! ! 小規模オフィスで高速・柔軟な社内ネットワークを実現する ! ! ! コアスイッチ ! SWX3100 Configのサンプル ! ! dns-client enable loop-detect enable spanning-tree shutdown ! access-list 1 description vlan11 access-list 1 10 deny any 192.168.101.0 0.0.0.255 192.168.102.0 0.0.0.255 access-list 2 description vlan12 access-list 2 10 deny any 192.168.102.0 0.0.0.255 192.168.101.0 0.0.0.255 access-list 3 description vlan13 access-list 3 10 permit any 192.168.103.0 0.0.0.255 192.168.101.0 0.0.0.255 access-list 3 20 permit any 192.168.103.0 0.0.0.255 192.168.102.0 0.0.0.255 access-list 3 30 deny any any any ! dhcp-server enable ! vlan database vlan 11 name VLAN0011 vlan 12 name VLAN0012 vlan 13 name VLAN0013 ! interface port1.1 switchport switchport mode access switchport access vlan 11 no shutdown ! interface port1.2 switchport switchport mode access switchport access vlan 12 no shutdown ! interface port1.3 switchport switchport mode access no shutdown ! interface port1.4 switchport switchport mode access no shutdown ! interface port1.5 switchport switchport mode access no shutdown ! interface port1.6 switchport switchport mode access no shutdown ! interface port1.7 switchport switchport mode access no shutdown ! interface port1.8 switchport switchport mode access no shutdown ! interface port1.9 switchport switchport mode access switchport access vlan 13 no shutdown ! interface port1.10 switchport switchport mode access no shutdown ! interface vlan1 no switchport auto-ip enable ip address 192.168.100.240/24 no shutdown ! interface vlan11 no switchport ip address 192.168.101.1/24 no shutdown dhcp-server enable ! interface vlan12 no switchport ip address 192.168.102.1/24 no shutdown dhcp-server enable ! interface vlan13 no switchport ip address 192.168.103.1/24 no shutdown ! vlan access-map VAM-001 match access-list 1 ! vlan access-map VAM-002 match access-list 2 ! vlan access-map VAM-003 match access-list 3 ! vlan filter VAM-001 11 in ! vlan filter VAM-002 12 in ! vlan filter VAM-003 13 in ! ip route 0.0.0.0/0 192.168.100.1 ! ! clock timezone JST ! http-server enable http-server interface vlan11 http-server interface vlan12 http-server interface vlan13 http-proxy enable ! telnet-server enable telnet-server interface vlan11 telnet-server interface vlan12 telnet-server interface vlan13 ! dhcp pool vlan11 network 192.168.101.0/24 range 192.168.101.2 192.168.101.191 default-router 192.168.101.1 dns-server 192.168.100.1 ! dhcp pool vlan12 network 192.168.102.0/24 range 192.168.102.2 192.168.102.191 default-router 192.168.102.1 dns-server 192.168.100.1 ! line con 0 line vty 0 7 ! end