CHAPTER 25. IPSEC
270
© SAMSUNG Electronics Co., Ltd.
Proposal of priority 1
Protocol: esp
Mode: tunnel
Encryption Algorithm: aes256(key length=256 bits)
Hash Algorithm: sha1
Lifetime in seconds: 3600
Lifetime in Kilobytes: 4608000
11.
Configure firewall policies to allow IKE negotiation through untrusted
interface.
Router/configure# firewall internet
Router/configure/firewall internet# policy 1000 in service
ike self
Router/configure/firewall internet/policy 1000 in# exit
Router/configure/firewall internet# exit
12.
Display firewall policies in the internet map.
Router# show firewall policy internet
Advanced: S-Self Traffic, F-Ftp-Filter, H-Http-Filter,
R-Rpc-Filter, N-Nat-Ip/Nat-Pool, L-Logging,
E-Policy Enabled, M-Smtp-Filter
Pri Dir Source Addr Destination Addr Sport Dport
Proto Action Advanced
1000 in any any ike PERMIT SE
1024 out any any any any any PERMIT SE
13.
Display firewall policies in the internet map in detail.
Router# show firewall policy internet detail
Policy with Priority 1000 is enabled, Direction is inbound
Action permit, Traffic is self
Logging is disable
Source Address is any, Dest Address is any
Source Port is any, Service Name is ike
Schedule is disabled, Ftp-Filter is disabled
Smtp-Filter is disabled, Http-Filter is disabled
Rpc-Filter is disabled, Nat is disabled
Summary of Contents for Ubigate iBG3026
Page 1: ......
Page 16: ...INTRODUCTION XIV SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 32: ...TABLE OF CONTENTS XXX SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 34: ......
Page 64: ...CHAPTER 4 System Logging 30 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 72: ......
Page 94: ...CHAPTER 7 WAN Interfaces 58 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 110: ......
Page 156: ...CHAPTER 15 BGP 118 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 178: ...CHAPTER 17 VRRP 140 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 262: ......
Page 288: ...CHAPTER 23 Firewall NAT 248 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 346: ......
Page 706: ...CHAPTER 36 Management 664 SAMSUNG Electronics Co Ltd This page is intentionally left blank ...
Page 718: ...EQBD 000026 Ed 00 ...