display current-configuration !Software Version V200R010C00SPC600 # sysname Donzhi4-core # FTP server enable # vlan batch 3 10 20 30 40 50 80 99 to 100 200 # authentication-profile name default_authen_profile authentication-profile name dot1x_authen_profile authentication-profile name mac_authen_profile authentication-profile name portal_authen_profile authentication-profile name dot1xmac_authen_profile authentication-profile name multi_authen_profile # telnet server enable # lldp enable # clock timezone UTC add 00:00:00 # dhcp enable # diffserv domain default # radius-server template default # acl number 3001 rule 1 permit ip source 10.100.0.0 0.0.1.255 destination 192.168.0.0 0.0.255.255 rule 2 permit ip source 10.100.0.0 0.0.1.255 destination 10.100.0.0 0.0.255.255 rule 100 deny ip source 10.100.0.0 0.0.1.255 acl number 3002 rule 1 permit ip source 10.100.2.0 0.0.1.255 destination 192.168.0.0 0.0.255.255 rule 2 permit ip source 10.100.2.0 0.0.1.255 destination 10.100.0.0 0.0.255.255 rule 3 permit ip source 10.100.2.0 0.0.1.255 destination 100.10.10.0 0.0.0.255 rule 4 permit ip source 10.100.3.218 0 rule 100 deny ip source 10.100.2.0 0.0.1.255 acl number 3005 rule 1 permit ip source 10.100.5.0 0.0.0.255 destination 192.168.0.0 0.0.255.255 rule 2 permit ip source 10.100.5.0 0.0.0.255 destination 10.100.4.10 0 rule 3 permit ip source 10.100.5.0 0.0.0.255 destination 10.100.0.0 0.0.255.255 rule 4 permit ip source 10.100.5.0 0.0.0.255 destination 100.10.10.0 0.0.0.255 rule 100 deny ip source 10.100.5.0 0.0.0.255 acl number 3008 rule 1 permit ip source 10.100.8.0 0.0.0.255 destination 192.168.0.0 0.0.255.255 rule 2 permit ip source 10.100.8.0 0.0.0.255 destination 10.100.4.10 0 rule 3 permit ip source 10.100.8.0 0.0.0.255 destination 10.100.0.0 0.0.255.255 rule 4 permit ip source 10.100.8.0 0.0.0.255 destination 100.10.10.0 0.0.0.255 rule 5 permit ip source 10.100.8.240 0 rule 6 permit ip source 10.100.8.237 0 rule 100 deny ip source 10.100.8.0 0.0.0.255 # traffic classifier ac1 operator and if-match acl 3001 traffic classifier ac2 operator and if-match acl 3002 traffic classifier ac5 operator and if-match acl 3005 traffic classifier ac8 operator and if-match acl 3008 # traffic behavior ac2 permit traffic behavior ac5 permit # traffic policy ac1 match-order config classifier ac1 behavior ac2 traffic policy ac2 match-order config classifier ac2 behavior ac2 traffic policy ac5 match-order config classifier ac5 behavior ac5 traffic policy ac8 match-order config classifier ac8 behavior ac2 # free-rule-template name default_free_rule # portal-access-profile name portal_access_profile # drop-profile default # ip pool vlan10 gateway-list 10.100.0.1 network 10.100.0.0 mask 255.255.254.0 excluded-ip-address 10.100.0.2 10.100.0.30 lease day 999 hour 0 minute 0 dns-list 202.96.134.133 # ip pool vlan20 gateway-list 10.100.2.1 network 10.100.2.0 mask 255.255.254.0 excluded-ip-address 10.100.2.2 10.100.2.30 lease day 999 hour 0 minute 0 dns-list 202.96.134.133 # ip pool vlan30 gateway-list 10.100.4.1 network 10.100.4.0 mask 255.255.255.0 excluded-ip-address 10.100.4.2 10.100.4.21 excluded-ip-address 10.100.4.23 10.100.4.27 excluded-ip-address 10.100.4.29 10.100.4.50 lease day 999 hour 0 minute 0 dns-list 114.114.114.114 # ip pool 50 gateway-list 10.100.5.1 network 10.100.5.0 mask 255.255.255.0 excluded-ip-address 10.100.5.2 10.100.5.100 lease day 999 hour 0 minute 0 dns-list 202.96.128.86 # ip pool vlan80 gateway-list 10.100.8.1 network 10.100.8.0 mask 255.255.255.0 lease day 999 hour 0 minute 0 dns-list 202.96.134.133 # aaa authentication-scheme default authentication-scheme radius authentication-mode radius authorization-scheme default accounting-scheme default local-aaa-user password policy administrator password expire 0 domain default authentication-scheme radius radius-server default domain default_admin authentication-scheme default local-user admin password irreversible-cipher $1a$/UOG'`>,A2$b-IbR'6#bMo=]CGb3#%L$qKe;1"y%%c1Q^3wr)p!$ local-user admin privilege level 15 local-user admin ftp-directory flash: local-user admin service-type telnet terminal ftp # interface Vlanif1 # interface Vlanif2 # interface Vlanif3 ip address 192.168.3.100 255.255.255.0 # interface Vlanif10 ip address 10.100.0.1 255.255.254.0 traffic-policy ac1 inbound dhcp select global # interface Vlanif20 ip address 10.100.2.1 255.255.254.0 traffic-policy ac2 inbound dhcp select global # interface Vlanif30 ip address 10.100.4.1 255.255.255.0 dhcp select global # interface Vlanif50 ip address 10.100.5.1 255.255.255.0 traffic-policy ac5 inbound dhcp select global # interface Vlanif60 # interface Vlanif80 ip address 10.100.8.1 255.255.255.0 traffic-policy ac8 inbound dhcp select global # interface Vlanif100 ip address 100.10.10.1 255.255.255.0 # interface Vlanif200 ip address 172.19.16.2 255.255.255.0 # interface MEth0/0/1 # interface Eth-Trunk1 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 2 to 4094 mode lacp # interface GigabitEthernet0/0/1 eth-trunk 1 # interface GigabitEthernet0/0/2 eth-trunk 1 # interface GigabitEthernet0/0/3 # interface GigabitEthernet0/0/4 port link-type access port default vlan 30 # interface GigabitEthernet0/0/5 description f4erp port link-type access port default vlan 30 # interface GigabitEthernet0/0/6 description messvr port link-type access port default vlan 30 # interface GigabitEthernet0/0/7 # interface GigabitEthernet0/0/8 port link-type access port default vlan 30 # interface GigabitEthernet0/0/9 port link-type access port default vlan 30 # interface GigabitEthernet0/0/10 port link-type access port default vlan 30 # interface GigabitEthernet0/0/11 port default vlan 50 # interface GigabitEthernet0/0/12 port link-type access port default vlan 200 # interface GigabitEthernet0/0/13 # interface GigabitEthernet0/0/14 port default vlan 50 # interface GigabitEthernet0/0/15 port default vlan 50 # interface GigabitEthernet0/0/16 # interface GigabitEthernet0/0/17 # interface GigabitEthernet0/0/18 # interface GigabitEthernet0/0/19 port link-type access port default vlan 30 # interface GigabitEthernet0/0/20 port link-type access port default vlan 10 # interface GigabitEthernet0/0/21 port link-type access port default vlan 30 # interface GigabitEthernet0/0/22 description to office port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 2 to 4094 # interface GigabitEthernet0/0/23 description to FW port link-type access port default vlan 30 # interface GigabitEthernet0/0/24 description to huiju SW port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 2 to 4094 # interface GigabitEthernet0/0/25 # interface GigabitEthernet0/0/26 # interface GigabitEthernet0/0/27 # interface GigabitEthernet0/0/28 # interface GigabitEthernet0/0/29 # interface GigabitEthernet0/0/30 # interface GigabitEthernet0/0/31 # interface GigabitEthernet0/0/32 # interface NULL0 # ip route-static 0.0.0.0 0.0.0.0 172.19.16.1 ip route-static 172.18.16.0 255.255.255.0 172.19.16.1 ip route-static 192.168.0.0 255.255.0.0 172.19.16.1 # snmp-agent snmp-agent local-engineid 800007DB0314A0F8DC94E0 snmp-agent community read cipher %^%#W9C-V;-J[(\jn`#u>OBUH1&bD4rea@Nb+y$qw#p0g{3