HP 6125XLG R2306-HP 6125XLG Blade Switch Fundamentals Command Reference - Page 58
permit vlan, Examples, Related commands, Syntax, Default
View all HP 6125XLG manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 58 highlights
Any change to a user role interface policy takes effect only on users that log in with the user role after the change. Examples # Permit the user role role1 to access Ten-GigabitEthernet 1/1/5 and Ten-GigabitEthernet 1/1/9 to Ten-GigabitEthernet 1/1/11, enter interface view and VLAN view, and execute all the commands that are available in interface view and VLAN view. system-view [Sysname] role name role1 [Sysname-role-role1] rule 1 permit command system-view ; interface * [Sysname-role-role1] rule 2 permit command system-view ; vlan * [Sysname-role-role1] interface policy deny [Sysname-role-role1-ifpolicy] permit interface ten-gigabitethernet 1/1/5 ten-gigabitethernet 1/1/9 to ten-gigabitethernet 1/1/11 Verify that you cannot use the user role to work on any interfaces but Ten-GigabitEthernet 1/1/5 and Ten-GigabitEthernet 1/1/9 to Ten-GigabitEthernet 1/1/11: # Verify that you can enter Ten-GigabitEthernet 1/1/5 interface view. system-view [Sysname] interface ten-gigabitethernet 1/1/5 [Sysname-Ten-GigabitEthernet1/1/5] # Verify that you can assign Ten-GigabitEthernet 1/1/9 to VLAN 10. In this example, the user role can access any VLAN because the default VLAN policy of the user role is used. system-view [Sysname] vlan 10 [Sysname-vlan10] port ten-gigabitethernet 1/1/9 # Verify that you cannot enter Ten-GigabitEthernet 1/1/6 interface view. system-view [Sysname] interface ten-gigabitethernet 1/1/6 Permission denied. Related commands • display role • interface policy deny • role permit vlan Use permit vlan to configure a list of VLANs accessible to a user role. Use undo permit vlan to remove the permission for a user role to access specific VLANs. Syntax permit vlan vlan-id-list undo permit vlan [ vlan-id-list ] Default No permitted VLANs are configured in user role interface policy view. 51