使用中国电信的3G移动卡连接至互联网

连接3G网络

这是连接至互联网的基本结构,通过使用3G移动网络,以无线环境连接至互联网。
因为不需要有线基础设备的设施,因此,除了展览会等构建临时网络的情况下,对于农村等难以提供有线基础设备设施的地区也是非常有效的解决方案。
并且,能够与有线基础设备同时使用,还能够将3G互联网作为备份线路使用。[详细内容请点击这里]

RTX系列的的设置范例

能够只导出下述的设置部分。

ConfigDownload

LAN的
接口的设置
(使用LAN1端口)
ip lan1 address 192.168.0.1/24
3G互联网(WAN)的
接口的设置
(使用USB接口)
mobile use usb1 on
pp select 1
pp bind usb1
pp auth accept pap chap
pp auth myname ctnet@mycdma.cn vnet.mobi
ppp lcp mru off 1792
ppp lcp accm on
ppp lcp acfc on
ppp ipcp ipaddress on
ppp ipcp msext on
ppp ipv6cp use off
ip pp nat descriptor 1
mobile auto connect on
mobile disconnect time off
mobile access-point name ctnet cid=1 #注释1
mobile dial number "#777" #注释1
mobile access limit length off
mobile access limit time off
pp enable 1
ip route default gateway pp 1
NAT的设置 nat descriptor type 1 masquerade
DHCP的设置 dhcp service server
dhcp scope 1 192.168.0.2-192.168.0.100/24
DNS的设置 dns server (ISP所指定的DNS服务器的IP地址)
dns private address spoof on
Inbound过滤的设置 ip filter source-route on
ip filter directed-broadcast on
ip inbound filter 1001 reject-nolog * * tcp,udp * 135
ip inbound filter 1002 reject-nolog * * tcp,udp 135 *
ip inbound filter 1003 reject-nolog * * tcp,udp * netbios_ns-netbios_ssn
ip inbound filter 1004 reject-nolog * * tcp,udp netbios_ns-netbios_ssn *
ip inbound filter 1005 reject-nolog * * tcp,udp * 445
ip inbound filter 1006 reject-nolog * * tcp,udp 445 *
ip inbound filter 1007 reject-nolog 192.168.0.0/24 * * * * #注释2
ip inbound filter 1008 pass-nolog * * * * *
pp select 1
ip pp inbound filter list 1001 1002 1003 1004 1005 1006 1007 1008
pp enable 1
策略过滤的设置 ip policy interface group 101 name=Private local lan1
ip policy address group 101 name=Private 192.168.0.0/24
ip policy address group 102 name=Any *
ip policy service group 101 name="Open Services"
ip policy service group 102 name=General dns
ip policy service group 103 name=Mail pop3 smtp
ip policy service group 104 name=IPsec ike esp
ip policy filter 1100 reject-nolog lan1 * * * *
ip policy filter 1110 pass-nolog * * * * 102
ip policy filter 1122 static-pass-nolog * lan1 * * *
ip policy filter 1123 static-pass-nolog * local * * *
ip policy filter 1124 static-pass-log * * 192.168.0.0/24 * http
ip policy filter 1130 pass-nolog * tunnel* * * *
ip policy filter 1140 pass-nolog * pp1 * * *
ip policy filter 1520 pass-log * lan1 * * 101
ip policy filter 1530 static-pass-nolog * local * * 104
ip policy filter 1600 reject-nolog tunnel* * * * *
ip policy filter 1630 pass-nolog * tunnel* * * *
ip policy filter 1640 pass-nolog * local * * *
ip policy filter 1650 pass-nolog * lan1 * * *
ip policy filter 1680 reject-nolog * pp* * * *
ip policy filter 1700 pass-nolog local * * * *
ip policy filter 1710 static-pass-nolog * lan1 * * *
ip policy filter 1750 static-pass-nolog * pp* * * 104
ip policy filter 2000 reject-nolog * * * * *
ip policy filter set 101 name="Internet Access" 1100 [1110 1123 [1124] 1122 1140 1130] 1500 [1520 1530] 1600 [1640 1650 1680 1630] 1700 [1710 1750] 2000
ip policy filter set enable 101

[注释的说明]

注释1:
次设置为电信3G的设置,如为联通3G,则需改成以下设置:]
mobile access-point name 3gnet cid=1]
mobile dial number "*99#"]

注释2:
设置的地址范围和LAN1接口的IP地址在同一网段。

返回顶部

网络相关产品

服务支持

事业绍介