Huawei Quidway S3900 Series Operation Manual page 93

Hide thumbs Also See for Quidway S3900 Series:
Table of Contents

Advertisement

Operation Manual – Login
Quidway S3900 Series Ethernet Switches-Release 1510
Operation
Define rules for the
ACL
Quit ACL view
Enter
interface view
Apply the ACL to
control
users by specified
source
addresses
8.2.5 Configuration Example
I. Network requirements
Only the Telnet users sourced from the IP address of 10.110.100.52 and 10.110.100.46
are permitted to log into the switch.
II. Network diagram
Internet
Internet
Sw itch
Sw itch
Figure 8-1 Network diagram for controlling Telnet users using ACLs
III. Configuration procedure
# Define a basic ACL.
Command
rule [ rule-id ] { permit |
deny } [ [ type protocol-type
type-mask | lsap lsap-type
type-mask ] | format-type |
cos
cos
{
source-vlan-id
source-mac-addr
source-mac-mask }* | dest
{
dest-mac-mask
time-range name ]*
quit
user
user-interface
first-number [ last-number ]
Telnet
acl acl-number { inbound |
outbound }
MAC
Huawei Technologies Proprietary
8-4
Required
|
source
You can define rules as
|
needed to filter by specific
source MAC addresses.
dest-mac-addr
}
|
[
type
]
Required
The
specifies to filter the users
trying to Telnet to the current
switch.
The
specifies to filter users trying
to Telnet to other switches
from the current switch.
Chapter 8 User Control
Description
inbound
keyword
outbound
keyword

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents