H3C S7500 Series Ethernet Switches Operation Manual

Operation Manual – Login
H3C S7500 Series Ethernet Switches Chapter 6
User Control
6-1
Chapter 6 User Control
When configuring user control, go to these sections for information you are interested
in:
z Introduction
z Controlling Telnet Users
z Controlling Network Management Users by Source IP Addresses
6.1 Introduction
A switch provides ways to control different types of login users, as listed in Table 6-1.
Table 6-1 Ways to control different types of login users
Login
mode
Control
method
Implementation Related section
By source IP
addresses
Through basic
ACL
Section Controlling Telnet Users
by Source IP Addresses
.
Telnet
By source and
destination IP
addresses
Through
advanced ACL
Section
Controlling Telnet Users
by Source and Destination IP
Addresses
.
SNMP
By source IP
addresses
Through basic
ACL
Section
Controlling Network
Management Users by Source IP
Addresses
.
6.2 Controlling Telnet Users
Prerequisites:
The controlling policy against Telnet users is determined, including the source and
destination IP addresses and source MAC addresses to be controlled and the
controlling actions (permitting or denying).
6.2.1 Controlling Telnet Users by Source IP Addresses
Controlling Telnet users by source IP addresses is achieved by applying basic ACLs,
which are numbered from 2000 to 2999.
Follow these steps to control Telnet users by source IP addresses: