Pre-configuration Tasks
Before configuring user management, complete the following task:
l Creating a virtual gateway
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run the following commands to configure the user name and password for logging in to the
virtual gateway:
1. Run the aaa command to enter the AAA view.
2. Run the local-user user-name service-type sslvpn command to set the user type to SSL
VPN user.
3. Run the local-user user-name password password command to configure a password for
logging in to the SSL VPN virtual gateway.
4. Run the quit command to return to the system view.
By default, no user name or password is configured on the AR1200.
Step 3 Run:
sslvpn gateway gateway-name
The virtual gateway view is displayed.
Step 4 (Optional) Run:
max-user number
The maximum number of online users allowed by the virtual gateway is configured.
NOTE
The number of online SSL VPN users supported by the AR1200 is limited by the license. The number of
online SSL VPN users that each license support depends on the license level. The AR1200 supports a
maximum of two online SSL VPN users without a license. To enable the AR1200 to support more online
SSL VPN users, buy licenses from Huawei local office.
Step 5 (Optional) Run:
max-online-time number
The maximum online duration of users allowed by the virtual gateway is configured.
By default, the maximum online duration of users allowed by the virtual gateway is 120 minutes.
Step 6 (Optional) Run:
cut user { name user-name | id user-id | all }
Users are forcibly disconnected from the virtual gateway.
----End
Checking the Configuration
After user management configurations are complete, you can verify the configurations.
Huawei AR1200 Series Enterprise Routers
Configuration Guide - VPN 7 SSL VPN Configuration
Issue 01 (2012-04-20) Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
371