192.168.0.254 255.255.255.0 !定义PIX的outside口IP ip address inside 10.1.1.244 255.255.255.0 !定义PIX的inside口IP ip audit info action alarm ip audit attack action alarm ip local pool dialer 10.1.1.246-10.1.1.247 !定义分配给VPN client的IP地址池 no failover failover timeout 0:00:00 failover poll 15 failover ip address outside 0.0.0.0 failover ip address inside 0.0.0.0 pdm location 10.1.1.88 255.255.255.255 inside pdm history enable arp timeout 14400 global (outside) 1 interface nat (inside) 0 access-list 80 !定义不进行NAT的流量 nat (inside) 1 0.0.0.0 0.0.0.0 0 0 access-group test in interface outside route outside 0.0.0.0 0.0.0.0 192.168.0.243 1 timeout xlate 3:00:00 timeout conn页码:[1] [2] [3] [4] [5] [6] [7] 第3页、共7页 |