华为100F防火墙配置
SECPATH“F”系列基本出外网典型配置:
内网------------(e0/0)-Secpath100F-(e1/0)------------
.
sys
SystemView:returntoUserViewwithCtrl+Z.
[Quidway]inte0/0
[Quidway-0/0]
[Quidway-0/0]inte1/0
[Quidway-1/0]
[Quidway]firezoneuntrust
[Quidway-zone-untrust]addinte1/0
[Quidway-zone-untrust]rust
[Quidway-zone-trust]addinte0/0
[Quidway-zone-trust]quit
[Quidway]aclnum2000
[Quidway-acl-basic-2000]
[Quidway-acl-basic-2000]ruledeny
[Quidway]inte1/0
[Quidway-1/0]natoutbound2000
[Quidway]iproute-------------(g0/0)-Secpath1000F-(g0/1)------------
.
sys
SystemView:returntoUserViewwithCtrl+Z.
[Quidway]intg0/0
[Quidway-0/0]
[Quidway-0/0]intg0/1
[Quidway-0/1]
[Quidway]firezoneuntrust
[Quidway-zone-untrust]addintg0/1
[Quidway-zone-untrust]rust
[Quidway-zone-trust]addintg0/0
[Quidway-zone-trust]quit
[Quidway]aclnum2000
[Quidway-acl-basic-2000]
[Quidway-acl-basic-2000]ruledeny
[Quidway]intg0/1
[Quidway-0/1]natoutbound2000
[Quidway]iproute-
内网------------(e0/0)-Secpath100F-(e0/1)-----ADSLMODEM-------
sys
SystemView:returntoUserViewwithCtrl+Z.
[Quidway]inte0/0
[Quidway-0/0]
[Quidway-0/0]quit
[Quidway]firezoneuntrust
[Quidway-zone-untrust]addinte0/1
[Quidway-zone-untrust]rust
[Quidway-zone-trust]addinte0/0
[Quidway-zone-trust]quit
[Quidway]aclnum2000
[Quidway-acl-basic-2000]
[Quidway-acl-basic-2000]ruledeny
[Quidway]inte0/1
[Quidway-0/1]natoutbound2000
#配置Dialer接口
[Quidway]dialer-rule1ippermit
[Quidway]interfacedialer1
[Quidway-Dialer1]dialer-group1
[Quidway-Dialer1]dialerbundle1
[
华为100F防火墙配置 来自淘豆网m.daumloan.com转载请标明出处.