本站已运行

攻城狮论坛

作者: Beryl
查看: 2556|回复: 14

主题标签Tag

more +今日重磅推荐Recommend No.1

所有IT类厂商认证考试题库下载所有IT类厂商认证考试题库下载

more +随机图赏Gallery

【新盟教育】2023最新华为HCIA全套视频合集【网工基础全覆盖】---国sir公开课合集【新盟教育】2023最新华为HCIA全套视频合集【网工基础全覆盖】---国sir公开课合集
【新盟教育】网工小白必看的!2023最新版华为认证HCIA Datacom零基础全套实战课【新盟教育】网工小白必看的!2023最新版华为认证HCIA Datacom零基础全套实战课
原创_超融合自动化运维工具cvTools原创_超融合自动化运维工具cvTools
重量级~~30多套JAVA就业班全套 视频教程(请尽快下载,链接失效后不补)重量级~~30多套JAVA就业班全套 视频教程(请尽快下载,链接失效后不补)
链接已失效【超过几百G】EVE 国内和国外镜像 全有了 百度群分享链接已失效【超过几百G】EVE 国内和国外镜像 全有了 百度群分享
某linux大佬,积累多年的电子书(约300本)某linux大佬,积累多年的电子书(约300本)
乾颐堂现任明教教主Python完整版乾颐堂现任明教教主Python完整版
乾颐堂 教主技术进化论 2018-2019年 最新31-50期合集视频(各种最新技术杂谈视频)乾颐堂 教主技术进化论 2018-2019年 最新31-50期合集视频(各种最新技术杂谈视频)
Python学习视频 0起点视频 入门到项目实战篇 Python3.5.2视频教程 共847集 能学102天Python学习视频 0起点视频 入门到项目实战篇 Python3.5.2视频教程 共847集 能学102天
约21套Python视频合集 核心基础视频教程(共310G,已压缩)约21套Python视频合集 核心基础视频教程(共310G,已压缩)
最新20180811录制 IT爱好者-清风羽毛 - 网络安全IPSec VPN实验指南视频教程最新20180811录制 IT爱好者-清风羽毛 - 网络安全IPSec VPN实验指南视频教程
最新20180807录制EVE开机自启动虚拟路由器并桥接物理网卡充当思科路由器最新20180807录制EVE开机自启动虚拟路由器并桥接物理网卡充当思科路由器

[安全] ip sec vpn无法向内穿越nat,向高人求解

  [复制链接]
Beryl [Lv4 初露锋芒] 发表于 2013-6-30 01:43:07 | 显示全部楼层 |阅读模式
查看: 2556|回复: 14
开通VIP 免金币+免回帖+批量下载+无广告
1.网络拓扑如下图8 ?; W  _, A; Z

5 k, r+ N1 q/ A: ^, W2 e2.CISCO pix515e使用PDM3.0配置如下
, ]  E1 Q( ]  V9 G9 Z; z
; Y9 j5 p9 y' k8 ?& I; o" F
* n4 ^2 H3 D( {6 s0 H
# `; t8 H! \. w, ]" U& c3 M! O5 K
) x# l# j  v# g# P/ M6 b4 s: z7 z8 ]! h/ f* I
5 {- C% `9 ~* @6 v8 A8 H
% ~' j3 v9 n( x4 }5 h( @
3.拟实现的网络功能:公网计算机通过光纤、ADSL、WIFI、mobile等方式接入因特网,再通过windows自带的虚拟专用网拨号连接或者CISCO的VPN cilent拨入PIX515e内部的VpnServer,以实现接入VpnServer所在的局域网,共享局域网内的资源,VPN Server在内网测试通过。6 t% R# G- Z, q7 F

* j- \/ v) T7 Z4.遇到的问题:公网计算机无法通过pix515e的公网地址向内穿越NAT拨入VPNserver。能否在pix515e上建立一条Vpn Tunnel以实现第3条的网络功能,该如何建立。
0 v  w; M4 ]. J) [5 U7 p8 R0 t2 s* `, f1 Q9 \
5.已失败的方法4 g4 u" }6 O4 k

* y7 ~" x! T7 {( A+ W: qA:端口映射,该思科设备通过NAT功能将内网IP转换为公网IP,不是路由器,无法做端口映射。; ~6 f( Q+ f8 z

# ~' e; m: H! z/ w9 E& r( lB:在PDM3.0上尝试对PIX515e进行VPN的设置,未能凑效。
% z7 r/ a9 h$ @( @6 g, J3 ?. |1 }% G& X7 a6 \0 H% h
C:逆向NAT失败,PDM3.0不允许。
" g! h: ~& M" Y4 U
0 F0 e( i3 S! V0 P) w. x( L设备目前的配置列表2 y& U2 m/ H- I

3 U  v: q# J+ U" l5 iBuilding configuration...2 g4 j* }9 K- s( M) J
: Saved
2 E5 F# S- M: L7 f$ d) B# H+ k:
2 Q5 n; A4 }' j( ]PIX Version 6.3(3)2 R0 W& b3 k9 y4 n  n8 s
interface ethernet0 auto$ ^- d$ {. w3 V0 d8 y' i, }3 v
interface ethernet1 auto
; I7 s* C# K# O3 K: S, ?nameif ethernet0 outside security0* U, P  ~0 Y+ R' d& E8 e
nameif ethernet1 inside security100
/ o/ k. B/ \  {* r. M, }: Z  t+ Denable password /NNcO2U/e4a3IAX3 encrypted. _1 Z6 z5 u3 f6 \+ X
passwd 2KFQnbNIdI.2KYOU encrypted# d% E, ?- g' x. d) S4 A; ~% E  m4 M
hostname huawei
% W( Z8 S+ B/ c: r  k8 d6 _, W3 odomain-name huawei.com
3 m2 \" m4 K1 P4 Ffixup protocol dns maximum-length 512
; _' o) i8 ]# y, K1 ?0 ]. Efixup protocol ftp 21
3 S( E9 e# B3 b& R6 L0 G! xfixup protocol h323 h225 1720
+ {+ C% p. `; O) `0 dfixup protocol h323 ras 1718-1719
( G" k6 V0 _4 H8 `& ?fixup protocol http 80& h# ^! M4 y/ v$ v7 Y
fixup protocol rsh 514( w$ z% U# Q5 v5 q# _* m' ?2 O  e
fixup protocol rtsp 554* k' o1 ~6 L) @
fixup protocol sip 5060
$ M1 q) k# ]' X2 Gfixup protocol sip udp 5060
7 x' h* B/ v) Y  T- I! J! \fixup protocol skinny 2000
5 w* b' \5 q# e* ]9 }fixup protocol smtp 25
5 u+ J5 C# U1 [% F- n! Cfixup protocol sqlnet 1521
" p2 l3 _% c$ f  {. _fixup protocol tftp 69
8 |5 O2 E7 ^( e! [names0 Q  R5 E( W2 K# t* U1 v9 d9 _
access-list outside_inbound_nat0_acl permit ip interface outside 192.168.0.0 255.255.255.0 ; j8 |2 t9 E" d. c
pager lines 24
8 P0 C! \; e6 a; Hmtu outside 1500  z" ]6 m5 ]9 g1 ?6 o& c
mtu inside 1500
+ s" }, u- o" i5 l% A0 Tip address outside 221.XXX.138.250 255.255.255.252
0 R* |5 a5 Z" G' Y# Fip address inside 192.168.0.254 255.255.255.01 {: o* o% j4 G" t$ ^' h3 [* `
ip audit info action alarm
3 e" `# n4 U: Z6 i& l# N1 ~ip audit attack action alarm* e" s; ~" B3 r
pdm location 192.168.0.3 255.255.255.255 inside6 W  u4 q; r& V7 g, v4 D& @0 Q
pdm location 192.168.0.24 255.255.255.255 inside
2 l2 [- M7 ]+ Q  W$ }0 W4 B6 ]& W! Ipdm location 192.168.0.1 255.255.255.255 inside0 ~& D7 W5 O; P  J2 f! _
pdm location 192.168.0.2 255.255.255.255 inside
6 B; g* n! y! ^' `pdm location 192.168.0.12 255.255.255.255 inside
+ h+ |+ V2 ~8 d6 N# C, i& f& q+ Epdm location 192.168.0.10 255.255.255.255 inside
+ j' j  h' z0 H) O3 N; d9 apdm location 192.168.0.16 255.255.255.255 inside
9 n' u' m4 u+ apdm location 192.168.0.19 255.255.255.255 inside
% Q  g5 H; U9 K  Mpdm location 192.168.0.20 255.255.255.255 inside
; x  }* C0 y* R' _! s* S% vpdm location 192.168.0.22 255.255.255.255 inside
/ A% B: {0 R1 zpdm location 192.168.0.23 255.255.255.255 inside
' d: t5 ]) m% n) |5 fpdm location 192.168.0.34 255.255.255.255 inside
. b  ~9 @( X  ~: B: ^9 Ypdm location 192.168.0.38 255.255.255.255 inside
! e% l- @9 Y/ Z  U! Z% B9 ?2 wpdm location 192.168.0.40 255.255.255.255 inside; j; H9 p# z( C0 g2 J0 X% t3 m. K
pdm location 192.168.0.58 255.255.255.255 inside4 I5 n2 C, o5 G6 p4 A' B+ z7 o, d
pdm location 192.168.0.17 255.255.255.255 inside
2 f  A( k! \5 Apdm location 192.168.0.39 255.255.255.255 inside9 Y  B0 s% x3 ^! i4 Y
pdm location 192.168.0.41 255.255.255.255 inside
; w" P) |8 p1 y: C/ R0 Rpdm location 192.168.0.13 255.255.255.255 inside+ n! H9 y, _6 `. p0 b: u
pdm location 192.168.0.42 255.255.255.255 inside
+ Z5 a" i" M0 Zpdm location 192.168.0.45 255.255.255.255 inside
7 [5 E' M' n! Z# f( epdm location 192.168.0.46 255.255.255.255 inside+ A: `6 D. p9 L- I
pdm location 192.168.0.47 255.255.255.255 inside- A1 w' W! f3 w$ U5 {* i
pdm location 192.168.0.50 255.255.255.255 inside
+ Q* y( @  S7 epdm location 192.168.0.25 255.255.255.255 inside: S; W8 z  G) {! f% Z
pdm location 192.168.0.4 255.255.255.255 inside
% |$ |6 |5 B+ b" I6 J: U! w5 n3 rpdm location 192.168.0.6 255.255.255.255 inside! S, X/ }% m. |
pdm location 192.168.0.35 255.255.255.255 inside
" E$ x- m6 ], c! E# @pdm location 192.168.0.21 255.255.255.255 inside
4 _( ^; z% V& U7 t. Zpdm location 192.168.0.200 255.255.255.255 inside
# [% w% ]9 ^5 E9 F+ Spdm location 192.168.0.48 255.255.255.255 inside
6 h( J8 e8 k* zpdm location 192.168.0.60 255.255.255.255 inside( {. ?: q2 ]* k- C
pdm location 192.168.0.51 255.255.255.255 inside
6 D) }; D6 I; `pdm location 192.168.0.32 255.255.255.255 inside
( n5 H8 ?+ J* H* x+ [+ S. Epdm location 192.168.0.18 255.255.255.255 inside( G% G% D: {' C  S
pdm location 192.168.0.7 255.255.255.255 inside# u' D  v& K5 C  Y
pdm location 192.168.0.201 255.255.255.255 inside
" a3 B% s  ^5 E8 ?( Lpdm location 192.168.0.36 255.255.255.255 inside
5 G0 Z6 L1 ?2 L3 J) F( l" R8 fpdm location 192.168.0.100 255.255.255.255 inside
) N( F- F; Q1 q! H. y3 V+ ^; h; ~pdm location 192.168.0.5 255.255.255.255 inside
) H8 g( q: n6 \: z. V  e0 v) k# Bpdm location 192.168.0.202 255.255.255.255 inside
/ x$ X1 D- \* A& o# K( tpdm location 192.168.0.26 255.255.255.255 inside
2 u+ L) n' I" l1 }9 gpdm location 192.168.0.203 255.255.255.255 inside, }; C  [5 C5 H5 Y% g( ?6 Z' F7 M3 j
pdm location 192.168.0.14 255.255.255.255 inside" c9 M8 p( G3 y/ ?9 U* U+ W: S: ~
pdm location 192.168.0.204 255.255.255.255 inside$ F& t. H' f2 k# W* T
pdm location 192.168.0.251 255.255.255.255 inside
% J9 ]1 l) B# g+ @pdm location 192.168.0.205 255.255.255.255 inside0 e' Q, M! k% |* ~& w9 H7 t
pdm location 192.168.0.206 255.255.255.255 inside
; v" c' u! m  k: S: n$ x( ^7 jpdm location 192.168.0.207 255.255.255.255 inside
3 L9 r3 C$ t4 T1 o5 t. y. X6 x# P" F7 hpdm location 192.168.0.208 255.255.255.255 inside
/ K( J& h: w: y/ s+ s5 |5 t- _pdm location 192.168.0.209 255.255.255.255 inside
% `3 [& c. k. Y3 s/ Vpdm location 192.168.0.108 255.255.255.255 inside
7 ^( i* b# E/ V9 {7 H: Npdm location 192.168.0.31 255.255.255.255 inside# Q7 s: j5 j8 _6 d
pdm location 192.168.0.30 255.255.255.255 inside6 t8 }8 D# Q! \) [* `( x
pdm location 192.168.0.210 255.255.255.255 inside
6 S  |& c$ p# H4 B6 c1 @* k! O0 Z4 @pdm location 192.168.0.8 255.255.255.255 inside
1 o: q, v0 O2 b2 Dpdm location 192.168.0.11 255.255.255.255 inside1 L" a: }3 @! H4 ?
pdm location 192.168.0.29 255.255.255.255 inside
8 `' i* A# f( m0 Kpdm location 192.168.0.109 255.255.255.255 inside
6 K+ {5 O1 d& W. Q# Kpdm location 192.168.0.111 255.255.255.255 inside1 @. }6 B( t+ R: `
pdm location 192.168.0.116 255.255.255.255 inside) q7 @; ^$ z8 J( E& Y* r/ u
pdm location 192.168.0.113 255.255.255.255 inside" X. {1 ?6 I+ O- ^0 m- u3 ~* d: q
pdm location 192.168.0.107 255.255.255.255 inside
$ y- x1 g5 z3 f8 t5 o. Bpdm location 192.168.0.240 255.255.255.255 inside
9 V% I& ~% z4 l3 e5 vpdm location 192.168.0.241 255.255.255.255 inside
! v  Q4 A7 n2 v0 B+ gpdm location 192.168.0.233 255.255.255.255 inside+ Q6 u1 j9 U' c; a- Z* z
pdm location 192.168.0.250 255.255.255.255 inside2 ]3 K, D0 W9 R- ?, V' @' U
pdm location 192.168.0.252 255.255.255.255 inside9 h4 i/ }) }+ k! M$ U! x' R
pdm location 192.168.0.253 255.255.255.255 inside7 q. ~0 |8 h+ \8 d" k
pdm location 192.168.0.44 255.255.255.255 inside0 h! p( m9 \1 Z
pdm location 192.168.0.242 255.255.255.255 inside
# Y' A9 P' B; F4 c% P2 ]; Kpdm location 192.168.0.239 255.255.255.255 inside
3 S! q  }9 D7 X0 q0 Spdm location 192.168.0.27 255.255.255.255 inside
2 d% D5 y2 `5 U6 r7 k4 ^pdm location 192.168.0.249 255.255.255.255 inside) f* S1 k: `% ?7 s
pdm location 192.168.0.61 255.255.255.255 inside
2 L. b# D2 K6 u* G) Ipdm location 192.168.0.62 255.255.255.255 inside
: _7 R) z$ n" j8 @6 q- npdm location 192.168.0.63 255.255.255.255 inside
0 T% H( y2 K1 p. F& @$ G0 }. ]" Zpdm location 192.168.0.64 255.255.255.255 inside- \$ L0 D, |( l
pdm location 192.168.0.68 255.255.255.255 inside
! s- ^2 T' c) v! b/ q  ~pdm location 192.168.0.211 255.255.255.255 inside
, q( e9 R0 C# U. ~% h$ i8 W9 }pdm location 192.168.0.70 255.255.255.255 inside
& Y4 y, x2 r% @0 n' W4 q1 o. Updm location 192.168.0.65 255.255.255.255 inside
& c" F; B0 ~- ?- `7 V* `- k  H+ @3 ]pdm location 192.168.0.121 255.255.255.255 inside1 I6 d+ O! K9 i) Z" i1 r
pdm location 192.168.0.247 255.255.255.255 inside  |0 L0 ^6 p! W6 ]& T/ o+ V8 E
pdm location 192.168.0.37 255.255.255.255 inside
4 g- I! P' h4 Hpdm location 192.168.0.73 255.255.255.255 inside+ i6 |( z/ W" B) G
pdm location 192.168.0.112 255.255.255.255 inside
$ i+ ]0 P' \5 I) T5 Kpdm location 192.168.0.57 255.255.255.255 inside5 z3 h! Z' u7 c2 e: g) N
pdm location 192.168.0.99 255.255.255.255 inside
1 u' Z5 ]& [6 U: k( p4 U: Apdm location 192.168.0.124 255.255.255.255 inside1 o7 D; A4 e/ x# O) M9 X
pdm location 192.168.0.52 255.255.255.255 inside
. _9 ~: ^9 x) g, u1 npdm location 192.168.0.118 255.255.255.255 inside
. w$ X8 W) g2 ^  F3 Spdm location 192.168.0.122 255.255.255.255 inside6 A: s/ |+ o8 R! N. @
pdm location 192.168.0.49 255.255.255.255 inside
/ \2 A6 w: H7 y- S/ s* m" Gpdm location 192.168.0.55 255.255.255.255 inside* M; b- W& a9 s" R- T# X/ B
pdm location 192.168.0.43 255.255.255.255 inside) a" G7 Z" e, m' \
pdm location 192.168.0.103 255.255.255.255 inside, d% O% K& }! u. S
pdm location 192.168.0.54 255.255.255.255 inside
. `+ t* ~9 S+ s' d$ J8 _pdm location 192.168.0.243 255.255.255.255 inside' P7 p4 }. }- ^" o
pdm location 192.168.0.244 255.255.255.255 inside
$ }! x: |/ e4 G9 a! updm location 192.168.0.230 255.255.255.255 inside
8 p% c" @, \- e3 xpdm location 192.168.0.135 255.255.255.255 inside
" o4 N& {% T" ~% D' ~, Qpdm location 192.168.0.115 255.255.255.255 inside
) n& i% R9 @3 f3 w8 apdm location 192.168.0.245 255.255.255.255 inside: k2 `6 }7 n0 l0 _
pdm location 192.168.0.238 255.255.255.255 inside! \4 @- O; i  V6 k) I
pdm location 192.168.0.237 255.255.255.255 inside
8 j# ?0 {+ S: q6 |- Epdm location 192.168.0.231 255.255.255.255 inside
" J/ P$ Z- @* v4 {9 Kpdm location 192.168.0.235 255.255.255.255 inside9 J. B" \; _" t* L* F- X3 K5 W# P
pdm location 192.168.0.236 255.255.255.255 inside$ T( n1 l$ F* B4 [
pdm location 192.168.0.190 255.255.255.255 inside1 Y+ f  I! C4 m! m2 ?" w3 R
pdm location 192.168.0.181 255.255.255.255 inside& N& C! I: q* r9 H$ M  v" E
pdm location 192.168.0.9 255.255.255.255 inside
0 H0 c, t, \' y5 X) n1 Kpdm location 192.168.0.246 255.255.255.255 inside
$ V% y- D$ U$ g4 e! }# X3 Wpdm location 192.168.0.59 255.255.255.255 inside
# c7 U' H6 H! @- `8 s5 {0 Ypdm location 192.168.0.191 255.255.255.255 inside
/ I# S" t/ u" qpdm location 192.168.0.117 255.255.255.255 inside
& Z) a  j- f' Wpdm location 192.168.0.171 255.255.255.255 inside/ q6 G. r: D. J8 _
pdm location 192.168.0.53 255.255.255.255 inside
+ ^0 p0 U2 @7 Ppdm location 192.168.0.130 255.255.255.255 inside
8 z$ E1 M3 X; i6 q: l  mpdm location 192.168.0.91 255.255.255.255 inside
- Z# G0 c/ I7 H. V* Npdm location 192.168.0.140 255.255.255.255 inside
  i1 {/ b- z6 @0 I+ ypdm location 192.168.0.220 255.255.255.255 inside
% ]1 n9 |, V, n& apdm location 192.168.0.119 255.255.255.255 inside, o0 k- j+ L$ B  i4 E! [2 \
pdm location 192.168.0.223 255.255.255.255 inside
3 M& F  @4 u0 z$ R) {( \+ bpdm location 192.168.0.106 255.255.255.255 inside5 {- ?0 K% [) r4 u: i9 Y
pdm location 192.168.0.123 255.255.255.255 inside% p/ X$ r6 W: a" u0 j9 z: o; X
pdm location 192.168.0.67 255.255.255.255 inside0 e, J) q3 L; W. }  Z
pdm location 192.168.0.219 255.255.255.255 inside
1 ?8 r% I& q* G' M0 Rpdm location 192.168.0.56 255.255.255.255 inside
0 c2 t( C3 P  g/ \pdm location 192.168.0.66 255.255.255.255 inside1 x# _7 V3 ?' ?' Y3 e) N
pdm location 192.168.0.76 255.255.255.255 inside5 i" N/ z# h( ?: C) j/ R
pdm location 192.168.0.102 255.255.255.255 inside
; E+ t+ b) W9 b( C& @1 N9 ], Ipdm location 192.168.0.170 255.255.255.255 inside+ w2 U, ^% J. v/ d1 f( i
pdm location 192.168.0.172 255.255.255.255 inside* C' u. R8 ]& _- V% u
pdm location 192.168.0.173 255.255.255.255 inside
& @: m- ^' ~5 H5 X; Z% K. w/ ~# ppdm location 192.168.0.174 255.255.255.255 inside
5 ^: \' _, M; n6 J* H8 lpdm location 192.168.0.175 255.255.255.255 inside4 J7 ~, i, |5 G, P  N
pdm location 192.168.0.160 255.255.255.255 inside7 L0 [  N7 {& ]- q) P
pdm location 192.168.0.138 255.255.255.255 inside
3 l  Q  @! c2 L( |. }; npdm location 192.168.0.78 255.255.255.255 inside! D5 l9 O1 ?, _
pdm location 192.168.0.69 255.255.255.255 inside
) I4 S$ v3 w8 g. e4 Z, Mpdm location 192.168.0.221 255.255.255.255 inside
! r% \) }. n. X6 S) h; Cpdm location 192.168.0.110 255.255.255.255 inside
6 U9 z$ M( w+ T$ `9 Y: ?2 w% npdm location 192.168.0.232 255.255.255.255 inside
5 i3 b: |$ c, q# Npdm location 192.168.0.80 255.255.255.255 inside7 C& z7 D0 C, \, @& [+ L7 h
pdm location 192.168.0.81 255.255.255.255 inside
& ]' z4 v3 q. gpdm location 192.168.0.82 255.255.255.255 inside, z# |& x" x( A3 {7 O* j* [
pdm location 192.168.0.83 255.255.255.255 inside
0 R. K5 [3 A! l, H; mpdm location 192.168.0.84 255.255.255.255 inside
/ h. O2 z. G  `# g9 B6 H( t: kpdm location 192.168.0.85 255.255.255.255 inside. X1 u" x0 B3 [
pdm location 192.168.0.86 255.255.255.255 inside8 t4 H, z! O! S# M
pdm location 192.168.0.87 255.255.255.255 inside
! Z% D7 Y- o# S% H& l2 _pdm location 192.168.0.88 255.255.255.255 inside
, l& d) g6 B! Fpdm location 192.168.0.89 255.255.255.255 inside( M. k5 n; e. b) e7 j' i
pdm location 192.168.0.90 255.255.255.255 inside+ y# q- }7 p5 s2 I! o+ S8 ^# s5 C
pdm location 192.168.0.28 255.255.255.255 inside
6 r2 m1 _2 L4 R" ipdm location 192.168.0.234 255.255.255.255 inside
! I+ j, ], S" Cpdm location 192.168.0.222 255.255.255.255 inside
" a1 x# M. b5 b. O  d1 v2 W9 f. N/ o" [pdm location 192.168.0.150 255.255.255.255 inside
# f8 Z) ?+ d, b, B( ypdm location 192.168.0.151 255.255.255.255 inside; }* h6 J8 {  W7 u' J) q5 m5 m3 ]3 m
pdm location 192.168.0.152 255.255.255.255 inside
4 N& R! l2 h- ^/ p, ^" O$ Bpdm location 192.168.0.77 255.255.255.255 inside
  w9 P; E. l* Z  P( W( gpdm location 192.168.0.72 255.255.255.255 inside
" A7 m0 A% S4 Q' Z4 kpdm location 192.168.0.225 255.255.255.255 inside7 q/ _: K- J2 y
pdm location 192.168.0.161 255.255.255.255 inside. d7 z6 f2 L* G+ w" c
pdm location 192.168.0.92 255.255.255.255 inside, _: M3 E! F9 F$ B. f6 k7 ]
pdm location 192.168.0.192 255.255.255.255 inside7 r$ f! j. m0 k+ ?% P
pdm location 192.168.0.193 255.255.255.255 inside
9 C  e* B5 \: b( L( O; apdm location 192.168.0.15 255.255.255.255 inside) A8 d3 W3 b: j5 H% M* w4 k/ M
pdm location 192.168.0.33 255.255.255.255 inside* N. o4 R$ t& |( g2 `; n% X& [
pdm location 192.168.0.79 255.255.255.255 inside
$ _. i( E/ A" U) S7 H1 w* Y% Npdm location 192.168.0.93 255.255.255.255 inside, A4 H0 U, \3 T  I; {
pdm location 192.168.0.94 255.255.255.255 inside
4 d1 M2 ~5 p) w1 F1 K6 D2 a6 g, }pdm location 192.168.0.95 255.255.255.255 inside
$ x/ W) B' x# k( Z" t) r5 g3 g! s1 updm location 192.168.0.96 255.255.255.255 inside5 w2 r1 T* A5 L1 X
pdm location 192.168.0.97 255.255.255.255 inside
& @  ~/ r0 ~; U0 _+ i0 epdm location 192.168.0.98 255.255.255.255 inside7 r. a( l1 y; o! d
pdm location 192.168.0.101 255.255.255.255 inside
. ^! C0 |( Z4 ?pdm location 192.168.0.104 255.255.255.255 inside6 G4 w0 y. ?: c" `4 ~2 B
pdm location 221.XXX.138.250 255.255.255.255 inside, B0 g) C, A  G4 M* i+ Q1 }
pdm location 192.168.0.71 255.255.255.255 inside( x8 A5 e4 r3 H8 w& X& l3 G5 [
pdm location 192.168.0.185 255.255.255.255 inside
2 Q) V$ C6 g8 H! _; |pdm location 192.168.0.75 255.255.255.255 inside
/ |3 @$ V" b) A! S+ Ypdm location 192.168.0.120 255.255.255.255 inside
+ Z7 e. G$ n' D# m& s% Vpdm location 192.168.0.212 255.255.255.255 inside
7 q& T0 R' E4 Y1 b: Z* o6 apdm location 192.168.0.213 255.255.255.255 inside. d$ ?# _* ^0 Y
pdm location 192.168.0.214 255.255.255.255 inside: w  A9 [7 `. U1 L4 X4 f
pdm location 192.168.0.215 255.255.255.255 inside
! }) Y8 c' l% i4 Lpdm location 192.168.0.128 255.255.255.192 outside
7 R$ H2 w( n: ^4 |pdm history enable9 m; a2 ~0 g& u) l9 i% I! s
arp timeout 14400
2 ~2 h; H( G  b* @3 O6 s9 Bglobal (outside) 10 interface" H! E' S* j% O, t) B# l  U
nat (outside) 0 access-list outside_inbound_nat0_acl outside* x5 _% d6 k; O' C4 t7 z/ e$ }, P
nat (inside) 10 192.168.0.1 255.255.255.255 0 0/ N3 ?) _7 w3 |# ~. ?
nat (inside) 10 192.168.0.3 255.255.255.255 0 0
- b2 `# F& r& |& l' o. y2 l7 k4 tnat (inside) 10 192.168.0.4 255.255.255.255 0 0- q7 ^( d' P- U% a
nat (inside) 10 192.168.0.5 255.255.255.255 0 07 W. b0 M' t! W' S7 I  v, @
nat (inside) 10 192.168.0.10 255.255.255.255 0 04 P$ F2 j! z4 e% H4 L5 R! k1 ~: o
nat (inside) 10 192.168.0.11 255.255.255.255 0 0
0 ^. }+ ]/ q. `6 @* T5 Jnat (inside) 10 192.168.0.12 255.255.255.255 0 0
3 x4 [( {& u: A( S2 Z: unat (inside) 10 192.168.0.13 255.255.255.255 0 0
8 \+ ]8 r- q) ]2 |/ D% v, x/ \; P: l, d; Gnat (inside) 10 192.168.0.14 255.255.255.255 0 0
; e" f- R8 C& ~, x; V' Tnat (inside) 10 192.168.0.15 255.255.255.255 0 0) x; C" e4 w6 G( x" y
nat (inside) 10 192.168.0.16 255.255.255.255 0 0  [+ T& R! I9 V( w
nat (inside) 10 192.168.0.17 255.255.255.255 0 0: Q$ l* h0 a, ?6 x. `
nat (inside) 10 192.168.0.21 255.255.255.255 0 0
: ]  f0 p9 @$ i0 A& z8 mnat (inside) 10 192.168.0.22 255.255.255.255 0 0# V  E& @6 d8 b  e2 q* g/ c
nat (inside) 10 192.168.0.23 255.255.255.255 0 0' s- ]( Y: u  X" a. E; W# y/ O
nat (inside) 10 192.168.0.24 255.255.255.255 0 0
* v/ J8 \8 ^4 w- }! \nat (inside) 10 192.168.0.25 255.255.255.255 0 0, T3 H5 l  I+ A8 l7 F1 ^5 W
nat (inside) 10 192.168.0.26 255.255.255.255 0 01 M) G2 y4 S! t3 r7 `% Z, o3 Y$ ~
nat (inside) 10 192.168.0.27 255.255.255.255 0 0! L' }: ?9 {/ A. a' q! K, N5 A1 C5 Z
nat (inside) 10 192.168.0.29 255.255.255.255 0 0- z# U+ ^! r# H, F, c: J
nat (inside) 10 192.168.0.31 255.255.255.255 0 0
; A/ e& h* |7 F& jnat (inside) 10 192.168.0.32 255.255.255.255 0 0) P& ^4 n7 j- {; Z  n( S
nat (inside) 10 192.168.0.33 255.255.255.255 0 0
$ T8 y$ j% B! N. hnat (inside) 10 192.168.0.34 255.255.255.255 0 0' r. l' H" v- H; n- q
nat (inside) 10 192.168.0.37 255.255.255.255 0 00 R8 a2 O, W9 {& q
nat (inside) 10 192.168.0.39 255.255.255.255 0 0: g/ r. Z, t: a5 {9 `+ \
nat (inside) 10 192.168.0.40 255.255.255.255 0 03 V/ F. Y& y9 H
nat (inside) 10 192.168.0.44 255.255.255.255 0 0
- ~/ s* m* q+ Lnat (inside) 10 192.168.0.45 255.255.255.255 0 0
7 c# i8 D7 S6 Knat (inside) 10 192.168.0.47 255.255.255.255 0 0) w: }' a3 l5 G4 H, {+ k* P
nat (inside) 10 192.168.0.48 255.255.255.255 0 0( ]' D2 M+ _. E% N
nat (inside) 10 192.168.0.49 255.255.255.255 0 0
# k# K7 N4 W6 u5 l! x8 vnat (inside) 10 192.168.0.50 255.255.255.255 0 0
1 |; j4 U: `! P7 v! A9 znat (inside) 10 192.168.0.51 255.255.255.255 0 0- u, {! q) |9 H; T, B
nat (inside) 10 192.168.0.52 255.255.255.255 0 0- ~' E) Y0 i" A
nat (inside) 10 192.168.0.53 255.255.255.255 0 0, o& X  J/ B0 }& A
nat (inside) 10 192.168.0.54 255.255.255.255 0 0. D/ l0 K( x, _8 }; |: p
nat (inside) 10 192.168.0.55 255.255.255.255 0 0
  Y8 y7 I9 I; J6 m" w: knat (inside) 10 192.168.0.56 255.255.255.255 0 0
3 a( X. v9 _/ w" Qnat (inside) 10 192.168.0.57 255.255.255.255 0 07 [9 W( b1 m4 X; o
nat (inside) 10 192.168.0.58 255.255.255.255 0 0+ x( f8 n0 G# A1 v9 s
nat (inside) 10 192.168.0.59 255.255.255.255 0 0: d. |/ r0 J' M. `; R1 @
nat (inside) 10 192.168.0.62 255.255.255.255 0 0) ~) K( v" t( }4 m; i. m' r+ w
nat (inside) 10 192.168.0.63 255.255.255.255 0 0# v8 e# k- `& K, ]4 i
nat (inside) 10 192.168.0.64 255.255.255.255 0 0
, R; k7 b8 S9 ?7 _nat (inside) 10 192.168.0.65 255.255.255.255 0 0
/ d2 T5 w! R2 _" mnat (inside) 10 192.168.0.66 255.255.255.255 0 0& l' V& \3 V, w: k9 g7 x0 b
nat (inside) 10 192.168.0.67 255.255.255.255 0 0+ d/ V2 x; U# M; ~$ G; Q6 }
nat (inside) 10 192.168.0.68 255.255.255.255 0 0
( h+ R2 n* {; y& Anat (inside) 10 192.168.0.69 255.255.255.255 0 02 b$ j* M+ |+ u- Y- p1 C
nat (inside) 10 192.168.0.71 255.255.255.255 0 0- y2 @3 r$ a. n7 T
nat (inside) 10 192.168.0.73 255.255.255.255 0 0
+ G& `; M% e) d+ }/ anat (inside) 10 192.168.0.76 255.255.255.255 0 0  E' t5 c& p2 U& Y- y  q5 U8 X
nat (inside) 10 192.168.0.79 255.255.255.255 0 0
4 n! Q: k) i; ~. t  D- I2 ?nat (inside) 10 192.168.0.80 255.255.255.255 0 09 m2 G3 G/ q) J- X
nat (inside) 10 192.168.0.81 255.255.255.255 0 08 Y& n8 ^5 A4 R1 h
nat (inside) 10 192.168.0.82 255.255.255.255 0 09 v* _* B! G% D' A) s# ]& w
nat (inside) 10 192.168.0.83 255.255.255.255 0 0
( v8 \$ ^2 n0 }. G7 U* [nat (inside) 10 192.168.0.85 255.255.255.255 0 0: y  d& I1 _) u! a
nat (inside) 10 192.168.0.86 255.255.255.255 0 0
% b( H# f9 @" g. Q. x- O- E# Unat (inside) 10 192.168.0.87 255.255.255.255 0 0
2 |! [! r4 e& k1 Z/ Y: s7 Mnat (inside) 10 192.168.0.89 255.255.255.255 0 0; [) Q! {* o6 Y  C! i: o; g1 J
nat (inside) 10 192.168.0.90 255.255.255.255 0 0- T% S* t, X& w! w
nat (inside) 10 192.168.0.92 255.255.255.255 0 0
1 D9 I6 y1 f! `" H; Lnat (inside) 10 192.168.0.93 255.255.255.255 0 0
1 D* u9 ~- j7 E; I- Jnat (inside) 10 192.168.0.94 255.255.255.255 0 0# r, p# E' u% K4 F) q1 y
nat (inside) 10 192.168.0.95 255.255.255.255 0 08 }5 e# Z: b! n; X$ {: e
nat (inside) 10 192.168.0.96 255.255.255.255 0 08 ?( o$ F+ o% A6 F: ?
nat (inside) 10 192.168.0.97 255.255.255.255 0 0
: K% }1 ^* |. @/ |  Onat (inside) 10 192.168.0.99 255.255.255.255 0 0$ @& N; e. o0 F( j) w* m  [
nat (inside) 10 192.168.0.101 255.255.255.255 0 0. n% z  h; f) A
nat (inside) 10 192.168.0.102 255.255.255.255 0 0
& ^2 T5 ], U1 @' ~* ^nat (inside) 10 192.168.0.103 255.255.255.255 0 0
3 I/ E6 B6 x6 |, D7 V1 `) k* tnat (inside) 10 192.168.0.104 255.255.255.255 0 0
/ D2 j5 g: R5 l* V6 n2 e1 [. Hnat (inside) 10 192.168.0.106 255.255.255.255 0 0) h# B/ x% i+ [# h+ r  A
nat (inside) 10 192.168.0.107 255.255.255.255 0 09 O3 R& J1 ?3 q+ V6 c  H( t
nat (inside) 10 192.168.0.108 255.255.255.255 0 0: E" `/ N4 I: X2 F9 N
nat (inside) 10 192.168.0.118 255.255.255.255 0 0# p4 \2 e' ]' z" M& g0 H/ ~* R! S
nat (inside) 10 192.168.0.119 255.255.255.255 0 0% l: n5 ?1 z' S* x5 E- T
nat (inside) 10 192.168.0.120 255.255.255.255 0 0
* L( _& l9 H5 C  x& Jnat (inside) 10 192.168.0.121 255.255.255.255 0 00 B/ a, m7 [; r/ K, e0 W& c
nat (inside) 10 192.168.0.200 255.255.255.255 0 0+ l2 P+ {' n, L, y5 n$ f
nat (inside) 10 192.168.0.201 255.255.255.255 0 0
  b# ^& ^7 Z% v' Fnat (inside) 10 192.168.0.202 255.255.255.255 0 0
+ K& k! i8 V! V# c4 i2 ^$ Unat (inside) 10 192.168.0.203 255.255.255.255 0 0" ]6 ^$ ?5 ^) E
nat (inside) 10 192.168.0.204 255.255.255.255 0 0# _5 A! n' \) v
nat (inside) 10 192.168.0.205 255.255.255.255 0 0
4 M7 y1 |5 Y" `" c* c- S& Qnat (inside) 10 192.168.0.206 255.255.255.255 0 0
' x/ X! K: \9 O# Z* q' f2 cnat (inside) 10 192.168.0.207 255.255.255.255 0 06 |  E2 D2 b$ N& C2 [
nat (inside) 10 192.168.0.208 255.255.255.255 0 0
4 O$ g8 k: f( g5 S* z: q, bnat (inside) 10 192.168.0.209 255.255.255.255 0 0$ E3 O  A: D9 ~* ]
nat (inside) 10 192.168.0.210 255.255.255.255 0 0
' W& o3 M9 O1 Z; a  ~7 e. y$ Lnat (inside) 10 192.168.0.211 255.255.255.255 0 0
' T: g$ e7 U6 d+ Q! g' Y2 J/ nnat (inside) 10 192.168.0.212 255.255.255.255 0 0
! p& o* u3 y9 M, m0 K- ^$ Hnat (inside) 10 192.168.0.213 255.255.255.255 0 0' Y1 i; I6 y" a. G4 |; }( q* G
nat (inside) 10 192.168.0.214 255.255.255.255 0 09 z- @. a, Q: i6 g# K
nat (inside) 10 192.168.0.215 255.255.255.255 0 0! M' L/ s4 W' D: ^* f$ j" A7 k  T
nat (inside) 0 192.168.0.0 255.255.255.0 0 0# o1 y3 Q# F7 O/ S5 t# `0 X
nat (inside) 10 0.0.0.0 0.0.0.0 0 02 n1 O9 X7 {3 M. w* v
route outside 0.0.0.0 0.0.0.0 221.XXX.138.249 15 B9 b- K4 h7 N; q! I* G
timeout xlate 3:00:008 O& d. f) T! E! h, K) K$ H
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00
; P0 v, W4 s* e( i& v0 atimeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00
+ U! v# `* K# q; Q, t. q6 utimeout uauth 0:05:00 absolute
  B" g! _- n4 t. @+ f' V$ Haaa-server TACACS+ protocol tacacs+
- g3 Z2 t8 I2 Q. t9 I/ K, _$ vaaa-server RADIUS protocol radius
2 f3 }3 W* _( R2 Y5 X+ B* l8 |) \aaa-server LOCAL protocol local + _7 ?, H! H3 B6 G# i' ~
http server enable
7 H7 z, O9 V+ ^+ Nhttp 192.168.0.0 255.255.255.0 inside
9 L7 s& r* n* B  {7 N- u2 ~no snmp-server location5 k: n$ I& x7 ^
no snmp-server contact2 a* E  |7 x9 u9 q4 r) i8 H# H$ i
snmp-server community public/ [; g+ n% x2 C. M( F* o! Q1 [; H
no snmp-server enable traps% I. T9 a7 Q; D9 t1 U+ \/ `7 m( o
floodguard enable; k2 |2 i+ ?! {+ ]
sysopt connection permit-ipsec
' a' p4 V) L+ D1 \sysopt connection permit-l2tp4 @/ @+ z  _& }9 |. v0 x/ I
crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
  z; n5 Q8 C  E, y* z8 Z) acrypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac 1 q$ D: E; \* N0 F1 i! v9 L: `
isakmp enable outside
: b) a  m1 T& W' [7 s- nisakmp enable inside
8 I1 H- h% `+ D6 r% etelnet timeout 5% [: \6 c; a$ P# y$ H- m/ W" m
ssh 0.0.0.0 0.0.0.0 outside$ y% w% t9 z9 Q" V/ q$ U* P
ssh 0.0.0.0 0.0.0.0 inside& S$ G+ p8 b' @; [
ssh timeout 53 z( L8 |- x& B& Y& I7 k' s' K
console timeout 0" o8 O; N3 w  h: G* Q
vpdn username wanhine password ********* # B# m- [: S. e  d( }. G
vpdn enable outside4 e5 |/ |2 P' s
vpdn enable inside
# x* O, J# H# v9 _8 {dhcpd address 192.168.0.20-192.168.0.200 inside
9 z7 z: C/ P1 h4 P5 j1 ~dhcpd dns 202.103.24.68 202.103.0.1179 I3 p* e5 K1 t7 l) M8 m: s
dhcpd lease 3600
' d. u2 i$ R8 h) [! S, Gdhcpd ping_timeout 7509 |$ t2 Q0 a8 e( B- n
terminal width 80
# `6 @: V5 Y/ R' n; K: P8 i' hCryptochecksum:f40dc8963b7f456d60eac467e8c0ea87
+ n5 u5 M# ?% V0 l6 T/ V: end
  |$ b) z2 {9 B0 \# x[OK]9 c) d, H! L7 y) }
% d- K+ T( W+ E

; C4 }: I1 ^, n# Q" f+ ~9 E* T
  Q( Q: V) S' \请高人指点.
# E0 t5 G6 Y" Y/ G, N4 a5 A如果PDM无法实现,请发下完整的配置表谢谢,万分感谢!
CCNA考试 官方正规报名 仅需1500元
回复 论坛版权

使用道具 举报

darling911 [Lv4 初露锋芒] 发表于 2013-6-30 07:19:53 | 显示全部楼层
1.网络拓扑如下图
5 F; n9 r% i' M; \, }3 Yscreen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/001.jpg')}}" />
& O, ^% G) V+ n' f8 ]  Z# \2.CISCO pix515e使用PDM3.0配置如下6 z) P0 z" F" h. ?4 S8 y* V
screen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/002.jpg')}}" />
5 G3 c) K0 _8 K/ z& I( J, pscreen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/003.jpg')}}" />
7 Z. q3 w, ~3 @( j& oscreen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/004.jpg')}}" />0 S1 r- u% {( ?9 i* G
screen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/005.jpg')}}" />
4 n3 N$ y/ O! I4 |" ^# Jscreen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/006.jpg')}}" />
" H. w% X1 ?( pscreen.width*0.6) {this.width=screen.width*0.6;this.alt='';this.onmouseover=this.style.cursor='pointer';this.onclick=function(){window.open('http://www.eask.tk/nat/007.jpg')}}" />& A( g2 l0 U5 `* v" t+ k5 V

0 z8 p5 o, N: K* Z3.拟实现的网络功能:公网计算机通过光纤、ADSL、WIFI、mobile等方式接入因特网,再通过windows自带的虚拟专用网拨号连接或者CISCO的VPN cilent拨入PIX515e内部的VpnServer,以实现接入VpnServer所在的局域网,共享局域网内的资源,VPN Server在内网测试通过。
) x( D6 ~. _# W
$ L1 ~& m- e  `; c0 R4.遇到的问题:公网计算机无法通过pix515e的公网地址向内穿越NAT拨入VPNserver。能否在pix515e上建立一条Vpn Tunnel以实现第3条的网络功能,该如何建立。: z( l9 y9 I$ e/ P/ n% i0 y
, q1 ~5 u1 N: z# w/ `' R
5.已失败的方法/ Y7 N$ N3 E  z" L
2 }+ W* E% W5 h- }5 C. n" I
A:端口映射,该思科设备通过NAT功能将内网IP转换为公网IP,不是路由器,无法做端口映射。
! x% @- S& h1 a$ |2 x+ A7 V9 t( x! F
B:在PDM3.0上尝试对PIX515e进行VPN的设置,未能凑效。
9 ~* }1 c8 c* A& n- @: z: b8 u  |: V" O7 c/ J7 A7 o
C:逆向NAT失败,PDM3.0不允许。2 {. Q" Y$ z% K( ]2 l/ U* |( g

# q: ^7 e; C5 @) j设备目前的配置列表( S( w  r4 ]; d. a) E: |+ J

1 u1 P9 I; a1 u3 D) Y1 g" a) ?& qBuilding configuration...+ G& p" A4 x# m
: Saved% x5 F  k$ o3 K
:) \) w! a& `  `% Y1 i
PIX Version 6.3(3): N7 X- I: K8 [- b' w3 y7 m. P  K
interface ethernet0 auto
5 L$ d; i0 @9 Q; Sinterface ethernet1 auto
" R. v' x  R  o$ anameif ethernet0 outside security0
, X3 J! p, v' e/ n! A0 C) B0 x( Znameif ethernet1 inside security100& t  I+ O4 L5 A8 b
enable password /NNcO2U/e4a3IAX3 encrypted9 d3 u1 B" x5 {9 _) w1 D, p
passwd 2KFQnbNIdI.2KYOU encrypted
( T3 a" @' d' n. n  d$ Phostname huawei! a- z; q% I8 P' ~
domain-name huawei.com
' h0 t+ [& }- ^* K  O( Wfixup protocol dns maximum-length 512- k5 \$ m+ O, c& I+ ?
fixup protocol ftp 21
, B9 h% I7 P, Rfixup protocol h323 h225 1720
- S4 f0 p4 f) `1 ~( V* I+ Ofixup protocol h323 ras 1718-1719" j+ O% y8 t/ X
fixup protocol http 80
; u5 B: \# Y  ofixup protocol rsh 514
7 E* w7 X+ d. K: e2 ofixup protocol rtsp 554
+ r' X6 r& d$ u9 H) D" [; [! x& Hfixup protocol sip 5060: [  B' G. c9 ^6 M6 M5 [) q- P2 {
fixup protocol sip udp 5060: u9 t* C; V8 }0 l9 Z( g
fixup protocol skinny 2000
, ?5 e3 }0 u% J, jfixup protocol smtp 25
" w3 C* d1 D" J/ l! Jfixup protocol sqlnet 15218 z* @7 i9 C4 z0 A+ G5 m+ [4 W; ]' L  W- s
fixup protocol tftp 69  s: m' v2 Y, Q+ w6 I
names
6 T0 ], ^/ ?9 r3 [access-list outside_inbound_nat0_acl permit ip interface outside 192.168.0.0 255.255.255.0 # [$ A+ X  [- u' a5 F
pager lines 246 n8 S% K/ c' B4 S
mtu outside 1500) A1 `8 ^8 [: f6 h
mtu inside 1500; I3 m  _  \, `/ A6 J4 ]( i
ip address outside 221.XXX.138.250 255.255.255.2527 S+ N1 \6 N# ^5 X! z
ip address inside 192.168.0.254 255.255.255.0" A9 Z3 i  B0 E7 T- C- `8 R  X- _4 C
ip audit info action alarm
9 Z' w' I% f4 l' X% f/ d+ Nip audit attack action alarm
1 u" F% M7 `- y( N  P9 kpdm location 192.168.0.3 255.255.255.255 inside
/ }1 |% r) G. t$ Xpdm location 192.168.0.24 255.255.255.255 inside; \; x3 R$ Z; d7 h6 G# f
pdm location 192.168.0.1 255.255.255.255 inside
: M! K" z! c9 m, D" H! qpdm location 192.168.0.2 255.255.255.255 inside* H% d% l* [! e. X( _# a1 d2 }
pdm location 192.168.0.12 255.255.255.255 inside
8 @: j8 J/ g! g. Xpdm location 192.168.0.10 255.255.255.255 inside9 }5 d; d( G6 F1 Q6 N3 M4 D
pdm location 192.168.0.16 255.255.255.255 inside) K8 h( Z. |4 [" f' W
pdm location 192.168.0.19 255.255.255.255 inside
" g' F$ k6 `1 ]! b7 Rpdm location 192.168.0.20 255.255.255.255 inside
( q" w/ s* p" \; m: Qpdm location 192.168.0.22 255.255.255.255 inside2 e8 s+ d2 |2 ]
pdm location 192.168.0.23 255.255.255.255 inside3 Y4 L' R8 T# y: ?
pdm location 192.168.0.34 255.255.255.255 inside$ ?+ E& n6 V! W, ^9 a( _- n$ P
pdm location 192.168.0.38 255.255.255.255 inside
4 g: z/ h$ V8 g& g1 p7 |: gpdm location 192.168.0.40 255.255.255.255 inside. u- A4 E" L5 l! T) r
pdm location 192.168.0.58 255.255.255.255 inside. U2 L7 C1 z- j: }& _8 N6 C8 Q
pdm location 192.168.0.17 255.255.255.255 inside' u, `% {0 o* m# q& r6 @  r
pdm location 192.168.0.39 255.255.255.255 inside1 g/ J6 s# `8 B! o; p8 I1 b- n
pdm location 192.168.0.41 255.255.255.255 inside1 G! E4 I' H) |* Y
pdm location 192.168.0.13 255.255.255.255 inside  i! S4 m$ n+ P2 ~* R  k
pdm location 192.168.0.42 255.255.255.255 inside& P0 Q+ S, m. Q6 h4 ?- |; P* @
pdm location 192.168.0.45 255.255.255.255 inside1 Z8 n% `/ D/ V0 O5 T) Z8 P% e+ m/ h
pdm location 192.168.0.46 255.255.255.255 inside
7 L; b6 `) @' ^pdm location 192.168.0.47 255.255.255.255 inside% ^+ D2 L1 m0 Y: o8 s; r
pdm location 192.168.0.50 255.255.255.255 inside
% P2 [$ o5 D, N2 W' p4 A3 C, t+ m# Kpdm location 192.168.0.25 255.255.255.255 inside) j1 W0 Z7 @8 B# _3 p/ I2 N
pdm location 192.168.0.4 255.255.255.255 inside8 g$ a' m  l, q- U# Z
pdm location 192.168.0.6 255.255.255.255 inside  J7 ^' c- s; D5 Y( q
pdm location 192.168.0.35 255.255.255.255 inside  f7 G, W- d) Z7 e6 O0 T+ K
pdm location 192.168.0.21 255.255.255.255 inside; {: b! I; H, i6 t5 D: K. y0 i
pdm location 192.168.0.200 255.255.255.255 inside1 j$ ~- _0 p* y6 I' W
pdm location 192.168.0.48 255.255.255.255 inside
7 J! Y* N. j- [pdm location 192.168.0.60 255.255.255.255 inside
9 {; B7 c  P. R, Hpdm location 192.168.0.51 255.255.255.255 inside7 |6 H* t6 M! I( ~
pdm location 192.168.0.32 255.255.255.255 inside# `9 h$ R$ w4 f1 H
pdm location 192.168.0.18 255.255.255.255 inside
8 E7 h( J; I+ A* `" J( updm location 192.168.0.7 255.255.255.255 inside4 D  s9 |' j0 y0 G" T# i( c
pdm location 192.168.0.201 255.255.255.255 inside- ~3 J) q) x& \/ E
pdm location 192.168.0.36 255.255.255.255 inside% G1 ~) H* q" y" Z9 }& ^
pdm location 192.168.0.100 255.255.255.255 inside
$ R4 {3 W4 V/ F7 s- `, A8 [4 Spdm location 192.168.0.5 255.255.255.255 inside- J+ ~0 h. X/ _1 J
pdm location 192.168.0.202 255.255.255.255 inside* N! a. p7 F, Y* k/ [5 u/ N, Q
pdm location 192.168.0.26 255.255.255.255 inside$ c- n- h, G1 N- p
pdm location 192.168.0.203 255.255.255.255 inside
' {$ i, Y# C: `; v+ `! N5 D4 Cpdm location 192.168.0.14 255.255.255.255 inside9 Q6 B% M) s( ~8 t
pdm location 192.168.0.204 255.255.255.255 inside  ~" Z. a$ ^) f) f+ H8 {
pdm location 192.168.0.251 255.255.255.255 inside
/ U7 w+ S/ f! N) k! Q9 J$ vpdm location 192.168.0.205 255.255.255.255 inside% z% v6 s! ?" _. m
pdm location 192.168.0.206 255.255.255.255 inside
7 j3 k& Z" O8 I7 P0 L4 Ipdm location 192.168.0.207 255.255.255.255 inside# n+ `' ^( r1 j8 @; s/ s
pdm location 192.168.0.208 255.255.255.255 inside6 l5 Z5 Z; D- f2 ]
pdm location 192.168.0.209 255.255.255.255 inside$ x! G8 x+ v0 |1 u0 W) F
pdm location 192.168.0.108 255.255.255.255 inside& [# E+ ?$ Y' s! p
pdm location 192.168.0.31 255.255.255.255 inside: h8 ?" f! X0 Y: q' R6 U0 \
pdm location 192.168.0.30 255.255.255.255 inside% o0 v* C# l* ^8 R
pdm location 192.168.0.210 255.255.255.255 inside9 n" N# n: f, k$ B- d2 q
pdm location 192.168.0.8 255.255.255.255 inside! N2 n: Y! R7 L, F
pdm location 192.168.0.11 255.255.255.255 inside
& O4 L* ^' O3 u. q3 Opdm location 192.168.0.29 255.255.255.255 inside
! w- e* `9 X* P8 e$ y, a, npdm location 192.168.0.109 255.255.255.255 inside# a# O2 h' ^; B. m7 D* u8 P
pdm location 192.168.0.111 255.255.255.255 inside
; v! W& @6 y  M* `pdm location 192.168.0.116 255.255.255.255 inside3 T9 I- W: `3 z5 i  R2 |: |
pdm location 192.168.0.113 255.255.255.255 inside
7 u- r. b. T) N/ S5 Ypdm location 192.168.0.107 255.255.255.255 inside
9 b6 q7 l# Z% S7 z- hpdm location 192.168.0.240 255.255.255.255 inside
" W. k1 c% [+ lpdm location 192.168.0.241 255.255.255.255 inside
' H6 K* A0 ^2 s; k( u/ _pdm location 192.168.0.233 255.255.255.255 inside
* B, a/ j" z$ I+ l) [- Q+ }( fpdm location 192.168.0.250 255.255.255.255 inside0 J. ^1 I* E$ K9 M0 ?* ^+ C# Q8 V
pdm location 192.168.0.252 255.255.255.255 inside
+ |$ s7 z; W$ U" s8 p$ Y, Opdm location 192.168.0.253 255.255.255.255 inside0 l. d. h: Z& y1 T
pdm location 192.168.0.44 255.255.255.255 inside" O% z& A/ D, Y9 i
pdm location 192.168.0.242 255.255.255.255 inside2 x5 R  f7 ]4 _  J0 _( k: A4 U7 [, e( y
pdm location 192.168.0.239 255.255.255.255 inside
$ E( w+ I0 f) e/ R' b8 Rpdm location 192.168.0.27 255.255.255.255 inside
! L! h: Z. Z% B1 jpdm location 192.168.0.249 255.255.255.255 inside
# n  A' C* r% ]: \+ l# xpdm location 192.168.0.61 255.255.255.255 inside
6 b: v3 a) L, O* ?& ipdm location 192.168.0.62 255.255.255.255 inside
: Y2 x: e' _! M& p9 f* w; ?pdm location 192.168.0.63 255.255.255.255 inside
$ |. \- |* ]% I7 n+ I# h$ P7 Gpdm location 192.168.0.64 255.255.255.255 inside, E7 Z; d1 g+ c: |8 N
pdm location 192.168.0.68 255.255.255.255 inside
4 J& `$ P. I# }) `: w0 \- mpdm location 192.168.0.211 255.255.255.255 inside
7 s. o# Y$ Y+ }/ jpdm location 192.168.0.70 255.255.255.255 inside
  K- m; \& s7 _& W( cpdm location 192.168.0.65 255.255.255.255 inside
8 }  c2 B& m, Xpdm location 192.168.0.121 255.255.255.255 inside
( Y. s  ^6 `4 Ypdm location 192.168.0.247 255.255.255.255 inside7 [2 a3 w( G; D3 }$ c/ O
pdm location 192.168.0.37 255.255.255.255 inside
: @, q( _. F9 [pdm location 192.168.0.73 255.255.255.255 inside: q# r5 {% W" L# N& B: w/ G& V
pdm location 192.168.0.112 255.255.255.255 inside; o9 \' L0 H! Y6 w# v7 x5 a
pdm location 192.168.0.57 255.255.255.255 inside
. _: R6 a& l4 H& ~pdm location 192.168.0.99 255.255.255.255 inside
% M: _8 g' p1 g% u" l$ M* [pdm location 192.168.0.124 255.255.255.255 inside" I1 j8 m3 r; U& l4 h/ \
pdm location 192.168.0.52 255.255.255.255 inside3 F4 l. {$ Z; W% D4 b' g: K
pdm location 192.168.0.118 255.255.255.255 inside
& q" v0 w2 e9 y: x% Epdm location 192.168.0.122 255.255.255.255 inside8 R9 J) i3 \# w  W) V$ n2 ~
pdm location 192.168.0.49 255.255.255.255 inside
$ q$ L7 y; C8 u3 C1 Xpdm location 192.168.0.55 255.255.255.255 inside
8 B) O6 M* S' r7 k; npdm location 192.168.0.43 255.255.255.255 inside
. P5 {% |- z% ?' D- B+ Bpdm location 192.168.0.103 255.255.255.255 inside
) t2 V" O* ~" a: Lpdm location 192.168.0.54 255.255.255.255 inside
5 T* L" P# w7 g7 S5 V- E( p: }pdm location 192.168.0.243 255.255.255.255 inside
, h) t% I8 v% mpdm location 192.168.0.244 255.255.255.255 inside
8 N0 b& F0 p: u0 kpdm location 192.168.0.230 255.255.255.255 inside
' \. z# j$ m' D# Qpdm location 192.168.0.135 255.255.255.255 inside
" u" _% w8 x0 x/ Fpdm location 192.168.0.115 255.255.255.255 inside3 _  k7 e  D+ ^; C8 k
pdm location 192.168.0.245 255.255.255.255 inside
+ c, h" Q: T: ~3 v& Xpdm location 192.168.0.238 255.255.255.255 inside; [0 B# j3 I) g6 a
pdm location 192.168.0.237 255.255.255.255 inside9 Q; O: z6 B1 z8 Z
pdm location 192.168.0.231 255.255.255.255 inside
5 o' v* g* L/ {8 bpdm location 192.168.0.235 255.255.255.255 inside# U( H, ~) k: t8 j- V1 d, h( d
pdm location 192.168.0.236 255.255.255.255 inside9 N; c4 u% F* I. n2 {. b% H/ b: f
pdm location 192.168.0.190 255.255.255.255 inside
' c+ a0 J$ z8 B, u( W/ s, T) zpdm location 192.168.0.181 255.255.255.255 inside
9 C% G: u2 e4 \9 I+ ppdm location 192.168.0.9 255.255.255.255 inside2 g0 b) Q$ e* }8 i" h9 _# S
pdm location 192.168.0.246 255.255.255.255 inside
/ v' w& z0 ?4 A2 O8 u( e  ypdm location 192.168.0.59 255.255.255.255 inside
% A# _1 A6 J' h7 A0 qpdm location 192.168.0.191 255.255.255.255 inside6 Y6 v. M- ?+ ?# `2 q. v) f
pdm location 192.168.0.117 255.255.255.255 inside7 J, _; p1 N/ G1 w
pdm location 192.168.0.171 255.255.255.255 inside
. z+ n7 F$ x- i! |' f( K6 spdm location 192.168.0.53 255.255.255.255 inside- d7 f# K% r" L8 y
pdm location 192.168.0.130 255.255.255.255 inside! w, q* y0 h: E8 u
pdm location 192.168.0.91 255.255.255.255 inside
( N( R4 T/ K$ |' Z1 R- Zpdm location 192.168.0.140 255.255.255.255 inside0 K7 H! @: t. [) x
pdm location 192.168.0.220 255.255.255.255 inside! N5 V' R! O& l0 C# ^7 a" B
pdm location 192.168.0.119 255.255.255.255 inside: i9 ]6 r7 J7 v9 q& K5 }' J
pdm location 192.168.0.223 255.255.255.255 inside
6 W3 i# s/ A5 c8 Hpdm location 192.168.0.106 255.255.255.255 inside& x$ J! A* [4 l4 @* W! S, r
pdm location 192.168.0.123 255.255.255.255 inside
+ U& e6 q+ r  ]pdm location 192.168.0.67 255.255.255.255 inside
$ K( P" Y8 y4 S( fpdm location 192.168.0.219 255.255.255.255 inside  Q* Y* Y+ d% B" U; s1 y0 S/ B
pdm location 192.168.0.56 255.255.255.255 inside
* e1 {. E* @/ h% T/ ipdm location 192.168.0.66 255.255.255.255 inside2 U6 \/ O) a! A8 ]
pdm location 192.168.0.76 255.255.255.255 inside+ B. Q/ W$ D! A9 a9 g, Q
pdm location 192.168.0.102 255.255.255.255 inside
" C, z, c, _' D" {6 a  @0 y9 R* Rpdm location 192.168.0.170 255.255.255.255 inside6 R5 z3 ]$ ^& r8 j( |
pdm location 192.168.0.172 255.255.255.255 inside
8 o( f/ G+ ]1 m0 x3 Opdm location 192.168.0.173 255.255.255.255 inside
' K; [+ I" E/ x* o$ J9 Gpdm location 192.168.0.174 255.255.255.255 inside
1 d6 U$ R" N/ I7 e6 \  Vpdm location 192.168.0.175 255.255.255.255 inside8 A$ M% o2 c/ x& v
pdm location 192.168.0.160 255.255.255.255 inside
' V: \! {3 Z/ ?: X9 L3 a7 W. y1 mpdm location 192.168.0.138 255.255.255.255 inside
8 `' ^" o& A: z1 W( M/ Spdm location 192.168.0.78 255.255.255.255 inside
) h9 k5 Z+ N) w, k1 F# Z5 x) ~pdm location 192.168.0.69 255.255.255.255 inside
7 i( `1 v0 |( B6 l5 n+ epdm location 192.168.0.221 255.255.255.255 inside
) `# `! s) V: V4 R" epdm location 192.168.0.110 255.255.255.255 inside
6 R2 N0 D4 c- Hpdm location 192.168.0.232 255.255.255.255 inside
* c' B2 E: g. Tpdm location 192.168.0.80 255.255.255.255 inside0 ]3 P1 c3 E, [- ^) |1 }4 X
pdm location 192.168.0.81 255.255.255.255 inside
. H9 B0 r% C  P, ?3 Apdm location 192.168.0.82 255.255.255.255 inside# F* k: I0 |; M; |' P' t/ d9 u2 G
pdm location 192.168.0.83 255.255.255.255 inside
' z6 G. I' D/ xpdm location 192.168.0.84 255.255.255.255 inside* j& \+ y, k! g6 t' y" _  Q
pdm location 192.168.0.85 255.255.255.255 inside
8 r! w; u; F5 ]pdm location 192.168.0.86 255.255.255.255 inside
+ H2 r! f  C& X% A2 @( ypdm location 192.168.0.87 255.255.255.255 inside
9 w6 g( G+ Z3 h" C$ T" @4 H1 Q& ^pdm location 192.168.0.88 255.255.255.255 inside' A% Z; j& d  Y0 I! i9 o
pdm location 192.168.0.89 255.255.255.255 inside5 Q' n* B. o5 Q/ G
pdm location 192.168.0.90 255.255.255.255 inside: D7 z% t4 T& P1 D7 v- J
pdm location 192.168.0.28 255.255.255.255 inside
/ g; u1 Q, e7 M4 `/ v- Wpdm location 192.168.0.234 255.255.255.255 inside
- @" |+ I, E$ bpdm location 192.168.0.222 255.255.255.255 inside
0 e6 y" c: [+ D9 ~7 V" b$ [pdm location 192.168.0.150 255.255.255.255 inside
3 h/ a$ v: g$ l" b4 M3 lpdm location 192.168.0.151 255.255.255.255 inside1 ^" R( M, A% {; |, e
pdm location 192.168.0.152 255.255.255.255 inside  i( W; r2 B9 z4 c! T
pdm location 192.168.0.77 255.255.255.255 inside' Y$ I& ^. a: I, w" \5 _2 k
pdm location 192.168.0.72 255.255.255.255 inside& {# c9 {! O  W! q$ l4 S( }* f: E
pdm location 192.168.0.225 255.255.255.255 inside
7 H) s( a/ x8 ~& B, \3 ], [pdm location 192.168.0.161 255.255.255.255 inside
5 O. N: a9 j2 gpdm location 192.168.0.92 255.255.255.255 inside& p5 R: ^- H& c* O  P
pdm location 192.168.0.192 255.255.255.255 inside
3 U$ A  K/ p/ H- I% g$ epdm location 192.168.0.193 255.255.255.255 inside( R1 @# @$ s6 \. h" c) P
pdm location 192.168.0.15 255.255.255.255 inside6 A7 r0 C5 z! [
pdm location 192.168.0.33 255.255.255.255 inside  s1 A7 `3 u  V( h. C% {& Q
pdm location 192.168.0.79 255.255.255.255 inside
# t  O5 Z) C7 E9 @5 n7 ~pdm location 192.168.0.93 255.255.255.255 inside" j7 Q, f0 a. w
pdm location 192.168.0.94 255.255.255.255 inside: ?0 A8 d! H! b8 k4 m$ O, E% w
pdm location 192.168.0.95 255.255.255.255 inside6 X1 y6 z4 h0 B8 v/ Y: @+ s
pdm location 192.168.0.96 255.255.255.255 inside- P$ v5 G5 w( m* `6 P! E
pdm location 192.168.0.97 255.255.255.255 inside
' l, D6 R# J" \7 U! }  Spdm location 192.168.0.98 255.255.255.255 inside
! K: h* R! Y4 y% w6 |& tpdm location 192.168.0.101 255.255.255.255 inside# T7 ?# W( \  C. }. U: H
pdm location 192.168.0.104 255.255.255.255 inside/ p3 {) K- z0 T2 c( |( Z
pdm location 221.XXX.138.250 255.255.255.255 inside3 E0 A" [  B. E0 z, c% E& d: T/ l
pdm location 192.168.0.71 255.255.255.255 inside
( A8 R9 Y- x2 c! cpdm location 192.168.0.185 255.255.255.255 inside8 @- s) I1 P6 m! G8 q7 s& e/ t
pdm location 192.168.0.75 255.255.255.255 inside
! q( g+ c1 Z) n4 Q5 z# g$ hpdm location 192.168.0.120 255.255.255.255 inside
6 H7 v. H, A5 ?0 W' Zpdm location 192.168.0.212 255.255.255.255 inside
0 p. f0 n  ~' q) k% t1 Qpdm location 192.168.0.213 255.255.255.255 inside
- P" n5 V- _4 ppdm location 192.168.0.214 255.255.255.255 inside
* Z8 I  R  K. J# [, S: rpdm location 192.168.0.215 255.255.255.255 inside
9 f" e, B) k- o5 w4 Gpdm location 192.168.0.128 255.255.255.192 outside& F" |* P, C9 f& J0 X( ~0 A
pdm history enable, C' N, a, `% o- F& p; ^; T
arp timeout 14400, Y, u# N- s) E2 r
global (outside) 10 interface
8 E/ E" O8 ?+ b. vnat (outside) 0 access-list outside_inbound_nat0_acl outside$ M9 I6 ~' o( e0 Q8 I7 l
nat (inside) 10 192.168.0.1 255.255.255.255 0 0
; K) ~4 @5 D3 Pnat (inside) 10 192.168.0.3 255.255.255.255 0 02 P3 |8 X& }7 S" S; ~
nat (inside) 10 192.168.0.4 255.255.255.255 0 0
7 L' B4 P$ g' onat (inside) 10 192.168.0.5 255.255.255.255 0 0
, E/ n7 W2 D& M# Bnat (inside) 10 192.168.0.10 255.255.255.255 0 0  T0 v- b, a0 b( h1 U5 j
nat (inside) 10 192.168.0.11 255.255.255.255 0 0" _' ^6 T0 g/ D' P
nat (inside) 10 192.168.0.12 255.255.255.255 0 0% x8 f* }& @* `- ?" k; Z" _- e, U$ U6 s
nat (inside) 10 192.168.0.13 255.255.255.255 0 0
0 e0 c1 M7 G8 \nat (inside) 10 192.168.0.14 255.255.255.255 0 0
% A  k7 x$ }3 f7 N7 Xnat (inside) 10 192.168.0.15 255.255.255.255 0 0* l  Q& ]% C2 G
nat (inside) 10 192.168.0.16 255.255.255.255 0 0  C' S4 ?9 T9 B8 O  S; S, v% G
nat (inside) 10 192.168.0.17 255.255.255.255 0 0
/ K& L9 e5 I8 m5 J+ y# Hnat (inside) 10 192.168.0.21 255.255.255.255 0 0/ ^8 C$ B; W+ B; [
nat (inside) 10 192.168.0.22 255.255.255.255 0 06 P. I# Z3 h* O# l, s' h% K
nat (inside) 10 192.168.0.23 255.255.255.255 0 0, ^+ B% D6 i4 G7 e- P$ ^
nat (inside) 10 192.168.0.24 255.255.255.255 0 0& n4 ]' y& k9 B9 q% ?  G4 A( I
nat (inside) 10 192.168.0.25 255.255.255.255 0 0" B1 ~/ w1 _: g* n+ ^
nat (inside) 10 192.168.0.26 255.255.255.255 0 0
2 b+ K- E* f' xnat (inside) 10 192.168.0.27 255.255.255.255 0 0
' V& p; o; K9 o" s% [/ R: hnat (inside) 10 192.168.0.29 255.255.255.255 0 0
& ~5 Q" ?, @- Pnat (inside) 10 192.168.0.31 255.255.255.255 0 0. `2 t0 y  j* l( f" r: P
nat (inside) 10 192.168.0.32 255.255.255.255 0 0
5 S# O" w! X$ l$ Y7 F  O7 x5 h* c- g$ pnat (inside) 10 192.168.0.33 255.255.255.255 0 06 P# S- g3 n' `# x4 ]1 K3 J; S# t
nat (inside) 10 192.168.0.34 255.255.255.255 0 0
0 ~- F, D+ k9 x4 m% u' @' r2 h* inat (inside) 10 192.168.0.37 255.255.255.255 0 0
# y( R$ F2 t: Dnat (inside) 10 192.168.0.39 255.255.255.255 0 0
, D5 c' X6 R* o" R: r& Wnat (inside) 10 192.168.0.40 255.255.255.255 0 0
3 |6 y2 p  K  h( G6 dnat (inside) 10 192.168.0.44 255.255.255.255 0 0' E; w( G5 ?2 j" ?+ [# X4 d6 A
nat (inside) 10 192.168.0.45 255.255.255.255 0 0! u8 w) ~9 x! i/ j+ n
nat (inside) 10 192.168.0.47 255.255.255.255 0 0
2 K4 Y1 S9 h! Bnat (inside) 10 192.168.0.48 255.255.255.255 0 0
7 ~& N$ M% E+ `; k* l1 anat (inside) 10 192.168.0.49 255.255.255.255 0 0* w" N% j  y+ W+ z  ?3 \+ E
nat (inside) 10 192.168.0.50 255.255.255.255 0 0
, e9 P( {. w" Y+ lnat (inside) 10 192.168.0.51 255.255.255.255 0 0
8 e3 s# F, c, c" G) cnat (inside) 10 192.168.0.52 255.255.255.255 0 0
( X* E8 v" E: k2 bnat (inside) 10 192.168.0.53 255.255.255.255 0 0
+ Y5 [9 E" A( K4 u% a4 I% Lnat (inside) 10 192.168.0.54 255.255.255.255 0 0! ^, d- C# R8 ?) A6 {0 j
nat (inside) 10 192.168.0.55 255.255.255.255 0 0- P) f/ T5 V4 n4 P5 L- r1 `
nat (inside) 10 192.168.0.56 255.255.255.255 0 01 ^% ?. z! y0 W: v" X$ [3 h
nat (inside) 10 192.168.0.57 255.255.255.255 0 0
' ^* i: l  W" m: H) tnat (inside) 10 192.168.0.58 255.255.255.255 0 0. j, P7 B  A. b, g8 ]
nat (inside) 10 192.168.0.59 255.255.255.255 0 0
9 h: h% G& H7 h# Q6 [% K. V4 Pnat (inside) 10 192.168.0.62 255.255.255.255 0 0, U0 M9 l7 U  U" j- [
nat (inside) 10 192.168.0.63 255.255.255.255 0 0
) c. K+ P( ^. D* g4 G; jnat (inside) 10 192.168.0.64 255.255.255.255 0 0$ _5 z/ P; F" w" h* Q. L
nat (inside) 10 192.168.0.65 255.255.255.255 0 0. ]% b" ^' E& z4 L) Z% V" o
nat (inside) 10 192.168.0.66 255.255.255.255 0 07 ~8 b0 S& w6 v3 {
nat (inside) 10 192.168.0.67 255.255.255.255 0 0
: x( {+ m. a$ i7 W) ~1 i5 Dnat (inside) 10 192.168.0.68 255.255.255.255 0 0
9 R: D2 y5 k% ^- _3 U& K9 rnat (inside) 10 192.168.0.69 255.255.255.255 0 0
$ h2 z. j# f: Q# s* A) I2 ?nat (inside) 10 192.168.0.71 255.255.255.255 0 0& ~0 n& \" p' `$ t  }4 }% d9 I5 }
nat (inside) 10 192.168.0.73 255.255.255.255 0 0
5 A6 e8 W! j- O8 [, _$ A8 fnat (inside) 10 192.168.0.76 255.255.255.255 0 0- F7 @0 P9 V6 u+ l/ ]
nat (inside) 10 192.168.0.79 255.255.255.255 0 0: S& |, g' C9 b6 E
nat (inside) 10 192.168.0.80 255.255.255.255 0 04 k* `( v6 V$ v) z4 }* R# m
nat (inside) 10 192.168.0.81 255.255.255.255 0 0
5 B! `) U7 o& R/ }9 o! N  E$ Snat (inside) 10 192.168.0.82 255.255.255.255 0 0! Z% T9 u" b) G  ?; Y  i/ {, \
nat (inside) 10 192.168.0.83 255.255.255.255 0 0
# \0 ~* {* V: O/ i) T+ hnat (inside) 10 192.168.0.85 255.255.255.255 0 0$ P- L4 n. V/ t2 _- |/ c6 [1 A; O
nat (inside) 10 192.168.0.86 255.255.255.255 0 0* a. n- p1 ?8 h- G2 s0 H. P' J
nat (inside) 10 192.168.0.87 255.255.255.255 0 06 l  |+ T. D8 c0 H* I: h6 V
nat (inside) 10 192.168.0.89 255.255.255.255 0 0
7 P% O3 w* Q2 }4 rnat (inside) 10 192.168.0.90 255.255.255.255 0 0( A$ C. U6 g; o5 Z$ L% F4 `1 h) ~
nat (inside) 10 192.168.0.92 255.255.255.255 0 0
9 K, L& k+ Z2 G) x' P( mnat (inside) 10 192.168.0.93 255.255.255.255 0 01 {6 E; E3 y' |4 ^0 t8 |
nat (inside) 10 192.168.0.94 255.255.255.255 0 0( r6 t( P# a" Y& b/ O: v* D
nat (inside) 10 192.168.0.95 255.255.255.255 0 0( s3 e* `9 ^! ^, i4 |
nat (inside) 10 192.168.0.96 255.255.255.255 0 0
3 B+ o0 V- {/ O; Y, l0 M$ U) ]2 ^  vnat (inside) 10 192.168.0.97 255.255.255.255 0 0; k- ?, u6 _% @8 ~: O" W9 e% O; E
nat (inside) 10 192.168.0.99 255.255.255.255 0 0
) V6 x& ^, @  l) C' J& o7 Onat (inside) 10 192.168.0.101 255.255.255.255 0 0
6 F- o8 |$ ]; e& A9 |" U, W: bnat (inside) 10 192.168.0.102 255.255.255.255 0 0
6 W' B: z7 y: U7 d3 N2 U5 Mnat (inside) 10 192.168.0.103 255.255.255.255 0 0
& P, x4 h3 w) q- F( N) Lnat (inside) 10 192.168.0.104 255.255.255.255 0 0
0 ~  @! T- J4 W0 j( J: Lnat (inside) 10 192.168.0.106 255.255.255.255 0 0
0 M( ]# K& ~5 _9 H6 u, {1 p  onat (inside) 10 192.168.0.107 255.255.255.255 0 0. q$ \+ T5 n! G& @4 D
nat (inside) 10 192.168.0.108 255.255.255.255 0 0/ H# }7 P- D1 M9 P; Y
nat (inside) 10 192.168.0.118 255.255.255.255 0 0
- |; z! ~: T( t" r  tnat (inside) 10 192.168.0.119 255.255.255.255 0 01 G" c7 j$ a9 q( ~
nat (inside) 10 192.168.0.120 255.255.255.255 0 0. v4 }* Q9 N, g( ?' H+ d
nat (inside) 10 192.168.0.121 255.255.255.255 0 0" @9 Z- U" a3 }  @
nat (inside) 10 192.168.0.200 255.255.255.255 0 0  S' m3 [7 K2 h
nat (inside) 10 192.168.0.201 255.255.255.255 0 0
4 c9 t& e0 B  z: k6 h0 Wnat (inside) 10 192.168.0.202 255.255.255.255 0 0
6 w( p1 P: z( F) @. n4 f# O4 n* E1 S: Bnat (inside) 10 192.168.0.203 255.255.255.255 0 0( |# Q- F/ _- v9 \( B0 [/ l5 r
nat (inside) 10 192.168.0.204 255.255.255.255 0 0+ h4 B" n% w4 G! o$ z
nat (inside) 10 192.168.0.205 255.255.255.255 0 0& S, m) X1 B/ w! k# Q
nat (inside) 10 192.168.0.206 255.255.255.255 0 0
: S/ P, Q/ d7 h; H5 Vnat (inside) 10 192.168.0.207 255.255.255.255 0 0
( p5 N, ?* E; Onat (inside) 10 192.168.0.208 255.255.255.255 0 0
1 @6 X. \* j1 q' ^3 Qnat (inside) 10 192.168.0.209 255.255.255.255 0 0
6 Y; E4 K" W% T0 k  J% t3 {2 Mnat (inside) 10 192.168.0.210 255.255.255.255 0 06 C, U6 S# h4 J4 \7 Q0 P
nat (inside) 10 192.168.0.211 255.255.255.255 0 0# o. G2 t: \# F# ?2 M
nat (inside) 10 192.168.0.212 255.255.255.255 0 05 j( w% ~, @# B( ~, @/ ?
nat (inside) 10 192.168.0.213 255.255.255.255 0 06 W7 _' N! _: ^' {5 k' l
nat (inside) 10 192.168.0.214 255.255.255.255 0 0/ p& r9 @3 Z3 R3 F" h, U
nat (inside) 10 192.168.0.215 255.255.255.255 0 0
( y+ ~7 ], x- `/ ^; J& ~5 t  X- Hnat (inside) 0 192.168.0.0 255.255.255.0 0 08 n& D- p1 N; j
nat (inside) 10 0.0.0.0 0.0.0.0 0 0
, y2 w8 p4 \% B5 Zroute outside 0.0.0.0 0.0.0.0 221.XXX.138.249 1$ L/ F& o& o6 o
timeout xlate 3:00:004 n7 t' u% ^  R# \: _" X+ G6 r
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00
5 Z& m) m8 @4 b( R3 B& Atimeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00$ x- q, B' _/ R4 T2 ~3 z- u
timeout uauth 0:05:00 absolute" D7 a* f) u  p: J$ M$ m/ x
aaa-server TACACS+ protocol tacacs+ : Y, ~; c2 O* {' J- t8 x$ r0 H, d
aaa-server RADIUS protocol radius
& o- }  e& Y8 Caaa-server LOCAL protocol local
4 S7 _7 R/ r" n& _+ x, Mhttp server enable0 e" x3 D& u3 n$ x$ j6 x0 z. D# g0 `
http 192.168.0.0 255.255.255.0 inside
; @- V: g8 ]8 V/ f6 A' @0 qno snmp-server location6 p% X" `5 n) m! q1 w
no snmp-server contact" Y' |5 E: M! l, A6 ^
snmp-server community public& _6 a. E, A7 G* D3 p
no snmp-server enable traps
6 |) R7 Q9 C6 g7 J7 W' r) Bfloodguard enable
& V$ c8 ?3 t  _sysopt connection permit-ipsec: f. K. }" K( d/ g- h
sysopt connection permit-l2tp
# G4 I5 ?  N8 }  [2 U) f9 E& U* \. Gcrypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
% `: v7 g, l- a3 C* u0 L* Jcrypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac + s8 d- e9 p/ Q5 u" h6 B
isakmp enable outside; L* z' N" ?2 |! c7 }& r1 F
isakmp enable inside
" S$ X" Y4 N  C  h$ Ttelnet timeout 5
2 t& O4 J: u& T2 p! M) z3 dssh 0.0.0.0 0.0.0.0 outside6 w& y& \6 {/ _$ z2 ^
ssh 0.0.0.0 0.0.0.0 inside+ M; f9 H* \; `
ssh timeout 5
3 `7 Q) }8 j8 @$ J9 |  Jconsole timeout 0
$ h3 H! B+ V1 ^8 Q1 K8 ~' vvpdn username wanhine password *********
- \# {$ F; ]% e& j+ avpdn enable outside
' K( v' u2 x, N+ h1 c' {vpdn enable inside6 R" J! f* h5 l( r& v+ X3 e
dhcpd address 192.168.0.20-192.168.0.200 inside
9 X! K3 g9 z- x" E  z/ [dhcpd dns 202.103.24.68 202.103.0.1177 _- L( F9 H0 `9 D' D" q. p; m
dhcpd lease 3600
: {8 U7 t4 d# L3 t! edhcpd ping_timeout 750, _' b2 @; ^# b$ K6 @
terminal width 80
# u2 k; |% q$ qCryptochecksum:f40dc8963b7f456d60eac467e8c0ea872 U7 U" }" f' b' ~4 m- p0 j: w) l4 p
: end
/ W! n. w  t! P# q& B[OK]
7 s% q: q" q1 J  J0 K) [' N3 s0 B: D/ F: _) @' h
/ M1 m: R: d* B1 Q: \

; g3 V, o2 |/ Q- K- u请高人指点.; s$ C8 {; E; e0 ]7 M
如果PDM无法实现,请发下完整的配置表谢谢,万分感谢!
回复 支持 反对

使用道具 举报

ayayay [Lv8 技术精悍] 发表于 2013-10-8 09:17:08 | 显示全部楼层
帮你顶下哈!!
回复 支持 反对

使用道具 举报

lwhr2 [Lv8 技术精悍] 发表于 2013-10-8 22:35:35 | 显示全部楼层
回复 支持 反对

使用道具 举报

dzd007 [Lv8 技术精悍] 发表于 2013-10-9 10:18:51 | 显示全部楼层
不错不错,楼主您辛苦了。。。
回复 支持 反对

使用道具 举报

wmlam [Lv8 技术精悍] 发表于 2013-10-9 11:02:44 | 显示全部楼层
帮你顶下哈!!
回复 支持 反对

使用道具 举报

roc8788 [Lv8 技术精悍] 发表于 2013-10-19 13:10:28 | 显示全部楼层
看帖回帖是美德!:lol
回复 支持 反对

使用道具 举报

lg6041 [Lv7 精益求精] 发表于 2013-11-6 15:19:48 | 显示全部楼层
好好 学习了 确实不错
回复 支持 反对

使用道具 举报

红木电脑 [VIP@钻石] 发表于 2014-3-25 18:23:22 | 显示全部楼层
我抢、我抢、我抢沙发~
回复 支持 反对

使用道具 举报

海皇CHICBOY [Lv8 技术精悍] 发表于 2014-3-26 14:26:11 | 显示全部楼层
没看完~~~~~~ 先顶,好同志
回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

QQ|无图浏览|手机版|网站地图|攻城狮论坛

GMT+8, 2025-7-29 22:18 , Processed in 0.128117 second(s), 16 queries , Gzip On, MemCache On.

Powered by Discuz! X3.4 © 2001-2013 Comsenz Inc.

Designed by ARTERY.cn