发新话题
打印

VPN问题:Netscreen Remote可以ping无法telnet内网

本主题由 admin 于 2008-1-31 09:25 移动

VPN问题:Netscreen Remote可以ping无法telnet内网

我采用XAuth User、AutoKey IKE、共享密钥等方式设置VPN,用Netscreen Remote可以成功远程接入,Ping通192.168.1.x内网的ip 问题1:除了ping外,telnet 192.168.1.x等其它操作都不行问题2:我如何设置网关才能能够ping通192.168.2.x内网的ip呢?(难到用route add手工添加路由不成?) 我怀疑是网关的问题,但不知如何处理,恳请哪位大侠赐教!!! Active Routes: Network Destination Netmask Gateway Interface 0.0.0.0 0.0.0.0 218.5.87.89 218.5.87.93 127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 192.168.1.0 255.255.255.0 192.168.1.25 192.168.1.25 192.168.1.25 255.255.255.255 127.0.0.1 127.0.0.1 192.168.1.255 255.255.255.255 192.168.1.25 192.168.1.25 193.168.1.25 255.255.255.255 192.168.1.25 192.168.1.25 218.5.87.88 255.255.255.248 218.5.87.93 218.5.87.93 218.5.87.93 255.255.255.255 127.0.0.1 127.0.0.1 218.5.87.255 255.255.255.255 218.5.87.93 218.5.87.93 224.0.0.0 224.0.0.0 192.168.1.25 192.168.1.25 224.0.0.0 224.0.0.0 218.5.87.93 218.5.87.93 255.255.255.255 255.255.255.255 218.5.87.93 218.5.87.93 Default Gateway: 218.5.87.89 ================================================================= Persistent Routes: None Ethernet adapter Interface: Connection-specific DNS Suffix . : Description . . . . . . . . . . . : Intel(R) PRO/100 VE Network Connection Physical Address. . . . . . . . . : 00-08-02-64-7E-90 DHCP Enabled. . . . . . . . . . . : No IP Address. . . . . . . . . . . . : 218.5.87.93 Subnet Mask . . . . . . . . . . . : 255.255.255.248 Default Gateway . . . . . . . . . : 218.5.87.89 DNS Servers . . . . . . . . . . . : 218.5.87.90 PPP adapter SafeNet Virtual Adapter Interface: Connection-specific DNS Suffix . : Description . . . . . . . . . . . : WAN (PPP/SLIP) Interface Physical Address. . . . . . . . . : 00-53-45-00-00-00 DHCP Enabled. . . . . . . . . . . : No IP Address. . . . . . . . . . . . : 192.168.1.25 Subnet Mask . . . . . . . . . . . : 255.255.255.255 Default Gateway . . . . . . . . . : DNS Servers . . . . . . . . . . . : 192.168.1.11 Primary WINS Server . . . . . . . : 192.168.1.11 NetBIOS over Tcpip. . . . . . . . : Disabled

TOP

你修改一下防火墙的参数,试一下
set flow tcp-mss 1200

TOP

发新话题