- 1、原创力文档(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。。
- 2、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 3、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
- 4、该文档为VIP文档,如果想要下载,成为VIP会员后,下载免费。
- 5、成为VIP后,下载本文档将扣除1次下载权益。下载后,不支持退款、换文档。如有疑问请联系我们。
- 6、成为VIP后,您将拥有八大权益,权益包括:VIP文档下载权益、阅读免打扰、文档格式转换、高级专利检索、专属身份标志、高级客服、多端互通、版权登记。
- 7、VIP文档为合作方或网友上传,每下载1次, 网站将根据用户上传文档的质量评分、类型等,对文档贡献者给予高额补贴、流量扶持。如果你也想贡献VIP文档。上传文档
查看更多
asa防火墙简要手册(ASA firewall brief manual)
asa防火墙简要手册(ASA firewall brief manual)
ASA firewall brief manual
Fu Yu summarized the data in September 29, 2011
View firewall features and licenses:
Show version
Show activation-key
Enter the firewall license:
#activation-key, 0 0 0 0 0 0Configure logical interfaces and add them to the appropriate VLAN
Config#firewall vlan-group 1 10,20,39
Firewall module 3 vlan-group 1
Configure interface redundancy:
Interface redundant 1
Member-interface Ethernet 0/1
Member-interface Ethernet 0/2
No shutdown
View interface redundancy status:
Show interface redundant 1
Configuration interface:
ASA
Interface g0/1
NameIf outside
Speed 100
Duplex full
Security-level 0
IP address
FWSM: can only establish logical interfaces
Firewall vlan-group 1 10,20,30
Firewall module 3 vlan-group 1
Exit
Session slot 3 processor 1
Conf t
NameIf VLAN 10 inside security100
NameIf VLAN 20 outside security 0
NameIf VLAN 30 DMZ security 50
IP, address, inside, ,
IP, address, outside, ,
IP, address, DMZ, ,
Obtain the IP address via the PPPOE protocol
VPDN, username, ABC, password, ABC
VPDN group 1 localname ABC
VPDN group 1, PPP, authentication, chap
VPDN group 1, request, dialout, PPPoE
IP, address, outside, PPPoE, setroute
Protect firewalls from VLAN hopping attacks
Modify native VLAN to prevent attackers from entering the internal network as a springboard by default native VLAN 1
VLAN 20
Interface g0/1
SW trunk encap dot1q
SW trunk native VLAN 20
SW mode trunk
Configure static routing (administrative distance is 1)
Route outside 1 points to ISP
Route inside 1
Route inside 1
Configuring the ISP example: the public network IP mask given by a general operator is 30/, that is, a public network IP for the user, so I only write the static routing protocol.
2 ISP 00 (assuming Telecom) and 00 (assuming Unicom)
Firewall intranet address: external:
(config) #sla monitor 1 defines the SLA monitoring process
(config-sla-monitor) #type, echo,
您可能关注的文档
- 24个字教你用好autocad提高绘图速度的个人习惯(24 words teach you to use AutoCAD to improve the speed of drawing personal habits).doc
- 24个适合大学生的团队游戏.(24 team games for College Students).doc
- 24个适合大学生的团队游戏(24 team games for College Students).doc
- 24c02读写c语言程序(24C02 read and write C language program).doc
- 24部带有哲理性电影(24 with philosophical films).doc
- 21天习惯养成法则(21 days rule of habit formation).doc
- 21世纪的书(Twenty-first Century book).doc
- 250部电影(250 films).doc
- 258个超搞笑有趣猜谜(258 funny funny puzzles).doc
- 28-王学谦道家文化鲁迅生命意识的传统资源(28- Wang Xueqian Taoist Culture the traditional resources of Lu Xun's life consciousness).doc
- as-i 总线技术及其应用(AS-I bus technology and its application).doc
- api 英语(API英语).doc
- ar205 209维修手册(Ar205 209 maintenance manual).doc
- asme ut-ⅱ级基础试题(asme ut - ⅱ级基础试题).doc
- asme标准中英文对照焊接术语(ASME standard English and Chinese welding terminology).doc
- at24c32 at24c56读写程序(At24c32 at24c56 read and write program).doc
- atx电源(ATX power).doc
- auto369驾驶培训版,依托驾校管理部门(Auto369 driving training edition, relying on driving school management).doc
- autocad(英文版)中所有英语词汇的翻译(Translation of all English words in AutoCAD (English Edition)).doc
- autocad2004快捷键(autocad2004快捷键).doc
最近下载
- 兴边富民工程实施方案(3篇).docx
- 苏科版八年级数学上册压轴题攻略专题03解题技巧专题:判定三角形全等的基本思路压轴题三种模型全攻略(原卷版+解析).docx VIP
- 卡通手绘风班干部竞选自我介绍PPT模板(二零二五学期版).pptx VIP
- 带锯机安全生产操作规程.pptx
- 第3课 古代印度 课件(共34张PPT).pptx VIP
- 公共政策3政策的资料搜集与方法剖析.ppt VIP
- 专题04 解题技巧专题:判定三角形全等的基本思路压轴题三种模型全攻略(解析版).docx VIP
- 2025年健康管理师技能证书全国考试题库(含答案).pdf VIP
- 写景抒情散文阅读.doc VIP
- 中小学班级卫生值日表 模板.docx VIP
文档评论(0)