一单位5505-K9 的配置
来源:互联网 发布:php 数组删除指定值 编辑:程序博客网 时间:2024/04/30 19:10
ASA Version 7.2(3)
hostname ciscoasa
enable password 8Ry2YjIyt7RRXU24 encrypted
names
interface Vlan1
nameif inside
security-level 85
ip address 192.168.1.1 255.255.255.0
interface Vlan2
nameif outside
security-level 0
ip address 60.xxx.xxx.xxx 255.255.255.252
interface Ethernet0/0
switchport access vlan 2
interface Ethernet0/1
interface Ethernet0/2]
interface Ethernet0/3
interface Ethernet0/4
interface Ethernet0/5
interface Ethernet0/6
interface Ethernet0/7
passwd 2KFQnbNIdI.2KYOU encrypted
ftp mode passive
access-list 101 extended permit ip any any
access-list 101 extended permit tcp any host 60.xxx.xxx.xxx eq 8080
access-list 101 extended permit tcp any host 60.xxx.xxx.xxx eq smtp
access-list 101 extended permit tcp any host 60.xxx.xxx.xxx eq pop3
access-list inside_nat0_outside extended permit ip any 192.168.1.0 255.255.255.0
access-list 111 extended permit tcp any host 60.xxx.xxx.xxx eq 8080
access-list 111 extended permit tcp any host 60.xxx.xxx.xxx eq smtp
access-list 111 extended permit tcp any host 60.xxx.xxx.xxx eq pop3
access-list 111 extended permit tcp any host 60.xxx.xxx.xxx eq www
access-list 111 extended permit tcp any host 60.xxx.xxx.xxx eq ftp
access-list 111 extended permit tcp any host 60.xxx.xxx.xxx eq ftp-data
pager lines 24
mtu inside 1500
mtu outside 1400
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0
static (inside,outside) tcp interface 8080 192.168.33.9 8080 netmask 255.255.255.255
static (inside,outside) tcp interface smtp 192.168.33.9 smtp netmask 255.255.255.255
static (inside,outside) tcp interface pop3 192.168.33.9 pop3 netmask 255.255.255.255
static (inside,outside) tcp interface www 192.168.33.10 www netmask 255.255.255.255
static (inside,outside) tcp interface ftp 192.168.33.10 ftp netmask 255.255.255.255
access-group 111 in interface outside
access-group 101 out interface outside
route inside 192.168.33.0 255.255.255.0 192.168.1.2 1
route outside 0.0.0.0 0.0.0.0 60.214.154.129 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout uauth 0:05:00 absolute
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
telnet timeout 5
ssh timeout 5
console timeout 0
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect netbios
inspect rsh
inspect rtsp
inspect skinny
inspect esmtp
inspect sqlnet
inspect sunrpc
inspect tftp
inspect sip
inspect xdmcp
service-policy global_policy global
prompt hostname context
- 一单位5505-K9 的配置
- MapGIS K9三维TDE平台插件开发环境配置
- 思科无线路由器Cisco AIR-AP1230A-A-K9、Cisco AIR-AP1242AG-C-K9、Cisco AIR-LAP1131AG-C-K9系列配置方法
- 关于单位内部两个局域网的配置
- cisco无线配置:AIR-AP1242G-E-K9修复与设置手册
- 单位与单位的换算
- 算法系列-----矩阵(一)-------------单位矩阵的生成
- Android开发笔记(一)像素的单位
- web.xml配置Session超时时间注意的单位问题
- web.xml配置Session超时时间注意的单位问题
- web.xml配置Session超时时间注意的单位问题
- web.xml配置Session超时时间注意的单位问题
- web.xml配置Session超时时间注意的单位问题
- MapGIS K9 三维TDE平台中实体的可见与不可见
- 英制单位及当量的其他单位
- 比GB更大的单位,存储单位
- 单位与单位的换算(二)
- 我的单位
- 网络-socket相关(1)
- 迈向云计算的未来
- 通过.NET平台编写和发布简单的Windows Service
- 第三代移动通讯技术(3G)对GPS系统的前景分析
- ConnectionString 的 Trusted_Connection设置
- 一单位5505-K9 的配置
- 解决WebService[WebMethod]方法返回一个SqlDataReader出错问题
- real user ID, effective user ID,saved set-user-ID
- 简单的C# Socket编程
- vmware player中怎么将文件夹与物理机共享?
- 常用javascript
- Oracle PL/SQL 编程手册
- JS控制GridView行选择
- Sql server stored procedure operating summary 01