cisco防火墙ipsec配置

inerface loopback0
    ip address 1.1.1.1 255.255.255.0
crypto isakmp policy 10
    hash md5
    authentication preshare
crypto isakmp key cisco address 202.100.11.1
crypto ipsec transform-set cisco esp-des-md5-hmac


ip access-list extend VPN

  permit ip host 1.1.1.1 host 192.168.1.1
crypto map cisco 10 ipsec-isakmp
  match address VPN
  set trandform cisco
  set peer 202.100.1.1
interface e0/0
  crypto map cisco

你可能感兴趣的:(cisco防火墙ipsec配置)