发新话题
打印

[故障求助] 求助:关于同时有多人使用ns remote vpn拔号到内网的问题

求助:关于同时有多人使用ns remote vpn拔号到内网的问题

我们有个客户购买了10用户的ns remote vpn,客户那里要求至少能够有6个以上的远程用户同时使用拔号 VPN,请问该怎么做?我们做了以下的设置,但是第一阶段被拒绝。
set user "VPN_User" uid 1

set user "VPN_User" ike-id u-fqdn "juniper@cpcwi.com" share-limit 10


set user "VPN_User" type ike Y
set user "VPN_User" "enable"

set user-group "Group_VPN" id 1

set user-group "Group_VPN" user "VPN_User"
set ike gateway "GW_VPN" dialup "Group_VPN" Aggr outgoing-interface "untrust" preshare "/Um/pLHCNmg7K8shJmCaykvzuinRO4IIdw==" proposal "pre-g2-3des-sha" `BqJtsu:\F  
unset ike gateway "GW_VPN" nat-traversal udp-checksum

set ike gateway "GW_VPN" nat-traversal keepalive-frequency 0

set ike respond-bad-spi 1 7

set vpn "IKE_VPN" gateway "GW_VPN" no-replay tunnel idletime 0 sec-level compatible

set vpn "IKE_VPN" monitor

set pki authority default scep mode "auto"


set pki x509 default cert-path partial


set group address "Trust" "GR_Trust" AU
set group address "Trust" "GR_Trust" add "192.168.116.135"

set group address "Trust" "GR_Trust" add "SRV_192.168.116.23"

set policy id 2 from "Untrust" to "Trust" "Dial-Up VPN" "SRV_192.168.116.23" "ANY" tunnel vpn "IKE_VPN" id 6 log
set policy id 3 from "Untrust" to "Trust" "Dial-Up VPN" "192.168.116.135" "ANY" tunnel vpn "IKE_VPN" id 7 log Z
set policy id 1 from "Trust" to "Untrust" "GR_Trust" "Any" "ANY" permit log

TOP

楼主到C&E找找,里面应该有详细说明。

TOP

发新话题