1. 程式人生 > >cisco防火牆ipsec配置

cisco防火牆ipsec配置

inerface loopback0
    ip address 1.1.1.1 255.255.255.0
crypto isakmp policy 10
    hash md5
    authentication preshare
crypto isakmp key cisco address 202.100.11.1
crypto ipsec transform-set cisco esp-des-md5-hmac


ip access-list extend VPN

  permit ip host 1.1.1.1 host 192.168.1.1
crypto map cisco 10 ipsec-isakmp

  match address VPN
  set trandform cisco
  set peer 202.100.1.1
interface e0/0
  crypto map cisco