SlideShare a Scribd company logo
---------------------------------------Cấu hình trên VPN server---------------------
Aaa new-model
aaa authentication login userauthen local
aaa authorization network groupauthor local
username sena password 0 cisco
crypto isakmp policy 10
encryption aes 256
authentication pre-share
group 2
exit
crypto isakmp client configuration group vpnclient
key cisco123
pool ippool
acl 1
exit
crypto ipsec transform-set myset esp-3des esp-md5-hmac
ex
crypto dynamic-map dynmap 10
set transform−set myset
reverse−route
ex
crypto map clientmap client authentication list userauthen
crypto map clientmap isakmp authorization list groupauthor
crypto map clientmap client configuration address respond
crypto map clientmap 10 ipsec−isakmp dynamic dynmap
ip local pool ippool 200.0.0.10 200.0.0.20
access-list 1 permit 192.168.10.0 0.0.0.255
ip nat inside source list 1 interface s0/0/0 overload
int f0/0
ip nat inside
half−duplex
int s0/0/0
ip nat outside
crypto map clientmap
bên R2 cũng cấu hình NAT
acc 1 permit 192.168.20.0 0.0.0.255
ip nat inside sou list 1 int s1/0 over
int f2/0
ip nat inside
int s1/0
ip nat outside
PC 2:
Sauk hi cài cisco VPN client xong bạn vào network enable và đặt ip là
192.168.20.3/24
Vào VPN client chọn New
Gns3moi
Bấm save và connect -> Đánh user với pass:
Sau đó vào status -> statictis…
Gns3moi

More Related Content

DOCX
Cent os 5 ssh
PPTX
Netmiko library
PDF
10 techniques from hacking labs1.3 miss confsp4
TXT
Cluster setup multinode_aws
PDF
Vyos clustering ipsec
PDF
Unbreakable VPN using Vyatta/VyOS - HOW TO -
PDF
Algosec how to avoid business outages from misconfigured devices final
TXT
Cent os 5 ssh
Netmiko library
10 techniques from hacking labs1.3 miss confsp4
Cluster setup multinode_aws
Vyos clustering ipsec
Unbreakable VPN using Vyatta/VyOS - HOW TO -
Algosec how to avoid business outages from misconfigured devices final

What's hot (20)

PDF
Tiny Server Clustering using Vyatta/VyOS (MEMO)
PDF
Large Scale L2TPv3 Overlay Networking with OSPFv3(DRAFT)
DOCX
Lamp configuration u buntu 10.04
ODP
Triangle OpenStack meetup 09 2013
PDF
TCP/IP Exercises
PDF
Nxll14 cut through-proxy on asa
PDF
Openstack installation using rdo multi node
PPTX
High Availability Server Clustering without ILB(Internal Load Balancer) (MEMO)
TXT
Cisco ssh telnet en radius
DOCX
Configuracion EIGRP
PDF
Unidade3 roteiro proxy
DOCX
8 steps to protect your cisco router
PPT
Intrusion Detection System using Snort
PPTX
Installing OpenStack Juno using RDO on RHEL
PDF
Nxll18 vpn (s2 s gre & dmvpn)
ODP
FreeLix: Semplicità & Controllo
DOCX
How to install squid proxy on server or how to install squid proxy on centos o
PPTX
Server hardening
PDF
How To Install and Configure Salt Master on Ubuntu
PDF
Openstack installation using rdo
Tiny Server Clustering using Vyatta/VyOS (MEMO)
Large Scale L2TPv3 Overlay Networking with OSPFv3(DRAFT)
Lamp configuration u buntu 10.04
Triangle OpenStack meetup 09 2013
TCP/IP Exercises
Nxll14 cut through-proxy on asa
Openstack installation using rdo multi node
High Availability Server Clustering without ILB(Internal Load Balancer) (MEMO)
Cisco ssh telnet en radius
Configuracion EIGRP
Unidade3 roteiro proxy
8 steps to protect your cisco router
Intrusion Detection System using Snort
Installing OpenStack Juno using RDO on RHEL
Nxll18 vpn (s2 s gre & dmvpn)
FreeLix: Semplicità & Controllo
How to install squid proxy on server or how to install squid proxy on centos o
Server hardening
How To Install and Configure Salt Master on Ubuntu
Openstack installation using rdo
Ad

Viewers also liked (9)

PPTX
Dollhouse
PPTX
MBA: Оценка практики применения DLP систем в Банках
PPTX
InfoWatch Attack Killer
PPT
Báo cáo giữa kỳ
DOCX
VPN client to site tren GNS3
DOCX
Báo cáo cuối kỳ
PPTX
Marvellous creations (2)
PPTX
ИБ: Кто, если не мы?
DOCX
Vpn : client to site và vpn site to site
Dollhouse
MBA: Оценка практики применения DLP систем в Банках
InfoWatch Attack Killer
Báo cáo giữa kỳ
VPN client to site tren GNS3
Báo cáo cuối kỳ
Marvellous creations (2)
ИБ: Кто, если не мы?
Vpn : client to site và vpn site to site
Ad

Gns3moi

  • 1. ---------------------------------------Cấu hình trên VPN server--------------------- Aaa new-model aaa authentication login userauthen local aaa authorization network groupauthor local username sena password 0 cisco crypto isakmp policy 10 encryption aes 256 authentication pre-share group 2 exit crypto isakmp client configuration group vpnclient key cisco123 pool ippool acl 1
  • 2. exit crypto ipsec transform-set myset esp-3des esp-md5-hmac ex crypto dynamic-map dynmap 10 set transform−set myset reverse−route ex crypto map clientmap client authentication list userauthen crypto map clientmap isakmp authorization list groupauthor crypto map clientmap client configuration address respond crypto map clientmap 10 ipsec−isakmp dynamic dynmap ip local pool ippool 200.0.0.10 200.0.0.20 access-list 1 permit 192.168.10.0 0.0.0.255 ip nat inside source list 1 interface s0/0/0 overload int f0/0 ip nat inside half−duplex int s0/0/0 ip nat outside crypto map clientmap
  • 3. bên R2 cũng cấu hình NAT acc 1 permit 192.168.20.0 0.0.0.255 ip nat inside sou list 1 int s1/0 over int f2/0 ip nat inside int s1/0 ip nat outside PC 2: Sauk hi cài cisco VPN client xong bạn vào network enable và đặt ip là 192.168.20.3/24
  • 4. Vào VPN client chọn New
  • 6. Bấm save và connect -> Đánh user với pass:
  • 7. Sau đó vào status -> statictis…