Здравствуйте, подскажите пожалуйста, как мне сделать доступным управление коммутатором только через vlan 99?
SNR-S2995G-12FX(config)#show running-config
!!
switch convert mode stand-alone
!!
!
service password-encryption
!
hostname SNR-S2995G-12FX
sysLocation Building 57/2,Predelnaya st, Ekaterinburg, Russia
sysContact support@nag.ru
!
authentication logging enable
!
username ?????? privilege 15 password 7 ??????????????????????
username ??????? privilege 15 password 7 ??????????????????????
!
authentication line console login local
!
!
!
!
!
ssh-server enable
!
info-center source debug level 8 prefix on channel 0
info-center source debug level 8 prefix on channel 1
no telnet-server enable
!
service dhcp
!
ip dhcp pool 5
network-address 192.168.5.0 255.255.255.0
default-router 192.168.5.1
dns-server 8.8.8.8
!
ip dhcp pool 6
network-address 192.168.6.0 255.255.255.0
default-router 192.168.6.1
dns-server 8.8.8.8
!
!
!
!
!
!
Interface Ethernet0
!
!
!
vlan 1;5-6;254
!
vlan 99
name menegment
!
ip access-list extended ACL_users
deny tcp any-source any-destination d-port 22
deny tcp any-source any-destination d-port 80
exit
!
Interface Ethernet1/0/1
switchport mode trunk
switchport trunk allowed vlan 5-6
!
Interface Ethernet1/0/2
!
Interface Ethernet1/0/3
switchport access vlan 254
!
Interface Ethernet1/0/4
!
Interface Ethernet1/0/5
!
Interface Ethernet1/0/6
!
Interface Ethernet1/0/7
!
Interface Ethernet1/0/8
!
Interface Ethernet1/0/9
!
Interface Ethernet1/0/10
!
Interface Ethernet1/0/11
!
Interface Ethernet1/0/12
!
Interface Ethernet1/0/13
!
Interface Ethernet1/0/14
!
Interface Ethernet1/0/15
!
Interface Ethernet1/0/16
!
interface Vlan1
ip address 192.168.1.1 255.255.255.0
!
interface Vlan5
ip address 192.168.5.1 255.255.255.0
!
interface Vlan6
ip address 192.168.6.1 255.255.255.0
!
interface Vlan99
ip address 192.168.99.1 255.255.255.0
!
interface Vlan254
ip address 192.168.254.2 255.255.255.252
!
interface Loopback1
ip address 192.168.100.1 255.255.255.255
!
router ospf 1
network 192.168.5.0 0.0.0.255 area 1
network 192.168.6.0 0.0.0.255 area 1
network 192.168.254.0 0.0.0.3 area 1
!
ip route 0.0.0.0/0 192.168.254.1
!
!
no login
!
captive-portal
!
end