R3166-R3206-HP High-End Firewalls Getting Started Guide-6PW101

80
To do… Use the command…
Remarks
Enter system view system-view
Enter interface view
interface interface-type
interface-number
Required
Enable the ACSEI client
acsei-client enable
Disabled by default.
NOTE:
The Comware platform can run only
one ACSEI client, that is, the ACSEI
client can be enabled on only one
interface at a time. But the ACSEI
client on the Comware platform and
that on the firewall module can run
simultaneously.
Displaying and maintaining ACSEI server and client
To do… Use the command…
Remarks
On the network
device
Display ACSEI client
summary
display acsei client summary
[ client-id ]
Available in any view
Display ACSEI client
information
display acsei client info
[ client-id ]
On the firewall
module
Display ACSEI client
information
display acsei-client information
Display current
ACSEI client state
display acsei-client status
Example for monitoring and managing the firewall
module from the network device
Network requirements
A firewall module is installed in slot 3 of the network device to detect the traffic passing the network
device. The internal interface Ten-GigabitEthernet 3/0/1 on the network device is connected to the
internal interface Ten-GigabitEthernet0/0 on the firewall module.
The network device redirects received traffic to the firewall module. The firewall module processes the
traffic based on the configured security policy, and redirects permitted traffic to the network device for
forwarding.
Configure the network device and firewall module so that you can log in to and restart the firewall
module from the network device. Configure the clock synchronization timer as 10 minutes, and configure
the monitoring timer as 10 seconds.