宋客2013 发表于 2020-12-30 16:53:42

防火墙做vlanif的问题

问题:PC1不能ping通PC2交换机配置:只起了20 30 两个vlan,四个口都是access口
interface Ethernet0/0/1
port link-type access
port default vlan 20
#
interface Ethernet0/0/2
port link-type access
port default vlan 30
#
interface GigabitEthernet0/0/1
port link-type access
port default vlan 30
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 20
#
防火墙配置:
接口已经加入安全域,域间放行。
interface Vlanif20
ip address 10.1.2.253 255.255.255.0
#
interface Vlanif30
ip address 10.1.3.253 255.255.255.0
#
l2tp-group default-lns
#
interface GigabitEthernet1/0/0
portswitch
undo shutdown
port link-type access
port default vlan 20
#
interface GigabitEthernet1/0/1
portswitch
undo shutdown                           
port link-type access
port default vlan 30
#
firewall zone trust
description trust_trust
set priority 85
add interface GigabitEthernet0/0/0
add interface GigabitEthernet1/0/0
add interface GigabitEthernet1/0/1
security-policy
rule name trust_trust
source-zone trust
destination-zone trust
action permit

bhd001 发表于 2021-1-14 15:52:40

楼主解决了吗

宋客2013 发表于 2021-1-17 22:41:08

bhd001 发表于 2021-1-14 15:52
楼主解决了吗

还没呢,估计是没有开启ping功能原因,做实验试一下
页: [1]
查看完整版本: 防火墙做vlanif的问题