国产探花免费观看_亚洲丰满少妇自慰呻吟_97日韩有码在线_资源在线日韩欧美_一区二区精品毛片,辰东完美世界有声小说,欢乐颂第一季,yy玄幻小说排行榜完本

首頁 > 學院 > 網絡通信 > 正文

GET VPN with a single Key Server

2019-11-05 00:11:05
字體:
來源:轉載
供稿:網友

GET VPN with a single Key Server

 

 

配置

R1
hostname R1
!
ip cef
!
crypto isakmp policy 1
authentication PRe-share
group 2
crypto isakmp key gdoi address 4.4.4.4
!
crypto gdoi group gdoi
identity address ipv4 4.4.4.4
server address ipv4 4.4.4.4
!
crypto map gdoi 10 gdoi
set group gdoi
!
interface Loopback0
ip address 1.1.1.1 255.255.255.255
!
interface Ethernet1/4
ip address 192.168.14.1 255.255.255.0
duplex full
crypto map gdoi
!
router ospf 100
router-id 1.1.1.1
log-adjacency-changes
redistribute connected subnets
redistribute static subnets
network 192.168.0.0 0.0.255.255 area 0

R2

hostname R2!ip cef!         crypto isakmp policy 1 authentication pre-share group 2  crypto isakmp key gdoi address 4.4.4.4!         crypto gdoi group gdoi identity address ipv4 4.4.4.4 server address ipv4 4.4.4.4!crypto map gdoi 10 gdoi  set group gdoi!interface Loopback0 ip address 2.2.2.2 255.255.255.255!         interface Ethernet1/4 ip address 192.168.24.2 255.255.255.0 duplex full crypto map gdoi!router ospf 100 router-id 2.2.2.2 log-adjacency-changes redistribute connected subnets redistribute static subnets network 192.168.0.0 0.0.255.255 area 0
R3
hostname R3!ip cef!crypto isakmp policy 1 authentication pre-share group 2crypto isakmp key gdoi address 4.4.4.4!crypto gdoi group gdoi identity address ipv4 4.4.4.4 server address ipv4 4.4.4.4!crypto map gdoi 10 gdoi set group gdoi!interface Loopback0 ip address 3.3.3.3 255.255.255.255!interface Ethernet1/4 ip address 192.168.34.3 255.255.255.0 duplex full crypto map gdoi!router ospf 100 router-id 3.3.3.3 log-adjacency-changes redistribute connected subnets redistribute static subnets network 192.168.0.0 0.0.255.255 area 0
R4
hostname R4!ip cef!crypto isakmp policy 1 authentication pre-share group 2crypto isakmp key gdoi address 192.168.14.1crypto isakmp key gdoi address 192.168.24.2crypto isakmp key gdoi address 192.168.34.3!crypto ipsec transform-set gdoi esp-des esp-sha-hmac !crypto ipsec profile gdoi set security-association lifetime seconds 360 set transform-set gdoi !crypto gdoi group gdoi identity address ipv4 4.4.4.4 server local  rekey lifetime seconds 300  rekey retransmit 10 number 2  rekey authentication mypubkey rsa gdoi  rekey transport unicast  sa ipsec 1   profile gdoi   match address ipv4 101   replay counter window-size 64  address ipv4 4.4.4.4!interface Loopback0 ip address 4.4.4.4 255.255.255.255 ipv6 address FC00:4::4/128 ipv6 enable!interface Ethernet1/1 ip address 192.168.14.4 255.255.255.0 duplex full!interface Ethernet1/2 ip address 192.168.24.4 255.255.255.0 duplex full!interface Ethernet1/3 ip address 192.168.34.4 255.255.255.0 duplex full!router ospf 100 router-id 4.4.4.4 log-adjacency-changes redistribute connected subnets redistribute static subnets network 192.168.0.0 0.0.255.255 area 0!         access-list 101 deny   ip 192.168.0.0 0.0.255.255 192.168.0.0 0.0.255.255access-list 101 permit ip host 1.1.1.1 host 2.2.2.2access-list 101 permit ip host 1.1.1.1 host 3.3.3.3access-list 101 permit ip host 2.2.2.2 host 1.1.1.1access-list 101 permit ip host 2.2.2.2 host 3.3.3.3access-list 101 permit ip host 3.3.3.3 host 1.1.1.1access-list 101 permit ip host 3.3.3.3 host 2.2.2.2
進入討論組討論。


測試

R1
R1#sho crypto gdoi
Group Information

    Group Name               : gdoi
    Group Identity           : 4.4.4.4
    Rekeys received          : 7
    IPSec SA Direction       : Both
    ACL Received From KS     : gdoi_group_gdoi_temp_acl
    Active Group Server      : 4.4.4.4
    Group Server list        : 4.4.4.4

 
R4
R4#sho crypto gdoi Group Information Group Name : gdoi Group Identity : 4.4.4.4 Group Members : 3 IPSec SA Direction : Both Active Group Server : Local Group Rekey Lifetime : 300 secs Group Rekey Remaining Lifetime : 95 secs Rekey Retransmit Period : 10 secs Rekey Retransmit Attempts: 2 Group Retransmit Remaining Lifetime : 0 secs IPSec SA Number : 1 IPSec SA Rekey Lifetime: 360 secs Profile Name : gdoi Replay method : Count Based Replay Window Size : 64 SA Rekey Remaining Lifetime : 156 secs ACL Configured : access-list 101 Group Server list : Local
進入討論組討論。


發表評論 共有條評論
用戶名: 密碼:
驗證碼: 匿名發表
主站蜘蛛池模板: 无锡市| 淳安县| 尖扎县| 明溪县| 景东| 寻甸| 大连市| 民丰县| 广宁县| 厦门市| 大连市| 信阳市| 铜鼓县| 博客| 邢台县| 樟树市| 仙桃市| 西吉县| 克东县| 彝良县| 镇康县| 杭州市| 应城市| 都江堰市| 土默特左旗| 太原市| 湘阴县| 阳西县| 阳江市| 安吉县| 逊克县| 满城县| 庆阳市| 开平市| 南充市| 资溪县| 樟树市| 响水县| 光泽县| 来安县| 高碑店市|