2024年3月17日发(作者:)

USG5300web界面配置

1.配置USG5300的IP地址,并将该IP地址加入Trust安全区域。

system-view

[USG5300] interface GigabitEthernet 0/0/0

[USG5300-GigabitEthernet0/0/0] ip address 10.1.1.1 24

[USG5300-GigabitEthernet0/0/0] quit

[USG5300] firewall zone trust

[USG5300-zone-trust] add interface GigabitEthernet 0/0/0

[USG5300-zone-trust] quit

2.配置PC的IP地址(略)。

3.配置域间防火墙策略。

[USG5300] policy interzone trust local outbound

[USG5300-policy-interzone-local-trust-outbound] policy 0

[USG5300-policy-interzone-local-trust-outbound-0] policy source 10.1.1.1 0

[USG5300-policy-interzone-local-trust-outbound-0] action permit

[USG5300-policy-interzone-local-trust-outbound-0] return

system-view

[USG5300] policy interzone local trust inbound

[USG5300-policy-interzone-local-trust-inbound] policy 0

[USG5300-policy-interzone-local-trust-inbound-0] policy source 10.1.1.2 0

[USG5300-policy-interzone-local-trust-inbound-0] action permit

[USG5300-policy-interzone-local-trust-inbound-0] return

4.启动Web管理功能。

system-view

[USG5300] web-manager enable

5.配置Web用户。