Assistance in the protection from unauthorized access
7.6
Activating the IP access restriction
94
UM Config GRS
Release
8.0
09/2019
Perform the following steps:
Open the
Device Security > Management Access > IP Access Restriction
dialog.
Unmark the checkbox in the
Active
column for the entry.
This entry lets users have access to the device from any IP address and the supported
protocols.
Address range of the company network:
To add a table entry, click the button.
Specify the address range of the company network in the
IP address range
column:
192.168.1.0/24
For the address range of the corporate network, deactivate the undesired protocols. The
HTTPS
,
SNMP
, and
Active
checkboxes remain marked.
Address range of the mobile phone network:
To add a table entry, click the button.
Specify the address range of the mobile network in the
IP address range
column:
109.237.176.0/24
For the address range of the mobile network, deactivate the undesired protocols. The
SSH
and
Active
checkboxes remain marked.
Before you enable the function, verify that at least one active entry in the table lets you have
access. Otherwise, if you change the settings, then the connection to the device terminates.
Access to the device management is only possible using the Command Line Interface through
the serial interface of the device.
To enable IP access restriction, select the
On
radio button in the
Operation
frame.
To save the changes temporarily, click the button.
enable
Change to the Privileged EXEC mode.
show network management access global
Displays whether IP access restriction is enabled
or disabled.
show network management access rules
Display the entries that have been configured.
no network management access operation
Disable the IP access restriction.
network management access add 2
Create the entry for the address range of the
company network.
Number of the next available index in this example:
2
.
network management access modify 2 ip
192.168.1.0
Specify the IP address of the company network.
network management access modify 2 mask
24
Specify the netmask of the company network.
network management access modify 2 ssh
disable
Deactivate SSH for the address range of the
company network.
Repeat the operation for every unwanted protocol.
network management access add 3
Create an entry for the address range of the mobile
phone network.
Number of the next available index in this example:
3
.
Summary of Contents for GREYHOUND GRS1020
Page 8: ......
Page 16: ......
Page 146: ......
Page 232: ......
Page 310: ......
Page 330: ......
Page 338: ...Readers Comments 337 RM GUI GRS Release 8 0 09 2019 ...
Page 339: ......
Page 340: ......
Page 350: ......
Page 354: ......
Page 617: ...Readers Comments 277 UM Config GRS Release 8 0 09 2019 ...
Page 618: ......
Page 619: ......