)
H3C交换机配置命令大全涵盖常用基础命令、业务配置及故障排查命令强烈建议收藏以备日常查询使用。来自微信公众号IT人家一、基本配置1.1 视图切换# 从用户视图进入系统视图 Sysname system-view # 返回用户视图 [Sysname] quit # 直接返回用户视图 [Sysname] return1.2 设备命名# 将设备命名为SW [Sysname] sysname SW1.3 查看/保存/重置配置# 查看当前生效配置 SW display current-configuration # 查看已经保存的配置 SW display saved-configuration # 保存当前配置到闪存 SW save # 清空已经保存的配置 SW reset saved-configuration # 重启设备 SW reboot # 恢复出厂设置 SW restore factory-default1.4 系统时间# 设置时区 [SW] clock timezone beijing add 08:00:00 # 手动设置系统时间 [SW] clock protocol none SW clock datetime 18:30:23 2026/06/22 # 启用ntp服务自动同步时间 [SW] ntp-service enable [SW] clock protocol ntp [SW] ntp-service unicast-server ntp.aliyun.com priority二、VLAN配置2.1 创建/删除VLAN# 创建单个VLAN [SW] vlan 5 # 批量创建VLAN [SW] vlan 6 to 10 # 删除VLAN [SW] undo vlan 52.2 创建/删除VLAN-GROUP# 创建VLAN-GROUP [SW] vlan-group vgroup1 # 加入 VLAN [SW-vlan-group-vgroup1] vlan 5 10 # 删除整个vlan-group [SW] undo vlan-group vgroup1 # 从组里移除某个VLAN [SW-vlan-group-vgroup1] undo vlan 52.3 查看VLAN/VLAN-GROUP# 查看已创建的VLAN [SW] display vlan [SW] display vlan static # 查看VLAN 10的详细信息 [SW] display vlan 10 # 查看VLAN的简要信息 [SW] display vlan brief # 查看所有vlan-group及包含VLAN [SW] display vlan-group2.4 端口加入VLANAccess模式接终端2.4.1 方式1接口视图配置# 进入端口G1/0/1 [SW] interface GigabitEthernet 1/0/1 # 设置端口为Access模式 [SW-GigabitEthernet1/0/1] port link-type access # 端口加入VLAN 6 [SW-GigabitEthernet1/0/1] port access vlan 62.4.2 方式2VLAN视图批量加入# 进入VLAN视图 [SW] vlan 6 # 端口2-5加入VLAN 6 [SW-vlan6] port GigabitEthernet 1/0/5 to GigabitEthernet 1/0/102.5 Trunk模式接交换机/路由器/防火墙等透传多VLAN[SW] interface GigabitEthernet 1/0/48 # 设置端口为Trunk模式 [SW-GigabitEthernet1/0/48] port link-type trunk # 允许VLAN 10 20通过 [SW-GigabitEthernet1/0/48] port trunk permit vlan 10 20 # 允许所有VLAN通过 [SW-GigabitEthernet1/0/48] port trunk permit vlan all # 修改Trunk缺省VLAN为10PVID VLAN 必须在 port trunk permit 列表内否则无法转发无标签报文 [SW-GigabitEthernet1/0/48] port trunk pvid vlan 102.6 Hybrid模式灵活适配比较少见[SW-GigabitEthernet1/0/10] port link-type hybrid # 出端口剥离标签 [SW-GigabitEthernet1/0/10] port hybrid vlan 10 untagged # 出端口保留标签 [SW-GigabitEthernet1/0/10] port hybrid vlan 20 tagged # Hybrid实现类似 Access 口效果只允许 VLAN10进出都不带标签 [SW-GigabitEthernet1/0/20] port link-type hybrid [SW-GigabitEthernet1/0/20] port hybrid pvid vlan 10 [SW-GigabitEthernet1/0/20] port hybrid untagged vlan 10 # Hybrid实现类似 Trunk 口效果PVID10VLAN10 无标签、20/30 带标签等同于 trunk pvid vlan 10 [SW-GigabitEthernet1/0/30] port link-type hybrid [SW-GigabitEthernet1/0/30] port hybrid pvid vlan 10 [SW-GigabitEthernet1/0/30] port hybrid untagged vlan 10 [SW-GigabitEthernet1/0/30] port hybrid tagged vlan 20 30Trunk 做不到多untagged这是 Hybrid 最大优势。三、接口配置3.1 端口基础操作# 进入千兆端口 [SW] interface GigabitEthernet 1/0/1 # 进入VLAN接口 [SW] interface Vlan-interface 103.2 接口配置IP地址# VLAN接口配置静态IP地址 [SW] interface Vlan-interface 10 [SW-Vlan-interface10] ip address 192.168.1.1 24 # VLAN接口配置DHCP [SW] interface Vlan-interface 20 [SW-Vlan-interface20] ip address dhcp-alloc [SW-Vlan-interface20] dhcp client identifier ascii 882a5e4b0226-VLAN0001 # 物理接口配置IP地址 [SW] interface GigabitEthernet 1/0/1 [SW-GigabitEthernet1/0/1] port link-mode route [SW-GigabitEthernet1/0/1] ip address 192.168.10.1 243.3 端口速率/双工模式# 速率1000Mbps默认是 auto [SW-GigabitEthernet1/0/1] speed 1000 # 全双工模式 [SW-GigabitEthernet1/0/1] duplex full # 设置带宽为100000kbit/s [SW-GigabitEthernet1/0/1] bandwidth 100000 #3.4 传输介质# 灵活换光纤 / 网线 [H3C-GigabitEthernet1/0/49] combo enable auto # 强制光口 [H3C-GigabitEthernet1/0/49] combo enable fiber # 强制电口 [H3C-GigabitEthernet1/0/49] combo enable copper3.5 端口模式# 设置端口模式为桥接 [SW-GigabitEthernet1/0/1] port link-mode bridge # 设置端口为路由模式 [SW-GigabitEthernet1/0/2] port link-mode route3.6 端口恢复默认设置[H3C-GigabitEthernet1/0/1] default四、DHCP配置4.1 全局开启DHCP[SW] dhcp enable # 模式 1server 接口扩展地址池 dhcp server ip-pool vlan10 network 192.168.10.0 mask 255.255.255.0 gateway-list 192.168.10.1 dns-list 223.5.5.5 # 地址池内排除IP地址 forbidden-ip 192.168.10.1 192.168.10.10 #V7版本以上支持ip范围的配置它是依赖Network存在的单独配置不生效 address range 192.168.10.1 192.168.10.240 interface Vlan-interface 10 ip address 192.168.10.1 24 # 开启接口本地DHCP地址池模式 dhcp select server dhcp server apply ip-pool vlan10 # 全局视图下排除IP地址 [SW]dhcp server forbidden-ip 192.168.10.250 192.168.10.253 # 静态绑定 [SW-dhcp-pool-vlan10]static-bind ip-address 192.168.10.6 hardware-address 8bf1-3c54-07324.2 relay DHCP 中继地址池在远端服务器interface Vlan-interface 10 ip address 192.168.10.1 24 # 启用DHCP中继 dhcp select relay # 指定远端DHCP服务器IP可多条 dhcp relay server-address 192.168.1.100 # 可选option82接入认证 dhcp relay information enable不同于华为H3C不支持dhcp select global和dhcp select interface4.3 DHCP相关查询# 查看所有DHCP地址池详情 [SW] display dhcp server pool # 查看DHCP地址池的空闲地址信息 [SW] display dhcp server free-ip # 查看已使用的IP [SW] display dhcp server ip-in-use # 查看冲突的IP地址 [SW] display dhcp server conflict五、MAC地址配置5.1 静态MAC绑定端口MACVLAN[SW] mac-address static 0321-fe45-d687 interface GigabitEthernet 2/0/1 vlan 105.2 基于MAC地址划分VLAN# 全局绑定MAC对应VLAN [SW] mac-vlan mac-address 3C4D-08C1-A249 vlan 10 # 接入端口配置hybrid并开启mac-vlan [SW] interface range GigabitEthernet 1/0/5 to GigabitEthernet 1/0/10 [H3C-if-range] port link-type hybrid [H3C-if-range] port hybrid untagged vlan 10 [H3C-if-range] mac-vlan enablemav-vlan 限制端口只能配置为 hybrid 模式access/trunk 不支持 mac-vlan5.3 查看MAC地址表[SW] display mac-address # 查看mac-vlan接口 [SW] display mac-vlan interface # 查看端口下ARP映射表 [SW ]display arp interface GigabitEthernet 1/0/1六、端口汇聚6.1 桥接端口汇聚# interface Bridge-Aggregation1 port link-type trunk undo port trunk permit vlan 1 port trunk pvid vlan 100 port trunk permit vlan 10 100 link-aggregation mode dynamic # interface Ten-GigabitEthernet1/0/1 port link-mode bridge port link-type trunk undo port trunk permit vlan 1 port trunk permit vlan 10 100 port link-aggregation group 1 # interface Ten-GigabitEthernet2/0/1 port link-mode bridge port link-type trunk undo port trunk permit vlan 1 port trunk permit vlan 10 100 port link-aggregation group 1 #6.2 路由端口汇聚# interface Route-Aggregation2 ip address 10.100.16.1 255.255.255.0 # interface Ten-GigabitEthernet1/0/2 port link-mode route port link-aggregation group 2 # interface Ten-GigabitEthernet2/0/2 port link-mode route port link-aggregation group 2 #七、端口安全# 开启端口安全 [SW-GigabitEthernet1/0/1] port-security # 绑定端口MAC地址 [SW-GigabitEthernet1/0/1]port-security mac-address security 9C5B-20C1-3AD6 # 限制端口MAC数量 [SW-GigabitEthernet1/0/1] port-security max-mac-count 1 # 非法入侵临时关闭端口 [SW-GigabitEthernet1/0/1] port-security intrusion-mode disableport-temporarily # 开启端口隔离隔离组内端口二层互相不通 [SW] interface range GigabitEthernet 1/0/1 to GigabitEthernet 1/0/5 [SW-if-range] port-isolate enable group 1八、常用查看命令# 查看设备信息 [SW] display device # 查看设备生产信息 [SW] display device manuinfo # 查看CPU使用率 [SW] display cpu-usage summary # 查看内存使用情况 [SW] display memory summary # 查看路由表 [SW] display ip routing-table # 查看所有接口IP地址 [SW] display ip interface brief # 查看VLAN的简要信息 [SW] display vlan brief # 查看接口的简要信息 [SW] display interface g1/0/1 brief九、常用故障排查命令# 查看系统日志 [SW] display logbuffer # 查看光口模块信息 [SW] display transceiver interface GigabitEthernet 1/0/52H3C交换机超实用命令合集运维常备2026版