
Step 2
Run:
firewall black-white-list load
configuration-file
configuration-file-name
The blacklist and whitelist configuration file is loaded.
The configured blacklist takes effect only after you run the firewall blacklist enable command
to enable the blacklist.
The entries in the whitelist take effect directly and you do not need to enable the whitelist
function.
A blacklist supports up to 32 entries, and a whitelist supports up to 32 entries.
----End
Follow-up Procedure
Run the
firewall black-white-list save
command to save the blacklist and whitelist to the
specified configuration file to load next time.
3.5.5 Checking the Configuration
After the blacklist is configured, you can view information about the blacklist.
Procedure
l
Run the
display firewall blacklist
command to view information about the blacklist.
----End
Example
Run the
display firewall blacklist
command to view information about the blacklist.
<Huawei>
display firewall blacklist all
Firewall blacklist items :
------------------------------------------------------------------------
IP-Address Reason Expire-Time(m) VPN-Instance
------------------------------------------------------------------------
10.1.1.1 Manual 100
------------------------------------------------------------------------
Total number is : 1
3.6 Configuring the Whitelist
Whitelists are applicable to networks where devices send valid service packets that resemble IP
address or port scanning attack packets. Whitelists prevent these devices from being added to
the blacklist.
3.6.1 Establishing the Configuration Task
Before configuring the whitelist, familiarize yourself with the applicable environment, complete
the pre-configuration tasks, and obtain the data required for the configuration. This will help
you complete the configuration task quickly and accurately.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security
3 Firewall Configuration
Issue 02 (2012-03-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
58