failover lan enable
failover key *****
failover interface ip failover 192.168.1.1 255.255.255.0 standby 192.168.1.2
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
global (outside) 1 interface
nat (inside) 1 access-list intoout
access-group ping in interface outside
route outside 0.0.0.0 0.0.0.0 8.8.8.8 1
route inside 10.103.0.0 255.255.0.0 10.239.0.2 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout uauth 0:05:00 absolute
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
telnet timeout 5
ssh timeout 5
console timeout 0
!
!
prompt hostname context
Cryptochecksum:3bdee468f4e26aa91d0e068d2bf56fe4
: end
InternetSTB# sh run
: Saved
:
PIX Version 7.2(2)
!
hostname pixfirewall
enable password 8Ry2YjIyt7RRXU24 encrypted
names
!
interface Ethernet0
nameif outside
security-level 0
ip address 8.8.8.8 255.255.255.0
!
interface Ethernet1
nameif inside
security-level 100
ip address 10.239.0.2 255.255.255.0
!
interface Ethernet2
description LAN Failover Interface
!
interface Ethernet3
shutdown
no nameif
no security-level
no ip address
!
interface Ethernet4
shutdown
no nameif
no security-level
no ip address
!
passwd 2KFQnbNIdI.2KYOU encrypted
ftp mode passive
access-list 1 standard permit 10.103.0.0 255.255.0.0
access-list intoout extended permit ip 10.103.33.0 255.255.255.0 any
access-list ping extended permit icmp any any
pager lines 24
mtu outside 1500
mtu inside 1500
failover
failover lan unit secondary
failover lan interface failover Ethernet2
failover lan enable
failover key *****
failover interface ip failover 192.168.1.1 255.255.255.0 standby 192.168.1.2
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
global (outside) 1 interface
nat (inside) 1 access-list intoout
access-group ping in interface outside
route outside 0.0.0.0 0.0.0.0 8.8.8.8 1
route inside 10.103.0.0 255.255.0.0 10.239.0.2 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout uauth 0:05:00 absolute
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
telnet timeout 5
ssh timeout 5
console timeout 0
!
!
prompt hostname context
Cryptochecksum:386b00f3cb68cbaabd532e500fa1d72d
: end
2. 路由器配置相关代码
HZ#sh run
Building configuration...
Current configuration : 888 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname HZ
!
boot-start-marker
boot-end-marker
!
!
no aaa new-model
memory-size iomem 5
!
!
ip cef
no ip domain lookup
ip domain name lab.local
interface Ethernet0/0
ip address 10.100.0.2 255.255.255.252