HP 6125XLG R2306-HP 6125XLG Blade Switch Fundamentals Command Reference - Page 57

permit interface, Related commands, Syntax, Default, Views, Predefined user roles, Parameters

Page 57 highlights

[Sysname] role name role1 [Sysname-role-role1] interface policy deny [Sysname-role-role1-ifpolicy] permit interface ten-gigabitethernet 1/1/5 to ten-gigabitethernet 1/1/9 Related commands • display role • permit interface • role permit interface Use permit interface to configure a list of interfaces accessible to a user role. Use undo permit interface to disable the access of a user role to specific interfaces. Syntax permit interface interface-list undo permit interface [ interface-list ] Default No permitted interfaces are configured in user role interface policy view. A user role cannot access any interface after you configure the interface policy deny command. Views User role interface policy view Predefined user roles network-admin Parameters interface interface-list: Specifies a space-separated list of up to 10 interface items. Each interface item specifies one interface in the interface-type interface-number form or a range of interfaces in the interface-type interface-number to interface-type interface-number form. If an interface range is specified, the end interface must be the same type as the start interface and must have a higher interface number than the start interface. Usage guidelines To permit a user role to access an interface after you configure the interface policy deny command, you must add the interface to the permitted interface list of the policy. With the user role, you can perform the following operations to the interfaces in the permitted interface list: • Create, remove, configure them (only interfaces in the permitted interface list). • Enter their views. • Specify them in a feature command. The create and remove operations are available only to logical interfaces. You can repeat the permit interface command to add permitted interfaces to a user role interface policy. The undo permit interface command removes the entire list of permitted interfaces if no interface is specified. 50

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221

50
[Sysname] role name role1
[Sysname-role-role1] interface policy deny
[Sysname-role-role1-ifpolicy] permit interface ten-gigabitethernet 1/1/5 to
ten-gigabitethernet 1/1/9
Related commands
display role
permit interface
role
permit interface
Use
permit interface
to configure a list of interfaces accessible to a user role.
Use
undo permit interface
to disable the access of a user role to specific interfaces.
Syntax
permit interface
interface-list
undo permit interface
[
interface-list
]
Default
No permitted interfaces are configured in user role interface policy view. A user role cannot access any
interface after you configure the
interface policy deny
command.
Views
User role interface policy view
Predefined user roles
network-admin
Parameters
interface
interface-list
: Specifies a space-separated list of up to 10 interface items. Each interface item
specifies one interface in the
interface-type interface-number
form or a range of interfaces in the
interface-type
interface-number
to
interface-type interface-number
form. If an interface range is specified,
the end interface must be the same type as the start interface and must have a higher interface number
than the start interface.
Usage guidelines
To permit a user role to access an interface after you configure the
interface policy deny
command, you
must add the interface to the permitted interface list of the policy. With the user role, you can perform the
following operations to the interfaces in the permitted interface list:
Create, remove, configure them (only interfaces in the permitted interface list).
Enter their views.
Specify them in a feature command.
The create and remove operations are available only to logical interfaces.
You can repeat the
permit interface
command to add permitted interfaces to a user role interface policy.
The
undo permit interface
command removes the entire list of permitted interfaces if no interface is
specified.