Bay Networks 6300 Supplement Manual page 299

Supplement to the remote annex administrator’s guide for unix
Hide thumbs Also See for 6300:
Table of Contents

Advertisement

Book A
Remote Annex 6300 Supplement to the Remote Annex Administrator's Guide for UNIX
Table A-36. Arguments in the acp_restrict File Entries (continued)
Argument
Description
unrestricted host
The name or IP address of an unrestricted host
(including RA 6300s). The list of unrestricted hosts is
separated by commas; no white space is allowed. An
asterisk (*) can be used as a wild card in place of a host
name or the host part of an IP address.
[ports]
One or more TCP or UDP ports on restricted host or
unrestricted host. To specify multiple ports, separate
them with commas or specify them as a range separated
by a hyphen (–). Enclose the port(s) in square brackets
([ ]). White space and wild cards are not allowed. The
default is any TCP or UDP port.
Following are two restricted-host entries:
annex01: hosta,hostb,hostf,132.245.6.23
annex02: hostc,132.245.6.15,hostf,132.245.6.23,\
In the previous example, the first entry prevents SLIP, PPP, and CLI
connections from annex01 to any port on hosta, hostb, hostf, or the host
at IP address 132.245.6.23. The second entry prevents SLIP, PPP, and
CLI connections from annex02 to any port on hostc, hostf, hosth, the host
at IP address 132.245.6.15, the host at IP address 132.245.6.23, and
annex01.
In the next example, which shows the use of profile criteria, user carl is
blocked from using telnet or rlogin to access hosts atlas and steam:
username=carl;protocol=cli:atlas,steam
Chapter 15
hosth,annex01
Using RA 6300 Security
A-271

Advertisement

Table of Contents
loading

Table of Contents