Documentos de Académico
Documentos de Profesional
Documentos de Cultura
2 Conexión a Consola
2
AR 157, Front/Back
2 Conexión a Consola
3
AR 150 157, Configuración Básica
Inicio
Press any key to get started
>Password: Admin@huawei
Username:admin
Password:
Warning: Auto-Config is working. Before configuring the device, stop Auto-Config. If you
perform configurations when Auto-Config is running, the DHCP, routing, DNS, and VTY
Comandos configurations will be lost. Do you want to stop Auto-Config? [y/n]: y
Info: Auto-Config has been stopped.
> system-view, cambia a vista system (modo de
<Huawei>system-view
configuración global) Enter system view, return user view with Ctrl+Z.
[Huawei]quit
> sysname, cambia nombre del equipo <Huawei>save
Warning: The current configuration will be written to the device.
> quit, regresa a vista anterior
Are you sure to continue?[Y/N]:y
> save, guarda configuración <Huawei>reset saved-configuration
Warning: This will delete the configuration in the flash memory.
> display current-configuration, muestra config actual The device configurations will be erased to reconfigure.
> reset saved-configuration, elimina configuración Are you sure? (y/n)[n]:y
Info: Clear the configuration in the device successfully.
> reboot, reinicia equipo
4
AR 150 157, Configuración Básica
Password
[Huawei]user-interface console 0
Comandos [Huawei-ui-console0] authentication-mode password
[Huawei-ui-console0] set authentication password cipher password
[Huawei-ui-console0] user privilege level 15
> authentication-mode password
> user privilege level 15, nivel de privilegio [Huawei]user-interface vty 0 4
[Huawei-ui-vty0-4]protocol inbound telnet
> set authentication password cipher password,
[Huawei-ui-vty0-4]set authentication password cipher password
establece password [Huawei-ui-vty0-4]user privilege level 15
> protocol inbound telnet, establece telnet en vty [Huawei-ui-vty0-4]authentication-mode password
Aplicación
5
AR 150 157, Configuración Básica
VLAN
[Huawei]vlan 10
[Huawei]vlan batch 12 14 16 20 to 30
Comandos
[Huawei]display vlan summary
static vlan:
Total 16 static vlan exist(s).
> vlan, crea vlan 1 10 12 14 16 20 to 30
dynamic vlan:
> vlan batch, crea varias vlan Total 0 dynamic vlan exist(s).
> display vlan summary, resumen de vlan [Huawei]display vlan brief
U:Up;D:Down;TG:Tagged;UT:Untagged;
> display vlan brief, asociación a puertos
VID Name Status Ports
Aplicación --------------------------------------------------------------------------------
1 enable UT: Eth0/0/0(D) Eth0/0/1(D) Eth0/0/3(D)
Eth0/0/4(D) Eth0/0/5(D) Eth0/0/6(D)
> vlan [número de vlan] Eth0/0/7(D)
10 enable TG: Eth0/0/1(D)
> vlan batch [vlan] ó [vlan to vlan] 12 enable
> display vlan summary 14 enable
16 enable
> display vlan brief 20 enable UT: Eth0/0/2(D)
21 enable
22 enable
……
28 enable
29 enable
30 enable
6
AR 150 157, Configuración Básica
Trunk/Access
[Huawei]interface Ethernet 0/0/0
Comandos
[Huawei-Ethernet0/0/0]port link-type trunk
[Huawei-Ethernet0/0/0]port trunk allow-pass vlan 10 12
[Huawei-Ethernet0/0/0]undo port trunk allow-pass vlan 1
> port link-type trunk, establece interfaz trunk [Huawei-Ethernet0/0/0]port trunk pvid vlan 20
[Huawei-Ethernet0/0/0]display this
> port trunk allow-pass vlan, permite vlan #
> port trunk pvid vlan, establece vlan para untagged frames interface Ethernet0/0/0
port link-type trunk
> port link-type access, establece interfaz access port trunk pvid vlan 20
undo port trunk allow-pass vlan 1
> port default vlan, establece vlan para los frames port trunk allow-pass vlan 10 12
#
[Huawei]interface Ethernet 0/0/1
Aplicación
[Huawei-Ethernet0/0/1]port link-type access
[Huawei-Ethernet0/0/1]port default vlan 10
> port link-type trunk [Huawei-Ethernet0/0/1]display this
#
> port trunk allow-pass vlan [vlan id] [vlan id to vlan id] [all] interface Ethernet0/0/1
port link-type access
> port trunk pvid vlan [vlan id] port default vlan 10
> port link-type access #
7
AR 150 157, Configuración Básica
Interface Loopback
<Huawei> system-view
Comandos [Huawei] interface loopback 5
[Huawei-LoopBack5] ip address 10.255.255.255 255.255.255.255
> Interface loopback, permite crear la interfaz.
<Huawei>display interface LoopBack 5
> Undo Interface loopback, permite eliminar la interfaz. LoopBack5 current state : UP
> Display interface loopback , Permite desplegar el estado Line protocol current state : UP (spoofing)
Description:HUAWEI, AR Series, LoopBack5 Interface
Route Port,The Maximum Transmit Unit is 1500
Aplicación Internet Address is 10.255.255.255/32
Physical is Loopback
> Interface loopback [ loopback-number ] Last 300 seconds input rate 0 bits/sec, 0 packets/sec
> Undo interface loopback [ loopback-number ] Last 300 seconds output rate 0 bits/sec, 0 packets/sec
Realtime 0 seconds input rate 0 bits/sec, 0 packets/sec
> Display interface loopback [ loopback-number ] Realtime 0 seconds output rate 0 bits/sec, 0 packets/sec
Input: 0 bytes
Output:0 bytes
Input bandwidth utilization : 0%
Output bandwidth utilization : 0%
8
AR 150 157, Configuración Básica
Wan
[Huawei-Ethernet0/0/4.10]dot1q termination vid 10
Comandos [Huawei-Ethernet0/0/4.10]ip address 10.1.1.2 255.255.255.252
[Huawei]display ip interface Ethernet 0/0/4.10
> interface, configuración de interfaz
Ethernet0/0/0.10 current state : UP
> ip address, establece ip Line protocol current state : UP
> dot1q termination vid, vlan subinterfaz The Maximum Transmit Unit : 1500 bytes
Internet Address is 10.1.1.2/30
> mtu, establece mtu
> adsl standard, establece estándar [Huawei-Atm1/0/0]adsl standard adsl2+
> pvc, vpi vci [Huawei-atm-pvc-Atm1/0/0.1]pvc 8/35
[Huawei-atm-pvc-Atm1/0/0.1-8/35]service ubr
> service, tipo de servicio
<Huawei> display atm pvc-info
> display interface, información de interfaz Atm1/0/0.1, VPI: 8, VCI: 35, INDEX: 1
> display ip interface brief, resumen de interfaces AAL5 Encaps: SNAP, Protocol: IP
Service-type:UBR
> display atm pvc-info, información pvc
Interface State: UP, PVC State: UP
> display dsl interface, status <Huawei> display dsl interface atm 1/0/0
Aplicación
--------------------------------------------------------------
> interface [interfaz] ó [interfaz.subif] [p2p] DSL driver and PHY status
> ip address [ip] [red] Transmission mode : ADSL2+
Line modulations
> dot1q termination vid [vlan]
ADSL2 : Disabled
> mtu [bytes] AnnexL : Disabled
> adsl standard [standard] ADSL2+ : Enabled
AnnexM : Disabled
> pvc [vpi/vci]
> service [ubr/vbr]
> display interface [interfaz] ó [interfaz.subif]
> display ip interface brief, información de interfaces
> display atm pvc-info, información pvc 9
> display dsl interface, status de interfaz
AR 150 157, Configuración Básica
VRF
<Huawei>system-view
Comandos [Huawei]ip vpn-instance VRF_01
[Huawei-vpn-instance-VRF_01]route-distinguisher 100:1
> ip vpn-instance, permite crear vrf [Huawei]interface Ethernet 0/0/4.1
[Huawei-Ethernet0/0/4.1]ip binding vpn-instance VRF_01
> undo ip vpn-instance, permite eliminar vrf
> ip binding vpn-instance, aplica vrf a interfaz
> undo ip binding vpn-instance, desaplica vrf de interfaz
> display ip vpn-instance, muestra vrf
[Huawei]display ip vpn-instance VRF_01
VPN-Instance Name RD Address-family
Aplicación VRF_01 100:1 IPv4
10
AR 150 157, Configuración Básica
Ruta estática
[Huawei]ip route-static 0.0.0.0 0.0.0.0 10.0.0.2
Comandos [Huawei]display ip routing-table protocol static
Destination/Mask Proto Pre Cost Flags NextHop Interface
> ip route-static, crea ruta estática
0.0.0.0/0 Static 60 0 RD 10.0.0.2 Ethernet0/0/4
> undo ip route-static, elimina ruta estática [Huawei]undo ip route-static 0.0.0.0 0.0.0.0 10.0.0.2
> display ip routing-table protocol static, muestra ruta
estática [Huawei]ip route-static 172.16.1.0 255.255.255.0 10.1.1.2
[Huawei]display ip routing-table protocol static
Aplicación Destination/Mask Proto Pre Cost Flags NextHop Interface
11
AR 150 157, Configuración Básica
OSPF
[Huawei]ospf 1 router-id 10.1.1.1
[Huawei-ospf-1]area 0
Comandos
[Huawei-ospf-1-area-0.0.0.0]network 10.1.1.0 0.0.0.255
>ospf router-id , crea proceso ospf y router id [Huawei-ospf-1]import bgp
[Huawei]undo ospf 1
> area , crea área [Huawei]display ospf peer brief
> network , publica red en área y establece neighbor OSPF Process 1 with Router ID 10.1.1.1
> import , redistribuye protocolo Peer Statistic Information
----------------------------------------------------------------------------
> undo ospf , elimina proceso Area Id Interface Neighbor id State
0.0.0.0 Ethernet0/0/4 192.168.1.1 Full
> display ospf peer brief , muestra estado de peers ----------------------------------------------------------------------------
> display ip routing-table protocol ospf , muestra rutas Total Peer(s): 1
[Huawei]display ip routing-table protocol ospf
Route Flags: R - relay, D - download to fib
Aplicación ------------------------------------------------------------------------------
> ospf [id de proceso] router-id [ip address] Public routing table : OSPF
> area [número de área] Destinations : 1 Routes : 1
> network [ip address] [mascara] OSPF routing table status : <Active>
Destinations : 1 Routes : 1
> import [protocolo]
Destination/Mask Proto Pre Cost Flags NextHop Interface
> undo ospf [id de proceso]
> display ospf peer brief 192.168.2.0/24 OSPF 10 1 D 10.1.1.2 Ethernet0/0/4
12
AR 150 157, Configuración Básica
BGP
[Huawei]bgp 64512
Comandos [Huawei-bgp]peer 10.1.1.2 as-number 64513
[Huawei-bgp]network 172.16.1.0 255.255.255.0
> bgp, habilita bgp [Huawei-bgp]import-route ospf 1
> peer as-number , indica bgp peer
> network , publica red en bgp
[Huawei-bgp]display bgp peer
> import-route , redistribuye protocolo en bgp
> display bgp peer , estado de peer BGP local router ID : 10.1.1.1
> display ip routing-table protocol bgp, muestra rutas bgp en Local AS number : 64512
tabla de rutas Total number of peers : 1 Peers in established state : 1
> display ip routing-table , muestra rutas bgp
Peer V AS MsgRcvd MsgSent OutQ Up/Down State
> undo bgp , elimina configuración bgp
PrefRcv
Aplicación
10.1.1.2 4 64513 2 4 0 00:00:15 Established 0
> bgp [numero de AS]
> peer [ip address de peer] as-number [numero de de AS de peer]
> network [red] [mascara]
[Huawei]undo bgp
> import-route [protocol]
> display bgp peer
> undo bgp
13
AR 150 157, Configuración Básica
SSH
[Huawei]user-interface vty 0 4
[Huawei-ui-vty0-4]authentication-mode aaa
Comandos
[Huawei-ui-vty0-4]protocol inbound ssh
[Huawei-ui-vty0-4]aaa
> stelnet server enable, habilita ssh [Huawei-aaa]local-user admin service-type terminal ssh
> authentication-mode aaa, autenticación aaa en vty [Huawei]display ssh server status
SSH version :1.99
> protocol inbound ssh, establece ssh SSH connection timeout :60 seconds
> local-user user service-type ssh, servicio ssh a usuario SSH server key generating interval :0 hours
SSH Authentication retries :3 times
> display ssh server status, estado del ssh server SFTP Server :Disable
Stelnet server :Enable
14
AR 150 157, Configuración Básica
TACACS
[Huawei]hwtacacs-server template template_01
Aplicación [Huawei-hwtacacs-template_01]hwtacacs-server authentication 10.1.1.1
[Huawei-hwtacacs-template_01]hwtacacs-server authorization 10.1.1.1
> hwtacacs-server template [nombre de template]
[Huawei-hwtacacs-template_01]hwtacacs-server accounting 10.1.1.1
> hwtacacs-server authentication [server]
[Huawei-hwtacacs-template_01]hwtacacs-server shared-key cipher key
> hwtacacs-server authorization [server] [Huawei-hwtacacs-template_01]aaa
> hwtacacs-server accounting [server] [Huawei-aaa]authentication-scheme tacacs
> hwtacacs-server shared-key cipher [clave] [Huawei-aaa-authen-tacacs]authentication-mode hwtacacs
> aaa [Huawei-aaa-authen-tacacs]authorization-scheme tacacs
> authentication-scheme [nombre] [Huawei-aaa-author-tacacs]authorization-mode hwtacacs
> authentication-mode hwtacacs [Huawei-aaa-author-tacacs]accounting-scheme tacacs
> authorization-scheme [nombre] [Huawei-aaa-accounting-tacacs]accounting-mode hwtacacs
> authorization-mode hwtacacs [Huawei-aaa]domain default_admin
> accounting-scheme [nombre] [Huawei-aaa-domain-domain_01]authentication-scheme tacacs
> accounting-mode hwtacacs [Huawei-aaa-domain-domain_01]authorization-scheme tacacs
> domain domain_01 [Huawei-aaa-domain-domain_01]accounting-scheme tacacs
> authentication-scheme [nombre] [Huawei-aaa-domain-domain_01]hwtacacs-server template_01
> authorization-scheme [nombre]
[Huawei-aaa]display hwtacacs-server template template_01
> accounting-scheme [nombre]
> hwtacacs-server [nombre]
> display hwtacacs-server template [nombre]
> display domain name [nombre]
15
AR 150 157, Configuración Básica
ACL
[Huawei]acl number 2000
Comandos [Huawei-acl-basic-2000]rule 5 permit source 192.168.1.0 0.0.0.255
[Huawei]display acl 2000
> acl number, 2000 – 2999 crea acl básica Basic ACL 2000, 1 rule
Acl's step is 5
> acl number, 3000 – 3999 crea acl avanzada rule 5 permit source 192.168.1.0 0.0.0.255
> rule, crea regla en acl
> display acl, muestra acl [Huawei]acl number 3000
[Huawei-acl-adv-3000]rule permit tcp source 192.168.100.0 0.0.0.255
> undo acl, elimina acl destination 10.1.1.0 0.0.0.15 destination-port eq 443
[Huawei]display acl 3000
Aplicación
Advanced ACL 3000, 1 rule
Acl's step is 5
> acl number [número de acl] rule 5 permit tcp source 192.168.100.0 0.0.0.255 destination 10.1.1.0
> undo acl number [número de acl] 0.0.0.15
destination-port eq 443
> rule [permit/deny] source [red] [wildcard]
> rule [permit/deny] [protocol] source [red] [wildcard]
destination [red] [wildcard]
> display nat outbound [número de acl]
> undo acl [número de acl]
16
AR 150 157, Configuración Básica
Prefix List
17
AR 150 157, Configuración Básica
QoS
[Huawei]traffic classifier C_01
[Huawei-classifier-C_01]if-match acl 2000
Comandos
[Huawei-classifier-C_01]traffic behavior P_05
> traffic classifier, realiza match [Huawei-behavior-P_05]remark dscp ef
[Huawei-behavior-P_05]traffic policy TP_01
> if-match acl, match de una acl [Huawei-trafficpolicy-TP_01] classifier C_01 behavior P_05
[Huawei-trafficpolicy-TP_01]interface Ethernet0/0/0
> traffic behavior, establece [Huawei-Ethernet0/0/0] traffic-policy TP_01 inbound
> remark dscp, establece dscp
[Huawei]display traffic policy user-defined TP_01
> traffic policy, junta classifier y behavior User Defined Traffic Policy Information:
Policy: TP_01
> traffic-policy inbound, aplica política inbound Classifier: C_01
Operator: OR
Behavior: P_05
Aplicación
Marking:
> traffic classifier [nombre] Remark DSCP ef
[Huawei]display traffic-policy applied-record
> if-match acl [número acl] -------------------------------------------------
Policy Name: TP_01
> traffic behavior [nombre]
Policy Index: 0
> remark dscp [dscp] Classifier:C_01 Behavior:P_05
-------------------------------------------------
> traffic policy [nombre] *interface Ethernet0/0/0
traffic-policy TP_01 inbound
> classifier [nombre] behavior [nombre] slot 0 : success
> traffic-policy [nombre] inbound -------------------------------------------------
18
AR 150 157, Configuración Básica
NAT
<Huawei> system-view
Comandos [Huawei]nat address-group 0 200.0.0.1 200.0.0.1
[Huawei-Ethernet0/0/4]nat outbound 2000 address-group 0
> nat outbound, habilita nat [Huawei-Ethernet0/0/4]display nat outbound
NAT Outbound Information:
> undo nat outbound, deshabilita nat --------------------------------------------------------------------------
⮚nat address-group, especifica ip para nat Interface Acl Address-group/IP/Interface Type
⮚nat static protocol, nat estático --------------------------------------------------------------------------
Ethernet0/0/4 2000 0 pat
⮚display nat outbound, muestra nat
⮚display nat static, muestra configuración de nat estático [Huawei-Ethernet0/0/4]nat static protocol tcp global 200.0.0.0 80 inside
⮚display nat session all, muestra sesiones
192.168.10.10 80 vpn-instance VRF
[Huawei-Ethernet0/0/8]display nat static
Aplicación Static Nat Information:
Interface : Ethernet0/0/8
Global IP/Port : 200.0.0.0/80(www)
> nat outbound [acl] o [acl] address-group [index]
Inside IP/Port : 192.168.10.10/80(www)
> undo nat outbound [acl] Protocol : 6(tcp)
⮚nat address-group [index] [ip] VPN instance-name : VRF
⮚nat static protocol [tcp/udp] global [ip address] [port]
inside [lan ip add] [puerto] vpn-instance [vrf]
19
AR 150 157, Configuración Básica
DHCP
[Huawei]dhcp enable
[Huawei]interface Vlanif100
Comandos
[Huawei-Vlanif100]ip address 192.168.100.254 255.255.255.0
método 1 [Huawei-Vlanif100]dhcp select interface
> dhcp enable, habilita dhcp [Huawei-Vlanif100]dhcp server excluded-ip-address 192.168.100.250 192.168.100.253
[Huawei-Vlanif100]dhcp server dns-list 172.16.1.100
> dhcp select interface, habilita dhcp en interface
> dhcp server excluded-ip-address, excluye ip [Huawei]ip pool POOL_100
> dhcp server dns-list, indica dns [Huawei-ip-pool-POOL_100]gateway-list 192.168.100.254
[Huawei-ip-pool-POOL_100]network 192.168.100.0 mask 255.255.255.0
método 2
[Huawei-ip-pool-POOL_100]excluded-ip-address 192.168.100.250 192.168.100.253
> ip pool, crea pool [Huawei-ip-pool-POOL_100]dns-list 172.16.1.100
> gateway-list, indica gateway [Huawei]interface Vlanif100
> excluded-ip-address, excluye ip [Huawei-Vlanif100]dhcp select global
[Huawei-ip-pool-POOL_100]display ip pool
> dhcp select global, selecciona del pool -----------------------------------------------------------------------
⮚dns-list, indica dns Pool-name : POOL_100
método 3 Pool-No :0
Position : Local Status : Unlocked
dhcp select relay, server está en otra red
Gateway-0 : 192.168.100.254
dhcp relay server-ip , indica ip de server Mask : 255.255.255.0
Aplicación [Huawei-Vlanif30]dhcp select relay
> dhcp server excluded-ip-address [rango de ip] [Huawei-Vlanif30]dhcp relay server-ip 10.10.10.10
> dhcp server dns-list [ip dns] [Huawei-Vlanif30]display dhcp relay all
DHCP relay agent running information of interface Vlanif30 :
> ip pool [nombre de pool]
Server IP address [01] : 10.10.10.10
> gateway-list [gateway]
> excluded-ip-address [rango de ip]
⮚dns-list [ip dns] 20
⮚dhcp relay server-ip [ip address]
AR 150 157, Configuración Básica
VRRP
[Huawei]interface vlan 10
[Huawei-Vlanif10] vrrp vrid 10 virtual-ip 192.168.10.254
Comandos
[Huawei-Vlanif10] vrrp vrid 10 priority 120
[Huawei-Vlanif10] vrrp vrid 10 preempt-mode timer delay 30
[Huawei-Vlanif10] vrrp vrid 10 track ip route 0.0.0.0 0.0.0.0 reduced 40
> vrrp vrid virtual-ip, establece vip [Huawei]display vrrp 10
Vlanif10 | Virtual Router 10
> vrrp vrid priority, establece prioridad State : Master
> vrrp vrid track, tracking Virtual IP : 192.168.10.254
Master IP : 192.168.10.252
> display vrrp, estado de vrrp PriorityRun : 120
PriorityConfig : 120
Aplicación MasterPriority : 120
Preempt : YES Delay Time : 30 s
TimerRun : 1 s
> vrrp vrid [id] virtual-ip [vip] TimerConfig : 1 s
Auth type : NONE
> vrrp vrid [id] priority [prioridad] Virtual MAC : 0000-5e00-010a
> vrrp vrid [id] preempt-mode timer delay [segundos] Check TTL : YES
Config type : normal-vrrp
> vrrp vrid [id] track interface [interfaz] Backup-forward : disabled
Track IP route : 0.0.0.0/0 Priority reduced : 40
> vrrp vrid [id] track ip route [ruta] reduced [-prioridad] IP route state : Reachable
Create time : 2016-05-04 22:21:23 UTC-08:00
> display vrrp
Last change time : 2016-05-04 22:39:48 UTC-08:00
21
AR 150 157, Configuración Básica
Port Mirror
[Huawei]observe-port interface Ethernet 0/0/0
Comandos <Huawei>display observe-port
----------------------------------------------------------------------
Index : 1
> observe-port, puerto que recibe copia Interface: Ethernet0/0/0
> display observe-port, muestra puerto que recibe copia Used : 0
----------------------------------------------------------------------
> mirror to observe-port, puerto a ser copiado
[Huawei]interface Ethernet 0/0/1
> display mirror-port, muestra puerto a ser copiado [Huawei-Ethernet0/0/1]mirror to observe-port both
<Huawei>display mirror-port
Aplicación
---------------------------------------------------------------------------
Mirror-port Direction Observe-dest
> observe-port interface [interfaz] ---------------------------------------------------------------------------
> display observe-port 1 Ethernet0/0/1 Both Ethernet0/0/0
---------------------------------------------------------------------------
> mirror to observe-port both
> display mirror-port
22
AR 150 157, Configuración Básica
Press Ctrl+B to break auto startup ... 3
Password Reset
Enter Password:Admin@huawei
Main Menu
Procedimiento 1. Default Startup
…
6. Reboot
1. Iniciar equipo 7. Password Manager
2. Presionar Ctrl+B cuando el equipo lo indique Enter your choice(1-7):7
23
AR 150 157, Configuración Básica
otros
<Huawei>clock datetime 10:00:00 2016-05-16
Comandos <Huawei>clock timezone CL minus 3:00
<Huawei>display clock
2016-05-06 10:00:11
> display logbuffer, muestra log Friday
> clock datetime, establece fecha y hora Time Zone(CL) : UTC-03:00
> clock timezone, establece zona horaria
<Huawei>ping -vpn-instance VRF -a 192.168.1.2 -c 10 -s 1500 192.168.1.1
> ping:
-vpn-instance, especifica vrf
-a, especifica origen
-c, cantidad
-s, carga en bytes
24
HUAWEI ENTERPRISE ICT SOLUTIONS A
BETTER WAY