Creating An Interzone; Enabling Firewall In The Interzone - Huawei S9700 Series Configuration Manual

Terabit routing switches spu
Hide thumbs Also See for S9700 Series:
Table of Contents

Advertisement

S9700 Core Routing Switch
Configuration Guide - SPU
Only the XGE sub-interfaces and Eth-Trunk sub-interfaces of the SPU can be added to a zone.
Step 3 Run:
zone zone-name
The interface is added to the zone.
Each zone has up to 1024 interfaces, and an interface can be added to only one zone.
----End

2.3.4 Creating an Interzone

Create the interzone so you can enable the firewall to filter packets or application-layer services
in the specified interzone.
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
firewall interzone zone-name1 zone-name2
An interzone is created.
The zones specified for an interzone must have been created on the device.
----End

2.3.5 Enabling Firewall in the Interzone

The configured firewall functions take effect only after you enable firewall in the interzone.
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
firewall interzone zone-name1 zone-name2
The interzone view is displayed.
The zones zone-name1 and zone-name2 have been created through the firewall zone command.
Step 3 Run:
firewall enable
The firewall is enabled.
By default, the firewall function is disabled in an interzone.
----End
Issue 01 (2012-03-15)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
2 Firewall Configuration
36

Advertisement

Table of Contents
loading

Table of Contents