ASA 环境搭建
ASA cli
通过以下指令设置ip
,开启icmp
和http
ciscoasa> en
ciscoasa# configure t
ciscoasa(config)# interface GigabitEthernet0/0
ciscoasa(config-if)# nameif outside
ciscoasa(config-if)# ip address 192.168.152.233 255.255.255.0
ciscoasa(config-if)# no shutdown
ciscoasa(config)# access-list permit-ping extended permit icmp any any time-exceeded
ciscoasa(config)# access-list permit-ping extended permit icmp any any unreachable
ciscoasa(config)# access-list permit-ping extended permit icmp any any echo
ciscoasa(config)# access-list permit-ping extended permit icmp any any echo-reply
ciscoasa(config)# access-group permit-ping in interface outside
ciscoasa(config)# icmp permit any outside
ciscoasa(config)# write mem
ciscoasa(config)# username Cisco password examplepassword1 privilege 15
ciscoasa(config)# write mem
配置好之后,用 ASDM 连接(注:ASDM 需要用 Java8 才行)
后续可以参照这篇配置 webvpn
ciscoasa# configure t
ciscoasa(config)# http server enable
ciscoasa(config)# http 192.168.152.0 255.255.255.0 outside
ciscoasa(config)# webvpn
ciscoasa(config-webvpn)# enable outside
INFO: WebVPN and DTLS are enabled on 'outside'.
ciscoasa(config-webvpn)# write mem
引用
本博客所有文章除特别声明外,均采用 CC BY-SA 4.0 协议 ,转载请注明出处!