Configuring Access Management; Access Management Configuration Examples - H3C S5100-SI Operation Manual

Ethernet switches
Hide thumbs Also See for H3C S5100-SI:
Table of Contents

Advertisement

Configuring Access Management

Follow these steps to configure access management:
To do...
Enter system view
Enable access
management function
Enable access
management trap
Enter Ethernet port view
Configure the access
management IP address
pool of the port
Display current
configuration of access
management
Before configuring the access management IP address pool of a port, you need to configure the
interface IP address of the VLAN to which the port belongs, and the IP addresses in the access
management IP address pool of a port must be in the same network segment as the interface IP
address of the VLAN which the port belongs to.
If an access management address pool configured contains IP addresses that belong to the static
ARP entries of other ports, the system prompts you to delete the corresponding static ARP entries
to ensure the access management IP address pool can take effect.
To allow only the hosts with their IP addresses in the access management address pool of a port to
access external networks, do not configure static ARP entries for IP addresses not in the IP
address pool.

Access Management Configuration Examples

Access Management Configuration Example
Network requirements
Client PCs are connected to the external network through Switch A (an Ethernet switch). The IP
addresses of the PCs of Organization 1 are in the range 202.10.20.1/24 to 202.10.20.20/24. The IP
address of PC 2 is 202.10.20.100/24, and that of PC 3 is 202.10.20.101/24.
Allow the PCs of Organization 1 to access the external network through GigabitEthernet 1/0/1 on
Switch A. The port belongs to VLAN 1, and the IP address of VLAN-interface 1 is
202.10.20.200/24.
Use the command...
system-view
am enable
am trap enable
interface interface-type
interface-number
am ip-pool address-list
display am
[ interface-list ]
1-2
Remarks
Required
By default, the system disables the
access management function.
Required
By default, access management trap is
disabled
Required
By default, no access management IP
address pool is configured.
Execute this command in any view.

Advertisement

Table of Contents
loading

This manual is also suitable for:

H3c s5100-ei

Table of Contents