IRouter_奥联科技STAR16Firewall_IPSec_ConfigGuides

WLAN-PPPoE
http://www.m2mlib.com/uploads/article/20171107/232463534b3166515eb749adf24b855c.png
http://www.m2mlib.com/uploads/article/20171107/26cb3b9f17cfa4d38d4439593b8c8372.png
http://www.m2mlib.com/uploads/article/20171107/41c77e2458f9f1d08246bd9f717d8b62.png
LAN
http://www.m2mlib.com/uploads/article/20171107/8912bd2ac2190032759fd83a12319ca4.png
DHCP
http://www.m2mlib.com/uploads/article/20171107/e53a547f6c7e27d9b142e57acf0abc82.png
DNS
http://www.m2mlib.com/uploads/article/20171107/86b878954d1e25812ac85d517589c054.png
DDNS
http://www.m2mlib.com/uploads/article/20171107/b28198c879a2bd34f694f8a4ac4f83d4.png
IPSec
http://www.m2mlib.com/uploads/article/20171107/ae7afaaf3eef824881124dd4a57db99e.png
Configure IPSec the first step: 专网特性-专网隧道属性设置 数据加密算法:3DES/168 传输认证算法:MD5-96
http://www.m2mlib.com/uploads/article/20171107/482a86de1ac1b3ac6a06fb1989d373f4.png
Configure IPSec the second step: 手工隧道配置-隧道基本特征: 本地网络模式:有线固定IP线路 (该配置为ADSL有线网络,可获得动态公务IP,为便于3G路由器可以连接至该防火墙,所以在该防火墙上配置了DDNS服务,在此处填写“域名”即可。) 对端网络模式:非固定IP 自检测设置:192.168.0.1 (LAN接口IP地址) 启动状态:服务器 隧道名称:(自定义本地隧道标识) 第一阶段模式:主模式  (该设备生产厂给的文档提出的要求是:如果对端使用动态IP地址则要使用野蛮模式,起初按照野蛮模式+ User FQDN配置,该防火墙日志提示“无法验证对端ID”) 认证方式:预共享密钥 ISSKMP SA 密钥周期: 4 (小时)
http://www.m2mlib.com/uploads/article/20171107/ff346c5b8d854dbcf5b1634ba98e7e5d.png
ID:(全部为空) 保护套件: 数据加密算法:3DES/168 传输认证算法:MD5-96 端子网: 本地子网:192.168.0.0/255.255.255.0 对端子网:192.168.20.0/255.255.255.0 数据封装协议:ESP
http://www.m2mlib.com/uploads/article/20171107/c3174d7e5964199fda8880e835a3bfe5.png
http://www.m2mlib.com/uploads/article/20171107/1a485e2f4f8f94531b2b9d4c09de54de.png
IRouter IPSec config:
http://www.m2mlib.com/uploads/article/20171107/0cfca2f7e2733c2cd2c56181886ba8d8.png
IKE生命周期:14400秒(为对应防火墙ISSKMP SA 密钥周期:4小时)
http://www.m2mlib.com/uploads/article/20171107/da7d4fb1d853c269486b5b09465d2290.png
IPSec Status:
http://www.m2mlib.com/uploads/article/20171107/17544b4e090416b98db98480959a88b8.png
http://www.m2mlib.com/uploads/article/20171107/680f35ff782c01fcd2842b698deccd3f.png
状态标注:  表示连接正常  表示连接异常或处于监听状态  表示未启用 
http://www.m2mlib.com/uploads/article/20171107/2c9130ee5c32f1f5aa30105206798074.png
 

0 个评论

要回复文章请先登录注册