Title: Agenda
1???????? ????(?????????)
2Agenda
- Netscreen???(??????????)
- Windows???(??????????)
- ????
3?)RemotePC?192.168.1.0/24??VPN??????????
172.16.0.0/24
192.168.1.0/24
10.0.0.0/24
RemotePC
172.16.0.1
10.0.0.1
192.168.1.1
172.16.0.100
10.0.0.2
??????????????????????? ???Microsoft???????IPsec
Client??????
4Netscreen???
????????????????
? NetworkgtInterfaces ???
? ?New?????????
5Netscreen???
????????????????
? ?Unnumbered????
? ?OK?????????
6Netscreen???
????????????????
Tunnel????????????????????
7Netscreen???
??????????
? ObjectsgtAddressesgtList ???
? ?New?????????
8Netscreen???
??????????
? ????IP???????
? ???????????
? IP/Netmask???
? ?OK?????????
9Netscreen???
??????????
? Trust ???
? ?New?????????
10Netscreen???
??????????
? ????????????
? ????IP???????
? IP/Netmask???
? ?OK?????????
11Netscreen???
VPN??????????
? VPNsgtAutoKey AdvancedgtGateway ???
? ?New?????????
12Netscreen???
VPN??????????
? ???(??????)??????
? ?Custom????
? ?Static IP Address????
? ???(??????)?IP???????
? ????????? ?????test123???? ?RemotePC???????????
??
? ?Advanced?????????
13Netscreen???
VPN??????????
? Custom ???
? pre-g2-3des-sha ???
? Main??? (?????IP??????)
? ?Return?????????
14Netscreen???
VPN??????????
VPN??????????????????
15Netscreen???
Autokey IKE????
? VPNsgt Autokey IKE ???
? ?New?????????
16Netscreen???
Autokey IKE????
? VPN???? ?????Netscreen RemotePC????
? Compatible ???
? ?OK?????????
? Predefined ??? ??????VPN??????????????
17Netscreen???
Autokey IKE????
AutoKey IKE ????????????
18Netscreen???
????????
? Policies ???
? ?New?????????
?Trust??????
? Untrust??????
19Netscreen???
????????
? Address Book Entry ???
? Local segment ???
? RemotePC ???
? Tunnel ???
? ??????VPN? ???
? ????????????????????????
? ??????????????
? Position at Top????????
? ?OK?????????
20Netscreen???
????????
????VPN???????????????????????
21Windows???
???
1.IP?????????????
IP?????????? IPsec VPN (?????)
2.IP???????(???) OUTBOUND (?????) ???????????
10.0.0.1( Netscreen?Untrust??IP????) ??????
test123(Netscreen???????) ???
172.16.0.100(RemotePC?IP????)
?? 192.168.1.0/24(VPN????????????)
5.??
3.????????? IPsec Proposal(?????) ?????????
SHA-1 ????????? 3DES
4.??
22Windows???
???
IP?????????? IPsec VPN(?????)
6.IP???????(???) INBOUND (?????) ???????????
172.16.0.100( RemotePC?IP????) ??????
test123(Netscreen???????) ???
192.168.1.0/24(VPN????????????)
?? 172.16.0.100(RemotePC?IP????)
9.??
7.????????? IPsec Proposal(?????) ?????????
SHA-1 ????????? 3DES
8.??
10.????????? IP?????????? ( IPsec VPN
)?RemotePC?????
23Windows???
IP??????????????
? ???????????????????????? ???????????????????
? ????????????IP????????????????????
?IP?????????????????
24Windows???
IP??????????????
? ?IP???????????? ????????????
?????IPsecVPN????
? ???(N)gt?????????
? ???(N)gt?????????
25Windows???
IP??????????????
? ???????
? ???(N)gt?????????
? ??????????
26Windows???
IP??????????????
? ?????
? ?60????
? ?OK?????????
? ?OK?????????
? ?????(V)?????????
27Windows???
IP???????(???)?
?IP????????????IPsec VPN??????????? ???(D)gt???????
??
? ???(N)gt?????????
28Windows???
IP???????(???)?
? Netscreen?Untrust??IP???????
? ?????????????????
? ???(N)gt?????????
? ???(N)gt?????????
29Windows???
IP???????(???)?
? ??????????????????(??????)???????????
?????????????????????test123????
? ?Netscreen?????????????
? ???(N)gt?????????
? ???(A)gt?????????
30Windows???
IP???????(???)?
? ????????????????OUTBOUND????
- ???(A)gt?????????
? ???(N)gt?????????
31Windows???
IP???????(???)?
? ??????????????????IP????????
? ???????????IP?????????
? ???(N)gt?????????
? ???(N)gt?????????
? VPN????????????
32Windows???
IP???????(???)?
? IP???????????????
? ???(N)gt?????????
? ????????????
33Windows???
IP???????(???)?
? ?OK? ????????
? ?????OUTBOUND????
? ???(N)gt?????????
34Windows???
??????????
? ????????? ???(A)? ????????
? ???(N)gt?????????
35Windows???
??????????
? ???????????????????????? ???????? IPsec
Proposal ???????
? ??????????????? ???
? ???(N)gt?????????
? ???(N)gt?????????
36Windows???
??????????
? ?IPsec????????????????????(D)? ???
? ????????(E)? ???
? ???(N)gt?????????
? ???(N)gt?????????
37Windows???
??????????
? ?????IPsec Proposal ????
? ????????????
? ???(N)gt?????????
38Windows???
??????????
? ????????????
? ?????????????
39Windows???
IP???????(???)?
IP????????????IPsec VPN??????????? ????????????
40Windows???
IP???????(???)?
? ???IP?????????????????????????RemotePC?IP????(17
2.16.0.100)???
? ???(N)gt?????????
? ???(N)gt?????????
41Windows???
IP???????(???)?
? ??????????????????(??????)???????????
?????????????????????test123????
? ?Netscreen?????????????
? ?????????????????
? ???(N)gt?????????
? ???(N)gt?????????
42Windows???
IP???????(???)?
? ???(A)gt?????????
? ????????????????INBOUND????
? ???(A)gt?????????
43Windows???
IP???????(???)?
? ????????????IP?????????
? ???(N)gt?????????
? ???(N)gt?????????
? VPN?????????????
44Windows???
IP???????(???)?
? ??????????????????IP????????
? IP???????????????
? ???(N)gt?????????
? ???(N)gt?????????
45Windows???
??????????
? ????????????
? ???(A)gt?????????
46Windows???
??????????
? ?????INBOUND????
? ???(N)gt?????????
47Windows???
??????????
? ?????IPsec Proposal ????
? ???(N)gt?????????
? ????????????
48Windows???
??????????
? ?OK?????????
49Windows???
?????????
?????????????IP???????????????????? ?IPsec
VPN???????????????IPsec VPN??????????????????
? ????????????????????????
50VPN?????
? RemotePC??VPN???????ping???
? IKE???SA?????????????
51????
??????????!
172.16.0.0/24
192.168.1.0/24
10.0.0.0/24
RemotePC
172.16.0.1
10.0.0.1
192.168.1.1
172.16.0.100
10.0.0.2