
Configuration Examples
308630-15.1 Rev 00
C-9
Example 6: Required Policies on RTR2 to Allow ESP Traffic to Pass Through
and OSPF to Exchange Routing Updates Between RTR1 and RTR3
Example 7: Required Policies on RTR3 to Protect Data Between
RTR3 Subnet 192.131.141.0 and RTR1 192.32.5.0
RTR2 Interface S21
Security Policy
Outbound Inbound
Action
Bypass Bypass
Criteria
Protocol 89 (OSPFIGP) Protocol 89 (OSPFIGP)
Security Policy
Outbound Inbound
Action
Bypass Bypass
Criteria
Protocol 50 (ESP) Protocol 50 (ESP)
RTR2 Interface S31
Security Policy
Outbound Inbound
Action
Bypass Bypass
Criteria
Protocol 50 (ESP) Protocol 50 (ESP)
RTR 3 Interface S11
Policy
Outbound
Action
Protect
Criteria
IP source address range: 192.131.141.0 - 192.131.141.255
IP destination address range: 192.32.5.0 - 192.32.5.255
SA
Source: 2.2.2.2
Destination: 1.1.1.1 SPI 257
Comentarios a estos manuales