题目要求:防火墙
IPSec VPN
实现
一、配置说明
#
sysname B
#
firewall packet-filter enable
firewall packet-filter default permit
#
insulate
#
firewall statistic system enable
#
radius scheme system
server-type extended
#
domain system
#
local-user admin
password cipher .]@USE=B,53Q=^Q`MAF4<1!!
service-type telnet terminal
level 3
service-type ftp
#
ike peer xyz //ike peer配置
pre-shared-key 123456
remote-address 10.0.0.1
#
ipsec proposal abc //设置安全协议名称为abc
#
ipsec policy policy1 10 isakmp //设置安全协议为手工模式
security acl 3000 //
ike-peer xyz
proposal abc
#
ipsec policy policy