sys
interface g0/0 ip add 200.10.10.1 29
vlan 200
port g0/1 to g0/4
qu
interface vlan 200
ip add 192.168.100.254
security-zone untrust
import g0/0
security-zone trust
import interface vlan 200
import interface g0/5
import interface g0/6
object-group ip add untrust-trust
network host address 192.168.100.0 24
object-group ip add trust-dmz
network host address 192.168.100.0 24
object-group ip add trust-trust
network host add 192.168.100.0 24
object-group ip add dmz
network host add 192.168.100.254 24
security-zone ip
rule 1 name untrust-trust
source-zone untrust destination-zone
trust action-pass
rule 2 name trust-dmz
source-zone trust
source-ip rust-dmz
destination-ip dmz
action-pass
rule 3 name trust-trust
source-zone trust
destination-zone trust action-pass
请帮我看下如果要实现上述方案,我的安全策略是否配置正确
?
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论