北京映翰通IR700与SSG5防火墙建立VPN模板

防火墙配置 登录用户名和密码:netscreen/netscreen
http://www.m2mlib.com/uploads/article/20171107/3e736839bb2c7dcdbb90459504ca72eb.png
设置WAN接口
http://www.m2mlib.com/uploads/article/20171107/9af5f1a812fe5a9cdc30b8bcf23ee028.png
编辑“ethernet0/0”接口
http://www.m2mlib.com/uploads/article/20171107/af01a511f452ba5e8dd1a6985eead15b.png
设置LAN接口 编辑“bgroup0”
http://www.m2mlib.com/uploads/article/20171107/b2ff8d89ebdc831b21b9f9b323185266.png
http://www.m2mlib.com/uploads/article/20171107/90ed89593f8725d0b821f0fab4e5ed78.png
设置DNS
http://www.m2mlib.com/uploads/article/20171107/fc59d1dd9f4bd08abd2c2af6ef431673.png
设置DHCP
http://www.m2mlib.com/uploads/article/20171107/bf7f19bfe021f08c837c25dc9f45bdae.png
点击编辑“broup0”
http://www.m2mlib.com/uploads/article/20171107/12f21d1f479d3915feb77f3595f7fd55.png
设置路由
http://www.m2mlib.com/uploads/article/20171107/2093a5b2e87dfae2e9314696a1b320dc.png
http://www.m2mlib.com/uploads/article/20171107/22debb6a0414b498cd5b29774e928b33.png
IPSEC VPN  1建立tunuls Network-interface-list
http://www.m2mlib.com/uploads/article/20171107/c0a4d98cf2033125371a1617dae15a32.png
点击NEW
http://www.m2mlib.com/uploads/article/20171107/aeb7c447f0ea2f9ea7c9cf80a7761aae.png
2 IPSec配置 2.1建立IPSecvpn第一阶段 VPNsAutokeyAdvancedGateway
http://www.m2mlib.com/uploads/article/20171107/45d4721caf2165cd48abbb06cdcb3398.png
http://www.m2mlib.com/uploads/article/20171107/bc1cb744677fa3a9b5ce2c4bafbea927.png
http://www.m2mlib.com/uploads/article/20171107/60b0b77f3bf78e510b0f6d7e087a1233.png
2.2建立IPSecvpn第二阶段 vpnsautokeyike
http://www.m2mlib.com/uploads/article/20171107/3f3eef8aecf31bea8a2a1e5fdd0d229a.png
http://www.m2mlib.com/uploads/article/20171107/01fec3a06fe134da443ca5098918a94c.png
http://www.m2mlib.com/uploads/article/20171107/19d6a3b3d64d29aa7d9c32a78696feb7.png
3 建立安全策略
http://www.m2mlib.com/uploads/article/20171107/c236a309fede5b6b3006423c4115d5d1.png
3.1TRUST---UNTRUST 选择fromTRUSTtoUNTRUST 如果对于新的地址段,则可以选择“NEW Address”方式添加  源地址填写防火墙内网地址,目的地址填写无线路由器内网地址
http://www.m2mlib.com/uploads/article/20171107/a1538c57a4b9d96cea2e1b4b00586b8c.png
3.2UNTRUST---TRUST
http://www.m2mlib.com/uploads/article/20171107/66dbc583f36e31aa475eae27d67fc9e0.png
http://www.m2mlib.com/uploads/article/20171107/c3103fd30ff0f013883332d050c06084.png
4建立路由 Network=routering-destination
http://www.m2mlib.com/uploads/article/20171107/7061c5fd18a7ae1de7b9560efde4c1f6.png
http://www.m2mlib.com/uploads/article/20171107/750d78f3854eac69d6316cfc03de9ca6.png
北京映翰通无线路由器配置 登录  IP地址是192.168.2.1   用户名:adm  密码123456
http://www.m2mlib.com/uploads/article/20171107/e79767db097db60cbebd64e98d791ae6.png
1 无线路由器LAN基本配置参数
http://www.m2mlib.com/uploads/article/20171107/d43b2d0423cd2a91e318c93ecd46f8cf.png
2 无线路由器VPN配置参数
http://www.m2mlib.com/uploads/article/20171107/b4b7cc5bd4f06e403cda8898fe050514.png
http://www.m2mlib.com/uploads/article/20171107/1fb7eb4398877bc03dd4ac1e8da12240.png
本地标识:inhand@inhand.com 对端标识:zhongxin@inhand.com 共享密钥是123456 3 无线路由器建立IPSec vpn的成功标识
http://www.m2mlib.com/uploads/article/20171107/12d93bfa3868fc9ab065696469209f9e.png
4 无线路由器建立VPN成功之后,能够ping同防火墙LAN地址
http://www.m2mlib.com/uploads/article/20171107/0a725e5931444bc68daced0272b21df3.png
http://www.m2mlib.com/uploads/article/20171107/2b234e9e2886274e11d18fcde1ebda3d.png
 

0 个评论

要回复文章请先登录注册