Configuring ACSEI client on the firewall module

 

Step

 

Command

Remarks

1.

Enter system view.

system-view

N/A

 

 

 

 

 

2.

Enter interface view

interface interface-type

N/A

interface-number

 

 

 

 

 

 

 

 

 

 

 

 

 

Disabled by default.

 

 

 

 

The Comware platform can run only one

3.

Enable the ACSEI client

acsei-client enable

ACSEI client, that is, the ACSEI client can

be enabled on only one interface at a

 

 

 

 

time. But the ACSEI client on the

 

 

 

 

Comware platform and that on the

 

 

 

 

firewall module can run simultaneously.

 

 

 

Displaying and maintaining ACSEI server and client

 

Task

Command

Remarks

On the network device:

 

 

 

 

 

Display ACSEI client summary.

display acsei client summary

Available in any view.

[ client-id ]

 

 

 

 

 

Display ACSEI client information.

display acsei client info

Available in any view.

[ client-id ]

 

 

 

 

 

On the firewall module:

 

 

 

 

 

Display ACSEI client information.

display acsei-client information

Available in any view.

 

 

 

Display current ACSEI client state.

display acsei-client status

Available in any view.

 

 

 

Example of monitoring and managing the firewall module from the network device

Network requirements

A firewall module is installed in slot 3 of the network device to detect the traffic passing the network device. The internal interface Ten-GigabitEthernet 3/0/1 on the network device is connected to the internal interface Ten-GigabitEthernet0/0 on the firewall module.

The network device redirects received traffic to the firewall module. The firewall module processes the traffic based on the configured security policy, and redirects permitted traffic to the network device for forwarding.

Configure the network device and firewall module so that you can log in to and restart the firewall module from the network device. Configure the clock synchronization timer as 10 minutes, and configure the monitoring timer as 10 seconds.

71