Ftp Server Acl - HPE D6020 Maintenance And Service Manual

Hide thumbs Also See for HPE D6020:
Table of Contents

Advertisement

Views
User view
Predefined user roles
network-admin
Parameters
ipv6-address: Specifies the source IPv6 address of an FTP connection. To view the source IPv6
addresses of FTP connections, execute the display ftp-user command.
port port: Specifies the source port of an FTP connection. To view the source ports of FTP
connections, execute the display ftp-user command.
Examples
# Release the FTP connections established from IPv6 address 2000::154.
<Sysname> free ftp user-ip ipv6 2000::154
Are you sure to free FTP connection? [Y/N]:y
<Sysname>

ftp server acl

Use ftp server acl to use an ACL to control FTP clients' access to the FTP server.
Use undo ftp server acl to restore the default.
Syntax
ftp server acl { ipv4-acl-number | ipv6 ipv6-acl-number }
undo ftp server acl [ ipv6 ]
Default
No ACL is used to control FTP clients' access to the FTP server.
Views
System view
Predefined user roles
network-admin
Parameters
ipv4-acl-number: Specifies an IPv4 ACL number in the range of 2000 to 3999.
ipv6 ipv6-acl-number: Specifies an IPv6 ACL number in the range of 2000 to 3999.
Usage guidelines
You can use this command to permit only FTP requests from specific FTP clients. This configuration
takes effect only for FTP connections to be established. It does not impact existing FTP connections.
If you execute this command multiple times, the most recent configuration takes effect.
Examples
# Use ACL 2001 to allow only client 1.1.1.1 to access the FTP server.
<Sysname> system-view
[Sysname] acl basic 2001
[Sysname-acl-ipv4-basic-2001] rule 0 permit source 1.1.1.1 0
[Sysname-acl-ipv4-basic-2001] rule 1 deny source any
[Sysname-acl-ipv4-basic-2001] quit
110

Advertisement

Table of Contents
loading

Table of Contents