HP 6125XLG R2306-HP 6125XLG Blade Switch Fundamentals Command Reference - Page 75

ftp server acl, Predefined user roles, Parameters, Examples, Syntax, Default, Views, Usage guidelines

Page 75 highlights

Predefined user roles network-admin Parameters ipv6-address: Specifies the source IPv6 address of an FTP connection to be released. You can use the display ftp-user command to view the source IPv6 address of the FTP connection. port port: Specifies the source port of an FTP connection to be released. You can use the display ftp-user command to view the source port of the FTP connection. Examples # Manually release the FTP connection that was established from IPv6 address 2000::154. free ftp user-ip ipv6 2000::154 Are you sure to free FTP connection? [Y/N]:y ftp server acl Use ftp server acl to use an ACL to control FTP clients' access to the FTP server. Use undo ftp server acl to restore the default. Syntax ftp server acl { acl-number | ipv6 acl-number6 } undo ftp server acl [ ipv6 ] Default No ACL is used to control FTP clients' access to the FTP server. Views System view Predefined user roles network-admin Parameters acl-number: Specifies an IPv4 ACL number in the range of 2000 to 3999. ipv6 acl-number6: Specifies an IPv6 ACL number in the range of 2000 to 3999. Usage guidelines You can use this command to permit only FTP requests from specific FTP clients. This configuration takes effect only for FTP connections to be established. It does not impact existing FTP connections. If you execute the command multiple times, the most recently specified ACL takes effect. Examples # Use ACL 2001 to allow only client 1.1.1.1 to access the FTP server. system-view [Sysname] acl number 2001 [Sysname-acl-basic-2001] rule 0 permit source 1.1.1.1 0 [Sysname-acl-basic-2001] rule 1 deny source any [Sysname-acl-basic-2001] quit [Sysname] ftp server acl 2001 68

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221

68
Predefined user roles
network-admin
Parameters
ipv6-address
: Specifies the source IPv6 address of an FTP connection to be released. You can use the
display
ftp-user
command to view the source IPv6 address of the FTP connection.
port
port
: Specifies the source port of an FTP connection to be released. You can use the
display
ftp-user
command to view the source port of the FTP connection.
Examples
# Manually release the FTP connection that was established from IPv6 address 2000::154.
<Sysname> free ftp user-ip ipv6 2000::154
Are you sure to free FTP connection? [Y/N]:y
<Sysname>
ftp server acl
Use
ftp
server
acl
to use an ACL to control FTP clients' access to the FTP server.
Use
undo ftp server acl
to restore the default.
Syntax
ftp
server
acl
{
acl-number
|
ipv6
acl-number6
}
undo
ftp
server
acl
[
ipv6
]
Default
No ACL is used to control FTP clients' access to the FTP server.
Views
System view
Predefined user roles
network-admin
Parameters
acl-number
: Specifies an IPv4 ACL number in the range of 2000 to 3999.
ipv6
acl-number6
: Specifies an IPv6 ACL number in the range of 2000 to 3999.
Usage guidelines
You can use this command to permit only FTP requests from specific FTP clients. This configuration takes
effect only for FTP connections to be established. It does not impact existing FTP connections. If you
execute the command multiple times, the most recently specified ACL takes effect.
Examples
# Use ACL 2001 to allow only client 1.1.1.1 to access the FTP server.
<Sysname> system-view
[Sysname] acl number 2001
[Sysname-acl-basic-2001] rule 0 permit source 1.1.1.1 0
[Sysname-acl-basic-2001] rule 1 deny source any
[Sysname-acl-basic-2001] quit
[Sysname] ftp server acl 2001