administrator password encrypted *
login user user *
user attribute administrator=off connection=off
user attribute user connection=serial,telnet,remote,ssh,sftp,http gui-page=dashboard,lan-map,config login-timer=21474000
ip route default gateway dhcp lan2
ip route 192.168.1.0/24 gateway tunnel 1
ip lan1 address 192.168.12.1/24
ip lan2 address dhcp
ip lan2 nat descriptor 1
tunnel select 1
ipsec tunnel 1
ipsec sa policy 1 1 esp aes-cbc sha-hmac
ipsec ike keepalive log 1 off
ipsec ike keepalive use 1 on heartbeat 10 6
ipsec ike local address 1 192.168.12.1
ipsec ike local name 1 test-branch key-id
ipsec ike nat-traversal 1 on
ipsec ike pre-shared-key 1 text xxx
ipsec ike remote address 1 xxx.xxx.xxx.xxx
ip tunnel tcp mss limit auto
tunnel enable 1
ip filter 101099 pass * 192.168.12.1 udp * 500
ip filter 101100 pass * 192.168.12.1 esp
ip filter 101101 pass * 192.168.12.1 udp * 4500
nat descriptor type 1 masquerade
nat descriptor address outer 1 primary
nat descriptor address inner 1 auto
nat descriptor masquerade static 1 1 192.168.12.1 udp 500
nat descriptor masquerade static 1 2 192.168.12.1 esp
nat descriptor masquerade static 1 3 192.168.12.1 udp 4500
ipsec auto refresh on
telnetd service off
telnetd host lan
dhcp service server
dhcp server rfc2131 compliant except remain-silent
dhcp scope 1 192.168.12.2-192.168.12.254/24
dns server dhcp lan2
sshd service off
statistics traffic on