Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
ru:jobs:vpn_gre_over_ipsec [2012/12/29 16:28]
admin [Конфигурация Cisco 1841.]
ru:jobs:vpn_gre_over_ipsec [2015/03/12 17:14]
admin [Самое сложное - конфигурация Checkpoint 572 (R71.2).]
Line 76: Line 76:
  
 **1. Необходимые пакеты:​**\\ **1. Необходимые пакеты:​**\\
-%%Linux Centos%% (версии ​выше ​5)\\+%%Linux Centos%% (версии 5)\\
 Racoon (ipsec-tools)\\ Racoon (ipsec-tools)\\
 Quagga ( version 0.98.6) Quagga ( version 0.98.6)
Line 196: Line 196:
 ===Linux=== ===Linux===
  
-3.2 Конфигурация GRE тунелей ​(**rc.conf**):\\+3.2 Конфигурация GRE тунелей :\\
  
 /​etc/​sysconfig/​network-scripts/​ifcfg-tun0\\ /​etc/​sysconfig/​network-scripts/​ifcfg-tun0\\
Line 312: Line 312:
  
  
-**Шаг 2. Создание %%FreeBSD%% роутера**\\+**Шаг 2. Создание %%FreeBSD%%/​Linux ​роутера**\\
  
 Network objects->​Interoperable Devices->​ Interoperable Devices...\\ Network objects->​Interoperable Devices->​ Interoperable Devices...\\
 General Properties\\ General Properties\\
-Name: %%FreeBSD%%\\+Name: %%FreeBSD%%/Linux\\
 IP Address: IP_A\\ IP Address: IP_A\\
  
Line 459: Line 459:
 IPSEC VPN->​Link Selection->​Set flag Always Use this IP address->​Set flag Selected Address from topology table: External IP (IP_A for %%FreeBSD%%,​ IP_B for Cisco, IP_C for Checkpoint)\\ IPSEC VPN->​Link Selection->​Set flag Always Use this IP address->​Set flag Selected Address from topology table: External IP (IP_A for %%FreeBSD%%,​ IP_B for Cisco, IP_C for Checkpoint)\\
  
-Для Cisco и %%FreeBSD%% установите:​\\+Для Cisco и %%FreeBSD%%/​Linux ​установите:​\\
  
 IPSEC VPN->VPN Advanced->​Set flag Custom Settings->​Set flag One tunnel per gateway pair->​GRE on IPSec\\ IPSEC VPN->VPN Advanced->​Set flag Custom Settings->​Set flag One tunnel per gateway pair->​GRE on IPSec\\
Line 473: Line 473:
 В закладке Firewall:\\ В закладке Firewall:\\
  
-1. Принимать IKE и ESP от Cisco and %%FreeBSD%% к Checkpoint и обратно\\+1. Принимать IKE и ESP от Cisco and %%FreeBSD%%/​Linux ​к Checkpoint и обратно\\
 2. Принимать любые сервися от TEST_NETWORK к TEST_NETWORK и OSPF. В VPN column укажите edit:\\ 2. Принимать любые сервися от TEST_NETWORK к TEST_NETWORK и OSPF. В VPN column укажите edit:\\
 set flags match traffic in this directional only->\\ set flags match traffic in this directional only->\\
Line 496: Line 496:
 write memory\\ write memory\\
  
 + ==== Об авторе ​ ==== 
 +[[https://​www.linkedin.com/​pub/​alexey-vyrodov/​59/​976/​16b|Profile]] автора
  
  
  
ru/jobs/vpn_gre_over_ipsec.txt · Last modified: 2015/03/12 17:14 by admin
Recent changes RSS feed Debian Powered by PHP Valid XHTML 1.0 Valid CSS Driven by DokuWiki