你貌似对sslVPN 有误解。
我这有个脚本
interface SSLVPN-AC1
ip address 192.192.192.1 255.255.255.0
quit
acl advanced 3998
rule 0 permit ip source 192.192.192.0 0.0.0.255 destination 192.168.1.0 0.0.0.255
rule 5 permit ip source 192.192.192.0 0.0.0.255 destination 172.16.0.0 0.0.0.255
quit
sslvpn ip address-pool 1 192.192.192.2 192.192.192.254
#
sslvpn gateway gw
ip address 公网IP port 4430
service enable
#
sslvpn context ctxip
gateway gw
ip-tunnel interface SSLVPN-AC1
ip-tunnel address-pool 1 mask 255.255.255.0
ip-route-list rtlist
include 192.168.1.0 255.255.255.0
include 172.16.1.0 255.255.255.0
policy-group 2
filter ip-tunnel acl 3998
ip-tunnel access-route ip-route-list rtlist
ip-tunnel address-pool 1 mask 255.255.255.0
service enable
#
security-zone name Trust
import interface SSLVPN-AC1
local-user test class network
password simple admin
service-type sslvpn
authorization-attribute user-role network-operator
authorization-attribute sslvpn-policy-group 2
暂无评论