth type : NONE Virtual MAC : 0000-5e00-010a Check TTL : YES Config type : normal-vrrp Backup-forward : disabled Track IP route : 0.0.0.0/0 Priority reduced : 40 IP route state : Reachable Create time : 2016-05-04 22:21:23 UTC-08:00 Last change time : 2016-05-04 22:39:48 UTC-08:00 AR 150 157, Configuración Básica
Comandos > observe-port , puerto que recibe copia > display observe-port , muestra puerto que recibe copia > mirror to observe-port , puerto a ser copiado > display mirror-port , muestra puerto a ser copiado Aplicaci ó n > observe-port interface [interfaz] > display observe-port > mirror to observe-port both > display mirror-port Port Mirror [Huawei] observe-port interface Ethernet 0/0/0 <Huawei> display observe-port ---------------------------------------------------------------------- Index : 1 Interface: Ethernet0/0/0 Used : 0 ---------------------------------------------------------------------- [Huawei] interface Ethernet 0/0/1 [Huawei-Ethernet0/0/1] mirror to observe-port both <Huawei> display mirror-port --------------------------------------------------------------------------- Mirror-port Direction Observe-dest --------------------------------------------------------------------------- 1 Ethernet0/0/1 Both Ethernet0/0/0 --------------------------------------------------------------------------- AR 150 157, Configuración Básica
Procedimiento Iniciar equipo Presionar Ctrl+B cuando el equipo lo indique Seleccionar opci ón 7 Password Manager Seleccionar opci ón 2 Clear the console login password Seleccionar opci ón Return Seleccionar opción 1 Default Startup , el equipo se reiniciará. Password Reset Press Ctrl+B to break auto startup ... 3 Enter Password: Admin@huawei Main Menu 1. Default Startup … 6. Reboot 7. Password Manager Enter your choice(1-7): 7 PassWord Menu 1. Modify the menu password 2. Clear the console login password 0. Return Enter your choice(0-2): 2 Clear the console login password Succeed! PassWord Menu 1. Modify the menu password 2. Clear the console login password 0. Return Enter your choice(0-2): Main Menu 1. Default Startup 2. Serial Menu ... 7. Password Manager Enter your choice(1-7): 1 …. Press any key to get started < Huawei > AR 150 157, Configuración Básica
Comandos > display logbuffer , muestra log > clock datetime , establece fecha y hora > clock timezone , establece zona horaria > ping : - vpn -instance, especifica vrf -a, especifica origen -c, cantidad -s, carga en bytes otros < Huawei > clock datetime 10:00:00 2016-05-16 < Huawei > clock timezone CL minus 3:00 < Huawei > display clock 2016-05-06 10:00:11 Friday Time Zone(CL) : UTC-03:00 < Huawei >ping - vpn -instance VRF -a 192.168.1.2 -c 10 -s 1500 192.168.1.1 AR 150 157, Configuración Básica