Switch 7700 Configuration Guide

156 CHAPTER 7: QOS/ACL OPERATION
For more information about the command, refer to the “3Com Command
Reference Guide”.
Note: Only the numbered basic ACL can be called for TELNET user control.
Example: Controlling
TELNET Users with ACL
Figure 4 illustrates a configuration that controls TELNET user with ACL.
Figure 4 Control TELNET user with ACL
Use the following commands to control TELNET users with ACL.
1 Define the basic ACLs.
[SW7700] acl number 20 match-order config
[SW7700-acl-basic-20] rule 1 permit source 10.110.100.52 0
[SW7700-acl-basic-20] rule 2 permit source 10.110.100.46 0
[SW7700-acl-basic-20] quit
2 Call an ACL.
[SW7700] user-interface vty 0 4
[SW7700-user-interface-vty0-4] acl 20 inbound
Configure ACL Control
over SNMP Users
The Switch 7700 supports remote management with the network management
software. The network management users can access the switch with SNMP.
Controlling such users with ACL can filter the illegal network management users
and prevent them from accessing the local switch.
The steps to control SNMP users with ACL are described in the following sections:
Define an ACL
Call ACL to Control SNMP User
Define an ACL
To implement ACL control function, you can only call the numbered basic ACL,
ranging from 1 to 99. Use the configuration commands introduced in
“Configure
ACL Control over the TELNET User”.
Call ACL to Control SNMP User
To control the network management users with ACL, call the defined ACL when
configuring SNMP community name, username, and group name.
Call an ACL (from
user-interface view)
acl acl-number { inbound | outbound }
Table 19 Call ACL to Control TELNET Users
Operation Command
Internet
Switch