云题海 - 专业文章范例文档资料分享平台

当前位置:首页 > 配置SRX Dyamic VPN(version 2)

配置SRX Dyamic VPN(version 2)

  • 62 次阅读
  • 3 次下载
  • 2025/6/20 7:46:42

route 220.249.253.0/24 next-hop 220.249.253.129; route 211.139.188.0/24 next-hop 220.249.253.129; route 124.160.0.0/24 next-hop 220.249.253.129; route 222.248.234.0/24 next-hop 220.249.253.129; } }

security { ike {

traceoptions {

file IKE size 4m; flag all; flag ike; }

proposal phase1-proposal {

authentication-method pre-shared-keys; dh-group group2;

authentication-algorithm md5; encryption-algorithm des-cbc; lifetime-seconds 86400; }

proposal cnc-ike-proposal {

authentication-method pre-shared-keys; dh-group group2;

authentication-algorithm md5; encryption-algorithm des-cbc; lifetime-seconds 86400; }

policy ike-policy {

mode aggressive;

proposals phase1-proposal;

pre-shared-key ascii-text \SECRET-DATA }

policy cnc-ike-policy { mode aggressive;

proposals cnc-ike-proposal; pre-shared-key ascii-text \SECRET-DATA }

gateway ike-gateway1 { ike-policy ike-policy;

dynamic hostname vpntest12; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius;

## ## }

gateway vpn-test1-gw {

ike-policy cnc-ike-policy;

dynamic hostname vpntest11; external-interface ge-0/0/1.0; xauth access-profile ACS_Radius; }

gateway ike-vpntest5 { ike-policy ike-policy;

dynamic hostname vpntest5; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-vpntest4 { ike-policy ike-policy;

dynamic hostname vpntest4; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-vpntest3 { ike-policy ike-policy;

dynamic hostname vpntest3; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-vpntest2 { ike-policy ike-policy;

dynamic hostname vpntest2; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-vpntest1 { ike-policy ike-policy;

dynamic hostname vpntest1; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_huatai01 { ike-policy ike-policy;

dynamic hostname s_huatai01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_dongfang01 {

ike-policy ike-policy;

dynamic hostname s_dongfang01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_xiangcai01 { ike-policy ike-policy;

dynamic hostname s_xiangcai01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_shenywg01 { ike-policy ike-policy;

dynamic hostname s_shenywg01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_aijian01 { ike-policy ike-policy;

dynamic hostname s_aijian01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_dongwu01 { ike-policy ike-policy;

dynamic hostname s_dongwu01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_caitong01 { ike-policy ike-policy;

dynamic hostname s_caitong01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_zhongxjt01 { ike-policy ike-policy;

dynamic hostname s_zhongxjt01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_zheshang01 { ike-policy ike-policy;

dynamic hostname s_zheshang01;

external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-s_hongyuan01 { ike-policy ike-policy;

dynamic hostname s_hongyuan01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-f_yimin01 { ike-policy ike-policy;

dynamic hostname f_yimin01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; }

gateway ike-f_changxin01 { ike-policy ike-policy;

dynamic hostname f_changxin01; external-interface ge-0/0/0.0; xauth access-profile ACS_Radius; } }

ipsec {

proposal phase2-proposal { protocol esp;

authentication-algorithm hmac-sha1-96; encryption-algorithm 3des-cbc; }

proposal cnc-ipsec-proposal { protocol esp;

authentication-algorithm hmac-md5-96; encryption-algorithm 3des-cbc; }

policy ipsec-policy {

perfect-forward-secrecy { keys group2; }

proposals phase2-proposal; }

policy cnc-ipsec-policy {

perfect-forward-secrecy { keys group2; }

proposals cnc-ipsec-proposal;

搜索更多关于: 配置SRX Dyamic VPN(version 2) 的文档
  • 收藏
  • 违规举报
  • 版权认领
下载文档10.00 元 加入VIP免费下载
推荐下载
本文作者:...

共分享92篇相关文档

文档简介:

route 220.249.253.0/24 next-hop 220.249.253.129; route 211.139.188.0/24 next-hop 220.249.253.129; route 124.160.0.0/24 next-hop 220.249.253.129; route 222.248.234.0/24 next-hop 220.249.253.129; } } security { ike { traceoptions { file IKE size 4m; flag all; flag ike; }

× 游客快捷下载通道(下载后可以自由复制和排版)
单篇付费下载
限时特价:10 元/份 原价:20元
VIP包月下载
特价:29 元/月 原价:99元
低至 0.3 元/份 每月下载150
全站内容免费自由复制
VIP包月下载
特价:29 元/月 原价:99元
低至 0.3 元/份 每月下载150
全站内容免费自由复制
注:下载文档有可能“只有目录或者内容不全”等情况,请下载之前注意辨别,如果您已付费且无法下载或内容有问题,请联系我们协助你处理。
微信:fanwen365 QQ:370150219
Copyright © 云题海 All Rights Reserved. 苏ICP备16052595号-3 网站地图 客服QQ:370150219 邮箱:370150219@qq.com