HP 6125G HP 6125G & 6125G/XG Blade Switches Fundamentals Configuration - Page 72

Configuring source MAC-based Telnet login control, Telnet login control configuration example

Page 72 highlights

Step 4. Exit advanced ACL view. 5. Enter user interface view. 6. Use the ACL to control user logins by source and destination IP addresses. Command Remarks quit N/A user-interface [ type ] first-number [ last-number ] acl [ ipv6 ] acl-number { inbound | outbound } N/A • inbound: Filters incoming packets. • outbound: Filters outgoing packets. Configuring source MAC-based Telnet login control Ethernet frame header ACLs apply to Telnet traffic only if the Telnet client and server are located in the same subnet. To configure source MAC-based Telnet login control: Step 1. Enter system view. 2. Create an Ethernet frame header ACL and enter its view. 3. Configure an ACL rule. 4. Exit Ethernet frame header ACL view. 5. Enter user interface view. 6. Use the ACL to control user logins by source MAC address. Command system-view Remarks N/A acl number acl-number [ match-order { config | auto } ] By default, no Ethernet frame header ACL exists. rule [ rule-id ] { permit | deny } rule-string N/A quit N/A user-interface [ type ] first-number [ last-number ] N/A acl acl-number inbound inbound: Filters incoming packets. Telnet login control configuration example Network requirements As shown in Figure 32, configure an ACL on the device to permit only incoming Telnet packets sourced from Host A and Host B. 66

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135

66
Step
Command
Remarks
4.
Exit advanced ACL view.
quit
N/A
5.
Enter user interface view.
user-interface
[
type
]
first-number
[
last-number
]
N/A
6.
Use the ACL to control user
logins by source and
destination IP addresses.
acl
[
ipv6
]
acl-number
{
inbound
|
outbound
}
inbound
: Filters incoming
packets.
outbound
: Filters outgoing
packets.
Configuring source MAC-based Telnet login control
Ethernet frame header ACLs apply to Telnet traffic only if the Telnet client and server are located in the
same subnet.
To configure source MAC-based Telnet login control:
Step
Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Create an Ethernet frame
header ACL and enter its
view.
acl
number
acl-number
[
match-order
{
config
|
auto
} ]
By default, no Ethernet frame
header ACL exists.
3.
Configure an ACL rule.
rule
[
rule-id
] {
permit
|
deny
}
rule-string
N/A
4.
Exit Ethernet frame header
ACL view.
quit
N/A
5.
Enter user interface view.
user-interface
[
type
]
first-number
[
last-number
]
N/A
6.
Use the ACL to control user
logins by source MAC
address.
acl
acl-number
inbound
inbound
: Filters incoming packets.
Telnet login control configuration example
Network requirements
As shown in
Figure 32
, configure an ACL on the device to permit only incoming Telnet packets sourced
from Host A and Host B.