FAQ-NGFW二层透明接入时如何通过业务口登录设备

发布时间:  2014-09-19 浏览次数:  107 下载次数:  0
问题描述
NGFW二层透明接入时如何通过业务口登录设备?
解决方案
此时业务口是二层接口,需要将二层接口加入VLAN然后通过VLANIF接口登录设备。例如:两个业务口分别是GigabitEthernet 1/0/1和GigabitEthernet 1/0/2,配置如下:
# 创建VLAN并将接口加入VLAN(缺省情况下,接口属于VLAN1)
<NGFW> system-view
[NGFW] vlan 2
[NGFW-vlan-2] quit
[NGFW] interface GigabitEthernet 1/0/1
[NGFW-GigabitEthernet1/0/1] portswitch
[NGFW-GigabitEthernet1/0/1] port access vlan 2
[NGFW-GigabitEthernet1/0/1] quit
[NGFW] interface GigabitEthernet 1/0/2
[NGFW-GigabitEthernet1/0/2] portswitch
[NGFW-GigabitEthernet1/0/2] port access vlan 2
[NGFW-GigabitEthernet1/0/2] quit

# 配置VLANIF接口
[NGFW] interface vlanif 2
[NGFW-Vlanif2] ip address 10.1.3.1 24
[NGFW-Vlanif2] service-manage enable
[NGFW-Vlanif2] service-manage telnet permit
[NGFW-Vlanif2] service-manage http permit
[NGFW-Vlanif2] quit
[NGFW] firewall zone trust
[NGFW-zone-trust] add interface vlanif 2
[NGFW-zone-trust] quit
完成以上配置后通过IP地址10.1.3.1登录即可。

END