
Security Policy and Security Association Examples
304111-A Rev 00
C-3
Example 2: Required Policies on RTR 2 to Protect Data Between
RTR 1 Subnet 192.32.5.0 and RTR 2 Subnet 192.28.41.0
Example 3: Required Policies on RTR 2 to Protect Data Between
RTR 2 Subnet 192.28.41.0 and RTR 3 Subnet 192.131.141.0
Router RTR 2 Interface S21
Policy
Outbound
Action
Protect
Criteria
IP source address range: 192.28.41.0 - 192.28.41.255
IP destination address range: 192.32.5.0 - 192.32.5.255
SA
SRC: 1.1.1.2 DST: 1.1.1.1 SPI 256
RTR2 Interface S21
Security Policy
Outbound Inbound
Action
Bypass Bypass
Criteria
Protocol 89 (OSPFIGP) Protocol 89 (OSPFIGP)
Router RTR 2 Interface S31
Policy
Outbound
Action
Protect
Criteria
IP source address range: 192.28.41.0 - 192.28.41.255
IP destination address range: 192.131.141.0 - 192.131.141.255
SA
SRC: 2.2.2.1 DST: 2.2.2.2 SPI 256
Komentáře k této Příručce