2-14
To reduce the risk of being attacked by malicious users against opened socket and enhance switch
security, the S3100 series Ethernet switches provide the following functions, so that a cluster socket is
opened only when it is needed:
z
Opening UDP port 40000 (used for cluster) only when the cluster function is implemented,
z
Closing UDP port 40000 at the same time when the cluster function is closed.
On member devices, the preceding functions are implemented as follows:
z
When you execute the
add-member
command on the management device to add a candidate
device to a cluster, the candidate device changes to a member device and its UDP port 40000 is
opened at the same time.
z
When you execute the
auto-build
command on the management device to have the system
automatically add candidate devices to a cluster, the candidate devices change to member devices
and their UDP port 40000 is opened at the same time.
z
When you execute the
administrator-address
command on a device, the device's UDP port
40000 is opened at the same time.
z
When you execute the
delete-member
command on the management device to remove a
member device from a cluster, the member device's UDP port 40000 is closed at the same time.
z
When you execute the
undo build
command on the management device to remove a cluster, UDP
port 40000 of all the member devices in the cluster is closed at the same time.
z
When you execute the
undo administrator-address
command on a member device, UDP port
40000 of the member device is closed at the same time.
Enabling NDP globally and on specific ports
Follow these steps to enable NDP globally and on specific ports:
Operation
Command
Description
Enter system view
system-view
—
Enable NDP globally
ndp enable
Required
In system view
ndp enable interface port-list
Enter
Ethernet port
view
interface interface-type
interface-number
Enable
NDP on
specified
ports
In
Ethernet
port view
Enable NDP
on the port
ndp enable
Required
Use either
approach.
Enabling NTDP globally and on a specific port
Follow these steps to enable NTDP globally and a specific port:
Operation
Command
Description
Enter system view
system-view
—
Enable NTDP globally
ntdp enable
Required
Содержание S3100 Series
Страница 12: ...10 You can e mail your comments about product documentation to info h3c com We appreciate your comments...
Страница 74: ...7 7 Sysname ip http acl 2030...
Страница 270: ...1 51 Sysname GigabitEthernet1 0 1 port trunk permit vlan all...
Страница 287: ...1 14 the interface on which the packet actually arrived The RPF check succeeds and the packet is forwarded...
Страница 579: ...ii Configuration Example 2 4 QoS Profile Configuration Example 2 4...
Страница 713: ...1 22 Total associations 1...
Страница 823: ...1 16...
Страница 1054: ...i Table of Contents Appendix A Acronyms A 1...