ASA 环境搭建

ASA cli

通过以下指令设置ip,开启icmphttp

ciscoasa> en
ciscoasa# configure t
ciscoasa(config)# interface GigabitEthernet0/0
ciscoasa(config-if)# nameif outside
ciscoasa(config-if)# ip address 192.168.152.233 255.255.255.0
ciscoasa(config-if)# no shutdown
ciscoasa(config)# access-list permit-ping extended permit icmp any any time-exceeded
ciscoasa(config)# access-list permit-ping extended permit icmp any any unreachable
ciscoasa(config)# access-list permit-ping extended permit icmp any any echo
ciscoasa(config)# access-list permit-ping extended permit icmp any any echo-reply
ciscoasa(config)# access-group permit-ping in interface outside
ciscoasa(config)# icmp permit any outside
ciscoasa(config)# write mem


ciscoasa# configure t
ciscoasa(config)# http server enable
ciscoasa(config)# http 192.168.152.0 255.255.255.0 outside
ciscoasa(config)# webvpn 
ciscoasa(config-webvpn)# enable outside
INFO: WebVPN and DTLS are enabled on 'outside'.
ciscoasa(config-webvpn)# write mem

引用

https://www.cisco.com/c/zh_cn/td/docs/security/asa/asa916/configuration/general/asa-916-general-config/intro-intro.html


本博客所有文章除特别声明外,均采用 CC BY-SA 4.0 协议 ,转载请注明出处!