Network requirements – H3C Technologies H3C SecPath F1000-E User Manual

Page 297

Advertising
background image

272

Inter-VLAN Layer 3 forwarding configuration

example

Network requirements

As shown in the

Figure 170

, traffic between GigabitEthernet 3/0/1 and GigabitEthernet 3/0/2 is

filtered by a firewall card, and inter-VLAN Layer 3 forwarding needs to be configured.

Configure the operating mode of GigabitEthernet 3/0/1 and GigabitEthernet 3/0/2 of the switch
as access. Assign them to VLAN 102 and VLAN 103 respectively.

Ten-GigabitEthernet 2/0/1 of the switch connects to ten-GigabitEthernet 0/0 of the firewall card.

Configure the link type of the two interfaces as trunk.

Configure the operating mode of ten-GigabitEthernet 0/0 as Layer 2. Create two VLAN interfaces
VLAN-interface 102 and VLAN-interface 103.

Assign IP address 102.0.0.3/24 to VLAN-interface 102 and 103.0.0.3/24 to VLAN-interface 103.

Add the firewall card's ten-GigabitEthernet interface and the VLAN interfaces to security zones
Trust and Untrust.

Advertising