
[ Home | Liste | F.A.Q. |
Risorse | Cerca... ]
Archivio: Dicembre 2006 ml@sikurezza.org Soggetto: [ml] VPN con router cisco Mittente: Sergio Copetti Data: Fri, 29 Dec 2006 13:35:24 +0100 (CET)Salve a tutti
[Phase 1] yyy.yyy.yyy.126= ROMA zzz.zzz.zzz.105= MILANO
[Phase 2] Connections= Napoli-Roma,Napoli-Milano
[ROMA] Phase= 1 Local-address= xxx.xxx.xxx.2 Address= yyy.yyy.yyy.126 Configuration= Default-main-mode Authentication= mypassword
[MILANO] Phase= 1 Local-address= xxx.xxx.xxx.2 Address= zzz.zzz.zzz.105 Configuration= Default-main-mode Authentication= mypassword
[Napoli-Roma] Phase= 2 ISAKMP-peer= ROMA Configuration= Default-quick-mode Local-ID= Net-Napoli Remote-ID= Net-Roma
[Napoli-Milano] Phase= 2 ISAKMP-peer= MILANO Configuration= Default-quick-mode Local-ID= Net-Napoli Remote-ID= Net-Milano
[Net-Napoli] ID-type= IPV4_ADDR_SUBNET Network= 172.16.1.0 Netmask= 255.255.255.0
[Net-Roma] ID-type= IPV4_ADDR_SUBNET Network= 172.29.128.96 Netmask= 255.255.255.224
[Net-Milano] ID-type= IPV4_ADDR_SUBNET Network= 172.20.43.192 Netmask= 255.255.255.224
[Default-main-mode] DOI= IPSEC EXCHANGE_TYPE= ID_PROT Transforms= 3DES-SHA-GRP2
[Default-quick-mode] DOI= IPSEC EXCHANGE_TYPE= QUICK_MODE Suites= QM-ESP-3DES-SHA-PFS-GRP2-SUITE,QM-ESP-3DES-MD5-PFS-GRP2-SUITE,QM-ESP-3DES-SHA-PFS-XF-GRP2-SUITE
crypto isakmp policy 1 encr 3des authentication pre-share group 2 lifetime 3600 ! crypto isakmp policy 2 encr 3des hash md5 authentication pre-share group 2 lifetime 3600
crypto isakmp key mypassword address xxx.xxx.xxx.2
crypto map CMAP_1 3 ipsec-isakmp description Tunnel to xxx.xxx.xxx.2 set peer xxx.xxx.xxx.2 set security-association lifetime seconds 1200 set transform-set ESP-3DES-SHA
--
Sergio
[ Home | Liste | F.A.Q. |
Risorse | Cerca... ]
www.sikurezza.org - Italian Security Mailing List
(c) 1999-2005