5
Configuration Example of the ACL
When planning the network, you need to use different policies to manage different users. In the
external network, only a specific user can access the internal server. In the internal network,
only a specific host can access the external network.
Networking Requirements
A EGW2100 is deployed at the network egress of the company.
l
The Ethernet1/0/0 interface is connected to the internal network of the company.
l
The Ethernet0/0/0 interface is connected to the Internet.
l
The company provides WWW, FTP, and Telnet services for external users. The network
segment of the internal network is 10.100.20.0/24.
l
The IP address of a specific external user is 202.39.2.3.
Configuration requirement:
l
In the external network, only host 202.39.2.3 can access the internal FTP server, Telnet
server, WWW server.
l
In the internal network, only host 10.100.20.3 and host 10.100.20.4 can access the external
network.
Networking Diagram
shows the networking of the ACL configuration example.
HUAWEI EGW2100
Web Configuration Guide
5 Configuration Example of the ACL
Issue 01 (2010-02-20)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
5-1