Пример типовой конфигурации EcoSwitch Documentation / Конфигурирование и настройка / Пример типовой конфигурации
Ниже приведен пример типовой конфигурации устройства.
:~$ ssh admin@125.201.113.103
Password:
------ ECOFilter-Balancer CLI ------
ecofilter-balancer@admin> show rdp-firmware
boot-image {
current B
A {
active false
stable false
version {
major 3
minor 2
release 3
bugfix 0
revision 2988
str 3.2.3.0.2988 }
tries 0
}
B {
active true
stable false
version {
major 3
minor 2
release 3
bugfix 0
revision 3107
str 3.2.3.0.3107 }
tries 1
}
Factory {
active true
stable true
}
}
ecofilter-balancer@admin> configure
[edit]
ecofilter-balancerh@admin# show | view set
set mng-if addresses default
set mng-if addresses default ip 10.210.9.145
set mng-if addresses default prefix 24
set mng-if hostname TEST1
set mng-if routes default
set mng-if routes default destination 0.0.0.0
set mng-if routes default gateway 10.210.9.2
set mng-if routes default prefix 0
set mng-if-vlan addresses ADDR1
set mng-if-vlan addresses ADDR1 iface VLAN6
set mng-if-vlan addresses ADDR1 ip 10.10.1.2
set mng-if-vlan addresses ADDR1 prefix 24
set mng-if-vlan routes ROUT1
set mng-if-vlan routes ROUT1 destination 0.0.0.0
set mng-if-vlan routes ROUT1 gateway 192.168.100.1
set mng-if-vlan routes ROUT1 iface VLAN6
set mng-if-vlan routes ROUT1 prefix 0
set mng-if-vlan vlans VLAN1
set mng-if-vlan vlans VLAN1 id 5
set ntp common timezone +3 sync-settings samples 5 sync-period 20
set ntp server 1.1.1.1
set ntp server 1.1.1.1 prefer
set ntp server 2.2.2.2
set tacacs tacacsplus server TACACS_SERVER_1
set tacacs tacacsplus server TACACS_SERVER_1 address 192.168.100.100
set tacacs tacacsplus server TACACS_SERVER_1 password-auth-protocol TACACS-login
set tacacs tacacsplus server TACACS_SERVER_1 port 1234
set tacacs tacacsplus server TACACS_SERVER_1 shared-secret 12345
set tacacs tacacsplus server TACACS_SERVER_1 timeout 10
set port label p12-1
set port label p12-1 description "LAN"
set port label p12-1 direction force-up
set port label p12-1 lane 1
set port label p12-1 mtu 9000
set port label p12-1 number 12
set port label p12-1 speed 10G
set port label p12-2
set port label p12-2 description "Filter1LAN"
set port label p12-2 direction force-up
set port label p12-2 lane 2
set port label p12-2 mtu 9000
set port label p12-2 number 12
set port label p12-2 speed 10G
set port label p12-3
set port label p12-3 description "Filter2LAN"
set port label p12-3 direction force-up
set port label p12-3 lane 3
set port label p12-3 mtu 9000
set port label p12-3 number 12
set port label p12-3 speed 10G
set port label p12-4
set port label p12-4 description "Filter3LAN"
set port label p12-4 direction force-up
set port label p12-4 lane 4
set port label p12-4 mtu 9000
set port label p12-4 number 12
set port label p12-4 speed 10G
set port label p32-1
set port label p32-1 description "WAN"
set port label p32-1 direction force-up
set port label p32-1 lane 1
set port label p32-1 mtu 9000
set port label p32-1 number 32
set port label p32-1 speed 10G
set port label p32-2
set port label p32-2 description "FILTER1_WAN"
set port label p32-2 direction force-up
set port label p32-2 lane 2
set port label p32-2 mtu 9000
set port label p32-2 number 32
set port label p32-2 speed 10G
set port label p32-3
set port label p32-3 description "FILTER2_WAN"
set port label p32-3 direction force-up
set port label p32-3 lane 3
set port label p32-3 mtu 9000
set port label p32-3 number 32
set port label p32-3 speed 10G
set port label p32-4
set port label p32-4 description "FIlter3WAN"
set port label p32-4 direction force-up
set port label p32-4 lane 4
set port label p32-4 mtu 9000
set port label p32-4 number 32
set port label p32-4 speed 10G
set logger logging-settings log-level error servers 192.168.200.200 port 4567 protocol udp
set bypass-unit profile bp-GLSUN
set bypass-unit profile bp-GLSUN autoreconnect enable
set bypass-unit profile bp-GLSUN autoreturn enable
set bypass-unit profile bp-GLSUN ipv4 10.46.2.51
set bypass-unit profile bp-GLSUN type-of-service 184
set bypass-unit profile bp-GLSUN udp-port 4001
set bypass-unit profile bp-GLSUN watchdog-delay 6000
set bypass-unit profile bp-GLSUN balance-group ECOFILTERS
set bypass-unit profile bp-GLSUN links 5
set liveness profile live_loop_or_not
set liveness profile live_loop_or_not active-ports 1
set liveness profile live_loop_or_not initial-delay 2000
set liveness profile live_loop_or_not interval 1000
set liveness profile live_loop_or_not probes-down-count 3
set liveness profile live_loop_or_not probes-up-count 5
set prometheus action start path-to-metrics metrics
set prometheus action start port 2112
set snmp traps destination-host 10.212.130.154:162
set snmp traps enabled true
set snmp traps alarm name1
set snmp traps alarm name1 category cold-start
set netflow active_timeout 20
set netflow destination NETFLOW1
set netflow destination NETFLOW1 ip 10.212.131.48
set netflow destination NETFLOW1 port 2055
set netflow inactive_timeout 15
set netflow maxflows 2000000
set netflow rr-destination true
set netflow sampler 10
set netflow timeout-rate 30
set netflow watching-on-port p1-1
set ecofilter-balancer link QALink1
set ecofilter-balancer link QALink1 description link-p12-2-p32-2
set ecofilter-balancer link QALink1 bypass-unit link-id 5
set ecofilter-balancer link QALink1 lan p12-2
set ecofilter-balancer link QALink1 wan p32-2
set ecofilter-balancer link QALink1 two-port-link
set ecofilter-balancer flow F1
set ecofilter-balancer flow F1 action to-ecofilter
set ecofilter-balancer flow F1 match packet-type ipv4
set ecofilter-balancer flow F1 priority 1
set ecofilter-balancer external-acl keepalives true
set ecofilter-balancer external-acl keepalives-time 1000
set ecofilter-balancer external-acl keepalives-timeout 1000
set ecofilter-balancer external-acl reconnection-time 10sec
set ecofilter-balancer external-acl table rkn_port+gb action protected-network
set ecofilter-balancer external-acl connection GRPC uri testserver.ru:443 tls enable type protected-network CAcert cert.crt cert clientcert.pem key clientkey.pem verify ignore
set ecofilter-balancer mirror MIRROR-1
set ecofilter-balancer mirror MIRROR-1 source-port-rx p32-4
set ecofilter-balancer mirror MIRROR-1 destination-port p12-2
set ecofilter-balancer balancing-config hash-value source-ipv4-prefix 30
set ecofilter-balancer balancing-method layer-3
set ecofilter-balancer ecofilter-unit U1
set ecofilter-balancer ecofilter-unit U1 cores 12
set ecofilter-balancer ecofilter-unit U1 liveness-profile hello0
set ecofilter-balancer ecofilter-unit U1 load-factor 1
set ecofilter-balancer ecofilter-unit U1 pair p0
set ecofilter-balancer ecofilter-unit U1 pair p0 lan p12-3
set ecofilter-balancer ecofilter-unit U1 pair p0 wan p32-3
set ecofilter-balancer ecofilter-unit U1 type ecofilter
set ecofilter-balancer neighbor EcoBalancer1
set ecofilter-balancer neighbor EcoBalancer1 ipv4-dst 10.0.0.1
set ecofilter-balancer neighbor EcoBalancer1 ipv4-src 10.0.0.2
set ecofilter-balancer neighbor EcoBalancer1 ping-timeout 20
set ecofilter-balancer neighbor EcoBalancer1 port p1-1
set ecofilter-balancer neighbor EcoBalancer1 time-to-live 64
set ecofilter-balancer neighbor EcoBalancer1 type-of-service 184