1、2960 交换机简明配置维护手册目录说明 .3产品特性 .3配置端口 .4配置一组端口 .4配置二层端口 .6配置端口速率及双工模式 .6端口描述 .7监控及维护端口 .8监控端口和控制器的状态 .8刷新、重置端口及计数器 .10关闭和打开端口 .10配置 VLAN .11理解 VLAN .11可支持的 VLAN .12配置正常范围的 VLAN .12生成、修改以太网 VLAN .13删除 VLAN .14将端口分配给一个 VLAN .15配置 VLAN Trunks .16使用 STP 实现负载均衡 .19配置 Cluster.23说明本手册只包括日常使用的有关命令及特性,其它未涉及的命令及
2、特性请参考英文的详细配置手册。产品特性2960 是只支持二层的交换机支持 VLAN 到 250 个 VLAN 支持 VLAN ID 从 1 到 4094( IEEE 802.1Q 标准) 支持 ISL 及 IEEE 802.1Q 封装安全 支持 IOS 标准的密码保护 支持标准及扩展的访问列表来定义安全策略 支持基于 VLAN 的访问列表监视 交换机 LED 指示端口状态 SPAN 及远端 SPAN (RSPAN) 可以监视任何端口或 VLAN 的流量 内置支持四组的 RMON 监控功能(历史、统计、告警及事件)配置端口配置一组端口命令 目的 Step 1 configure terminal
3、 进入配置状态Step 2 interface range port-range 进入组配置状态Step 3 可以使用平时的端口配置命令进行配置Step 4 end 退回Step 5 show interfaces interface-id 验证配置Step 6 copy running-config startup-config保存当使用 interface range 命令时有如下的规则: 有效的组范围:o vlan 从 1 到 4094 o fastethernet 槽位/first port - last port, 槽位为 0o gigabitethernet 槽位/first po
4、rt - last port,槽位为 0o port-channel port-channel-number - port-channel-number, port-channel 号从 1到 64 端口号之间需要加入空格,如:interface range fastethernet 0/1 5 是有效的,而interface range fastethernet 0/1-5 是无效的. interface range 命令只能配置已经存在的 interface vlan 所有在同一组的端口必须是相同类别的。见以下例子:Switch# configure terminalSwitch(conf
5、ig)# interface range fastethernet0/1 - 5 Switch(config-if-range)# no shutdown Switch(config-if-range)#*Oct 6 08:24:35: %LINK-3-UPDOWN: Interface FastEthernet0/1, changed state to up*Oct 6 08:24:35: %LINK-3-UPDOWN: Interface FastEthernet0/2, changed state to up*Oct 6 08:24:35: %LINK-3-UPDOWN: Interfa
6、ce FastEthernet0/3, changed state to up*Oct 6 08:24:35: %LINK-3-UPDOWN: Interface FastEthernet0/4, changed state to up*Oct 6 08:24:35: %LINK-3-UPDOWN: Interface FastEthernet0/5, changed state to up*Oct 6 08:24:36: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/05, changed state to up*
7、Oct 6 08:24:36: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/3, changed state to up*Oct 6 08:24:36: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/4, changed state to up以下的例子显示使用句号来配置不同类型端口的组:Switch# configure terminalSwitch(config)# interface range fastethernet0/1 -
8、3, gigabitethernet0/1 - 2 Switch(config-if-range)# no shutdown Switch(config-if-range)#*Oct 6 08:29:28: %LINK-3-UPDOWN: Interface FastEthernet0/1, changed state to up*Oct 6 08:29:28: %LINK-3-UPDOWN: Interface FastEthernet0/2, changed state to up*Oct 6 08:29:28: %LINK-3-UPDOWN: Interface FastEthernet
9、0/3, changed state to up*Oct 6 08:29:28: %LINK-3-UPDOWN: Interface GigabitEthernet0/1, changed state to up*Oct 6 08:29:28: %LINK-3-UPDOWN: Interface GigabitEthernet0/2, changed state to up*Oct 6 08:29:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/ 1, changed state to up*Oct 6
10、08:29:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/ 2, changed state to up*Oct 6 08:29:29: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/ 3, changed state to up配置二层端口2960 的所有端口缺省的端口都是二层口,如果此端口已经配置成三层端口的话,则需要用 switchport 来使其成为二层端口。配置端口速率及双工模式可以配置快速以太口的速率为 10/100Mb
11、ps 及千兆以太口的速率为10/100/1000-Mbps; 但对于 GBIC 端口则不能配置速率及双工模式,有时可以配置 nonegotiate,当需要联接不支持自适应的其它千兆端口时命令 目的 Step 1 configure terminal 进入配置状态.Step 2 interface interface-id进入端口配置状态.Step 3 speed 10 | 100 | 1000 | auto | nonegotiate设置端口速率 注 1000 只工作在千兆口. GBIC 模块只工作在 1000 Mbps 下. nonegotiate 只能在这些 GBIC 上用 1000BAS
12、E-SX, -LX, and -ZX GBIC.Step 4 duplex auto | full | half设置全双工或半双工. Step 5 end 退出Step 6 show interfaces interface-id显示有关配置情况Step 7 copy running-config startup-config保存Switch# configure terminalSwitch(config)# interface fastethernet0/3Switch(config-if)# speed 10Switch(config-if)# duplex half端口描述 命令 目的
13、 Step 1 configure terminal 进入配置模式Step 2 interface interface-id 进入要加入描述的端口Step 3 description string 加入描述 (最多 240 个字符).Step 4 end 退回.Step 5 show interfaces interface-id descriptionorshow running-config验证.Step 6 copy running-config startup-config 保存Use the no description interface configuration command
14、 to delete the description.This example shows how to add a description on Fast Ethernet interface 0/4 and to verify the description:Switch# config terminalEnter configuration commands, one per line. End with CNTL/Z.Switch(config)# interface fastethernet0/4Switch(config-if)# description Connects to M
15、arketingSwitch(config-if)# endSwitch# show interfaces fastethernet0/4 descriptionInterface Status Protocol DescriptionFa0/4 up down Connects to Marketing监控及维护端口监控端口和控制器的状态主要命令见下表:Show Commands for Interfaces Command 目的 show interfaces interface-id 显示所有端口或某一端口的状态和配置.show interfaces interface-id statu
16、s err-disabled显示一系列端口的状态或错误关闭的状态show interfaces interface-id switchport显示二层端口的状态,可以用来决定此口是否为二层或三层口。show interfaces interface-id description显示端口描述show running-config interface interface-id显示当前配置中的端口配置情况show version 显示软硬件等情况举例如下:Switch# show interfaces statusPort Name Status Vlan Duplex Speed TypeGi0/
17、1 connected routed a-full a-100 10/100/1000Base TXGi0/2 wce server 20.20.2 disabled routed auto auto 10/100/1000Base TXGi0/3 ip wccp web-cache notconnect routed auto auto 10/100/1000Base TXGi0/4 notconnect routed auto auto 10/100/1000Base TXGi0/5 notconnect routed auto auto 10/100/1000Base TXGi0/6 d
18、isabled routed auto auto 10/100/1000Base TXGi0/7 disabled routed auto auto 10/100/1000Base TXGi0/8 disabled routed auto 100 10/100/1000Base TXGi0/9 notconnect routed auto auto 10/100/1000Base TXGi0/10 notconnect routed auto auto 10/100/1000Base TXGi0/11 disabled routed auto auto unknownGi0/12 notcon
19、nect routed auto auto unknownSwitch# show interfaces fastethernet 0/1 switchportName: Fa0/1Switchport: EnabledAdministrative Mode: static accessOperational Mode: downAdministrative Trunking Encapsulation: dot1qNegotiation of Trunking: OffAccess Mode VLAN: 1 (default)Trunking Native Mode VLAN: 1 (def
20、ault)Trunking VLANs Enabled: ALLPruning VLANs Enabled: 2-1001Protected: falseUnknown unicast blocked: disabledUnknown multicast blocked: disabledVoice VLAN: dot1p (Inactive)Appliance trust: 5Switch# show running-config interface fastethernet0/2Building configuration.Current configuration : 131 bytes
21、!interface FastEthernet0/2switchport mode accessswitchport protectedno ip addressmls qos cos 7mls qos cos overrideend刷新、重置端口及计数器Clear 命令 目的 clear counters interface-id 清除端口计数器.clear line number | console 0 | vty number 重置异步串口的硬件逻辑Note clear counters 命令只清除用 show interface 所显示的计数,不影响用 snmp 得到的计数 举例如下:
22、Switch# clear counters fastethernet0/5 Clear “show interface“ counters on this interface confirm y Switch#*Sep 30 08:42:55: %CLEAR-5-COUNTERS: Clear counter on interface FastEthernet0/5by vty1 (171.69.115.10)可使用 clear line 命令来清除或重置某一端口或串口,在大部分情况下并不需要这样做:Switch# clear interface fastethernet0/5 关闭和打开端口命令 目的 Step 1 configure terminal 进入配置状态Step 2 interface vlan vlan-id | fastethernet | gigabitethernet interface-id | port-channel port-channel-number选择要关闭的端口Step 3 shutdown 关闭Step 4 end 退出