September 22, 2023

Basic network configuration of two sets of business systems in an enterprise

At home we have a wireless router to solve problem with Internet. In enterprise, we have an enterprise-level router with more professional performance and configuration methods.

The following shows that there are two types of business systems in an enterprise: a business network and an office network. Both types of networks can be configured to access external network devices.

We first separate two VLANs on LAN, corresponding to business network and office network, respectively.

System topology

Configuration of SW1 aggregation switch:

1-Create VLAN

browse system

[Huawei]SW1 system name

[SW1]Unenable Information Center

[SW1]vlan 10


[SW1]vlan 20


[SW1]vlan 999


2 - Configure VLAN Address

[SW1]int. vlan 10

[SW1-Vlanif10]IP address 24


[SW1-Vlanif10]ext. vlan 20

[SW1-Vlanif20]IP address 24


[SW1-Vlanif10]int vlan 999; Set management address of switch

[SW1-Vlanif999]IP address 24

3 - Add switch port to appropriate VLAN:

[SW1]GigabitEthernet 0/0/1 interface

[SW1-GigabitEthernet0/0/1]Link access port

[SW1-GigabitEthernet0/0/1]default port vlan 10


[SW1]GigabitEthernet interface 0/0/2

[SW1-GigabitEthernet0/0/2]port channel access

[SW1-GigabitEthernet0/0/2]default port vlan 20


[SW1]GigabitEthernet interface 0/0/24

[SW1-GigabitEthernet0/0/2]port channel access

[SW1-GigabitEthernet0/0/2]default port vlan 999



Access R1 configuration

1 - Configure IP address of router interface

browse system

[Huawei]R1 system name

[R1] unenable info center

[R1]GigabitEthernet interface 0/0/0

[R1-GigabitEthernet0/0/0]IP address 24


[R1]GigabitEthernet interface 0/0/1

[R1-GigabitEthernet0/0/1]IP address





But there is no connection with router on SW1, and you need to add a route;

Configure routing on SW1

4 - Set up routing on main switch

[SW1]ip route-static

2 - Set up static routing on router

Configure routing on R1

[R1]ip route-static

[R1]ip route-static

Check again

However, PC2 and PC3 cannot communicate with This is because internal and external networks cannot communicate directly, and NAT address translation is required. The next chapter introduces NAT technology. Welcome, keep paying attention.