
Nortel Switched Firewall 2.3.3 User’s Guide and Command Reference
252
The Command Line Interface
213455-L, October 2005
Accessing the Command Line Interface
Using the local serial port
Any Firewall serial port provides direct, local access for managing the Nortel Switched
Firewall. For details on attaching a console terminal to the serial port and establishing a
connection, see the
Nortel Switched Firewall 5100 Series Hardware Installation Guide
(216382-D).
Once the connection is initiated, you will be prompted to log in and enter a valid password. For
more information about different access levels and initial passwords, see
Users and passwords
on page 246
. When the login is validated, the Main Menu of the CLI is displayed (see
The
Main Menu on page 259
).
Defining the remote access list
The Nortel Switched Firewall can be managed remotely using Telnet, SSH, or the BBI. For
security purposes, access to these features is restricted through the remote access list.
The remote access list allows the administrator to specify IP addresses or address ranges that
are permitted remote access to the system. There is only one remote access list which is shared
by all remote management features.
By default, the SSI or management network is on the access list meaning that remote
management access is allowed if client IP address is in the SSI network.
Client IP address not in the SSI network can be added to the access list. Then, the client is
permitted to access all remote management features that have been enabled on the firewall. For
example, if only the Telnet feature is enabled, the client will be able to use Telnet to reach the
CLI. If the BBI is also enabled, the same client will be able to use their web browser to manage
the system without any changes being made to the access list.
N
OTE
–
When a remote management feature is enabled, access will not be allowed if the
access list is left empty. It is also vital that you review the access list regularly and keep it up to
date.
Displaying the access list
The following CLI command is used to view the access list:
>> #
/cfg/sys/accesslist/list
Содержание 5100 Series Release 2.3.3
Страница 18: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 18 Preface 213455 L October 2005...
Страница 20: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 20 Getting started 213455 L October 2005...
Страница 28: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 28 Introduction 213455 L October 2005...
Страница 90: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 90 Initial setup 213455 L October 2005...
Страница 188: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 188 Redundant Firewalls 213455 L October 2005...
Страница 228: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 228 Applications 213455 L October 2005...
Страница 248: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 248 Basic system management 213455 L October 2005...
Страница 250: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 250 Command reference 213455 L October 2005...
Страница 264: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 264 The Command Line Interface 213455 L October 2005...
Страница 374: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 374 Command reference 213455 L October 2005...
Страница 376: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 376 Appendices 213455 L October 2005...
Страница 406: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 406 Common tasks 213455 L October 2005...