cisco
配置ntp
conf t
ntp server 172.28.10.10
clock timezone Beijing 8
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
show clock
show ntp status
配置端口组
interface Port-channel10
no switchport
ip address 172.28.1.2 255.255.255.240
interface range gi 1/0/47 - 48
no ip address
no switchport
channel-group 10 mode on
关闭domain lookup
no ip domain lookup
no cdp run
no ip http server
no ip http secure-server
配置SSH
config t
ip domain-name jkzh.com
crypto key generate rsa
aaa new-mode
username AAA password BBB
line vty 0 4
transport input ssh
show tcp brif
限制access-list
ip access-list extended telnet
10 permit ip host X.X.X.X any
20 permit ip host X.X.X.X any
line vty 0 4
access-class telnet in