R3721-F3210-F3171-HP High-End Firewalls Getting Started Guide-6PW101

37
Ste
p
Command
Remarks
10. Enter management interface
view.
interface interface-type
interfac-number
N/A
11. Assign an IP address to the
interface.
ip address ip-address { mask |
mask-length }
By default, the IP address of the
management interface is
192.168.0.1/24.
Configuring HTTPS login
HTTPS is not supported in FIPS mode.
To configure HTTPS login:
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Associate the HTTPS service
with an SSL server policy.
ip https ssl-server-policy
policy-name
By default, the HTTPS service is not
associated with any SSL server
policy.
If you disable the HTTPS service,
the system automatically
de-associates the HTTPS service
from the SSL service policy. Before
re-enabling the HTTPS service,
associate the HTTPS service with
an SSL server policy first.
Any changes to the SSL server
policy associated with the HTTP
service that is enabled do not take
effect.
3. Enable the HTTPS service.
ip https enable
Disabled by default.
Enabling the HTTPS service
triggers an SSL handshake
negotiation process. During the
process, if the local certificate of
the device exists, the SSL
negotiation succeeds, and the
HTTPS service can be started
properly. If no local certificate
exists, a certificate application
process will be triggered by the
SSL negotiation. Because the
application process takes much
time, the SSL negotiation often fails
and the HTTPS service cannot be
started normally. In that case, you
need to execute the ip https enable
command multiple times to start the
HTTPS service.