Sunday, May 29, 2011

IPsec、site-to-sito VPN 简单实验


IPsec、site-to-sito VPN 简单实验实验要求:PC1和PC2经过安全通道可以正常通讯R1配置:crypto isakmp policy1 创建转换集encr 3des 加密方式hash md5 散列算法authentication pre-share 认证方式group 2 DH组crypto isakmp key cisco address 10.1.1.2创建对等体密钥!crypto ipsec transform-set TEST000 esp-3des esp-md5-hmac创建转换集!crypto map SDM_CMAP_1 1 ipsec-isakmp 创建IPsec地图description Tunnel to10.1.1.2 描述内容set peer 10.1.1.2 指定对端地址set transform-set TEST000调用转换集match address 100调用ACL!interface FastEthernet0/0ip nat outside关联PATip address 10.1.1.1 255.255.255.0duplex autospeed autocrypto map SDM_CMAP_1调用IPsec地图!interface FastEthernet1/0ipnat inside 关联PATip address [...]



Published by
Published by xFruits
Original source : http://www.vpn123.tk/?p=646...

No comments:

Post a Comment