一、改名与配置IP地址(以AR1为例 命名规则:地区-设备类型-层级-设备编号)
<Huawei>systerm-view
[Huawei]sysname SH-Route-Core-R1
[SH-Route-Core-R1]interface GigabitEthernet0/0/0
[SH-Route-Core-R1-GigabitEthernet0/0/0]ip address 12.1.1.1 255.255.255.0
二、设置R1 console口密码
[SH-Route-Core-R1]user-interface console 0
[SH-Route-Core-R1-ui-console0]authentication-mode password
( huawei@123)
三、设置远程控制
(一)R1的无用户telnet远程控制,用户等级权限3级
[SH-Route-Core-R1]user-interface vty 0 4
[SH-Route-Core-R1-ui-vty0-4]authentication-mode password
(huawei@123)
[SH-Route-Core-R2-ui-vty0-4]protocol inbound all(此处该条命令是否必须?)
[SH-Route-Core-R1-ui-vty0-4]user privilege level 3(设置无用户访问时,对方拥有的等级权限,缺省为0级,无用户telnet连接不安全,一般不配置高权限,此处为方便R2远程修改R1实验)
(二)R2设置AAA认证
[SH-Route-Core-R2]user-interface vty 0 4
[SH-Route-Core-R2-ui-vty0-4]authentication-mode aaa
[SH-Route-Core-R2-ui-vty0-4]protocol inbound all
[SH-Route-Core-R2-ui-vty0-4]quit
配置vty用户 telnet
[SH-Route-Core-R2]aaa
[SH-Route-Core-R2-aaa]local-user Huawei1 password cipher huawei@123
[SH-Route-Core-R2-aaa]local-user Huawei1 service-type telnet
[SH-Route-Core-R2-aaa]local-user Huawei1 privilege level 15
配置vty用户 ssh
[SH-Route-Core-R2]aaa
[SH-Route-Core-R2-aaa]local-user Huawei2 password cipher huawei@123
[SH-Route-Core-R2-aaa]local-user Huawei2 service-type ssh
[SH-Route-Core-R2-aaa]local-user Huawei2 privilege level 15
[SH-Route-Core-R2]stelnet server enable
[SH-Route-Core-R1]ssh client first-time enable
四、同步时间
手动:
<SH-Route-Core-R2>clock timezone CN add 8
<SH-Route-Core-R2>clock datetime 20:23:00 2025-4-27
NTP服务器:
[SH-Route-Core-R1]ntp-service unicast-peer 20.189.79.72
