首页 > Linux考试认证

华为认证ar2831ar1820 br304ipsecvpn经典配置

时间:2009-05-11 07:24:11  作者:  我要投稿
Linux初探欢迎您的投稿,投放方法请点击这里查看,我们会定期赠送精美小礼品给优秀的投稿作者。海纳百川 取则行远!LinuxGoo欢迎您的到来。
中心:ar2831 分支:ar1820 br304需求:中心的内网地址192.168.0.0/24分支的内网地址192.168.1.0~192.168.6.0/24要求内网互通 [Ar2831]dis cur#sysname Ar2831#FTP ......
中心: ar2831
分支: ar1820 br304
需求: 中心的内网地址192.168.0.0/24
分支的内网地址192.168.1.0~192.168.6.0/24
要求内网互通
[Ar2831]dis cur
#
sysname Ar2831
#
FTP server enable
#
l2tp domain suffix-separator @
#
ike local-name center
#
radius scheme system
#
domain system
#
local-user huawei
password cipher (3F7#N"9*%GQ=^Q`MAF4<<"TX$_S#6.NM(0=0\)*5WWQ=^Q`MAF4<<"TX$_S#6.N
service-type telnet
level 3
#
ike proposal 1
authentication-algorithm md5
#
ike peer fen1
exchange-mode aggressive
pre-shared-key lzlj
id-type name
remote-name fen1
remote-address 222.x.200.x(有公网地址的分中心)
nat traversal
#
ike peer fen2
exchange-mode aggressive
pre-shared-key abcd
id-type name
remote-name fen2
nat traversal
#
ike peer fen3
exchange-mode aggressive
pre-shared-keyabcd
id-type name
remote-name fen3
nat traversal
#
ike peer fen4
exchange-mode aggressive
pre-shared-key abcd
id-type name
remote-name fen4
nat traversal
#
ike peer fen5
exchange-mode aggressive
pre-shared-key abcd
id-type name
remote-name fen5
nat traversal
#
ipsec proposal 1234
#
ipsec policy-template temp_fen 1
ike-peer fen1
proposal 1234
#
ipsec policy-template temp_fen 2
ike-peer fen2
proposal 1234
#
ipsec policy-template temp_fen 3
ike-peer fen3
proposal 1234
#
ipsec policy-template temp_fen 4
ike-peer fen4
proposal 1234
#
ipsec policy-template temp_fen 5
ike-peer fen5
proposal 1234
#
ipsec policy all_peer 1 isakmp template temp_fen
#
interface Aux0
async mode flow
#
interface Ethernet0/0
ip address 218.x.135.x 255.255.255.248
nat outbound 3001
ipsec policy all_peer
#
interface Ethernet0/1
ip address 192.168.0.1 255.255.255.0
#
interface NULL0
#
acl number 3001
rule 0 deny ip source 192.168.0.0 0.0.0.255 destination 192.168.0 0.0.255.255
rule 1 permit ip source 192.168.0.0 0.0..255
rule 2 deny ip
#
ip route-static 0.0.0.0 0.0.0.0 218.x.135.1 preference 60
#
user-interface con 0
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
user privilege level 3
#
return
[Ar2831]
[fen3]dis cur
#
sysname fen3
#
local-user test password simple test
local-user test service-type ppp
如果您需转载 华为认证ar2831ar1820 br304ipsecvpn经典配置,请注明来自LinuxGoo.com,其版权归原作者所有。请广大网友留言时遵纪守法,使用文明用语。如果您在应用中有什么问题,请在下面留言,我们会尽快解答。
来顶一下
近回首页
返回首页
发表评论 共有条评论
用户名: 密码:
验证码: 匿名发表
相关文章
栏目热门