4、2DH组DH-Group2IPSEC阶段 IPSEC阶段 封装模式隧道模式封装模式隧道模式19/19USG与juniperIPSECVPN测试报告安全提议ESP安全提议ESPESP加密MD5ESP加密MD5ESP认证3DESESP认证3DESNAT穿越noNAT穿越no本地网段10.10.10.0/24本地网段20.20.20.0/2419/19USG与juniperIPSECVPN测试报告19/19USG与juniperIPSECVPN测试报告1.命令行配置[19/19USG与juniperIPSECVPN测试报告USG]DIS CUR 18:16:05 2013/06/28 #
5、 sysname USG # l2tp domain suffix-separator @ # firewall packet-filter default permit interzone local trust direction inbound firewall packet19/19USG与juniperIPSECVPN测试报告-filter default permit interzone local trust direction outbound firewall packet-filter default permit interzone local untru
6、st direction inbound firewall packet-filter default permit interzone local untrust direction outbound firewall packet-filter default permit interzone local dmz direction inbound firewall packet-filter default permit interzone local dmz direction outbound firewall packet-filter default permit
7、 interzone trust untrust direction inbound firewall packet-filter default permit interzone trust untrust direction outbound firewall packet-filter default permit interzone trust dmz direction inbound firewall packet-filte