R3721-F3210-F3171-HP High-End Firewalls Access Control Command Reference-6PW101

62
A Layer 2 interface in an aggregation group cannot be specified as the source interface of a portal-free
rule, and the source interface of a portal-free rule cannot be added to an aggregation group.
Related commands: display portal free-rule.
Examples
# Configure a portal-free rule, allowing any packet whose source IP address is 10.10.10.1/24 and source
interface is GigabitEthernet 0/1 to bypass portal authentication.
<Sysname> system-view
[Sysname] portal free-rule 15 source ip 10.10.10.1 mask 24 interface gigabitethernet 0/1
destination ip any
portal max-user
Syntax
portal max-user max-number
undo portal max-user
View
System view
Default level
2: System level
Parameters
max-number: Maximum number of online portal users allowed in the system, in the range of 1 to 512.
Description
Use portal max-user to set the maximum number of online portal users allowed in the system.
Use undo portal max-user to restore the default.
By default, the firewall allows 512 online portal users at most.
If the maximum number of portal users specified in the command is less than that of the current online
portal users, the command can be executed successfully and will not impact the online portal users, but
the system will not allow new portal users to log in until the number drops down below the limit.
Examples
# Set the maximum number of portal users allowed in the system to 100.
<Sysname> system-view
[Sysname] portal max-user 100
portal nas-id-profile
Syntax
portal nas-id-profile profile-name
undo portal nas-id-profile
View
Interface view