56
Configuring the interface policy of a user role
Ste
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter user role view.
role name role-name N/A
3. Enter user role interface
policy view.
interface policy deny
By default, the interface policy of the
user role permits access to all
interfaces.
This command denies the access of the
user role to all interfaces if the permit
interface command is not configured.
4. (Optional.) Specify a list of
interfaces accessible to the
user role.
permit interface interface-list
By default, no accessible interfaces
are configured in user role interface
policy view.
Repeat this step to add more
accessible interfaces.
Configuring the VLAN policy of a user role
Ste
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter user role view.
role name role-name N/A
3. Enter user role VLAN policy
view.
vlan policy deny
By default, the VLAN policy of the user
role permits access to all VLANs.
This command denies the access of the
user role to all VLANs if the permit vlan
command is not configured.
4. (Optional.) Specify a list of
VLANs accessible to the
user role.
permit vlan vlan-id-list
By default, no accessible VLANs are
configured in user role VLAN policy
view.
Repeat this step to add more
accessible VLANs.
Configuring the VPN instance policy of a user role
Ste
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter user role view.
role name role-name N/A