上配置看下吧,应该还是配置问题
核心侧:[HX]dis ip int brief *down: administratively down (s): spoofing (l): loopback Interface Physical Protocol IP address VPN instance Description Vlan1 up up 192.168.0.16 -- -- Vlan7 up up 172.16.7.2 -- -- Vlan8 up up 172.16.8.1 -- -- Vlan9 up up 172.16.9.254 -- -- Vlan10 up up 172.16.10.254 -- -- Vlan11 up up 172.16.11.254 -- -- Vlan12 up up 172.16.12.254 -- -- Vlan13 up up 172.16.13.254 -- -- [HX-GigabitEthernet1/0/23]dis this # interface GigabitEthernet1/0/23 port link-mode bridge port access vlan 7 防火墙侧: interface Vlan-interface7 ip address 172.16.7.1 255.255.255.0 interface GigabitEthernet1/0/16 port link-mode bridge port access vlan 7 策略: security-zone name Trust import interface GigabitEthernet1/0/16 vlan 7 # security-policy ip rule 0 name GuideSecPolicy action pass counting enable source-zone Trust destination-zone Untrust destination-zone DMZ rule 1 name to_ICMP action pass counting enable source-zone Local destination-zone Trust rule 2 name ICNMP action pass counting enable source-zone Trust destination-zone Local rule 3 name all action pass logging enable counting enable rule 4 name Trusty_4_IPv4 action pass counting enable source-zone Trust rule 5 name Localcal_5_IPv4 action pass counting enable source-zone Local destination-zone Local rule 6 name Trustust_6_IPv4 action pass counting enable source-zone Trust destination-zone Trust rule 7 name 21 action pass counting enable source-zone Local source-zone Trust source-zone Untrust destination-zone Local destination-zone Trust destination-zone Untrust
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明