Можете не говорить, что коммутаторы старые, я и так сам все знаю. =)
Проблема следующая, плохо работают HTTP-закачки и все что с ними связано.
Например, даже не загрузить инсталлер Оперы с сайта, приезжает 150-300кб и обрыв по таймауту.
То же самое в любых других случаях, связанных с HTTP. При всем при этом - вебсерфинг работает нормально, сайты открываются, видимых отклонений не заметил. Проблема давняя, наверно вечная, только сейчас до нее дошли руки =)
Схема аппаратного включения следующая:
Если на словах, сервер подключен к 3226S, сам 3226S соединен с 3326S оптическими модулями 132F (100Base-FX), далее к 3326 подключен медиаконвертер DMC-920R, который соединен непосредственно с вышестоящим оператором связи.
Если в картинках:
FreeBSD Server ----------- DES-3226S+DES-132F ----------- DES-132F+DES-3326S ----------- DMC-920R ----------DMC-920T ---------- Internet
---------------Здесь проблема есть--------------------------------------------------здесь проблемы нет--------------------------------------------------
вот конфиг 3326:
#-------------------------------------------------------------------
# DES-3326S Configuration
#
# Firmware: Build 4.03-B13
# Copyright(C) 2000-2006 D-Link Corporation. All rights reserved.
#-------------------------------------------------------------------
# BASIC
config serial_port baud_rate 9600 auto_logout 10_minutes
enable telnet 23
enable web 80
# STORM
config traffic control 1-5 broadcast disable multicast disable dlf disable threshold 128
# SYSLOG
disable syslog
# QOS
config scheduling 0 max_packet 0 max_latency 0
config scheduling 1 max_packet 0 max_latency 0
config scheduling 2 max_packet 0 max_latency 0
config scheduling 3 max_packet 0 max_latency 0
config 802.1p user_priority 0 1
config 802.1p user_priority 1 0
config 802.1p user_priority 2 0
config 802.1p user_priority 3 1
config 802.1p user_priority 4 2
config 802.1p user_priority 5 2
config 802.1p user_priority 6 3
config 802.1p user_priority 7 3
config 802.1p default_priority 1-26 0
config bandwidth_control 1 rx_rate no_limit tx_rate no_limit
config bandwidth_control 2 rx_rate no_limit tx_rate no_limit
config bandwidth_control 3 rx_rate no_limit tx_rate no_limit
config bandwidth_control 4-26 rx_rate no_limit tx_rate no_limit
# MIRROR
disable mirror
# TRAF-SEGMENTATION
config traffic_segmentation 1-26 forward_list 1-26
# STACK
# PORT
config ports 1-24 speed auto flow_control disable learning enable state enable
config ports 25 speed 100_full flow_control disable learning enable state enable
config ports 26 speed 100_full flow_control disable learning enable state enable
# PORT_LOCK
config port_security ports 1-26 admin_state disable max_learning_addr 1 lock_address_mode DeleteOnReset
# 8021X
disable 802.1x
config 802.1x auth_protocol radius_eap
config 802.1x capability ports 1-19,21-26 none
config 802.1x capability ports 20 authenticator
# SNMPv3
delete snmp community public
delete snmp community private
delete snmp user initial
delete snmp group initial
delete snmp view restricted all
delete snmp view CommunityView all
config snmp engineID 800000ab0300055d1e18e0
create snmp view restricted 1.3.6.1.2.1.1 view_type included
create snmp view restricted 1.3.6.1.2.1.11 view_type included
create snmp view restricted 1.3.6.1.6.3.10.2.1 view_type included
create snmp view restricted 1.3.6.1.6.3.11.2.1 view_type included
create snmp view restricted 1.3.6.1.6.3.15.1.1 view_type included
create snmp view CommunityView 1 view_type included
create snmp view CommunityView 1.3.6.1.6.3 view_type excluded
create snmp view CommunityView 1.3.6.1.6.3.1 view_type included
create snmp group initial v3 noauth_nopriv read_view restricted notify_view restricted
create snmp group ReadGroup v1 read_view CommunityView notify_view CommunityView
create snmp group ReadGroup v2c read_view CommunityView notify_view CommunityView
create snmp group WriteGroup v1 read_view CommunityView write_view CommunityView notify_view CommunityView
create snmp group WriteGroup v2c read_view CommunityView write_view CommunityView notify_view CommunityView
create snmp community private view CommunityView read_write
create snmp community public view CommunityView read_only
create snmp user initial initial
# MANAGEMENT
create trusted_host 192.168.0.1
create trusted_host 192.168.0.16
create trusted_host 192.168.0.222
enable snmp traps
enable snmp authenticate traps
disable rmon
# VLAN
config vlan default delete 1-26
config vlan default add tagged 1,9,11,13,15-16,19,26
config vlan default add untagged 2,7,10,12,17
config vlan default advertisement enable
create vlan cisco tag 18
config vlan cisco add tagged 26
config vlan cisco add untagged 4
config vlan cisco advertisement enable
create vlan CTK tag 100
config vlan CTK add tagged 26
config vlan CTK add untagged 24
config vlan CTK advertisement enable
create vlan pppoe tag 220
config vlan pppoe add tagged 1,9,11,13-16,21,26
config vlan pppoe advertisement enable
disable gvrp
config gvrp 1-3,5-23,25-26 state disable ingress_checking enable acceptable_frame admit_all pvid 1
config gvrp 4 state disable ingress_checking enable acceptable_frame admit_all pvid 18
config gvrp 24 state disable ingress_checking enable acceptable_frame admit_all pvid 100
# FDB
config fdb aging_time 300
# MAC_ADDRESS_TABLE_NOTIFICATION
config mac_notification interval 1 historysize 1
disable mac_notification
config mac_notification ports 1-26 disable
# STP
config stp maxage 20 hellotime 2 forwarddelay 15 priority 32768 version stp txholdcount 3 fbpdu enable
disable stp
config stp ports 1 cost auto priority 128 edge false p2p true state enable
config stp ports 2 cost auto priority 128 edge false p2p auto state enable
config stp ports 3 cost auto priority 128 edge false p2p auto state enable
config stp ports 4 cost auto priority 128 edge false p2p auto state enable
config stp ports 5 cost auto priority 128 edge false p2p auto state enable
config stp ports 6 cost auto priority 128 edge false p2p auto state enable
config stp ports 7 cost auto priority 128 edge false p2p auto state enable
config stp ports 8 cost auto priority 128 edge false p2p auto state enable
config stp ports 9 cost auto priority 128 edge false p2p auto state enable
config stp ports 10-26 cost auto priority 128 edge false p2p auto state enable
# ACL
disable cpu_interface_filtering
# SNTP
disable sntp
config time_zone operator - hour 6 min 0
config sntp primary 0.0.0.0 secondary 0.0.0.0 poll-interval 720
config dst disable
# LACP
config link_aggregation algorithm mac_source
config lacp_port 1-26 mode passive
# ARP
config arp_aging time 20
# IP
config ipif System vlan default ipaddress 192.168.0.108/24 state enable
# SNOOP
config igmp_snooping default host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier default query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier default last_member_query_interval 1 state disable
config igmp_snooping cisco host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier cisco query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier cisco last_member_query_interval 1 state disable
config igmp_snooping CTK host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier CTK query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier CTK last_member_query_interval 1 state disable
config igmp_snooping pppoe host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier pppoe query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier pppoe last_member_query_interval 1 state disable
# ROUTE
# IGMP
config igmp ipif System version 2 query_interval 125 max_response_time 10 robustness_variable 2 state disable
config igmp ipif System last_member_query_interval 1
# PIM
disable pim
config pim ipif System hello 30 jp_interval 60 state disable
# DVMRP
disable dvmrp
config dvmrp ipif System metric 1 probe 10 neighbor_timeout 35 state disable
# RIP
config rip ipif System authentication disable tx_mode disable rx_mode disable state disable
disable rip
# MD5
# OSPF
config ospf ipif System area 0.0.0.0 priority 1 hello_interval 10 dead_interval 40 metric 1 authentication none state disable
config ospf router_id 213.87.24.65
disable ospf
# DNSR
disable dnsr
config dnsr primary nameserver 0.0.0.0
config dnsr secondary nameserver 0.0.0.0
disable dnsr cache
disable dnsr static
# BOOTP
disable bootp_relay
config bootp_relay hops 4 time 0
#-------------------------------------------------------------------
# End of configuration file for DES-3326S
#-------------------------------------------------------------------
вот конфиг 3226S
#-------------------------------------------------------------------
# DES-3226S Configuration
#
# Firmware: Build 4.02-B47
# Copyright(C) 2000-2004 D-Link Corporation. All rights reserved.
#-------------------------------------------------------------------
# BASIC
config serial_port baud_rate 9600 auto_logout 10_minutes
enable telnet 23
enable web 80
# STORM
config traffic control 1-5 broadcast disable multicast disable dlf disable threshold 128
# SYSLOG
disable syslog
# QOS
config scheduling 0 max_packet 0 max_latency 0
config scheduling 1 max_packet 0 max_latency 0
config scheduling 2 max_packet 0 max_latency 0
config scheduling 3 max_packet 0 max_latency 0
config 802.1p user_priority 0 1
config 802.1p user_priority 1 0
config 802.1p user_priority 2 0
config 802.1p user_priority 3 1
config 802.1p user_priority 4 2
config 802.1p user_priority 5 2
config 802.1p user_priority 6 3
config 802.1p user_priority 7 3
config 802.1p default_priority 1-26 0
config bandwidth_control 1 rx_rate no_limit tx_rate no_limit
config bandwidth_control 2 rx_rate no_limit tx_rate no_limit
config bandwidth_control 3 rx_rate no_limit tx_rate no_limit
config bandwidth_control 4-26 rx_rate no_limit tx_rate no_limit
# MIRROR
disable mirror
config mirror port 1 add source ports rx
config mirror port 1 add source ports tx
# TRAF-SEGMENTATION
config traffic_segmentation 1-26 forward_list 1-26
# STACK
# PORT
config ports 1-24 speed auto flow_control disable learning enable state enable
config ports 25 speed 100_full flow_control disable learning enable state enable
config ports 26 speed 100_full flow_control disable learning enable state enable
# PORT_LOCK
config port_security ports 1-26 admin_state disable max_learning_addr 1 lock_address_mode DeleteOnReset
# 8021X
disable 802.1x
config 802.1x auth_protocol radius_eap
config 802.1x capability ports 1-26 none
# SNMPv3
delete snmp community public
delete snmp community private
delete snmp user initial
delete snmp group initial
delete snmp view restricted all
delete snmp view CommunityView all
config snmp engineID 800000ab03000d88b59d14
create snmp view restricted 1.3.6.1.2.1.1 view_type included
create snmp view restricted 1.3.6.1.2.1.11 view_type included
create snmp view restricted 1.3.6.1.6.3.10.2.1 view_type included
create snmp view restricted 1.3.6.1.6.3.11.2.1 view_type included
create snmp view restricted 1.3.6.1.6.3.15.1.1 view_type included
create snmp view CommunityView 1 view_type included
create snmp view CommunityView 1.3.6.1.6.3 view_type excluded
create snmp view CommunityView 1.3.6.1.6.3.1 view_type included
create snmp group initial v3 noauth_nopriv read_view restricted notify_view restricted
create snmp group ReadGroup v1 read_view CommunityView notify_view CommunityView
create snmp group ReadGroup v2c read_view CommunityView notify_view CommunityView
create snmp group WriteGroup v1 read_view CommunityView write_view CommunityView notify_view CommunityView
create snmp group WriteGroup v2c read_view CommunityView write_view CommunityView notify_view CommunityView
create snmp community private view CommunityView read_write
create snmp community public view CommunityView read_only
create snmp user initial initial
# MANAGEMENT
create trusted_host 192.168.0.222
create trusted_host 192.168.0.1
enable snmp traps
enable snmp authenticate traps
disable rmon
# VLAN
disable asymmetric_vlan
config vlan default delete 1-26
config vlan default add tagged 17,26
config vlan default add untagged 8,20
config vlan default advertisement enable
create vlan cisco tag 18
config vlan cisco add tagged 17,26
config vlan cisco advertisement enable
create vlan CTK tag 100
config vlan CTK add tagged 17,26
config vlan CTK advertisement enable
create vlan www tag 201
config vlan www add tagged 17
config vlan www add untagged 4
config vlan www advertisement enable
create vlan pppoe tag 220
config vlan pppoe add tagged 18,26
config vlan pppoe add untagged 15,19,21-24
config vlan pppoe advertisement enable
create vlan DMZ tag 221
config vlan DMZ add tagged 17
config vlan DMZ add untagged 6
config vlan DMZ advertisement enable
disable gvrp
config gvrp 1-3,5,7-14,16-18,20,25-26 state disable ingress_checking enable acceptable_frame admit_all pvid 1
config gvrp 4 state disable ingress_checking enable acceptable_frame admit_all pvid 201
config gvrp 6 state disable ingress_checking enable acceptable_frame admit_all pvid 221
config gvrp 15 state disable ingress_checking enable acceptable_frame admit_all pvid 220
config gvrp 19 state disable ingress_checking enable acceptable_frame admit_all pvid 220
config gvrp 21 state disable ingress_checking enable acceptable_frame admit_all pvid 220
config gvrp 22 state disable ingress_checking enable acceptable_frame admit_all pvid 220
config gvrp 23 state disable ingress_checking enable acceptable_frame admit_all pvid 220
config gvrp 24 state disable ingress_checking enable acceptable_frame admit_all pvid 220
# FDB
config fdb aging_time 300
config multicast port_filtering_mode 1-26 forward_unregistered_groups
# MAC_ADDRESS_TABLE_NOTIFICATION
config mac_notification interval 1 historysize 1
disable mac_notification
config mac_notification ports 1-26 disable
# STP
config stp maxage 20 hellotime 2 forwarddelay 15 priority 32768 version rstp txholdcount 3 fbpdu enable
disable stp
config stp ports 1-26 cost auto priority 128 edge false p2p auto state enable
# ACL
# SNTP
disable sntp
config time_zone operator + hour 3 min 0
config sntp primary 0.0.0.0 secondary 0.0.0.0 poll-interval 720
config dst disable
# ROUTE
create iproute default 192.168.0.1 1
# LACP
config link_aggregation algorithm mac_source
config lacp_port 1-26 mode passive
# ARP
config arp_aging time 20
# IP
config ipif System vlan default ipaddress 192.168.0.107/24 state enable
# SNOOP
disable igmp_snooping
config igmp_snooping default host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier default query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier default last_member_query_interval 1 state disable
config igmp_snooping cisco host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier cisco query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier cisco last_member_query_interval 1 state disable
config igmp_snooping CTK host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier CTK query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier CTK last_member_query_interval 1 state disable
config igmp_snooping www host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier www query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier www last_member_query_interval 1 state disable
config igmp_snooping pppoe host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier pppoe query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier pppoe last_member_query_interval 1 state disable
config igmp_snooping DMZ host_timeout 260 router_timeout 260 leave_timer 2 state disable
config igmp_snooping querier DMZ query_interval 125 max_response_time 10 robustness_variable 2
config igmp_snooping querier DMZ last_member_query_interval 1 state disable
#-------------------------------------------------------------------
# End of configuration file for DES-3226S
#-------------------------------------------------------------------
Не могу найти причину проблемы с HTTP, прошивки на обоих коммутаторах последние.
З.Ы. интернет в 100 вилане, в нем и проверяю