[index] AT-AR2050V/AT-AR3050S/AT-AR4050S コマンドリファレンス 5.4.6
ISP接続用ユーザー名 | user@isp |
ISP接続用パスワード | isppasswd |
PPPoEサービス名 | 指定なし |
使用できるアドレス | 10.0.0.0/29(10.0.0.0〜10.0.0.7) |
接続形態 | LAN型(アドレス8個固定) |
WAN側物理インターフェース | eth1 |
WAN側(ppp0)IPアドレス | Unnumbered |
LAN側(vlan1)IPアドレス | 10.0.0.1/29 |
DHCPサーバー機能 | 使わない |
no spanning-tree rstp enable |
interface eth1 encapsulation ppp 0 |
interface ppp0 keepalive ppp ipcp ip-override ppp username user@isp ppp password isppasswd ip unnumbered vlan1 ip tcp adjust-mss pmtu |
interface vlan1 ip address 10.0.0.1/29 |
application dns-tcp protocol tcp dport 53 |
zone private network lan ip subnet 10.0.0.0/29 host dns ip address 10.0.0.2 host smtp ip address 10.0.0.3 |
zone public network wan ip subnet 0.0.0.0/0 interface ppp0 |
firewall rule 10 permit any from private to private rule 20 permit any from private to public rule 30 permit dns from public.wan to private.lan.dns rule 40 permit dns-tcp from public.wan to private.lan.dns rule 50 permit smtp from public.wan to private.lan.smtp rule 60 permit ping from public.wan to private.lan protect |
ip route 0.0.0.0/0 ppp0 |
end |
awplus# copy running-config startup-config ↓ Building configuration... [OK] |
awplus# write memory ↓ Building configuration... [OK] |
awplus(config)# log buffered level informational program kernel msgtext Firewall ↓ |
awplus# show log | include firewall ↓ |
! no spanning-tree rstp enable ! interface eth1 encapsulation ppp 0 ! interface ppp0 keepalive ppp ipcp ip-override ppp username user@isp ppp password isppasswd ip unnumbered vlan1 ip tcp adjust-mss pmtu ! interface vlan1 ip address 10.0.0.1/29 ! application dns-tcp protocol tcp dport 53 ! zone private network lan ip subnet 10.0.0.0/29 host dns ip address 10.0.0.2 host smtp ip address 10.0.0.3 ! zone public network wan ip subnet 0.0.0.0/0 interface ppp0 ! firewall rule 10 permit any from private to private rule 20 permit any from private to public rule 30 permit dns from public.wan to private.lan.dns rule 40 permit dns-tcp from public.wan to private.lan.dns rule 50 permit smtp from public.wan to private.lan.smtp rule 60 permit ping from public.wan to private.lan protect ! ip route 0.0.0.0/0 ppp0 ! end |
(C) 2015 - 2016 アライドテレシスホールディングス株式会社
PN: 613-002107 Rev.K