ip address 10.0.0.1 255.255.255.252 — virtual tunneling o’z manzili
tunnel source FastEthernet 0/0 — marshrutizatorning xususiy tashqi interfeysi
tunnel destination 2.2.2.2 — filial marshrutizatorining tashqi manzili
tunnel mode ipsec ipv4 — shifrlash turi
tunnel protection ipsec profile VTI_PROF — shifrlash usuli
Muhim! Agar sizda oxirgi ikki satrni kiritishda xató haqidagi xabar paydo bo’lsa va marshrutizator ushbu buyruqlarni qabul qilmasa, u holda shifrlash profilini quyidagi buyruq orqali olib tashlang
no crypto ipsec profile VTI_PROF
Sizning marshritizatoringizning IOS opertsion tizimining joriy versiyasida ushbu suslni qo’llab bo’lmaydi. Ikkinchi usulga o’ting.
Filial ofisida
R-BRANCH(config)# interface Tunnel1 description Link to R-MAIN ip address 10.0.0.2 255.255.255.252 tunnel source FastEthernet 4 tunnel destination 1.1.1.2 tunnel mode ipsec ipv4 tunnel protection ipsec profile VTI_PROF
ip address 10.0.0.2 255.255.255.252 — virtual tunneling o’z manzili
tunnel source FastEthernet 4 — marshrutizatorning xususiy tashqi interfeysi
tunnel destination 1.1.1.2 — bosh ofis marshrutizatorining tashqi manzili
tunnel mode ipsec ipv4 — shifrlash turi
tunnel protection ipsec profile VTI_PROF — shifrlash usuli
agar barcha uchta qadam to’g’ri bajarilsa, interfeys holati up/down holatidan up/up holaidga o’tadi. Quyidagi buyruqlar orqali ko’rish mumkin.