网管联盟 | 网管论坛 | 网管u家 | 网管博客 | 网管软件 | 网管求职 | 小游戏 | 网管搜索 | 网管原创 | 网管聚合 | 网管读摘 | 网管焦点 | 世界素材 | 会员投稿 | 会员中心 
中国网管联盟
Windows Linux Cisco 网络技术 数据库 黑客攻防 DotNet Java PHP 认证 新闻资讯 服务器 存储资讯 网络设备 网管学堂 技术专题 焦点 网吧频道
 当前位置: > bitsCN.com > CISCO > 安全技术 > 防火墙 > PIX 525 配置实例  

PIX 525 配置实例

2003-12-28  作者:BitsCN整理  来源:中国网管联盟  点评 投稿 收藏


  PIX Version 6.0(1)
  
  nameif ethernet0 outside security0
  
  nameif ethernet1 inside security100
  
  enable password yk/qh389FGH87k4fE encrypted
  
  passwd ju/qh3OPKB9lk6gT encrypted
  
  hostname pixfirewall
  
  domain-name xf.com
  
  fixup protocol ftp 21
  
  fixup protocol http 80
  
  fixup protocol h323 1720
  
  fixup protocol rsh 514
  
  fixup protocol smtp 25
  
  fixup protocol sqlnet 1521
  
  fixup protocol sip 5060
  
  fixup protocol skinny 2000
  
  names
  
  pager lines 24
  
  logging timestamp
  
  logging console debugging
  
  interface ethernet0 auto
  
  interface ethernet1 auto
  
  mtu outside 1500
  
  mtu inside 1500
  
  ip address outside 61.141.165.165 255.255.248.0
  
  ip address inside 192.168.166.1 255.255.255.0
  
  ip audit info action alarm 网管论坛bbs_bitsCN_com
  
  ip audit attack action alarm
  
  pdm location 192.168.166.5 255.255.255.255 inside
  
  pdm history enable
  
  arp timeout 14400
  
  global (outside) 1 61.141.165.166
  
  nat (inside) 1 0.0.0.0 0.0.0.0 0 0
  
  static (inside,outside) 61.141.165.162 192.168.166.100 netmask 255.255.255.255 0 0
  
  static (inside,outside) 61.141.165.164 192.168.166.4 netmask 255.255.255.255 0 0
  
  conduit permit icmp any any
  
  conduit permit tcp host 61.141.165.162 eq www any
  
  conduit permit tcp host 61.141.165.162 eq domain any
  
  conduit permit udp host 61.141.165.162 eq domain any
  
  conduit permit tcp host 61.141.165.164 eq www any
  
  conduit permit tcp host 61.141.165.164 eq smtp any
  
  conduit permit tcp host 61.141.165.164 eq pop3 any
  
  route outside 0.0.0.0 0.0.0.0 61.141.165.161 1
  
  timeout xlate 3:00:00
  
  timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:30:00 sip_media 0:02:00

网管网www.bitscn.com


  
  timeout uauth 0:05:00 absolute
  
  aaa-server TACACS+ protocol tacacs+
  
  aaa-server RADIUS protocol radius
  
  http server enable
  
  http 192.168.166.5 255.255.255.255 inside
  
  no snmp-server location
  
  no snmp-server contact
  
  snmp-server community public
  
  no snmp-server enable traps
  
  floodguard enable
  
  no sysopt route dnat
  
  telnet 192.168.166.5 255.255.255.255 inside
  
  telnet timeout 35
  
  ssh timeout 5
  
  terminal width 80
  
  Cryptochecksum:f6887798da2928498fe24d39825444b9
  
  end
  

TAGs   实例   配置   protocol   inside   fixup   any   conduit   permit      
 上一篇:防火墙+VPN=远程办公   下一篇:Cisco PIX 防火墙安装指南
PIX 525 配置实例 评论:
loading.. 评论加载中…
评论:请自觉遵守互联网相关政策法规,评论不得超过250字。

验证码: 注册用户
本类热门排行:
最新推荐文章:
网管论坛交流: