資源描述:
《思科路由器ssl配置指導(dǎo)》由會(huì)員上傳分享,免費(fèi)在線閱讀,更多相關(guān)內(nèi)容在工程資料-天天文庫(kù)。
1、思科路由器SSL配置指導(dǎo)Example:ConfiguringaGenericSSLVPNGatewayThefollowingoutputexampleshowsthatagenericSSLVPNgatewayhasbeenconfiguredinprivilegedEXECmode:Router#showrunning-configwebvpngatewaySSL_gateway2ipaddress10.1.1.1.port442ssltrustpointTP_self_signed_4138349635inservicei■webvpncontextSSL_ga
2、teway2sslauthenticateverifyalli■I■policygroupdefaultdefault-group-policydefaultgatewaySSL_gateway2inserviceExample:ConfiguringanACLThefollowingoutputexampleshowstheACLis"acll."Ithasbeenassociatedwithpolicygroup"default."Router#showrunning-configwebvpncontextcontextlsslauthenticateverifya
3、llI■acl"acll"error-msg"warning!!!...upermiturl"http://www.examplel.com"denyurl"http://www.example2.com"permithttpanyanyi■nbns-list11nbns-server10.1.1.20i■cifs-url-list"cl"url-textheading"cifs-url"url-textnSSLVPN-SERVER2nurl-value"\SSLVPN-SERVER2""SSL-SERVER2"url-value"\SSL-SERVER2H!pol
4、icygroupdefaultacl"acll"cifs-url-list"cl"nbns-list"11"functionsfile-accessfunctionsfile-browsefunctionsfile-entrydefault-group-policydefaultgatewaypublicinservice!Example:ConfiguringHTTPProxyThefollowingoutputexampleshowsthatHTTPproxyhasbeenconfiguredandthattheportal(home)pagefromURL"htt
5、p://www.example.com"willautomaticallydownloadthehomepageoftheuser:Router#showrunning-configwebvpncontextmyContextsslauthenticateverifyalli■Iport-forward"email"local-port20016remote-server"ssl-serverl.SSLexamplel.com"remote?port110description"POP-ssl-serverl"ipolicygroupmyPolicyport-forwa
6、rd''emair1auto-downloadhttp-proxyproxy-url"http://www.example.com”inserviceExample:ConfiguringMicrosoftFileSharesforClientlessRemoteAccessNBNSServerListExampleThefollowingexample,startinginglobalconfigurationmode,configuresaserverlistforNBNSresolution:Router(config)#webvpncontextcontextl
7、Router(config-webvpn-context)#nbns-listSERVER_LISTRouter(config-webvpn?nbnslist)#nbns-server172.16.1.1masterRouter(config-webvpn?nbnslist)#nbns-server172.16.2.2timeout10retries5Router(config-webvpnbnslist)#nbns-server172.16.3.3timeout10retries5Router(config-webvpn?nbnslis