3Com Switch 7750 Configuration Guide

8
USER CONTROL
Introduction A switch provides ways to control different types of login users, as listed in
Table 35 .
Controlling Telnet
Users
Prerequisites: The controlling policy against Telnet users is determined, including the source and
destination IP addresses to be controlled and the controlling actions (permitting or
denying).
Controlling Telnet Users
by Source IP Addresses
Controlling Telnet users by source IP addresses is achieved by applying basic ACLs,
which are numbered from 2000 to 2999. For defining an ACL, refer to “Defining
Basic ACLs” on page 641.
Table 35 Ways to control different types of login users
Login mode Control method Implementation Related section
Telnet By source IP address Through basic ACL “Controlling Telnet Users by
Source IP Addresses” on page
77
By source and
destination IP
address
Through advanced
ACL
“Controlling Telnet Users by
Source and Destination IP
Addresses” on page 78
SNMP By source IP
addresses
Through basic ACL “Controlling Network
Management Users by Source
IP Addresses” on page 79
WEB By source IP
addresses
Through basic ACL “Controlling Web Users by
Source IP Address” on page
80
Disconnect Web
users by force
By executing
commands in CLI
“Disconnecting a Web User
by Force” on page 81
Table 36 Control Telnet users by source IP addresses
Operation Command Description
Enter system view system-view -
Create a basic ACL or enter
basic ACL view
acl { number acl-number |
name acl-name basic }
[ match-order { config |
auto }]
As for the acl number
command, the config
keyword is specified by
default.
Define rules for the ACL rule [ rule-id ]{permit |
deny } [ source { source-addr
wildcard | any | fragment |
[ time-range time-name ]*
Required