首页 科技问答 dirkandawen,请教这ipsec命令写得正确么

dirkandawen,请教这ipsec命令写得正确么

科技问答 248
1676173885,

下面是F1

 

1.

[R1]acl  num 3

[R1-acl-adv-3

 

2.

 [R1]ike proposal  1

[R1-ike-proposal-1

[R1-ike-proposal-1

[R1-ike-proposal-1

[R1-ike-proposal-1

[R1-ike-proposal-1

[R1-ike-proposal-1

 

3.

[R1]ike peer  R3                         //msr26

[R1-ike-peer-r3]exchange-mode main        

[R1-ike-peer-r3]pre-shared-key 123456       

[R1-ike-peer-r3]local-address 18

[R1-ike-peer-r3]remote-address 218.1

[R1-ike-peer-r3]remote-name R3           

[R1-ike-peer-r3]quit

[R1]ike local-name  R1                 

[R1]quit

 

 

4.

[R1]ipsec  proposal r1                               

[R1-ipsec-proposal-r1]transform  esp                  

[R1-ipsec-proposal-r1]esp encryption-algorithm  3des     

[R1-ipsec-proposal-r1]esp authentication-algorithm  md5   

[R1-ipsec-proposal-r1]encapsulation-mode tunnel          

[R1-ipsec-proposal-r1]

 

5.

[R1]ipsec  policy 1 1

[R1-ipsec-policy-isakmp-1-1

[R1-ipsec-policy-isakmp-1-1

[R1-ipsec-policy-isakmp-1-1

[R1-ipsec-policy-isakmp-1-1

[R1-ipsec-policy-isakmp-1-1

[R1-ipsec-policy-isakmp-1-1

 

6.

int g

ipsec  policy 1  

quit

 

7. 配置完成后是不是要配置静态路由,下面写的正确么

ip route-static 192.168.

组网及组网描述:


2

Acl的反掩码写成

好的,谢谢,静态路由有没要修改的呢

dirkandawen 发表时间:2

静态路由写错了吧?目的是对端的私网IP地址段,从wan口送出去

风干工程师肉干要不要 发表时间:2

,请教这ipsec命令写得正确么