防火墙做vlanif的问题
问题:PC1不能ping通PC2交换机配置:只起了20 30 两个vlan,四个口都是access口interface Ethernet0/0/1
port link-type access
port default vlan 20
#
interface Ethernet0/0/2
port link-type access
port default vlan 30
#
interface GigabitEthernet0/0/1
port link-type access
port default vlan 30
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 20
#
防火墙配置:
接口已经加入安全域,域间放行。
interface Vlanif20
ip address 10.1.2.253 255.255.255.0
#
interface Vlanif30
ip address 10.1.3.253 255.255.255.0
#
l2tp-group default-lns
#
interface GigabitEthernet1/0/0
portswitch
undo shutdown
port link-type access
port default vlan 20
#
interface GigabitEthernet1/0/1
portswitch
undo shutdown
port link-type access
port default vlan 30
#
firewall zone trust
description trust_trust
set priority 85
add interface GigabitEthernet0/0/0
add interface GigabitEthernet1/0/0
add interface GigabitEthernet1/0/1
security-policy
rule name trust_trust
source-zone trust
destination-zone trust
action permit
楼主解决了吗 bhd001 发表于 2021-1-14 15:52
楼主解决了吗
还没呢,估计是没有开启ping功能原因,做实验试一下
页:
[1]