Acsei startup and running, Configuring acsei server on the network device, Configuring acsei client on the firewall module – H3C Technologies H3C SecPath F1000-E User Manual
Page 60

52
•
The monitoring timer is used to periodically trigger the ACSEI client to send monitoring requests to
the ACSEI server. You cannot set this timer.
ACSEI startup and running
ACSEI starts up and runs in the following procedures:
The firewall module runs the ACSEI client application to enable ACSEI client.
Start up the network device and enable the ACSEI server function on it.
The ACSEI client multicasts a registration request.
After the ACSEI server receives a valid registration request, it negotiates parameters with the ACSEI client
and establishes a connection with the client if the negotiation succeeds.
The ACSEI server and the ACSEI client mutually monitor the connection.
Upon detecting the disconnection of the ACSEI client, the ACFP server removes the configuration and
policies associated with the client.
Configuring ACSEI server on the network device
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enable ACSEI server
acsei server enable Disabled
by
default.
3.
Enter ACSEI server view acsei server
N/A
4.
Configure the clock
synchronization timer
acsei timer clock-sync minutes
Optional.
Five minutes by default.
5.
Configure the monitoring
timer
acsei timer monitor seconds
Optional.
Five seconds by default.
6.
Close the specified
ACSEI client
acsei client close client-id
Optional.
Supported on the ACSEI client running
Linux only.
7.
Restart the specified
ACSEI client
acsei client reboot client-id Optional.
Configuring ACSEI client on the firewall module
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter interface view
interface interface-type
interface-number
N/A
3.
Enable the ACSEI client
acsei-client enable
Disabled by default.
The Comware platform can run only one
ACSEI client, that is, the ACSEI client can
be enabled on only one interface at a
time. But the ACSEI client on the
Comware platform and that on the
firewall module can run simultaneously.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS