OpenWrt For Support SkyEdge Gilat Modem Configure
网络拓扑配置
二层交换机配置
switch3a39b8#show running-config config-file-header switch3a39b8 v1.4.0.88 / R800_NIK_1_4_194_194 CLI v1.0 set system mode switch file SSD indicator encrypted @ ssd-control-start ssd config ssd file passphrase control unrestricted no ssd file integrity control ssd-control-end cb0a3fdb1f3a1af4e4430033719968c0 ! vlan database vlan 11-12 exit voice vlan oui-table add 0001e3 Siemens_AG_phone________ voice vlan oui-table add 00036b Cisco_phone_____________ voice vlan oui-table add 00096e Avaya___________________ voice vlan oui-table add 000fe2 H3C_Aolynk______________ voice vlan oui-table add 0060b9 Philips_and_NEC_AG_phone voice vlan oui-table add 00d01e Pingtel_phone___________ voice vlan oui-table add 00e075 Polycom/Veritel_phone___ voice vlan oui-table add 00e0bb 3Com_phone______________ hostname switch3a39b8 no passwords complexity enable username cisco password encrypted 7c222fb2927d828af22f592134e8932480637c0d privilege 15 ip ssh server ip ssh password-auth ! interface vlan 1 ip address 192.168.110.254 255.255.255.0 no ip address dhcp ! interface vlan 11 name svc ! interface vlan 12 name amip ! interface fastethernet2 switchport trunk allowed vlan add 11-12 ! interface fastethernet3 switchport mode access switchport access vlan 11 ! interface fastethernet4 switchport mode access switchport access vlan 12 ! exit
OpenWrt 配置
root@ACU:~# cat /etc/config/network config interface 'loopback' option ifname 'lo' option proto 'static' option ipaddr '127.0.0.1' option netmask '255.0.0.0' config globals 'globals' option ula_prefix 'auto' config interface 'lan11' option type 'bridge' option _orig_ifname 'eth1.11' option _orig_bridge 'true' option ifname 'eth1.11 eth0.11' option macaddr 'd8:25:b0:00:1e:d8' option proto 'static' option ipaddr '192.168.1.2' option netmask '255.255.255.0' option gateway '192.168.1.1' option broadcast '192.168.1.255' option dns '114.114.114.114' config interface 'lan12' option type 'bridge' option _orig_ifname 'eth1.12' option _orig_bridge 'true' option ifname 'eth1.12 eth0.12' option macaddr 'd8:25:b0:00:1e:d9' option proto 'static' option ipaddr '172.28.1.2' option netmask '255.255.255.0' config interface 'wan11' option ifname 'eth0.11' option macaddr 'd8:25:b0:00:1e:d6' option proto 'none' config interface 'wan12' option ifname 'eth0.12' option macaddr 'd8:25:b0:00:1e:d7' option proto 'none' config switch option name 'switch0' option reset '1' option enable_vlan '1' config switch_vlan option device 'switch0' option vlan '11' option vid '11' option ports '0t 2 3 4' config switch_vlan option device 'switch0' option vlan '12' option vid '12' option ports '0t 1' root@ACU:~#
root@ACU:~# cat /etc/config/wireless config wifi-device 'radio0' option type 'mac80211' option channel '11' option hwmode '11g' option path 'platform/qca953x_wmac' option htmode 'HT20' option disabled '0' config wifi-iface 'default_radio0' option device 'radio0' option mode 'ap' option ssid 'ditel-mytest' option encryption 'none' option network 'lan11'
root@ACU:~#
root@ACU:~# cat /etc/config/firewall config defaults option syn_flood '1' option input 'ACCEPT' option output 'ACCEPT' option forward 'ACCEPT' option disable_ipv6 '1' config zone option name 'lan11' option input 'ACCEPT' option output 'ACCEPT' option forward 'ACCEPT' option network 'lan11 wan11' config zone option name 'lan12' option input 'ACCEPT' option output 'ACCEPT' option forward 'ACCEPT' option network 'lan12 wan12' config zone option name 'wan' option input 'ACCEPT' option output 'ACCEPT' option forward 'ACCEPT' option masq '1' option mtu_fix '1' option network 'wan' config forwarding option src 'lan' option dest 'wan' config rule option name 'Allow-DHCP-Renew' option src 'wan' option proto 'udp' option dest_port '68' option target 'ACCEPT' option family 'ipv4' config rule option name 'Allow-Ping' option src 'wan' option proto 'icmp' option icmp_type 'echo-request' option family 'ipv4' option target 'ACCEPT' config rule option name 'Allow-IGMP' option src 'wan' option proto 'igmp' option family 'ipv4' option target 'ACCEPT' config include option path '/etc/firewall.user' config rule option src 'wan' option dest 'lan' option proto 'esp' option target 'ACCEPT' config rule option src 'wan' option dest 'lan' option dest_port '500' option proto 'udp' option target 'ACCEPT' config include 'miniupnpd' option type 'script' option path '/usr/share/miniupnpd/firewall.include' option family 'any' option reload '1'
root@ACU:~#
========== End