To do… | Use the command… | Remarks | |
Create an Ethernet frame header | acl number | Required | |
By default, no advanced ACL | |||
ACL and enter its view | [ | ||
exists. | |||
|
| ||
|
|
| |
Configure rules for the ACL | rule [ | Required | |
|
| ||
|
|
| |
Exit the advanced ACL view | quit | — | |
|
|
| |
Enter user interface view | — | ||
[ | |||
|
| ||
|
|
| |
Use the ACL to control user login |
| Required | |
acl | inbound: Filters incoming Telnet | ||
by source MAC address | |||
| packets. | ||
|
| ||
|
|
| |
|
|
|
NOTE:
The above configuration does not take effect if the Telnet client and server are not in the same subnet.
SourceNetwork requirements
As shown in Figure 33, configure an ACL on the Device to permit only incoming Telnet packets sourced from Host A and Host B.
Figure 33 Network diagram for configuring source
Configuration procedure
#Configure basic ACL 2000, and configure rule 1 to permit packets sourced from Host B, and rule 2 to permit packets sourced from Host A.
<Sysname>
[Sysname] acl number 2000
#Reference ACL 2000 in user interface view to allow Telnet users from Host A and Host B to access the Device.
80