CHAPTER 5. IPSEC
302
© SAMSUNG Electronics Co., Ltd.
13.
Configure firewall policies for a group of mobile users to allow access to
the local LAN.
Router/configure# firewall corp
Router/configure/firewall corp# policy 1000 in address
20.1.1.100 20.1.1.150 10.0.1.0 24
Router/configure/firewall corp/policy 1000 in# exit
The address range in this command typically matches the address
range configured in the dynamic IKE policy(see Step 4).
14.
Display firewall policies in the corp map.
Router# show firewall policy corp
Advanced: S-Self Traffic, F-Ftp-Filter, H-Http-Filter,
R-Rpc-Filter, N-Nat-Ip/Nat-Pool, L-Logging,
E-Policy Enabled, M-Smtp-Filter
Pri Dir Source Addr Destination Addr Sport Dport Proto
Action Advanced
1000 in 20.1.1.100 10.0.1.0/24
any any any
PERMIT E
20.1.1.150
1022 out any
any
any any any
PERMIT SE
1023 in any
any
any any any
PERMIT SE
1024 out any
any
any any any
PERMIT E
Summary of Contents for Ubigate iBG2016
Page 1: ......
Page 16: ...INTRODUCTION XIV SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 34: ......
Page 62: ...CHAPTER 4 System Logging 28 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 70: ......
Page 108: ......
Page 140: ...CHAPTER 4 RIP 104 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 156: ...CHAPTER 6 BGP 120 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 180: ...CHAPTER 8 VRRP 144 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 264: ...CHAPTER 10 QoS 228 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 272: ......
Page 298: ...CHAPTER 3 Firewall NAT 248 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 356: ...CHAPTER 5 IPSEC 306 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 358: ......
Page 744: ...EQBD 000071 Ed 00 ...