更新时间: 试题数量: 购买人数: 提供作者:

有效期: 个月

章节介绍: 共有个章节

收藏
搜索
题库预览
根据如图组网和下列配置可以判断这是一个 ______技术的应用。 

RTA: 

[RTA] ike peer 123 

[RTA-ike-peer-123] pre-shared-ke simple 123 

[RTA-ike-peer-123] remote-address 10.1.1.2 

[RTA-ike-peer-123] local-address 10.1.1.1 

[RTA-ike-peer-123] quit 

[RTA]ipsec proposal 1 

[RTA-ipsec-proposal-1]quit 

[RTA]acl number 3000 

[RTA-acl-adv-3000] rule 0 permit ip source 1.1.1.1 0.0.0.0 destination 2.2.2.2 0.0.0.0 

[RTA]ipsec policy 1 1 isakmp 

[RTA-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTA-ipsec-policy-isakmp-1-1] ike-peer 123 

[RTA-ipsec-policy-isakmp-1-1] proposal 1 

[RTA-ipsec-policy-isakmp-1-1]quit 

[RTA] interface Ethernet0/1/1 

[RTA Ethernet0/1/1] ip address 10.1.1.1 255.255.255.0 

[RTA Ethernet0/1/1]ipsec policy 1 

[RTA]interface Ethernet0/1/0 

[RTA Ethernet0/1/0] ip address 192.168.1.1 255.255.255.0 

[RTA]interface loopback 0 

[RTA-Loopback0]ip address 1.1.1.1 255.255.255.255 

[RTA]interface Tunnel 1 

[RTA-Tunnel1]source 1.1.1.1 

[RTA-Tunnel1]destination 2.2.2.2 

[RTA-Tunnel1]ip address 100.1.1.1 255.255.255.0 

[RTA] ip route-static 2.2.2.2 255.255.255.255 10.1.1.2 

[RTA] ip route-static 192.168.2.0 255.255.255.0 100.1.1.2 

RTB: 

[RTB] ike peer 123 

[RTB-ike-peer-123] pre-shared-ke simple 123 

[RTB-ike-peer-123] remote-address 10.1.1.1 

[RTB-ike-peer-123] local-address 10.1.1.2

[RTB-ike-peer-123]quit 

[RTB] ipsec proposal 1 

[RTB-ipsec-proposal-1] quit 

[RTB]acl number 3000 

[RTB-acl-adv-3000] rule 0 permit ip source 2.2.2.2 0.0.0.0 destination 1.1.1.1 0.0.0.0 

[RTB]ipsec policy 1 1 isakmp 

[RTB-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTB-ipsec-policy-isakmp-1-1] ike-peer 123 

[RTB-ipsec-poliyc-isakmp-1-1] proposal 1 

[RTB] interface Ethernet0/1/1 

[RTB-Ethernet0/1/1] ip address 10.1.1.2 255.255.255.0 

[RTB-Ethernet0/1/1] ipsec policy 1 

[RTB] interface Ethernet0/1/0 

[RTB-Ethernet0/1/0] ip address 192.168.2.1 255.255.255.0 

[RTB] interface Loopback0 

[RTB-Loopback0] ip address 2.2.2.2 255.255.255.255 

[RTB] interface Tunnel 1 

[RTB-Tunnel1]source 2.2.2.2 

[RTB-Tunnel1]destination 1.1.1.1 

[RTB-Tunnel1]ip address 100.1.1.2 255.255.255.0 

[RTB-Tunnel1]keepalive 

[RTB] ip route-static 1.1.1.1 255.255.255.255 10.1.1.1 

[RTB] ip route-static 192.168.1.0 255.255.255.0 100.1.1.1

根据如图组网和下列配置可以判断这是一个 ____技术的应用。

 RTA: 

[RTA] ike peer 123 

[RTA-ike-peer-123] pre-shared-ke simple 123 

[RTA-ike-peer-123] remote-address 100.1.1.2 

[RTA-ike-peer-123] local-address 100.1.1.1 

[RTA-ike-peer-123]quit 

[RTA] ipsec proposal 1 

[RTA-ipsec-proposal-1]quit 

[RTA]acl number 3000 

[RTA-acl-adv-3000] rule 0 permit ip source 192.168.1.0 0.0.0.255 destination 192.168.2.0 0.0.0.255 

[RTA]ipsec policy 1 1 isakmp 

[RTA-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTA-ipsec-policy-isakmp-1-1] ike-peer 123 

[RTA-ipsec-policy-isakmp-1-1] proposal 1 

[RTA-ipsec-policy-isakmp-1-1] quit 

[RTA] interface Ethernet0/1/1 

[RTA-Ethernet0/1/1] ip address 10.1.1.1 255.255.255.0 

[RTA] interface Ethernet0/1/0 

[RTA-Ethernet0/1/0] ip address 192.168.1.1 255.255.255.0 

[RTA] interface Loopback0 

[RTA-Loopback0]ip address 1.1.1.1 255.255.255.255 

[RTA] interface Tunnel 1 

[RTA-Tunnel1]source 1.1.1.1 

[RTA-Tunnel1]destination 2.2.2.2 

[RTA-Tunnel1]ip address 100.1.1.1 255.255.255.0 

[RTA-Tunnel1]keepalive 

[RTA-Tunnel1]ipsec policy 1 

[RTA] ip route-static 2.2.2.2 255.255.255.255 10.1.1.2 

[RTA] ip route-static 192.168.2.0 255.255.255.0 100.1.1.2 

RTB: 

[RTB] ike peer 123 

[RTB-ike-peer-123] pre-shared-ke simple 123 

[RTB-ike-peer-123] remote-address 100.1.1.1 

[RTB-ike-peer-123] local-address 100.1.1.2 

[RTB-ike-peer-123]quit 

[RTB] ipsec proposal 1 

[RTB-ipsec-proposal-1] quit 

[RTB]acl number 3000 

[RTB-acl-adv-3000] rule 0 permit ip source 192.168.2.0 0.0.0.255 destination 192.168.1.0 0.0.0.255 

[RTB]ipsec policy 1 1 isakmp 

[RTB-ipsec-policy-isakmp-1-1] securit acl 3000

 [RTB-ipsec-policy-isakmp-1-1] ike-peer 123 

[RTB-ipsec-policy-isakmp-1-1] proposal 1 

[RTB-ipsec-policy-isakmp-1-1] quit 

[RTB] interface Ethernet0/1/1 

[RTB-Ethernet0/1/1] ip address 10.1.1.2 255.255.255.0 

[RTB] interface Ethernet0/1/0 

[RTB-Ethernet0/1/0] ip address 192.168.2.1 255.255.255.0 

[RTB] interface Loopback0 

[RTB-Loopback0] ip address 2.2.2.2 255.255.255.255 

[RTB] interface Tunnel 1 

[RTB-Tunnel1]source 2.2.2.2 

[RTB-Tunnel1]destination 1.1.1.1 

[RTB-Tunnel1]ip address 100.1.1.2 255.255.255.0 

[RTB-Tunnel1]keepalive 

[RTA-Tunnel1]ipsec policy 1 

[RTB] ip route-static 1.1.1.1 255.255.255.255 10.1.1.1 

[RTB] ip route-static 192.168.1.0 255.255.255.0 100.1.1.1

如图所示,两台安全网关的配置分别为:

RTA

[RTA] ike peer 123 

[RTA-ike-peer-123] pre-shared-ke simple 123 

[RTA-ike-peer-123] remote-address 10.2.1.2 

[RTA-ike-peer-123] local-address 10.2.1.1 

[RTA-ike-peer-123]quit 

[RTA] ipsec proposal 1 

[RTA-ipsec-proposal-1] quit 

[RTA]acl number 3000 

[RTA-acl-adv-3000] rule 0 permit ip source 10.1.1.0 0.255.255.255 

[RTA]ipsec policy 1 1 isakmp 

[RTA-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTA-ipsec-policy-isakmp-1-1] ike-peer 123 

[RTA-ipsec-policy-isakmp-1-1] proposal 1 

[RTA-ipsec-policy-isakmp-1-1] quit 

[RTA] interface Ethernet 0/1/0 

[RTA-Ethernet0/1/0] ip address 10.1.1.2 255.255.255.0 

[RTA] interface Serial 0/2/1 

[RTA-Serial0/2/1] ip address 10.2.1.1 255.255.255.0 

[RTA-Serial0/2/1]] ipsec policy 1 

RTB: 

[RTB] ike peer 123 

[RTB-ike-peer-123] pre-shared-ke simple 123 

[RTB-ike-peer-123] remote-address 10.2.1.1 

[RTB-ike-peer-123] local-address 10.2.1.2 

[RTB-ike-peer-123]quit 

[RTB] ipsec proposal 1 

[RTB-ipsec-proposal-1] quit 

[RTB]acl number 3000 

[RTB-acl-adv-3000] rule 0 permit ip source 10.3.1.0 0.255.255.255 

[RTB]ipsec policy 1 1 isakmp 

[RTB-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTB-ipsec-policy-isakmp-1-1] ike-peer 123

 [RTB-ipsec-policy-isakmp-1-1] proposal 1 

[RTB-ipsec-policy-isakmp-1-1] quit 

[RTB] interface Ethernet 0/1/0

 [RTB-Ethernet0/1/0] ip address 10.3.1.1 255.255.255.0

 [RTB] interface Serial0/2/1

 [RTB-Serial0/2/1] ip address 10.2.1.2 255.255.255.0 

[RTB-Serial0/2/1] ipsec policy 1由此可知 ______。

如图所示,两台安全网关的配置分别为:

RTA 

[RTA] ike peer 123 

[RTA-ike-peer-123] pre-shared-ke simple 123

 [RTA-ike-peer-123] remote-address 10.2.1.2

 [RTA-ike-peer-123] local-address 10.2.1.1 

[RTA-ike-peer-123]quit

 [RTA] ipsec proposal 1 

[RTA-ipsec-proposal-1] quit 

[RTA]acl number 3000 

[RTA-acl-adv-3000] rule 0 permit ip source 10.1.1.0 0.0.0.255 destination 10.3.1.0 0.0.0.255 

[RTA]ipsec policy 1 1 isakmp 

[RTA-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTA-ipsec-policy-isakmp-1-1] ike-peer 123

 [RTA-ipsec-policy-isakmp-1-1] proposal 1

 [RTA-ipsec-policy-isakmp-1-1] quit

 [RTA] interface Serial0/2/1 

[RTA-Serial0/2/1] ip address 10.2.1.1 255.255.255.0

 [RTA-Serial0/2/1] ipsec polic 1

 [RTA] interface Ethernet 0/1/0 

[RTA-Ethernet0/1/0] ip address 10.1.1.2 255.255.255.0 

RTB: 

[RTB] ike peer 123 

[RTB-ike-peer-123] pre-shared-ke simple 123 

[RTB-ike-peer-123] remote-address 10.2.1.1

 [RTB-ike-peer-123] local-address 10.2.1.2 

[RTB-ike-peer-123]quit 

[RTB] ipsec proposal 1

 [RTB-ipsec-proposal-1] quit 

[RTB]acl number 3000

 [RTB-acl-adv-3000] rule 0 permit ip source 10.1.1.0 0.0.0.255 destination 10.3.1.0.0.0.0.255

[RTB]ipsec policy 1 1 isakmp

 [RTB-ipsec-policy-isakmp-1-1] securit acl 3000 

[RTB-ipsec-policy-isakmp-1-1] ike-peer 123 

[RTB-ipsec-policy-isakmp-1-1] proposal 1 

[RTB-ipsec-policy-isakmp-1-1] quit 

[RTB] interface Serial0/2/1 

[RTB-Serial0/2/1] ip address 10.2.1.2 255.255.255.0 

[RTB-Serial0/2/1]]ipsec policy 1 

[RTB] interface Ethernet 0/1/0 

[RTB-Ethernet0/1/0] ip address 10.3.1.1 255.255.255.0

由此可知 ______。