CISCO6500-E的核心交换机HSRP配置分析
刚给一家医院做的网络,核心两台cisco6500-e的 交换机,起初配置好后网络运行正常,几天后莫名其妙的网络瘫痪了,重启一台核心交换机网络又正常运行了,现在判断不出什么问题了,我将两台核心的配置帖出来希望高手们帮我判断一下核心配置有没有什么问题1、主核心
6506-up#sh run
Building configuration...
Current configuration : 5477 bytes
!
upgrade fpd auto
version 12.2
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service counters max age 5
!
hostname 6506-up
!
enable password cisco
!
no aaa new-model
ip subnet-zero
!
!
!
mls ip multicast flow-stat-timer 9
no mls flow ip
no mls flow ipv6
no mls acl tcam share-global
no mls acl tcam share-global
mls cef error action freeze
!
!
!
!
!
!
redundancy
mode sso
main-cpu
auto-sync running-config
!
spanning-tree mode mst
!
spanning-tree mst configuration
name 1
revision 20
instance 1 vlan 10, 20, 30, 40, 50, 60
instance 2 vlan 70, 80, 90, 100
!
spanning-tree mst 1 priority 24576
diagnostic cns publish cisco.cns.device.diag_results
diagnostic cns subscribe cisco.cns.device.diag_commands
fabric buffer-reserve queue
!
vlan internal allocation policy ascending
vlan access-log ratelimit 2000
!
!
interface Port-channel2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/1
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
no ip address
!
interface GigabitEthernet4/3
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/4
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/5
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/6
no ip address
!
interface GigabitEthernet4/7
nterface GigabitEthernet4/7
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 2 mode desirable
!
interface GigabitEthernet4/8
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 2 mode desirable
!
interface GigabitEthernet4/9
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/10
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/11
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/12
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/13
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/14
switchport
switchport access vlan 100
switchport mode access
no ip address
!
interface GigabitEthernet4/15
switchport
switchport access vlan 100
switchport mode access
no ip address
!
interface GigabitEthernet4/16
no ip address
!
interface GigabitEthernet4/17
no ip address
!
interface GigabitEthernet4/18
no ip address
!
interface GigabitEthernet4/19
no ip address
!
interface GigabitEthernet4/20
no ip address
!
interface GigabitEthernet4/21
no ip address
!
interface GigabitEthernet4/22
no ip address
!
interface GigabitEthernet4/23
no ip address
!
interface GigabitEthernet4/24
no ip address
!
interface GigabitEthernet6/1
no ip address
!
interface GigabitEthernet6/2
no ip address
!
interface Vlan1
ip address 192.169.1.253 255.255.255.0
standby 1 ip 192.169.1.254
standby 1 timers 1 5
standby 1 priority 110
standby 1 preempt
!
interface Vlan10
ip address 192.169.10.253 255.255.255.0
standby 10 ip 192.169.10.254
standby 10 timers 1 5
standby 10 priority 110
standby 10 preempt
!
interface Vlan20
ip address 192.169.20.253 255.255.255.0
standby 20 ip 192.169.20.254
standby 20 timers 1 5
standby 20 priority 110
standby 20 preempt
!
interface Vlan30
ip address 192.169.30.253 255.255.255.0
standby 30 ip 192.169.30.254
standby 30 timers 1 5
standby 30 priority 110
standby 30 preempt
standby 30 preempt
!
interface Vlan40
ip address 192.169.40.253 255.255.255.0
standby 40 ip 192.169.40.254
standby 40 timers 1 5
standby 40 priority 110
standby 40 preempt
!
interface Vlan50
ip address 192.169.50.253 255.255.255.0
standby 50 ip 192.169.50.254
standby 50 timers 1 5
standby 50 priority 110
standby 50 preempt
!
interface Vlan60
ip address 192.169.60.253 255.255.255.0
standby 60 ip 192.169.60.254
standby 60 timers 1 5
standby 60 priority 110
standby 60 preempt
!
interface Vlan70
ip address 192.169.70.253 255.255.255.0
standby 70 ip 192.169.70.254
standby 70 timers 1 5
standby 70 priority 90
standby 70 preempt
!
interface Vlan80
ip address 192.169.80.253 255.255.255.0
standby 80 ip 192.169.80.254
standby 80 timers 1 5
standby 80 priority 90
standby 80 preempt
!
interface Vlan90
ip address 192.169.90.253 255.255.255.0
standby 90 ip 192.169.90.254
standby 90 timers 1 5
standby 90 priority 90
standby 90 preempt
!
interface Vlan100
ip address 192.169.100.253 255.255.255.0
standby 100 ip 192.169.100.254
standby 100 timers 1 5
standby 100 priority 90
standby 100 preempt
!
ip classless
ip route 192.168.1.0 255.255.255.0 192.169.20.249
ip route 192.168.55.0 255.255.255.0 192.169.20.248
ip route 192.168.100.0 255.255.255.0 192.169.20.248
ip route 192.168.208.0 255.255.255.0 192.169.20.248
ip route 200.200.202.0 255.255.255.0 192.169.20.248
ip route 10.72.128.0 255.255.255.0 192.169.20.248
!
ip http server
!
access-list 1 permit 192.169.20.0 0.0.0.255
!
!
!
control-plane
!
!
!
dial-peer cor custom
!
!
!
!
control-plane
!
!
!
dial-peer cor custom
!
!
!
!
line con 0
exec-timeout 300 0
password cisco
line vty 0 4
access-class 1 in
password cisco
login
!
no cns aaa enable
end
备核心:
6506-down#sh run
Building configuration...
Current configuration : 5608 bytes
!
upgrade fpd auto
version 12.2
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service counters max age 5
!
hostname 6506-down
!
boot system flash bootdisk:s72033-ipservices_wan-mz.122-18.SXF10.bin
no logging console
enable password cisco
!
no aaa new-model
ip subnet-zero
!
!
!
ipv6 mfib hardware-switching replication-mode ingress
mls ip multicast flow-stat-timer 9
no mls flow ip
no mls flow ipv6
no mls acl tcam share-global
mls cef error action freeze
!
!
!
!
!
!
redundancy
mode sso
main-cpu
auto-sync running-config
!
spanning-tree mode mst
!
spanning-tree mst configuration
name 1
revision 20
instance 1 vlan 10, 20, 30, 40, 50, 60
instance 2 vlan 70, 80, 90, 100
!
spanning-tree mst 2 priority 24576
diagnostic cns publish cisco.cns.device.diag_results
diagnostic cns subscribe cisco.cns.device.diag_commands
fabric buffer-reserve queue
!
vlan internal allocation policy ascending
vlan access-log ratelimit 2000
!
!
interface Port-channel2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/1
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/3
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/4
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/5
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/6
interface GigabitEthernet4/6
no ip address
!
interface GigabitEthernet4/7
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/8
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/9
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/10
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/11
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/12
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/13
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet4/14
switchport
switchport access vlan 100
switchport mode access
no ip address
!
interface GigabitEthernet4/15
switchport
switchport access vlan 100
switchport mode access
no ip address
!
interface GigabitEthernet4/16
switchport
switchport access vlan 100
switchport mode access
no ip address
!
interface GigabitEthernet4/17
no ip address
!
interface GigabitEthernet4/18
no ip address
!
interface GigabitEthernet4/19
no ip address
!
interface GigabitEthernet4/20
no ip address
!
interface GigabitEthernet4/21
no ip address
!
interface GigabitEthernet4/22
no ip address
!
interface GigabitEthernet4/23
no ip address
!
interface GigabitEthernet4/24
no ip address
!
interface GigabitEthernet6/1
no ip address
!
interface GigabitEthernet6/2
no ip address
!
interface Vlan1
description shebei
ip address 192.169.1.252 255.255.255.0
standby 1 ip 192.169.1.254
standby 1 timers 1 5
standby 1 priority 90
standby 1 preempt
!
interface Vlan10
ip address 192.169.10.252 255.255.255.0
standby 10 ip 192.169.10.254
standby 10 timers 1 5
standby 10 priority 90
standby 10 preempt
!
interface Vlan20
ip address 192.169.20.252 255.255.255.0
standby 20 ip 192.169.20.254
standby 20 timers 1 5
standby 20 priority 90
standby 20 preempt
!
interface Vlan30
ip address 192.169.30.252 255.255.255.0
standby 30 ip 192.169.30.254
standby 30 timers 1 5
standby 30 priority 90
standby 30 preempt
!
interface Vlan40
ip address 192.169.40.252 255.255.255.0
standby 40 ip 192.169.40.254
standby 40 timers 1 5
standby 40 priority 90
standby 40 preempt
!
interface Vlan50
ip address 192.169.50.252 255.255.255.0
standby 50 ip 192.169.50.254
standby 50 timers 1 5
standby 50 priority 90
standby 50 preempt
!
interface Vlan60
ip address 192.169.60.252 255.255.255.0
standby 60 ip 192.169.60.254
standby 60 timers 1 5
standby 60 priority 90
standby 60 preempt
!
interface Vlan70
ip address 192.169.70.252 255.255.255.0
standby 70 ip 192.169.70.254
standby 70 timers 1 5
standby 70 priority 110
standby 70 preempt
!
interface Vlan80
ip address 192.169.80.252 255.255.255.0
standby 80 ip 192.169.80.254
standby 80 timers 1 5
standby 80 priority 110
standby 80 preempt
!
interface Vlan90
ip address 192.169.90.252 255.255.255.0
standby 90 ip 192.169.90.254
standby 90 timers 1 5
standby 90 priority 110
standby 90 preempt
!
interface Vlan100
description fuwuqi
ip address 192.169.100.252 255.255.255.0
standby 100 ip 192.169.100.254
standby 100 timers 1 5
standby 100 priority 110
standby 100 preempt
!
ip classless
ip route 192.168.1.0 255.255.255.0 192.169.20.249
ip route 192.168.55.0 255.255.255.0 192.169.20.248
ip route 192.168.100.0 255.255.255.0 192.169.20.248
ip route 192.168.208.0 255.255.255.0 192.169.20.248
ip route 200.200.202.0 255.255.255.0 192.169.20.248
ip route 10.72.128.0 255.255.255.0 192.169.20.248
!
ip http server
!
access-list 1 permit 192.169.20.0 0.0.0.255
!
!
!
control-plane
!
!
!
dial-peer cor custom
!
!
!
!
line con 0
exec-timeout 3090 0
password cisco
line vty 0 4
access-class 1 in
password cisco
login
!
no cns aaa enable
end 看不出来,试下把时间改长点 企业公司谁会有钱去做热备份,钱多啊。或许只有外企做得起吧
页:
[1]
