Installation manual

Operation Manual - QoS/ACL
Quidway S3000-EI Series Ethernet Switches Chapter 3
Logon User ACL Control Configuration
Huawei Technologies Proprietary
3-4
3.3.2 Calling ACL to Control SNMP Users
To control the NM users with ACL, call the defined configuring SNMP
c
You can use the following commands to
P n
Table 3-3 Defining a numbered basic ACL
ACL when
ommunity name, username, and group name.
call an ACL.
erform the following configuration i system view.
Operation Command
Call an ACL
when configuring
SNMP
snm
community
name.
p-agent c d | write } community-name
[ [ mib-view view-name ] | [ acl acl-number ] ]*
ommunity { rea
Call an ACL
snmp-agent group { v1 | v2c } group-name [ read-view
re
when configuring
ad-view ] [ write-view write-view ] [ notify-view notify-view ]
[ acl acl-list ]
v3 group-name [ authentication |
privacy ] [ read-view read-view ] [ write-view write-view ]
SNMP group
name.
snmp-agent group
[ notify-view notify-view ] [ acl acl-list ]
Call an ACL
[ acl acl-list ]
when configuring
snmp-agent usm-user { v1 | v2c } user-name group-name
ser-name group-name
sha } auth-password ]
-password ] [ acl acl-list ]
SNMP
username.
snmp-agent usm-user v3 u
[ authentication-mode { md5 |
[ privacy-mode des56 priv
S
S ity name configuration ccess to SNMP V1network
m
S roup name and username attri
herefore calling an ACL for SNMP community name configuration can filter the access
to the network management system of SNMP V2C or higher. If you configure ACL
ing both the
atures.
NMP community name attribute is a fea
NMP commun
ture of SNMP V1. Therefore calling an ACL for
can filter the a
anagement system.
NMP g
bute is a feature of SNMP V2C and above.
T
control in both of the commands, the switch will filter the NM users concern
fe
Note:
You can call different ACLs for the above mentioned commands.
For more about the commands, refer to the Command Manual.