>А как конфигуришь, с консоли, или веб-интерфейсом, и если можно конкретней -
>что значит "конфиг делаем посложнее"? С 1200-ой точкой никаких проблем с
>обновлением IOS небыло.
Конфигурирую telnet'ом так как консоли у 1100 нет. Web интерфейсом не пользуюсь.
Вот конфиг, который прекрасно работает на старой версии и не работает на последних:
Building configuration...
Current configuration : 7758 bytes
!
version 12.2
no service pad
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
no service dhcp
!
hostname test
logging buffered 9000 debugging
no logging console
aaa new-model
!
!
aaa group server radius rad_group
server 172.20.20.6 auth-port 1645 acct-port 1646
!
aaa authentication password-prompt "XXXXXX "
aaa authentication username-prompt "XXX"
aaa authentication login default group rad_group local-case
aaa authorization exec default group rad_group local
aaa accounting suppress null-username
aaa accounting send stop-record authentication failure
aaa accounting exec default start-stop group rad_group
aaa accounting network default start-stop group rad_group
aaa accounting connection default start-stop group rad_group
aaa session-id common
enable secret 5 XXXXX
!
username test password 7 XXXXXX
clock timezone MSK 3
clock summer-time MSD recurring last Sun Mar 2:00 last Sun Oct 3:00
ip subnet-zero
ip rcmd rcp-enable
ip rcmd rsh-enable
ip rcmd remote-username test
ip domain-list test1.test
ip domain-list test2.test
ip domain-name test.test
ip name-server 172.20.20.4
ip name-server 172.20.20.7
ip ftp username test
ip ftp password 7 XXXX
!
dot11 holdoff-time 600
dot11 network-map 60
!
bridge irb
!
interface Dot11Radio0
no ip address
no ip route-cache
shutdown
encryption vlan 4 key 1 size 40bit 7 XX
encryption vlan 4 key 2 size 128bit 7 XXXX transmit-key
encryption vlan 4 mode wep mandatory mic key-hash
!
encryption vlan 2 key 1 size 40bit 7 XXXX transmit-key
encryption vlan 2 mode wep mandatory mic key-hash
!
encryption vlan 3 key 1 size 40bit 7 XXXX transmit-key
encryption vlan 3 mode wep mandatory
!
encryption vlan 13 key 1 size 40bit 7 XXXX transmit-key
encryption vlan 13 mode wep mandatory mic key-hash
!
ssid Floor
vlan 13
authentication open
!
ssid office
vlan 4
authentication open
!
speed basic-1.0 basic-2.0 basic-5.5 basic-11.0
rts threshold 2312
fragment-threshold 1024
station-role root
no cdp enable
dot1x reauth-period 7200
dot1x client-timeout 30
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
!
interface Dot11Radio0.2
encapsulation dot1Q 2
no ip route-cache
no cdp enable
bridge-group 2
bridge-group 2 subscriber-loop-control
bridge-group 2 input-address-list 702
bridge-group 2 block-unknown-source
no bridge-group 2 source-learning
no bridge-group 2 unicast-flooding
bridge-group 2 spanning-disabled
!
interface Dot11Radio0.3
encapsulation dot1Q 3
no ip route-cache
bridge-group 3
bridge-group 3 subscriber-loop-control
bridge-group 3 input-address-list 703
bridge-group 3 block-unknown-source
no bridge-group 3 source-learning
no bridge-group 3 unicast-flooding
bridge-group 3 spanning-disabled
!
interface Dot11Radio0.4
encapsulation dot1Q 4
no ip route-cache
bridge-group 4
bridge-group 4 subscriber-loop-control
bridge-group 4 input-address-list 704
bridge-group 4 block-unknown-source
no bridge-group 4 source-learning
no bridge-group 4 unicast-flooding
bridge-group 4 spanning-disabled
!
interface Dot11Radio0.13
encapsulation dot1Q 13
no ip route-cache
bridge-group 13
bridge-group 13 subscriber-loop-control
bridge-group 13 input-address-list 713
bridge-group 13 block-unknown-source
no bridge-group 13 source-learning
no bridge-group 13 unicast-flooding
bridge-group 13 spanning-disabled
!
interface FastEthernet0
no ip address
no ip route-cache
duplex auto
speed auto
bridge-group 1
no bridge-group 1 source-learning
bridge-group 1 spanning-disabled
!
interface FastEthernet0.2
encapsulation dot1Q 2
no ip route-cache
bridge-group 2
no bridge-group 2 source-learning
bridge-group 2 spanning-disabled
!
interface FastEthernet0.3
encapsulation dot1Q 3
no ip route-cache
bridge-group 3
no bridge-group 3 source-learning
bridge-group 3 spanning-disabled
!
interface FastEthernet0.4
encapsulation dot1Q 4
no ip route-cache
bridge-group 4
no bridge-group 4 source-learning
bridge-group 4 spanning-disabled
!
interface FastEthernet0.13
encapsulation dot1Q 13
no ip route-cache
bridge-group 13
no bridge-group 13 source-learning
bridge-group 13 spanning-disabled
!
interface BVI1
no ip address
no ip route-cache
shutdown
!
interface BVI2
ip address 172.20.20.3 255.255.255.0
no ip route-cache
!
interface BVI3
ip address 172.20.21.3 255.255.255.0
no ip route-cache
!
interface BVI4
ip address 172.20.22.3 255.255.255.0
no ip route-cache
!
interface BVI13
ip address 172.20.31.3 255.255.255.0
no ip route-cache
!
ip default-gateway 172.20.20.1
ip radius source-interface BVI1
logging 172.20.20.4
access-list 702 deny 0000.0000.0000 ffff.ffff.ffff
access-list 703 deny 0000.0000.0000 ffff.ffff.ffff
access-list 704 deny 0000.0000.0000 ffff.ffff.ffff
access-list 713 deny 0000.0000.0000 ffff.ffff.ffff
snmp-server group test v2c read lynxview access 3
snmp-server community test RO
snmp-server location room
snmp-server contact XXXXX
radius-server host 172.20.20.6 auth-port 1645 acct-port 1646 retransmit 3 key 7 XXXXX
radius-server retransmit 3
radius-server attribute 44 include-in-access-req
bridge 1 route ip
bridge 2 protocol ieee
bridge 2 route ip
bridge 3 protocol ieee
bridge 3 route ip
bridge 4 protocol ieee
bridge 4 route ip
bridge 13 protocol ieee
bridge 13 route ip
default-value exec-character-bits 8
default-value special-character-bits 8
!
line con 0
transport preferred none
stopbits 1
line vty 0 4
terminal-type vt100
history size 50
international
transport preferred none
transport input telnet ssh
stopbits 1
line vty 5 15
location server room 1100 access point
international
transport preferred none
stopbits 1
!
ntp clock-period 2814749
ntp server 172.20.21.1
ntp server 172.20.20.1
ntp server 172.20.22.1