V I R T U A L P R I V A T E N E T W O R K S
Configuring Internet Key Exchange
7-20
Security Appliance User Guide
Version 3R2
7
• Create policies to allow traffic to ingress and egress though the newly
created VPN tunnel.
E X A M P L E : N E W Y O R K O F F I C E U S I N G I K E
Interfaces
set interface eth0 zone trust
set interface eth0 ip 192.168.100.1/24
set interface nat
set interface eth1 zone untrust
set interface eth1 ip 162.198.10.1/24
Addresses
set address trust ny_local 192.168.100.0/24
set address untrust sf_destination 10.0.0.0/24
VPN
set ike p1 proposal encryptaesp1 preshare group5 esp
aes128 sha-1
set ike p2 proposal encryptaesp2 preshare group5 esp aes
128 sha-1 seconds 28800
set ike gateway to_sanfrancisco address 4.4.4.1 main
outgoing-interface eth1 preshare password proposal
encryptaesp1
set vpn sfo_nyo gateway to_sanfrancisco proposal
encryptaesp2
Содержание freeGuard Blaze 2100
Страница 1: ...freeGuard Blaze 2100 User Guide Version 3R2...
Страница 14: ...I NT R O DU C T I O N About Document Conventions 1 4 Security Appliance User Guide Version 3R2 1...
Страница 24: ...G E T T IN G S T A R T E D Installing the freeGuard Blaze 2100 2 10 Security Appliance User Guide Version 3R2 2...
Страница 82: ...SY ST EM MA N AGEM E N T Using Traceroute 4 22 Security Appliance User Guide Version 3R2 4...
Страница 192: ...P OL IC Y CO NF I G URA T IO N About Schedules 9 28 Security Appliance User Guide Version 3R2 9...
Страница 216: ...P R E DEF I N E D SER V IC ES A 4 Security Appliance User Guide Version 3R2 A...