国产探花免费观看_亚洲丰满少妇自慰呻吟_97日韩有码在线_资源在线日韩欧美_一区二区精品毛片,辰东完美世界有声小说,欢乐颂第一季,yy玄幻小说排行榜完本

首頁 > 學院 > 網絡通信 > 正文

GET VPN with a single Key Server

2019-11-05 00:11:05
字體:
來源:轉載
供稿:網友

GET VPN with a single Key Server

 

 

配置

R1
hostname R1
!
ip cef
!
crypto isakmp policy 1
authentication PRe-share
group 2
crypto isakmp key gdoi address 4.4.4.4
!
crypto gdoi group gdoi
identity address ipv4 4.4.4.4
server address ipv4 4.4.4.4
!
crypto map gdoi 10 gdoi
set group gdoi
!
interface Loopback0
ip address 1.1.1.1 255.255.255.255
!
interface Ethernet1/4
ip address 192.168.14.1 255.255.255.0
duplex full
crypto map gdoi
!
router ospf 100
router-id 1.1.1.1
log-adjacency-changes
redistribute connected subnets
redistribute static subnets
network 192.168.0.0 0.0.255.255 area 0

R2

hostname R2!ip cef!         crypto isakmp policy 1 authentication pre-share group 2  crypto isakmp key gdoi address 4.4.4.4!         crypto gdoi group gdoi identity address ipv4 4.4.4.4 server address ipv4 4.4.4.4!crypto map gdoi 10 gdoi  set group gdoi!interface Loopback0 ip address 2.2.2.2 255.255.255.255!         interface Ethernet1/4 ip address 192.168.24.2 255.255.255.0 duplex full crypto map gdoi!router ospf 100 router-id 2.2.2.2 log-adjacency-changes redistribute connected subnets redistribute static subnets network 192.168.0.0 0.0.255.255 area 0
R3
hostname R3!ip cef!crypto isakmp policy 1 authentication pre-share group 2crypto isakmp key gdoi address 4.4.4.4!crypto gdoi group gdoi identity address ipv4 4.4.4.4 server address ipv4 4.4.4.4!crypto map gdoi 10 gdoi set group gdoi!interface Loopback0 ip address 3.3.3.3 255.255.255.255!interface Ethernet1/4 ip address 192.168.34.3 255.255.255.0 duplex full crypto map gdoi!router ospf 100 router-id 3.3.3.3 log-adjacency-changes redistribute connected subnets redistribute static subnets network 192.168.0.0 0.0.255.255 area 0
R4
hostname R4!ip cef!crypto isakmp policy 1 authentication pre-share group 2crypto isakmp key gdoi address 192.168.14.1crypto isakmp key gdoi address 192.168.24.2crypto isakmp key gdoi address 192.168.34.3!crypto ipsec transform-set gdoi esp-des esp-sha-hmac !crypto ipsec profile gdoi set security-association lifetime seconds 360 set transform-set gdoi !crypto gdoi group gdoi identity address ipv4 4.4.4.4 server local  rekey lifetime seconds 300  rekey retransmit 10 number 2  rekey authentication mypubkey rsa gdoi  rekey transport unicast  sa ipsec 1   profile gdoi   match address ipv4 101   replay counter window-size 64  address ipv4 4.4.4.4!interface Loopback0 ip address 4.4.4.4 255.255.255.255 ipv6 address FC00:4::4/128 ipv6 enable!interface Ethernet1/1 ip address 192.168.14.4 255.255.255.0 duplex full!interface Ethernet1/2 ip address 192.168.24.4 255.255.255.0 duplex full!interface Ethernet1/3 ip address 192.168.34.4 255.255.255.0 duplex full!router ospf 100 router-id 4.4.4.4 log-adjacency-changes redistribute connected subnets redistribute static subnets network 192.168.0.0 0.0.255.255 area 0!         access-list 101 deny   ip 192.168.0.0 0.0.255.255 192.168.0.0 0.0.255.255access-list 101 permit ip host 1.1.1.1 host 2.2.2.2access-list 101 permit ip host 1.1.1.1 host 3.3.3.3access-list 101 permit ip host 2.2.2.2 host 1.1.1.1access-list 101 permit ip host 2.2.2.2 host 3.3.3.3access-list 101 permit ip host 3.3.3.3 host 1.1.1.1access-list 101 permit ip host 3.3.3.3 host 2.2.2.2
進入討論組討論。


測試

R1
R1#sho crypto gdoi
Group Information

    Group Name               : gdoi
    Group Identity           : 4.4.4.4
    Rekeys received          : 7
    IPSec SA Direction       : Both
    ACL Received From KS     : gdoi_group_gdoi_temp_acl
    Active Group Server      : 4.4.4.4
    Group Server list        : 4.4.4.4

 
R4
R4#sho crypto gdoi Group Information Group Name : gdoi Group Identity : 4.4.4.4 Group Members : 3 IPSec SA Direction : Both Active Group Server : Local Group Rekey Lifetime : 300 secs Group Rekey Remaining Lifetime : 95 secs Rekey Retransmit Period : 10 secs Rekey Retransmit Attempts: 2 Group Retransmit Remaining Lifetime : 0 secs IPSec SA Number : 1 IPSec SA Rekey Lifetime: 360 secs Profile Name : gdoi Replay method : Count Based Replay Window Size : 64 SA Rekey Remaining Lifetime : 156 secs ACL Configured : access-list 101 Group Server list : Local
進入討論組討論。


發表評論 共有條評論
用戶名: 密碼:
驗證碼: 匿名發表
主站蜘蛛池模板: 锡林浩特市| 石景山区| 海安县| 吕梁市| 乾安县| 楚雄市| 高州市| 山丹县| 新绛县| 南通市| 红原县| 永平县| 邓州市| 湖口县| 科技| 梅州市| 西城区| 定陶县| 西贡区| 浏阳市| 顺义区| 九龙城区| 准格尔旗| 密云县| 塘沽区| 陆良县| 龙门县| 禹城市| 莱州市| 武汉市| 昭苏县| 连南| 鲁甸县| 陕西省| 利津县| 宁蒗| 会东县| 霍邱县| 叙永县| 富民县| 望谟县|