Avaya Configuring Integrated IP Security Uživatelský manuál Strana 59

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 72
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 58
304111-A Rev 00
C-1
Appendix C
Security Policy and Security
Association Examples
This appendix provides examples of outbound and inbound policies and protect
and unprotect security associations.
Inbound and Outbound Policies
All unicast traffic must be defined by a security policy. Traffic traveling from a
security gateway is defined by an outbound policy. Traffic traveling to a secure
gateway is defined by an inbound policy. Inbound protected traffic that is
associated with an unprotect SA configured on the interface does not require a
policy.
As you review the security policy examples in this section, refer to Figure C-1
.
All of the routers have OSPF interfaces configured for type NBMA transmit
unicast frames. An outbound and an inbound bypass policy protect all unicast
traffic for the specified router subnetworks.
Security policy examples 1 and 2 show how to configure outbound policies to
protect all unicast traffic between router (RTR) 1 and router 2; examples 3 and 4
show how to configure outbound policies to protect all unicast traffic between
router 2 and router 3; and examples 5, 6, and 7 show how to configure outbound
policies to protect all traffic between router 1 and router 3. A bypass inbound
policy is in effect for all incoming traffic to the routers so that no SAs are required.
Zobrazit stránku 58
1 2 ... 54 55 56 57 58 59 60 61 62 63 64 ... 71 72

Komentáře k této Příručce

Žádné komentáře