3Com 3C13636 Configuration Manual page 532

Router 3000 ethernet family
Hide thumbs Also See for 3C13636:
Table of Contents

Advertisement

3Com Router 3000 Ethernet Family
Configuration Guide
II. Network diagram
Headquarters
Headquarters
WWW server
WWW server
10.110.10.2
10.110.10.2
PC1
PC1
Figure 11-8 Internal servers combined with IPSec VPN
III. Configuration procedure
1)
Configure Router 1
# Assign an IP address to interface Ethernet 0/0/0.
[3Com] interface ethernet 0/0/0
[3Com-ethernet 0/0/0] ip address 10.110.10.1 255.255.255.0
[3Com-ethernet 0/0/0] interface ethernet 0/0/1
[3Com-ethernet 0/0/1] ip address 10.110.20.1 255.255.255.0
# Configure an ACL to control address translation for PCs.
[3Com] acl number 2001
[3Com-acl-basic-2001] rule permit ip source 10.110.20.0 0.0.0.255
[3Com-acl-basic-2001] rule permit ip source 10.110.30.0 0.0.0.255
[3Com-acl-basic-2001] rule deny ip source any destination any
# Configure an ACL to control access to internal servers.
[3Com-acl-basic-2001] acl number 2002
[3Com-acl-basic-2002]
[3Com-acl-basic-2002] rule deny ip source 10.110.0.0 0.0.255.255 destination
10.110.30.0 0.0.0.255
[3Com-acl-basic-2002] rule deny ip source any destination any
# Configure an ACL, implementing IPSec.
[3Com-acl-basic-2002] acl number 2003
[3Com-acl-basic-2003]
destination 10.110.30.0 0.0.0.255
[3Com-acl-adv-2003] rule deny ip source any destination any
[3Com-acl-adv-2003] quit
# Configure Easy IP.
[3Com] interface Serial1/0/0
FTP server
FTP server
10.110.10.3
10.110.10.3
s1/0/0
s1/0/0
e0/0/0
e0/0/0
e0/0/1
e0/0/1
Router 1
Router 1
PC2
PC2
rule
permit
rule
permit
3Com Corporation
11-21
Chapter 11 NAT Configuration
IP
IP
s1/0/0
s1/0/0
IPSec Tunnel
IPSec Tunnel
Router2
Router2
ip
source
10.110.10.0
ip
source
10.110.0.0
Branches
Branches
PC3
PC3
e0/0/0
e0/0/0
PC4
PC4
0.0.0.255
0.0.255.255

Advertisement

Table of Contents
loading

This manual is also suitable for:

3c13636-us - router 30363000 series

Table of Contents