Controlling Network Management Users By Source Ip Addresses - 3Com Switch 4800G 24-Port Configuration Manual

Switch 4800g family 24-port, pwr 24-port, 48-port, pwr 48-port, 24-port sfp
Hide thumbs Also See for Switch 4800G 24-Port:
Table of Contents

Advertisement

78
C
8: C
HAPTER
ONTROLLING
Controlling Network
Management Users by
Source IP Addresses
Prerequisites
Controlling Network
Management Users by
Source IP Addresses
L
U
OGIN
SERS
You can manage a Switch 4800G through network management software.
Network management users can access switches through SNMP.
You need to perform the following two operations to control network
management users by source IP addresses.
Defining an ACL
Applying the ACL to control users accessing the switch through SNMP
The controlling policy against network management users is determined, including
the source IP addresses to be controlled and the controlling actions (permitting or
denying).
Controlling network management users by source IP addresses is achieved by
applying basic ACLs, which are numbered from 2000 to 2999. Refer to
"Configuring an Advanced IPv4 ACL" on page 844 for information about defining
an ACL.
To do...
Enter system view
Create a basic ACL or
enter basic ACL view
Define rules for the ACL
Quit to system view
Apply the ACL while
configuring the SNMP
community name
Apply the ACL while
configuring the SNMP
group name
Apply the ACL while
configuring the SNMP user
name
n
You can specify different ACLs while configuring the SNMP community name, the
SNMP group name and the SNMP user name.
Use the command...
system-view
acl number acl-number [ match-order
{ config | auto } ]
rule [ rule-id ] { permit | deny } [ source
{ sour-addr sour-wildcard | any } |
time-range time-name | fragment |
logging ]*
quit
snmp-agent community { read | write }
community-name [ mib-view view-name |
acl acl-number ]*
snmp-agent group { v1 | v2c }
group-name [ read-view read-view ]
[ write-view write-view ] [ notify-view
notify-view ] [ acl acl-number ]
snmp-agent group v3 group-name
[ authentication | privacy ] [ read-view
read-view ] [ write-view write-view ]
[ notify-view notify-view ] [ acl
acl-number ]
snmp-agent usm-user { v1 | v2c }
user-name group-name [ acl acl-number ]
snmp-agent usm-user v3 user-name
group-name [ authentication-mode { md5
| sha } auth-password [ privacy-mode
{ des56 | aes128 } priv-password ] ] [ acl
acl-number ]
Remarks
-
As for the acl
number
command, the
config keyword is
specified by
default.
Required
-
Required
Required
Required

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents