Operation Manual – Login
Quidway S3100 Series Ethernet Switches
Chapter 7 Controlling Login Users
Huawei Technologies Proprietary
7-7
7.4.1 Prerequisites
The controlling policy against Web users is determined, including the source IP
addresses to be controlled and the controlling actions (permitting or denying).
7.4.2 Controlling Web Users by Source IP Addresses
Controlling Web users by source IP addresses is achieved by applying basic ACLs,
which are numbered from 2000 to 2999.
Table 7-5
Control Web users by source IP addresses
Operation
Command
Description
Enter system view
system-view
—
Create a basic
ACL or enter basic
ACL view
acl number
acl-number
[
match-order
{
config
|
auto
} ]
As for the
acl number
command, the
config
keyword is specified by
default.
Define rules for the
ACL
rule
[
rule-id
] {
permit
|
deny
} [
source
{
sour-addr
sour-wildcard
|
any
} ]
[
time-range
time-name
]
[
fragment
]
Required
Quit to system
view
quit
—
Apply the ACL to
control Web users
ip http acl
acl-number
Optional
7.4.3 Disconnecting a Web User by Force
The administrator can disconnect a Web user by force using the related command.
Table 7-6
Disconnect a Web user by force
Operation
Command
Description
Disconnect a Web
user by force
free web-users
{
all
|
user-id userid
|
user-name
username
}
Required
Execute this command in user
view.
7.4.4 Configuration Example
I. Network requirements
Only the users sourced from the IP address of 10.110.100.46 are permitted to access
the switch.