set clock timezone 0 set vrouter trust-vr sharable unset vrouter "trust-vr" auto-route-export set service "Test http" protocol tcp src-port 80-80 dst-port 80-80 set auth-server "Local" id 0 set auth-server "Local" server-name "Local" set auth default auth server "Local" set admin name "netscreen" set admin password "nJ7KEMrnDoqGcVCN9sYNiNDtDWOqOn" set admin auth timeout 10 set admin auth server "Local" set admin format dos set zone "Trust" vrouter "trust-vr" set zone "Untrust" vrouter "trust-vr" set zone "DMZ" vrouter "trust-vr" set zone "VLAN" vrouter "trust-vr" set zone "Trust" tcp-rst set zone "Untrust" block unset zone "Untrust" tcp-rst set zone "MGT" block set zone "DMZ" tcp-rst set zone "VLAN" block set zone "VLAN" tcp-rst set zone "Untrust" screen tear-drop set zone "Untrust" screen syn-flood set zone "Untrust" screen ping-death set zone "Untrust" screen ip-filter-src set zone "Untrust" screen land set zone "V1-Untrust" screen tear-drop set zone "V1-Untrust" screen syn-flood set zone "V1-Untrust" screen ping-death set zone "V1-Untrust" screen ip-filter-src set zone "V1-Untrust" screen land set interface "ethernet1" zone "Trust" set interface "ethernet2" zone "DMZ" set interface "ethernet3" zone "Untrust" unset interface vlan1 ip set interface ethernet1 ip 192.168.11.1/24 set interface ethernet1 route set interface ethernet2 ip 192.168.10.1/24 set interface ethernet2 nat set interface ethernet3 ip 192.168.15.2/24 set interface ethernet3 route unset interface vlan1 bypass-others-ipsec unset interface vlan1 bypass-non-ip set interface ethernet1 ip manageable unset interface ethernet2 ip manageable unset interface ethernet3 ip manageable set interface ethernet1 dhcp server service set interface ethernet2 dhcp server service set interface ethernet1 dhcp server enable set interface ethernet2 dhcp server enable set interface ethernet1 dhcp server option lease 1440000 set interface ethernet1 dhcp server option gateway 192.168.11.1 set interface ethernet1 dhcp server option netmask 255.255.255.0 set interface ethernet1 dhcp server option dns1 192.168.11.10 set interface ethernet1 dhcp server option dns2 8.8.8.8 set interface ethernet1 dhcp server option dns3 8.8.4.4 set interface ethernet2 dhcp server option lease 1440000 set interface ethernet2 dhcp server option gateway 192.168.10.1 set interface ethernet2 dhcp server option netmask 255.255.255.0 set interface ethernet2 dhcp server option dns1 8.8.8.8 set interface ethernet2 dhcp server option dns2 8.8.4.4 set interface ethernet1 dhcp server ip 192.168.11.15 to 192.168.11.50 set interface ethernet2 dhcp server ip 192.168.10.15 to 192.168.10.50 set hostname ns204 set ike gateway "main gate" address 192.168.11.1 Main outgoing-interface "ethernet3" preshare "r1j1mnC8N08Uaos5naCBR8m9qKnQkGUhOQ==" sec-level standard set ike gateway "main gate" cert peer-ca all set ike respond-bad-spi 1 set pki authority default scep mode "auto" set pki x509 default cert-path partial set ssh version v2 set config lock timeout 5 set snmp port listen 161 set snmp port trap 162 set vrouter "untrust-vr" exit set vrouter "trust-vr" unset add-default-route exit