【正文】
內(nèi)部接口地址為 ,我們可以能過在命令行下 telnel 管理該設(shè)備。 Routerconf t Enter configuration mands, one per line. End with CNTL/Z. Router(config)no accesslist 110 permit ip any Router(config)accesslist 110 permit ip any Router(config)exit Routerwrite Router IP 上網(wǎng) 限制 和 不能上網(wǎng) . Routerconf t Enter configuration mands, one per line. End with CNTL/Z. Router(config)accesslist 111 deny ip any Router(config)accesslist 111 deny ip host any Router(config) interface FastEther0/1 Router(configif)ip accessgroup 111 in Router(config)exit Routerwrite Router VPN VPN地址池范圍 Routerconf t Enter configuration mands, one per line. End with CNTL/Z. Router(config) ip local pool REMOTEPOOL Router(config)exit Routerwrite Router NAT 穿透 Routerconf t Enter configuration mands, one per line. End with CNTL/Z. Router(config)no accesslist 110 permit ip any Router(config) accesslist 110 deny ip Router(config) accesslist 110 permit ip any Router(config)exit Routerwrite Router Routerconf t Enter configuration mands, one per line. End with CNTL/Z. Router(config)crypto isakmp policy 3 Router(configisakmp) encr 3des Router(configisakmp) authentication preshare Router(configisakmp) group 2 Router(configisakmp)exit Router(config)crypto ipsec transformset myset esp3des espmd5hmac Router(cfgcryptotrans)crypto dynamicmap dynmap 10 Router(configcryptomap) set transformset myset Router(configcryptomap) reverseroute Router(configcryptomap) Router(configcryptomap) Router(configcryptomap)exit Router(config)crypto map clientmap client authentication list userauthen Router(config)crypto map clientmap