Auto interface ethernet0
Auto interface ethernet1
Nameif ethernet0 outside security0
Nameif ethernet1 inside security100
Enable password 8Ry2YjIyt7RRXU24 encrypted
Passwd 2KFQnbNIdI.2KYOU encrypted
Hostname wjcs
512 fixup protocol dns maximum-length
Fixup protocol ftp 21
Fixup protocol h323 h225 1720
Fixup protocol h323 ras 1718-1719
Fixup protocol http 80
514 fixup protocol rsh
554 fixup protocol rtsp
Fixup protocol sip 5060
Fixup protocol sip udp 5060
Fixup protocol skinny 2000
Fixup protocol SMTP 25
Fixup protocol sqlnet 1521
Fixup protocol tftp 69
Names
Access-list Ipsec permit 192.168.1.0 255.255.255.0 255.255.255.0 ip 10.0.0.0
Access-list Ipsec permit 10.0.0.0 ip 192.168.1.0 255.255.255.0 255.255.255.0
Average power lines 24
Mtu outside 1500
Mtu inside 1500
255.255.255.0 ip address outside 218.*.*.1
Ip address 192.168.1.1 255.255.255.0 inside
Ip audit www.info.gov.hk action alarm
Ip audit attack action alarm
Ip local pool vpn-pool 10.0.0.1-10.0.0.254
No failover
Failover timeout 0:00:00
Failover poll 15
No failover ip address outside
No failover ip address inside
Pdm history enable
Arp timeout 14400
Global (outside) 1 interface
Senat (inside) 0 access-list Ipsec
Senat (inside) 1 0 0 0.0.0.0 0.0.0.0
Any any conduit permit icmp
1 route outside 0.0.0.0 0.0.0.0 218.*.*.2
Timeout xlate 3:00:00
Half-closed timeout conn 1:00:00 1:00:00 0:10:00 udp 0:02:00 rpc 0:10:00 h225
Mgcp timeout h323 0:05:00 0:02:00 0:05:00 sip 0:30:00 sip_media
0:05:00 absolute timeout uauth
Aaa-server TACACS + protocol tacacs+
RADIUS protocol radius aaa-server
LOCAL protocol local aaa-server
No snmp-server location
No contact snmp-server
Snmp-server community public
No snmp-server enable traps
Floodguard enable
Sysopt connection permit-ipsec
Crypto Ipsec transform-set transet esp-des esp-md5-hmac
Crypto dynamic-map dyremote 10 set transform-set transet
Crypto map liebvpn 10 ipsec-isakmp dynamic dyremote
Crypto map interface outside liebvpn
Isakmp enable outside
Isakmp identity address
Isakmp policy 50 authentication pre-share
50 encryption des isakmp policy
Isakmp policy 50 hash md5
Isakmp policy 50 group 2
Isakmp policy 50 lifetime 86400
Vpngroup TEST address-pool vpn-pool
Idle-time 1800 vpngroup TEST
Vpngroup TEST password ********
Telnet timeout 5
Ssh timeout 5
Console timeout 0
Terminal width 80
Cryptochecksum:a79b38df5ad8f2d8177cebd57c6c3590
: End
Wjcs (configure) #
-----------------------------
A simulation environment. Now VPN Client 4.0 can be used by the exchange. Haha.
What you missed the discussion!
Thank you!
[ Closed window ]