enablesecret5$1$nGGG$pyIANu7.xaKKQXVPqq.Dh1!
!定义本地数据库
usernameciscopassword0cisco!
!启动AAAaaanew-model!
--------------------------------------------------------------------------!Xauth配置部分
aaaauthenticationloginvpn-authenlocalcryptoisakmpxauthtimeout20
cryptomapciscoclientauthenticationlistvpn-authen!
--------------------------------------------------------------------------!组策略配置部分
aaaauthorizationnetworkvpn-authorlocaliplocalpoolvpn-pool10.2.1.1010.2.1.20!
cryptomapciscoclientconfigurationaddressrespondcryptoisakmpclientconfigurationgroupmobilekeyciscodns10.2.1.5domaincisco.compoolvpn-pool!
cryptomapciscoisakmpauthorizationlistvpn-author!
--------------------------------------------------------------------------!建立ISAKMP策略cryptoisakmppolicy10encr3des
authenticationpre-sharegroup2hashsha!
--------------------------------------------------------------------------!设置转换集
cryptoipsectransform-setvpn-setesp-3desesp-sha-hmac!
!用RRI建立动态加密映射
cryptodynamic-mapvpn-dyn10settransform-setvpn-setreverse-route!
--------------------------------------------------------------------------!将组策略、Xauth应用到动态映射
cryptomapcisco10ipsec-isakmpdynamicvpn-dyn!
--------------------------------------------------------------------------interfaceFastEthernet0/0
ipaddress10.2.1.1255.255.255.0duplexautospeedauto!
--------------------------------------------------------------------------!加载map
interfaceSerial0/0
ipaddress17.1.1.2255.255.255.0cryptomapcisco!
--------------------------------------------------------------------------!打开IKEDPD(可选)
cryptoisakmpkeepalive2010
因篇幅问题不能全部显示,请点此查看更多更全内容
Copyright © 2019- igat.cn 版权所有 赣ICP备2024042791号-1
违法及侵权请联系:TEL:199 1889 7713 E-MAIL:2724546146@qq.com
本站由北京市万商天勤律师事务所王兴未律师提供法律服务