EasyManuals Logo

H3C MSR Series Command Reference

H3C MSR Series
1187 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #62 background imageLoading...
Page #62 background image
39
Examples
# In ISP domain test, perform local authorization for SSL VPN users.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authorization sslvpn local
# In ISP domain test, perform LDAP authorization for SSL VPN users based on scheme ldp and use
local authorization as the backup.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authorization sslvpn ldap-scheme ldp local
Related commands
authorization default
ldap scheme
local-user
radius scheme
authorization-attribute (ISP domain view)
Use authorization-attribute to configure authorization attributes for users in an ISP domain.
Use undo authorization-attribute to restore the default of an authorization attribute.
Syntax
authorization-attribute { acl acl-number | car inbound cir committed-information-rate [ pir
peak-information-rate ] outbound cir committed-information-rate [ pir peak-information-rate ] |
idle-cut minute [ flow ] | igmp max-access-number max-access-number | ip-pool pool-name |
ipv6-pool ipv6-pool-name | ipv6-prefix ipv6-prefix prefix-length | mld max-access-number
max-access-number | { primary-dns | secondary-dns } { ip ipv4-address | ipv6 ipv6-address } |
session-group-profile session-group-profile-name | session-timeout minutes | url url-string |
user-group user-group-name | user-profile profile-name | vpn-instance vpn-instance-name }
undo authorization-attribute { acl | car | idle-cut | igmp | ip-pool | ipv6-pool | ipv6-prefix | mld |
primary-dns | secondary-dns | session-group-profile | session-timeout | url | user-group |
user-profile | vpn-instance }
Default
No authorization attributes are configured for users in the ISP domain and the idle cut feature is
disabled.
Views
ISP domain view
Predefined user roles
network-admin
Parameters
acl acl-number: Specifies an ACL to filter traffic for users. The value range for the acl-number
argument is 2000 to 5999. Typically, the attribute applies to authenticated users. If you configure the
attribute in a portal preauthentication domain, the ACL applies before portal authentication. This
option is applicable only to IPoE, LAN, and portal users.
car: Specifies a CAR action for users. Typically, the attribute applies to authenticated users. If you
configure the attribute in a portal preauthentication domain, the CAR action applies before portal
authentication. This keyword is applicable only to IPoE, portal, and PPP users.

Table of Contents

Other manuals for H3C MSR Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the H3C MSR Series and is the answer not in the manual?

H3C MSR Series Specifications

General IconGeneral
CategoryNetwork Router
IPv6 SupportYes
DimensionsVaries by model
WeightVaries by model
Product TypeModular Router
PortsVaries by model
WAN InterfacesVaries by model
FirewallYes
QoSYes
Wireless SupportVaries by model
USB PortsVaries by model
Console PortYes
Power SupplyVaries by model
RedundancyVaries by model
Operating Temperature0°C to 45°C
Storage Temperature-40°C to 70°C
Humidity5% to 95% non-condensing
SeriesMSR
CertificationsCE, FCC, RoHS

Related product manuals