目前H3c设备是V5平台,云平台导出的配置是V7的
---------------------------------------------------------------------------------------------
Proposal configuration For IKE Version 1
---------------------------------------------------------------------------------------------
ike proposal 100
authentication-algorithm sha1
encryption-algorithm aes-cbc-128
authentication-method pre-share
dh group5
sa duration 86400
quit
---------------------------------------------------------------------------------------------
Keychain configuration For IKE Version 1
---------------------------------------------------------------------------------------------
ike keychain hwcloud_key
pre-shared-key address 49.4.126.193 255.255.255.255 key simple XXXXXXXX
quit
---------------------------------------------------------------------------------------------
Profile configuration For IKE Version 1
---------------------------------------------------------------------------------------------
ike profile hwcloud_profile
keychain hwcloud_key
local-identity address 113.142.73.168
exchange-mode main
match remote identity address 49.4.126.193 255.255.255.255
match local address 113.142.73.168
proposal 100
quit
#############################################################################################
###################### ACL Configuration of Customer VPN ########################
#############################################################################################
acl name 3999
rule 0 permit ip source 172.20.0.0 0.0.255.255 destination 192.168.1.0 0.0.0.255
#############################################################################################
###################### IPSEC Configuration of Customer VPN ########################
#############################################################################################
---------------------------------------------------------------------------------------------
Transform Set For IPSec
---------------------------------------------------------------------------------------------
ipsec transform-set ipsec-hwcloud
encapsulation-mode tunnel
esp authentication-algorithm sha1
esp encryption-algorithm aes-cbc-128
pfs dh-group5
quit
---------------------------------------------------------------------------------------------
Policy configuration For IPSec
---------------------------------------------------------------------------------------------
ipsec policy huaweiwcloud 1 isakmp
transform-set ipsec-hwcloud
security acl 3999
local-address 113.142.73.168
remote-address 49.4.126.193
ike-profile hwcloud_profile
sa duration time-based 3600
quit
---------------------------------------------------------------------------------------------
Apply IPsec Policy to Outbound Interface
---------------------------------------------------------------------------------------------
interface GigabitEthernet1/1/1
ip address 113.142.73.168 255.255.255.0
tcp mss 1379
ipsec apply policy huaweiwcloud
quit
---------------------------------------------------------------------------------------------
Configure Static Routes for Huawei Cloud Subnets
---------------------------------------------------------------------------------------------
###### Example: default route is first IP for outbound network ######
#ip route-static 192.168.1.0 255.255.255.0 113.142.73.1
求H3c V5平台如何实现以上V7配置实现的方法连接到华为云。
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论