{"id":2413,"date":"2018-05-04T21:55:01","date_gmt":"2018-05-05T01:55:01","guid":{"rendered":"http:\/\/blog.domb.net\/?p=2413"},"modified":"2018-05-04T21:55:01","modified_gmt":"2018-05-05T01:55:01","slug":"dell-n4032-hp-hp-procurve-switch-2810-juniper-srx-300-cheat-sheet","status":"publish","type":"post","link":"https:\/\/blog.domb.net\/?p=2413","title":{"rendered":"DELL N4032 \/  HP HP ProCurve Switch 2810 \/ Juniper SRX 300  cheat sheet"},"content":{"rendered":"<p>I started rebuilding my lab and wanted to document some of the architecture as well as commands used for the different networking devices I use at home. <\/p>\n<p><strong>Dell vlans: <\/strong><br \/>\nConfigure the vlan<br \/>\nenable > configure<br \/>\nvlan 10<br \/>\nconfigure interface vlan 10<br \/>\nip address 10.0.1.1 \/24<br \/>\nexit<\/p>\n<p><strong>Configure Trunk Port<\/strong><\/p>\n<p>configure interface Te1\/1\/4<br \/>\nswitchport mode trunk<br \/>\nswitchport trunk allowed vlan add 2,4<br \/>\nexit<\/p>\n<p>console#show running-config interface Tengigabitethernet 1\/1\/4<\/p>\n<p>spanning-tree portfast<br \/>\nswitchport mode trunk<br \/>\nno lldp tlv-select dcbxp ets-config<br \/>\nno lldp tlv-select dcbxp ets-recommend<br \/>\nno lldp tlv-select dcbxp pfc<br \/>\nno lldp tlv-select dcbxp application-priority<\/p>\n<p><strong>configure access ports<\/strong><br \/>\nconfigure interface Te1\/0\/8<br \/>\nswitchport mode access<br \/>\nswitchport access vlan 4<\/p>\n<p>console#show running-config interface Tengigabitethernet 1\/0\/8 <\/p>\n<p>speed auto 10000<br \/>\ndescription &#8220;comp1blue&#8221;<br \/>\nspanning-tree portfast<br \/>\nswitchport general pvid 4<br \/>\nswitchport access vlan 4<br \/>\nno lldp tlv-select dcbxp ets-config<br \/>\nno lldp tlv-select dcbxp ets-recommend<br \/>\nno lldp tlv-select dcbxp pfc<br \/>\nno lldp tlv-select dcbxp application-priority<\/p>\n<p><strong>Save configuration<\/strong><br \/>\ncopy running-config startup-config<br \/>\n<strong><\/p>\n<p>show all vlans<\/p>\n<p>console#show vlan <\/p>\n<p>VLAN   Name                             Ports          Type<br \/>\n&#8212;&#8211;  &#8212;&#8212;&#8212;&#8212;&#8212;                  &#8212;&#8212;&#8212;&#8212;-  &#8212;&#8212;&#8212;&#8212;&#8211;<br \/>\n1      default                          Po1-128,       Default<br \/>\n                                        Te1\/0\/1-3,<br \/>\n                                        Te1\/0\/5-7,<br \/>\n                                        Te1\/0\/10-16,<br \/>\n                                        Te1\/0\/18,<br \/>\n                                        Te1\/0\/20-24,<br \/>\n                                        Te1\/1\/1-4<br \/>\n2      ipmi                             Te1\/0\/19,      Static<br \/>\n                                        Te1\/0\/23,<br \/>\n                                        Te1\/1\/4<br \/>\n4      External                         Te1\/0\/4,       Static<br \/>\n                                        Te1\/0\/8-9,<br \/>\n                                        Te1\/0\/17,<br \/>\n                                        Te1\/0\/23,<br \/>\n                                        Te1\/1\/4<\/p>\n<p><strong>HP ProCurve Switch 2810-24G<\/strong><br \/>\nenable->configure<br \/>\nProCurve Switch 2810-24G(config)#<br \/>\nhostname &#8220;ProCurve Switch 2810-24G&#8221;<br \/>\nip default-gateway 192.168.1.1<br \/>\nsnmp-server community &#8220;public&#8221; Unrestricted<br \/>\nvlan 1<br \/>\n   name &#8220;DEFAULT_VLAN&#8221;<br \/>\n   untagged 1-10,20-24<br \/>\n   ip address 192.168.1.2 255.255.255.0<br \/>\n   no untagged 11-19<br \/>\n   exit<br \/>\nvlan 2<br \/>\n   name &#8220;smc&#8221;<br \/>\n   untagged 11-19<br \/>\n   ip address 10.0.2.3 255.255.255.0<br \/>\n   tagged 23<br \/>\n   exit<br \/>\ngvrp<br \/>\npassword manager<\/p>\n<p>Trunk port is configured via tagged statement and port number<br \/>\nAccess port is configured via untagged statement and port number<\/p>\n<p><strong>Save config<\/strong><br \/>\nwrite memory<\/p>\n<p>Juniper SRX<\/strong><\/p>\n<p>Configure SRX 300 vlan<br \/>\nset vlans ipmi vlan-id 2<br \/>\nset vlans External vlan-id 3<\/p>\n<p>root> show vlans <\/p>\n<p>Routing instance        VLAN name             Tag          Interfaces<br \/>\ndefault-switch          External              4<br \/>\n                                                           ge-0\/0\/2.0<br \/>\n                                                           ge-0\/0\/5.0*<br \/>\ndefault-switch          default               1        <\/p>\n<p>default-switch          ipmi                  2<br \/>\n                                                           ge-0\/0\/1.0*<br \/>\n                                                           ge-0\/0\/5.0*<br \/>\ndefault-switch          vlan-trust            3<br \/>\n                                                           ge-0\/0\/3.0<br \/>\n                                                           ge-0\/0\/4.0<br \/>\n                                                           ge-0\/0\/5.0*<br \/>\n                                                           ge-0\/0\/6.0<\/p>\n<p><strong>L3 interface<\/strong><br \/>\nset vlans ipmi l3-interface irb.2<br \/>\nset vlans External l3-interface irb.4<br \/>\nset interfaces irb unit 2 family inet address 10.0.2.1\/24<br \/>\nset interfaces irb unit 4 family inet address 10.0.4.1\/24<br \/>\nset security zones security-zone trust interfaces irb.2<br \/>\nset security zones security-zone trust interfaces irb.4<\/p>\n<p>If you want that the different interfaces can ping each other a new policy in zone trust needs to be created. <\/p>\n<p>from-zone trust to-zone trust {<br \/>\n    policy trust-to-trust {<br \/>\n        match {<br \/>\n            source-address any;<br \/>\n            destination-address any;<br \/>\n            application any;<br \/>\n        }<br \/>\n        then {<br \/>\n            permit;<br \/>\n        }<br \/>\n    }<br \/>\n}<\/p>\n<p>make sure you are allowing ping as well<br \/>\nzones {<br \/>\n        security-zone trust {<br \/>\n            host-inbound-traffic {<br \/>\n                system-services {<br \/>\n                    all;<br \/>\n                    ping;<br \/>\n                }<br \/>\n                protocols {<br \/>\n                    all;<br \/>\n                }<br \/>\n            }<\/p>\n<p>Verify ethernet-switching is working<br \/>\nroot> show ethernet-switching interface<br \/>\nRouting Instance Name : default-switch<br \/>\nLogical Interface flags (DL &#8211; disable learning, AD &#8211; packet action drop,<br \/>\n                         LH &#8211; MAC limit hit, DN &#8211; interface down,<br \/>\n                         MMAS &#8211; Mac-move action shutdown,<br \/>\n                         SCTL &#8211; shutdown by Storm-control )<\/p>\n<p>Logical         Vlan                   TAG   MAC    STP         Logical          Tagging<br \/>\ninterface       members                      limit  state       interface flags<br \/>\nge-0\/0\/1.0                                   16383                               untagged<br \/>\n                ipmi                   2     16383  Forwarding                   untagged<br \/>\nge-0\/0\/2.0                                   16383              DN               untagged<br \/>\n                External               4     16383  Discarding                   untagged<br \/>\nge-0\/0\/3.0                                   16383              DN               untagged<br \/>\n                vlan-trust             3     16383  Discarding                   untagged<br \/>\nge-0\/0\/4.0                                   16383              DN               untagged<br \/>\n                vlan-trust             3     16383  Discarding                   untagged<br \/>\nge-0\/0\/5.0                                   16383                               tagged<br \/>\n                ipmi                   2     16383  Forwarding                   tagged<br \/>\n                vlan-trust             3     16383  Forwarding                   tagged<br \/>\n                External               4     16383  Forwarding                   tagged<br \/>\nge-0\/0\/6.0                                   16383              DN               untagged<br \/>\n                vlan-trust             3     16383  Discarding                   untagged <\/p>\n<p>Trunk port<br \/>\nroot# show interfaces ge-0\/0\/5<br \/>\nunit 0 {<br \/>\n    family ethernet-switching {<br \/>\n        interface-mode trunk;<br \/>\n        vlan {<br \/>\n            members [ vlan-trust ipmi External ];<br \/>\n        }<br \/>\n    }<br \/>\n}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>I started rebuilding my lab and wanted to document some of the architecture as well as commands used for the different networking devices I use at home. Dell vlans: Configure the vlan enable > configure vlan 10 configure interface vlan 10 ip address 10.0.1.1 \/24 exit Configure Trunk Port configure interface Te1\/1\/4 switchport mode trunk&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_themeisle_gutenberg_block_has_review":false,"footnotes":""},"categories":[147],"tags":[150,149,94,148],"class_list":["post-2413","post","type-post","status-publish","format-standard","hentry","category-networking","tag-dell-n4032","tag-hp2810","tag-juniper","tag-srx-300"],"_links":{"self":[{"href":"https:\/\/blog.domb.net\/index.php?rest_route=\/wp\/v2\/posts\/2413","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.domb.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.domb.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.domb.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.domb.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2413"}],"version-history":[{"count":10,"href":"https:\/\/blog.domb.net\/index.php?rest_route=\/wp\/v2\/posts\/2413\/revisions"}],"predecessor-version":[{"id":2432,"href":"https:\/\/blog.domb.net\/index.php?rest_route=\/wp\/v2\/posts\/2413\/revisions\/2432"}],"wp:attachment":[{"href":"https:\/\/blog.domb.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2413"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.domb.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2413"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.domb.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2413"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}