OpenWrt For Support SkyEdge Gilat Modem Configure

OpenWrt For Support SkyEdge Gilat Modem Configure

 

网络拓扑配置

OpenWrt For Support SkyEdge Gilat Modem Configure

 

二层交换机配置

switch3a39b8#show running-config 
config-file-header
switch3a39b8
v1.4.0.88 / R800_NIK_1_4_194_194
CLI v1.0
set system mode switch 

file SSD indicator encrypted
@
ssd-control-start
ssd config
ssd file passphrase control unrestricted
no ssd file integrity control
ssd-control-end cb0a3fdb1f3a1af4e4430033719968c0
!
vlan database
vlan 11-12
exit
voice vlan oui-table add 0001e3 Siemens_AG_phone________
voice vlan oui-table add 00036b Cisco_phone_____________
voice vlan oui-table add 00096e Avaya___________________
voice vlan oui-table add 000fe2 H3C_Aolynk______________
voice vlan oui-table add 0060b9 Philips_and_NEC_AG_phone
voice vlan oui-table add 00d01e Pingtel_phone___________
voice vlan oui-table add 00e075 Polycom/Veritel_phone___
voice vlan oui-table add 00e0bb 3Com_phone______________
hostname switch3a39b8
no passwords complexity enable
username cisco password encrypted 7c222fb2927d828af22f592134e8932480637c0d privilege 15
ip ssh server
ip ssh password-auth
! 
interface vlan 1
 ip address 192.168.110.254 255.255.255.0
 no ip address dhcp
 ! 
interface vlan 11
 name svc
!
interface vlan 12
 name amip
!
interface fastethernet2 
 switchport trunk allowed vlan add 11-12
!
interface fastethernet3                               
 switchport mode access
 switchport access vlan 11
!
interface fastethernet4
 switchport mode access
 switchport access vlan 12
!
exit 

 

OpenWrt 配置

root@ACU:~# cat /etc/config/network 

config interface 'loopback'
	option ifname 'lo'
	option proto 'static'
	option ipaddr '127.0.0.1'
	option netmask '255.0.0.0'

config globals 'globals'
	option ula_prefix 'auto'

config interface 'lan11'
	option type 'bridge'
	option _orig_ifname 'eth1.11'
	option _orig_bridge 'true'
	option ifname 'eth1.11 eth0.11'
	option macaddr 'd8:25:b0:00:1e:d8'
	option proto 'static'
	option ipaddr '192.168.1.2'
	option netmask '255.255.255.0'
	option gateway '192.168.1.1'
	option broadcast '192.168.1.255'
	option dns '114.114.114.114'

config interface 'lan12'
	option type 'bridge'
	option _orig_ifname 'eth1.12'
	option _orig_bridge 'true'
	option ifname 'eth1.12 eth0.12'
	option macaddr 'd8:25:b0:00:1e:d9'
	option proto 'static'
	option ipaddr '172.28.1.2'
	option netmask '255.255.255.0'

config interface 'wan11'
	option ifname 'eth0.11'
	option macaddr 'd8:25:b0:00:1e:d6'
	option proto 'none'

config interface 'wan12'
	option ifname 'eth0.12'
	option macaddr 'd8:25:b0:00:1e:d7'
	option proto 'none'

config switch
	option name 'switch0'
	option reset '1'
	option enable_vlan '1'

config switch_vlan
	option device 'switch0'
	option vlan '11'
	option vid '11'
	option ports '0t 2 3 4'

config switch_vlan
	option device 'switch0'
	option vlan '12'
	option vid '12'
	option ports '0t 1'

root@ACU:~# 
root@ACU:~# cat /etc/config/wireless 
config wifi-device 'radio0'
	option type 'mac80211'
	option channel '11'
	option hwmode '11g'
	option path 'platform/qca953x_wmac'
	option htmode 'HT20'
	option disabled '0'

config wifi-iface 'default_radio0'
	option device 'radio0'
	option mode 'ap'
	option ssid 'ditel-mytest'
	option encryption 'none'
	option network 'lan11'

root@ACU:~#
root@ACU:~# cat /etc/config/firewall 
config defaults
	option syn_flood '1'
	option input 'ACCEPT'
	option output 'ACCEPT'
	option forward 'ACCEPT'
	option disable_ipv6 '1'

config zone
	option name 'lan11'
	option input 'ACCEPT'
	option output 'ACCEPT'
	option forward 'ACCEPT'
	option network 'lan11 wan11'

config zone
	option name 'lan12'
	option input 'ACCEPT'
	option output 'ACCEPT'
	option forward 'ACCEPT'
	option network 'lan12 wan12'

config zone
	option name 'wan'
	option input 'ACCEPT'
	option output 'ACCEPT'
	option forward 'ACCEPT'
	option masq '1'
	option mtu_fix '1'
	option network 'wan'

config forwarding
	option src 'lan'
	option dest 'wan'

config rule
	option name 'Allow-DHCP-Renew'
	option src 'wan'
	option proto 'udp'
	option dest_port '68'
	option target 'ACCEPT'
	option family 'ipv4'

config rule
	option name 'Allow-Ping'
	option src 'wan'
	option proto 'icmp'
	option icmp_type 'echo-request'
	option family 'ipv4'
	option target 'ACCEPT'

config rule
	option name 'Allow-IGMP'
	option src 'wan'
	option proto 'igmp'
	option family 'ipv4'
	option target 'ACCEPT'

config include
	option path '/etc/firewall.user'

config rule
	option src 'wan'
	option dest 'lan'
	option proto 'esp'
	option target 'ACCEPT'

config rule
	option src 'wan'
	option dest 'lan'
	option dest_port '500'
	option proto 'udp'
	option target 'ACCEPT'

config include 'miniupnpd'
	option type 'script'
	option path '/usr/share/miniupnpd/firewall.include'
	option family 'any'
	option reload '1'

root@ACU:~#

 

========== End

 

上一篇:Failed to configure a DataSource: ‘url‘ attribute is not specified and no embedded datasource could


下一篇:Shortcut Keys Configure of Typora