打印本文 打印本文  关闭窗口 关闭窗口  
CCSP/CCVP --ASA 5520配置例子
作者:佚名  文章来源:不详  点击数2432  更新时间:2007-5-18 3:15:51  文章录入:啊祖  责任编辑:啊祖

>  hostname shafw01

  domain-name heraeus.com

  enable password

  names

  !

  interface GigabitEthernet0/0

  no nameif

  no security-level

  no ip address

  !

  interface GigabitEthernet0/0.150

  vlan 150

  nameif inside_data

  security-level 50

  ip address 172.26.24.6 255.255.255.252

  !

  interface GigabitEthernet0/0.151

  vlan 151

  nameif inside_voice

  security-level 50

  ip address 10.48.8.1 255.255.255.0!

  interface GigabitEthernet0/1

  no nameif

  no security-level

  no ip address

  !

  interface GigabitEthernet0/1.161

  vlan 161

  nameif web

  security-level 50

  ip address 172.26.30.1 255.255.255.0

  !

  interface GigabitEthernet0/1.163

  vlan 163

  nameif secure

  security-level 50

  ip address 172.26.31.1 255.255.255.0

  !

  interface GigabitEthernet0/2

  description LAN/STATE Failover Interface for Future

  !

  interface GigabitEthernet0/3

  no nameif

  no security-level

  no ip address

  !

  interface GigabitEthernet0/3.154

  vlan 154

  nameif sprint

  security-level 50

  ip address 172.26.24.9 255.255.255.252

  !

  interface Management0/0

  nameif outside

  security-level 50

  ip address 222.66.83.18 255.255.255.240

  !

  boot system disk0:/asa704-k8.bin

  ftp mode passive

  clock timezone cet 8

  dns domain-lookup inside_data

  dns name-server 172.26.16.17

  same-security-traffic permit inter-interface     

  same-security-traffic permit intra-interface

  object-group icmp-type icmp_echo_request

  icmp-object echo

  object-group icmp-type icmp_echo_reply

  icmp-object echo-reply

  object-group icmp-type ICMP_echo

  group-object icmp_echo_request

  group-object icmp_echo_reply

  object-group service udp_tftp udp

  port-object eq tftp

  object-group service udp_citrix udp

打印本文 打印本文  关闭窗口 关闭窗口