R3303-HP 6600/HSR6600 Routers Security Command Reference

Table Of Contents
176
Examples
# Configure the authentication domain for IPv4 portal users on GigabitEthernet 3/0/1 as my-domain.
<Sysname> system-view
[Sysname] interface gigabitethernet 3/0/1
[Sysname-GigabitEthernet3/0/1] portal domain my-domain
Related commands
display portal interface
portal free-rule
Use portal free-rule to configure a portal-free rule and specify the source filtering condition, destination
filtering condition, or both.
Use undo portal free-rule to remove a specific portal-free rule or all portal-free rules.
Syntax
portal free-rule rule-number { destination { any | ip { ip-address mask { mask-length | mask } | any } [ tcp
tcp-port-number [ to tcp-port-number ] | udp udp-port-number [ to udp-port-number ] ] } | source { any |
[ interface interface-type interface-number | ip { ip-address mask { mask-length | mask } | any } [ tcp
tcp-port-number [ to tcp-port-number ] | udp udp-port-number [ to udp-port-number ] ] | mac mac-address
| vlan vlan-id ] ] * } } *
undo portal free-rule { rule-number | all }
Views
System view
Default command level
2: System level
Parameters
rule-number: Number for the portal-free rule, in the range of 0 to 1023.
any: Imposes no limitation on the previous keyword.
ip ip-address: Specifies an IP address for the portal-free rule.
mask { mask-length | mask }: Specifies a mask or mask length for the IP address. The mask argument is
a subnet mask in dotted decimal notation. The mask-length argument is a subnet mask length, an integer
in the range of 0 to 32.
tcp tcp-port-number [ to tcp-port-number ]: Specifies a range of TCP port numbers. The value range for the
tcp-port-number argument is 0 to 65535.
udp udp-port-number [ to udp-port-number ]: Specifies a range of UDP port numbers. The value range for
the udp-port-number argument is 0 to 65535.
interface interface-type interface-number: Specifies a source interface.
mac mac-address: Specifies a source MAC address in the format H-H-H.
vlan vlan-id: Specifies a source VLAN ID. The following matrix shows the vlan vlan-id option and router
compatibility: