rip use on*1
ospf use on*1
ospf router id ROUTERID*2
ospf area { backbone | 1以上 }*3
ip lanX ospf area { backbone | 1以上 }*4
ospf configure refresh*5

tunnel select 1*1 ipsec tunnel 101*2 ipsec sa policy 101 1 esp 3des-cbc sha-hmac*3 ipsec ike keepalive use 1 on*4 ipsec ike local address 1 192.168.11.1*5 ipsec ike pfs 1 on*6 ipsec ike pre-shared-key 1 text PASSWORD*7 ipsec ike remote address 1 5.6.7.8*8 tunnel enable 1*9 no tunnel select*10 ip route 192.168.12.0/24 gateway tunnel 1*11 ip lan3 nat descriptor 1*12 nat descriptor type 1 masquerade*13 nat descriptor address outer 1 primary*14 nat descriptor masquerade static 1 1 192.168.11.1 esp*15 nat descriptor masquerade static 1 2 192.168.11.1 udp 500*16 ipsec auto refresh on*17
tunnel select 1 ipsec tunnel 101 ipsec sa policy 101 1 esp 3des-cbc sha-hmac ipsec ike keepalive use 1 on ipsec ike local address 1 192.168.12.1 ipsec ike pfs 1 on ipsec ike pre-shared-key 1 text PASSWORD ipsec ike remote address 1 1.2.3.4 tunnel enable 1 no tunnel select ip route 192.168.11.0/24 gateway tunnel 1 ip lan3 nat descriptor 1 nat descriptor type 1 masquerade nat descriptor address outer 1 primary nat descriptor masquerade static 1 1 192.168.12.1 esp nat descriptor masquerade static 1 2 192.168.12.1 udp 500 ipsec auto refresh on
tunnel select 1*1 ipsec tunnel 101*2 ipsec sa policy 101 1 esp 3des-cbc sha-hmac*3 ipsec ike local address 1 192.168.11.1*4 ipsec ike pfs 1 on*5 ipsec ike pre-shared-key 1 text PASSWORD*6 ipsec ike remote address 1 any*7 ipsec ike remote name 1 IPSEC_NAME*8 tunnel enable 1*9 no tunnel select*10 ip route 192.168.12.0/24 gateway tunnel 1*11 nat descriptor type 1 masquerade*12 nat descriptor masquerade static 1 1 192.168.11.1 esp*13 nat descriptor masquerade static 1 1 192.168.11.1 udp 500*14 ipsec auto refresh on*15