asa的基本配置
ciscoasa# conf t
ciscoasa(config)# int e0/0
ciscoasa(config-if)# nameif inside
ciscoasa(config-if)# ip add 192.168.1.1 255.255.255.0
ciscoasa(config-if)# no sh
ciscoasa(config-if)# int e0/1
ciscoasa(config-if)# nameif outside
ciscoasa(config-if)# ip add 210.52.149.2 255.255.255.0
ciscoasa(config-if)# no sh
ciscoasa(config-if)# exit
ciscoasa(config)# route outside 0 0 210.52.149.1
ciscoasa(config)# nat (inside) 1 0 0
ciscoasa(config)# global (outside) 1 interface
INFO: outside interface address added to PAT pool
ciscoasa(config)# clock timezone peking 8
ciscoasa(config)# clock set 16:54:25 15 aug 2014
ciscoasa(config)# logging enable
ciscoasa(config)# logging timestamp
ciscoasa(config)# logging trap informational
ciscoasa(config)# logging host inside 192.168.1.2
在service 2008上用Firewall Analyzer 7 进行验证,输入默认的用户名及密码即可登录(默认为admin)如图所示
修改主机名及密码后看看日志记录
ciscoasa(config)# hostname asa
asa(config)# enable password 9865321
asa(config)# passwd 9865321
日志里面有信息 如图所示
配置R1
R1(config)#int f0/0
R1(config-if)#ip add 210.52.149.1 255.255.255.0
R1(config-if)#no sh
R1(config)#int loopback 0
R1(config-if)#ip add 202.96.69.3 255.255.255.0
R1(config-if)#no sh
R1(config-if)#exit
R1(config)#line vty 0 4
R1(config-line)#password 9865321