帮我挑错,cisco pix防火墙配置,请各位大虾帮助一下

snf 2005-11-28 10:33:45

内网的ip :192.1.1.101 255.255.255.0
外网的ip :10.69.139.44 255.255.255.0 10.69.139.1(网关)


外网想通过http://10.69.139.44 登陆到内网web服务器192.1.1.101上面去,防火墙该怎么配置,cisco pix 506 ,我配置的有什么问题吗?

我的配置:
energyweb# sh config
: Saved
: Written by enable_15 at 00:23:54.161 UTC Fri Jan 1 1993
PIX Version 6.3(3)
interface ethernet0 auto
interface ethernet1 auto
nameif ethernet0 outside security0
nameif ethernet1 inside security100
enable password 2KFQnbNIdI.2KYOU encrypted
passwd 2KFQnbNIdI.2KYOU encryp
hostname energyweb
domain-name energyweb.com
fixup protocol dns maximum-length 512
fixup protocol ftp 21
fixup protocol h323 h225 1720
fixup protocol h323 ras 1718-1719
fixup protocol http 80
fixup protocol rsh 514
fixup protocol rtsp 554
fixup protocol sip 5060
fixup protocol sip udp 5060
fixup protocol skinny 2000
fixup protocol smtp 25
fixup protocol sqlnet 1521
fixup protocol tftp 69
names
pager lines 24
mtu outside 1500
mtu inside 1500
ip address outside 10.69.139.233 255.255.255.0
ip address inside 192.1.1.100
ip audit info action alarm
ip audit attack action alarm
pdm history enable
arp timeout 14400
global (outside) 1 10.69.139.44 netmask 255.255.255.0
nat (inside) 1 0.0.0.0 0.0.0.0 0 0
static (inside,outside) 10.69.139.44 192.1.1.101 netmask 255.255.255.255 0 0
conduit permit icmp any any
conduit permit tcp host 10.69.139.44 eq www any
route outside 0.0.0.0 0.0.0.0 10.69.139.1 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00
timeout h323 0:05:00 mgcp 0:05:00 sip 0
timeout h323 0:05:00 mgcp 0:05:00 sip 0
aaa-server TACACS+ protocol tacacs+
aaa-server RADIUS protocol radius
aaa-server LOCAL protocol local
http server enable
http 10.69.139.233 255.255.255.255 inside
no snmp-server location
no snmp-server contact
snmp-server community public
no snmp-server enable traps
floodguard enable
telnet timeout 5
ssh timeout 5
console timeout 0
terminal width 80
Cryptochecksum:6462dd0a61785c7dd26c30b22e2d7b65
...全文
96 回复 打赏 收藏 转发到动态 举报
写回复
用AI写文章
回复
切换为时间正序
请发表友善的回复…
发表回复

3,583

社区成员

发帖
与我相关
我的任务
社区描述
硬件使用 网络设计与维护
社区管理员
  • 网络设计与维护社区
加入社区
  • 近7日
  • 近30日
  • 至今
社区公告
暂无公告

试试用AI创作助手写篇文章吧