MSR3620双线基础上网物理断切-PBR策略选路-NQA智能判断自动切
================================111111111111111111111111
[MSR3620-GigabitEthernet0/2]dis cur
#
version 7.1.049, Release 0106P21
#
sysname MSR3620
#
ip unreachables enable---tracert或pathping可达
ip ttl-expires enable
#
dhcp enable
#
password-recovery enable
#
vlan 1
#
dhcp server ip-pool lan
network 192.168.1.0 mask 255.255.255.0
dns-list 202.99.166.4 222.222.222.222
forbidden-ip 192.168.1.1
forbidden-ip 192.168.1.2
forbidden-ip 192.168.1.3
forbidden-ip 192.168.1.4
forbidden-ip 192.168.1.5
gateway-list 192.168.1.1
#
controller Cellular0/0
#
controller Cellular0/1
#
interface Aux0
#
interface NULL0
#
interface GigabitEthernet0/0
port link-mode route
description to LianTong
combo enable copper
ip address 172.16.11.11 255.255.255.0
nat outbound
#
interface GigabitEthernet0/1
port link-mode route
description toDianXin
ip address 172.16.12.12 255.255.255.0
nat outbound
#
interface GigabitEthernet0/2
port link-mode route
description toLan
ip address 192.168.1.1 255.255.255.0
默认有一条: dhcp server select 如果undo掉 会显示有undo的启用了没有显示了说明默认有
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class tty
user-role network-operator
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 63
user-role network-operator
#
ip route-static 0.0.0.0 0 172.16.11.254 track 1
ip route-static 0.0.0.0 0 172.16.12.254 track 2 preference 80
#
undo info-center enable
#
domain system
#
aaa session-limit ftp 32
aaa session-limit telnet 32
aaa session-limit http 32
aaa session-limit ssh 32
aaa session-limit https 32
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
role name level-2
description Predefined level-2 role
#
role name level-3
description Predefined level-3 role
#
role name level-4
description Predefined level-4 role
#
role name level-5
description Predefined level-5 role
#
role name level-6
description Predefined level-6 role
#
role name level-7
description Predefined level-7 role
#
role name level-8
description Predefined level-8 role
#
role name level-9
description Predefined level-9 role
#
role name level-10
description Predefined level-10 role
#
role name level-11
description Predefined level-11 role
#
role name level-12
description Predefined level-12 role
#
role name level-13
description Predefined level-13 role
#
role name level-14
description Predefined level-14 role
#
user-group system
#
return
==========================================================222222222222
[MSR3620-GigabitEthernet0/2]
[MSR3620-GigabitEthernet0/2]dis cur
#
version 7.1.049, Release 0106P21
#
sysname MSR3620
#
ip unreachables enable---tracert或pathping可达
ip ttl-expires enable
#
dhcp enable
#
password-recovery enable
#
vlan 1
#
dhcp server ip-pool lan
network 192.168.1.0 mask 255.255.255.0
dns-list 202.99.166.4 222.222.222.222
forbidden-ip 192.168.1.1
forbidden-ip 192.168.1.2
forbidden-ip 192.168.1.3
forbidden-ip 192.168.1.4
forbidden-ip 192.168.1.5
gateway-list 192.168.1.1
#
policy-based-route forceToDianXin permit node 10
if-match acl 3000
apply next-hop 172.16.12.254
#
controller Cellular0/0
#
controller Cellular0/1
#
interface Aux0
#
interface NULL0
#
interface GigabitEthernet0/0
port link-mode route
description to LianTong
combo enable copper
ip address 172.16.11.11 255.255.255.0
nat outbound
#
interface GigabitEthernet0/1
port link-mode route
description toDianXin
ip address 172.16.12.12 255.255.255.0
nat outbound
#
interface GigabitEthernet0/2
port link-mode route
description add PBR force 12 from the original dafault 11
ip address 192.168.1.1 255.255.255.0
ip policy-based-route forceToDianXin
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class tty
user-role network-operator
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 63
user-role network-operator
#
ip route-static 0.0.0.0 0 172.16.11.254 track 1
ip route-static 0.0.0.0 0 172.16.12.254 track 2 preference 80
#
undo info-center enable
#
acl number 3000
rule 10 permit ip source 192.168.1.0 0.0.0.255
#
domain system
#
aaa session-limit ftp 32
aaa session-limit telnet 32
aaa session-limit http 32
aaa session-limit ssh 32
aaa session-limit https 32
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
role name level-2
description Predefined level-2 role
#
role name level-3
description Predefined level-3 role
#
role name level-4
description Predefined level-4 role
#
role name level-5
description Predefined level-5 role
#
role name level-6
description Predefined level-6 role
#
role name level-7
description Predefined level-7 role
#
role name level-8
description Predefined level-8 role
#
role name level-9
description Predefined level-9 role
#
role name level-10
description Predefined level-10 role
#
role name level-11
description Predefined level-11 role
#
role name level-12
description Predefined level-12 role
#
role name level-13
description Predefined level-13 role
#
role name level-14
description Predefined level-14 role
#
user-group system
#
return
=======================33333333333333333333333
[MSR3620]dis cur
#
version 7.1.049, Release 0106P21
#
sysname MSR3620
#
ip unreachables enable---tracert或pathping可达
ip ttl-expires enable
#
dhcp enable
#
password-recovery enable
#
vlan 1
#
dhcp server ip-pool lan
network 192.168.1.0 mask 255.255.255.0
dns-list 202.99.166.4 222.222.222.222
forbidden-ip 192.168.1.1
forbidden-ip 192.168.1.2
forbidden-ip 192.168.1.3
forbidden-ip 192.168.1.4
forbidden-ip 192.168.1.5
gateway-list 192.168.1.1
#
policy-based-route forceToDianXin permit node 10
if-match acl 3000
apply next-hop 172.16.12.254
#
nqa entry admin liantong
type icmp-echo
destination ip 172.16.11.254
frequency 1000
next-hop 172.16.11.254
reaction 1 checked-element probe-fail threshold-type consecutive 5 action-type trigger-only
#
nqa schedule admin liantong start-time now lifetime forever
#
controller Cellular0/0
#
controller Cellular0/1
#
interface Aux0
#
interface NULL0
#
interface GigabitEthernet0/0
port link-mode route
description to LianTong
combo enable copper
ip address 172.16.11.11 255.255.255.0
nat outbound
#
interface GigabitEthernet0/1
port link-mode route
description toDianXin
ip address 172.16.12.12 255.255.255.0
nat outbound
#
interface GigabitEthernet0/2
port link-mode route
description add PBR force 12 from the original dafault 11
ip address 192.168.1.1 255.255.255.0
ip policy-based-route forceToDianXin
#
scheduler logfile size 16
#
line class aux
user-role network-admin
#
line class tty
user-role network-operator
#
line class vty
user-role network-operator
#
line aux 0
user-role network-admin
#
line vty 0 63
user-role network-operator
#
ip route-static 0.0.0.0 0 172.16.11.254 track 1
ip route-static 0.0.0.0 0 172.16.12.254 track 2 preference 80
#
undo info-center enable
#
acl number 3000
rule 10 permit ip source 192.168.1.0 0.0.0.255
#
domain system
#
aaa session-limit ftp 32
aaa session-limit telnet 32
aaa session-limit http 32
aaa session-limit ssh 32
aaa session-limit https 32
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
role name level-2
description Predefined level-2 role
#
role name level-3
description Predefined level-3 role
#
role name level-4
description Predefined level-4 role
#
role name level-5
description Predefined level-5 role
#
role name level-6
description Predefined level-6 role
#
role name level-7
description Predefined level-7 role
#
role name level-8
description Predefined level-8 role
#
role name level-9
description Predefined level-9 role
#
role name level-10
description Predefined level-10 role
#
role name level-11
description Predefined level-11 role
#
role name level-12
description Predefined level-12 role
#
role name level-13
description Predefined level-13 role
#
role name level-14
description Predefined level-14 role
#
user-group system
#
track 1 nqa entry admin liantong reaction 1
#
return