version 12.4
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
!
!
!
!
!
!
ip cef
no ipv6 cef
!
!
!
!
crypto isakmp policy 1
encr 3des
hash md5
authentication pre-share
group 2
!
crypto isakmp key cisco address 194.19.25.18
!
!
!
crypto ipsec transform-set TS esp-3des esp-md5-hmac
!
crypto map CMAP 10 ipsec-isakmp
set peer 194.19.25.18
set transform-set TS
match address FOR-VPN
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface FastEthernet0/0
ip address 194.187.216.228 255.255.255.0
ip nat outside
duplex auto
speed auto
crypto map CMAP
!
interface FastEthernet0/1
ip address 192.168.22.1 255.255.255.0
ip nat inside
duplex auto
speed auto
!
interface Vlan1
no ip address
shutdown
!
ip nat inside source list FOR-NAT interface FastEthernet0/0 overload
ip classless
ip route 0.0.0.0 0.0.0.0 194.187.216.1
!
ip flow-export version 9
!
!
ip access-list extended FOR-VPN
permit ip 192.168.22.0 0.0.0.255 192.168.10.0 0.0.0.255
ip access-list extended FOR-NAT
deny ip 192.168.22.0 0.0.0.255 192.168.10.0 0.0.0.255
permit ip 192.168.22.0 0.0.0.255 any
!
no cdp run
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end
version 12.4
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
!
!
!
!
!
!
ip cef
no ipv6 cef
!
!
!
!
crypto isakmp policy 1
encr 3des
hash md5
authentication pre-share
group 2
!
crypto isakmp policy 2
encr 3des
hash md5
authentication pre-share
group 2
!
crypto isakmp key cisco address 194.187.216.228
crypto isakmp key cisco address 198.211.109.90
!
!
!
crypto ipsec transform-set TS esp-3des esp-md5-hmac
!
crypto map CMAP 10 ipsec-isakmp
set peer 194.187.216.228
set transform-set TS
match address FOR-VPN
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface FastEthernet0/0
ip address 194.19.25.18 255.255.255.0
ip nat outside
duplex auto
speed auto
crypto map CMAP
!
interface FastEthernet0/1
ip address 192.168.10.1 255.255.255.0
ip nat inside
duplex auto
speed auto
!
interface Vlan1
no ip address
shutdown
!
ip nat inside source list FOR-NAT interface FastEthernet0/0 overload
ip classless
ip route 0.0.0.0 0.0.0.0 194.19.25.1
!
ip flow-export version 9
!
!
ip access-list extended FOR-VPN
permit ip 192.168.10.0 0.0.0.255 192.168.22.0 0.0.0.255
ip access-list extended FOR-NAT
deny ip 192.168.10.0 0.0.0.255 192.168.22.0 0.0.0.255
permit ip 192.168.10.0 0.0.0.255 any
!
no cdp run
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
end
> я ими не пользуюсь, потому что не знаю hotkey переключения между ними
Ctrl + WIN + ←
Ctrl + WIN + →