![HP FlexNetwork MSR Series Скачать руководство пользователя страница 840](http://html.mh-extra.com/html/hp/flexnetwork-msr-series/flexnetwork-msr-series_command-reference-manual_163078840.webp)
822
client-verify protected ip
Use
client-verify protected ip
to specify an IPv4 address to be protected by the client verification
feature.
Use
undo client-verify protected ip
to remove an IPv4 address protected by the client verification
feature.
Syntax
client-verify
{
dns
|
http
|
tcp
}
protected
ip
destination-ip-address
[
vpn-instance
vpn-instance-name
] [
port
port-number
]
undo client-verify
{
dns
|
http
|
tcp
}
protected
ip
destination-ip-address
[
vpn-instance
vpn-instance-name
] [
port
port-number
]
Default
The client verification feature does not protect any IPv4 addresses.
Views
System view
Predefined user roles
network-admin
Parameters
dns
: Specifies the DNS client verification feature.
http
: Specifies the HTTP client verification feature.
tcp
: Specifies the TCP client verification feature.
destination-ip-address
: Specifies the IPv4 address to be protected. All connection requests destined
for this address are verified by the client verification feature.
vpn-instance
vpn-instance-name
: Specifies the MPLS L3VPN instance to which the specified IPv4
address belongs. The
vpn-instance-name
argument is a case-sensitive string of 1 to 31 characters.
Do not specify this option if the IPv4 address is on the public network.
port
port-number
: Specifies the port to be protected, in the range of 1 to 65535. If you do not specify
this option, DNS client verification protects port 53, HTTP client verification protects port 80, and TCP
client verification protects all ports.
Usage guidelines
You can specify multiple protected IP addresses by using this command multiple times.
Examples
# Configure TCP client verification to protect IPv4 address 2.2.2.5 and port 25.
<Sysname> system-view
[Sysname] client-verify tcp protected ip 2.2.2.5 port 25
# Configure DNS client verification to protect IPv4 address 2.2.2.5 and port 50.
<Sysname> system-view
[Sysname] client-verify dns protected ip 2.2.2.5 port 50
Related commands
display client-verify protected ip