beautypg.com

Associating the https service with an acl, Displaying and maintaining https, Https configuration example – H3C Technologies H3C SecPath F1000-E User Manual

Page 279: Network requirements

background image

4

To do…

Use the command…

Remarks

Configure the port number of the
HTTPS service

ip https port port-number

Optional
By default, the port number of the

HTTPS service is 443.

NOTE:

If you execute the ip https port command for multiple times, the last configured port number is used.

Associating the HTTPS Service with an ACL

Associating the HTTPS service with an ACL can filter out requests from some clients to let pass only clients
that pass the ACL filtering.

Follow these steps to associate the HTTPS service with an ACL:

To do…

Use the command…

Remarks

Enter system view

system-view

Associate the HTTPS service with
an ACL

ip https acl acl-number

Required
Not associated by default.

NOTE:

The HTTPS service can be associated with a basic ACL (with the ACL numbers 2000 to 2999), and ACLs
will overwrite each other, that is, if you execute the ip https acl command for multiple times to associate

the HTTPS service with the ACLs, the HTTPS service is only associated with the last specified ACL.

For the detailed introduction to ACL, refer to

ACL Configuration in the Firewall Web Configuration

Manual.

Displaying and Maintaining HTTPS

To do…

Use the command…

Remarks

Display information about HTTPS

display ip https

Available in any view

HTTPS Configuration Example

Network requirements

Users can access and control the device through logging in to the Web page. To prevent unauthorized
users from accessing and controlling the device and enhance the device management security, the
device requires the users log in to the Web page through HTTPS and authenticates the users using SSL,
and ensures that the transmitted data will not be spoofed and tampered.

To meet the requirements, perform the following configurations: