Jump to content
uritech

3com Switch 4800g And Firewall

Recommended Posts

Cara config switch 3com 4800g, table route di firewall.
Table route firewall
dest. Gateway. Mask
128.16.0.0 0.0.0.0 255.255.255.0
128.16.1.0 128.16.0.254 255.255.255.0
128.16.2.0 128.16.0.254 255.255.255.0
128.16.3.0. 128.16.0.254. 255.255.255.0
128.16.4.0. 128.16.0.254. 255.255.255.0
20.107.0.0. 0.0.0.0. 255.255.0.0
0.0.0.0. 20.107.0.230. 0.0.0.0

firewall 20.107.0.230->fw1 20.107.0.233 ip subnet 255.255.255.0 20.107.0.230(eth0), 128.16.0.100 ip (eth1)->switch 3com ip 128.16.27.1

Ip server 128.16.1.1, 128.16.1.3 & 128.16.1.6

Switch 3com 4800g
port 1-2 firewall, 3-12 server dan 13-26 client
128.16.0.0/24 wan
128.16.1.0/24 server
128.16.2.0/24 base admin
128.16.3.0/24 firewall
128.16.4.0/24 Rm volunter

Soalan Nya mcm mana nak setting 3com switch? Edited by uritech

Share this post


Link to post
Share on other sites
Aku tak nampak sgt diagram dari 4800G ke Firewall tu ..tapi kalo ada diagram lagi bagus...

ok.. Task utk setting switch. Aku andaikan switch tu guna 48Port sbb ada port 26 then lagi vlan client tu vlan yg mana satu aku tak sure...Ke Firewall connect tru vlan 1, try refer kat bawah ni..

1. Console Switch guna terminal
2. Configure switch vlan + Description
3. Configure Port Vlan
4. Configure IP Interface Vlan
5. Configure Ip routing.


Example task config 2

<4800G>[color=#ff0000]system-view [/color] (tekan enter)
System View: return to User View with Ctrl+Z.
[4800G]

[4800G][color=#ff0000]vlan 2 to 5[/color]
Please wait... Done.
[4800G][color=#ff0000]vlan 1[/color]
[4800G][color=#ff0000]descr Wan[/color]
[4800G[color=#ff0000]]vlan 2[/color]
[4800G][color=#ff0000]descr Server[/color]
[4800G[color=#ff0000]]vlan 3[/color]
[4800G][color=#ff0000]descr Base Admin[/color]
[4800G][color=#ff0000]vlan 4[/color]
[4800G][color=#ff0000]descr Firewall[/color]
[4800G][color=#ff0000]vlan 5[/color]
[4800G][color=#ff0000]descr Rm Volunter[/color]


Example task config 3

*** Default vlan = vlan 1

[4800G[color=#ff0000]]vlan 2[/color]
[4800G-vlan2][color=#ff0000]port GigabitEthernet 1/0/3 to GigabitEthernet 1/0/12[/color]


[4800G[color=#ff0000]]vlan 3[/color]
[4800G-vlan3][color=#ff0000]port GigabitEthernet 1/0/13 to GigabitEthernet 1/0/26[/color]


[color=#FF0000]**** Kalau nak port stp mode fast , setkan setiap port sebagai [/color]

stp edged-port enable


Example task config 4

[4800G][color=#ff0000]interface Vlan-interface 1[/color]
[4800G-Vlan-interface1][color=#ff0000]ip add 128.16.0.254 24[/color]

[4800G]interface Vlan-interface 2
[4800G-Vlan-interface2][color=#ff0000]ip add 128.16.1.254 24[/color]

[4800G][color=#ff0000]interface Vlan-interface 3[/color]
[4800G-Vlan-interface3][color=#ff0000]ip add 128.16.2.254 24[/color]

[4800G][color=#ff0000]interface Vlan-interface 4[/color]
[4800G-Vlan-interface4][color=#ff0000]ip add 128.16.3.254 24[/color]

[4800G][color=#ff0000]interface Vlan-interface 5[/color]
[4800G-Vlan-interface5][color=#ff0000]ip add 128.16.4.254 24[/color]



Example task config 5

** Andaikan kaki firewall zone adalah 128.16.0.0.100 dan perlu carry semua ip subnet

[4800G][color=#ff0000]ip route-static 0.0.0.0 0 128.16.0.100[/color]


*****************************************************************************************************************************************

List config

#
sysname 4800G
#
domain default enable system
#
telnet server enable
#
undo ip ttl-expires
#
vlan 1
description Wan
#
vlan 2
description Server
#
vlan 3
description Base Admin
#
vlan 4
description Firewall
#
vlan 5
description Rm Volunter
#
radius scheme system
server-type extended
primary authentication 127.0.0.1 1645
primary accounting 127.0.0.1 1646
user-name-format without-domain
#
domain system
access-limit disable
state active
idle-cut disable
self-service-url disable
#
user-group system
#
interface NULL0
#
interface Vlan-interface1
ip address 128.16.0.254 255.255.255.0
#
interface Vlan-interface2
ip address 128.16.1.254 255.255.255.0
#
interface Vlan-interface3
ip address 128.16.2.254 255.255.255.0
#
interface Vlan-interface4
ip address 128.16.3.254 255.255.255.0
#
interface Vlan-interface5
ip address 128.16.4.254 255.255.255.0
#
interface GigabitEthernet1/0/1
#
interface GigabitEthernet1/0/2
#
interface GigabitEthernet1/0/3
port access vlan 2
#
interface GigabitEthernet1/0/4
port access vlan 2
#
interface GigabitEthernet1/0/5
port access vlan 2
#
interface GigabitEthernet1/0/6
port access vlan 2
#
interface GigabitEthernet1/0/7
port access vlan 2
#
interface GigabitEthernet1/0/8
port access vlan 2
#
interface GigabitEthernet1/0/9
port access vlan 2
#
interface GigabitEthernet1/0/10
port access vlan 2
#
interface GigabitEthernet1/0/11
port access vlan 2
#
interface GigabitEthernet1/0/12
port access vlan 2
#
interface GigabitEthernet1/0/13
#
interface GigabitEthernet1/0/14
#
interface GigabitEthernet1/0/15
#
interface GigabitEthernet1/0/16
#
interface GigabitEthernet1/0/17
#
interface GigabitEthernet1/0/18
#
interface GigabitEthernet1/0/19
#
interface GigabitEthernet1/0/20
#
interface GigabitEthernet1/0/21
#
interface GigabitEthernet1/0/22
#
interface GigabitEthernet1/0/23
#
interface GigabitEthernet1/0/24
#
interface GigabitEthernet1/0/25
#
interface GigabitEthernet1/0/26
#
interface GigabitEthernet1/0/27
#
interface GigabitEthernet1/0/28
#
interface GigabitEthernet1/0/29
#
interface GigabitEthernet1/0/30
#
interface GigabitEthernet1/0/31
#
interface GigabitEthernet1/0/32
#
interface GigabitEthernet1/0/33
#
interface GigabitEthernet1/0/34
#
interface GigabitEthernet1/0/35
#
interface GigabitEthernet1/0/36
#
interface GigabitEthernet1/0/37
#
interface GigabitEthernet1/0/38
#
interface GigabitEthernet1/0/39
#
interface GigabitEthernet1/0/40
#
interface GigabitEthernet1/0/41
#
interface GigabitEthernet1/0/42
#
interface GigabitEthernet1/0/43
#
interface GigabitEthernet1/0/44
#
interface GigabitEthernet1/0/45
#
interface GigabitEthernet1/0/46
#
interface GigabitEthernet1/0/47
#
interface GigabitEthernet1/0/48
#
interface GigabitEthernet1/0/49
shutdown
#
interface GigabitEthernet1/0/50
shutdown
#
interface GigabitEthernet1/0/51
shutdown
#
interface GigabitEthernet1/0/52
shutdown
#
ip route-static 0.0.0.0 0.0.0.0 128.16.0.100
#
user-interface aux 0 3
user-interface vty 0 4
#
return
[4800G]



Hope boleh membantu

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...

×
×
  • Create New...