COMANDOS E TROUBLESHOOTING
[>] DIVERSOS
<[SW-HUAWEI]> display version
<[SW-HUAWEI]> display device
<[SW-HUAWEI]> display interface brief
<[SW-HUAWEI]> clear configuration interface gigabitethernet 0/0/1
[>] VERIFICA SINAIS OPTICOS
<[SW-HUAWEI]> dis transceiver interface XGigabitEthernet 0/0/1 verbose
<[SW-CE6810]> display interface 10GE1/0/47 transceiver verbose
[>] CRIA VLAN
<[SW-HUAWEI]> vlan 823
<[SW-HUAWEI]> description NOME-DA-VLAN
[>] ASSOCIA VLAN AS PORTAS
<[SW-HUAWEI]> interface XGigabitEthernet 0/0/1
<[SW-HUAWEI-XGigabitEthernet0/0/1]> port link-type trunk
<[SW-HUAWEI-XGigabitEthernet0/0/1]> port trunk allow-pass vlan 3000
[>] VLAN UNTTAGED
interface GigabitEthernet0/0/1
description INPUT-FLUXO-MULTICAST
port link-type access
y
port default vlan 10
stp disable
[>] NEGOCIAÇÃO PORTAS
<[SW-HUAWEI]> interface XGigabitEthernet 0/0/1
<[SW-HUAWEI-XGigabitEthernet0/0/1]> undo negotiation auto
<[SW-HUAWEI-XGigabitEthernet0/0/1]> speed 100
[+] LINKS DE REFERENCIAS
[>] CRIAR LINK AGGREGATION
interface Eth-Trunk 0
port link-type trunk
port trunk allow-pass vlan 10 20
mode lacp-static
interface xGigabitEthernet 0/0/1
eth-trunk 0
[>] VERIFICAR STATUS LINK AGGREGATION
display interface eth-trunk 0
[>] LISTA VLAN POR PORTAS
display port vlan Eth-Trunk 4
[>] HABILITA SSH-SERVER :=
stelnet server enable
ssh authentication-type default password
ssh server port 8462
y
user-interface vty 0 4
protocol inbound all
[>] HABILITA TELNET-SERVER
telnet server enable
telnet server port 9923
[>] DESABILITA HTTP-SERVER
undo http server enable
undo http secure-server enable
[>] HABILITA NTP
ntp-service unicast-server 187.87.208.78
[>] ACESSAR OUTRO SWITCH VIA SSH
ssh client first-time enable
[>] HISTORY
display history-command all-users
[>] STP
display stp bridge root
display stp brief
[>] BACKUP AUTOMATICO
set save-configuration interval 1440 delay 1
[>] DESABILITA STP DA PORTA
stp disable
[>] HABILITA LLDP
lldp enable
[>] CRIA USUARIOS
local-user flavio.souza password irreversible-cipher $1a$vXIu8g[AmT$[Ak*/%`+LIZhF7RVy;f*//]p)$
local-user flavio.souza privilege level 15
local-user flavio.souza service-type telnet terminal ssh ftp
[>] DESABILITA COMPLEXIDADE DE SENHA
aaa
undo user-password complexity-check
[>] LIMPA HISTÓRICO DAS ULTIMAS SENHAS
reset local-user admin password history record
reset local-user flavio.souza password history record
[>] NAO EXPIRA SENHA
undo local-user admin expire-date
undo local-user flavio.souza expire-date
[>] ATUALIZAÇÃO FIRMEWARE
ftp server enable
aaa
local-user admin ftp-directory flash:
local-user admin service-type telnet ssh ftp terminal
startup system-software S6720EI-V200R011C10SPC600.cc
startup patch S6720EI-V200R011SPH009.pat
patch load S6720EI-V200R011SPH009.pat all run
undo ftp server
aaa
undo local-user admin ftp-directory
local-user admin service-type telnet terminal ssh
[>] AJUSTA DATA E HORA MANUAL
clock datetime 16:52:00 2022-01-15
(seta data e hora no switch, comando fora do system-view)
clock timezone America/Brasilia minus 03:00:00
clock timezone America/Campo_Grande minus 02:00:00
(seta timezone)
[>] CONFIGURAÇÃO BACKUP FTP
set save-configuration interval 1440 delay 1
set save-configuration backup-to-server server 187.49.48.43 transport-type ftp user huawei password B4kups@huawei
startup save-configuration nome-arquivo-conf.cfg
[>] QinQ
interface GigabitEthernet0/0/24
description "to L2-INFOCELL"
port link-type dot1q-tunnel
port default vlan 2010
mac-limit maximum 10
stp disable
interface GigabitEthernet0/0/1
description "to L2-INFOCELL"
port link-type dot1q-tunnel
port default vlan 2010
mac-limit maximum 10
stp disable
[>] LIMITAÇÃO DE BANDA
POR VLAN
traffic classifier CEPAIN_TOLEDO operator or
if-match vlan-id 3510
traffic behavior CEPAIN_TOLEDO
car cir 10240000 pir 10240000
statistic enable
traffic policy CEPAIN_TOLEDO
traffic policy CEPAIN_TOLEDO match-order config
classifier CEPAIN_TOLEDO behavior CEPAIN_TOLEDO
interface Vlanif3510
statistic enable both
interface que está tageada a vlan
traffic-policy CEPAIN_TOLEDO inbound
traffic-policy CEPAIN_TOLEDO outbound
# REFERENCIAS
1024000 - 1G
10240000 - 10G
LIMITA BANDA POR PORTA [2GB]
qos lr outbound cir 2048000 cbs 2048000
qos lr inbound cir 2048000 cbs 2048000
LIMITE DE BANDA POR VLAN by ACL
acl number 4001
rule 1 permit vlan-id 159
#
traffic-limit outbound acl 4001 cir 200000 pir 2000000 cbs 500000 pbs 500000
traffic-limit inbound acl 4001 cir 200000 pir 2000000 cbs 500000 pbs 500000
[>] CPU DEFEND
cpu-defend policy CONECTTIVA
car packet-type bfd cir 256 cbs 48128
cpu-defend-policy CONECTTIVA global
snmp-agent protocol get-bulk timeout 10
set if-mib sample-interval 0
[>] Q-in-Q SELETIVO VLAN
interface XGigabitEthernet0/0/4
description RTA-INDIANOPOLIS
port link-type hybrid
undo port hybrid vlan 1
q
interface XGigabitEthernet0/0/4.3013
description RTA-INDIANOPOLIS
qinq stacking vid 202 pe-vid 3013
[>] ARPs
display arp error packet
display arp ip-conflict track
display arp packet statistics
display arp track
display cpu-defend statistics packet-type arp-request all
display cpu-defend statistics packet-type arp-reply all