Chapter 4 Function/System Settings and Display
4.3 Network Management > set firewall
ETERNUS CLI User’s Guide
Copyright 2015 FUJITSU LIMITED
P2X0-1030-09ENZ0
463
set firewall
This command is used to enable and disable the individual Ethernet application service ports. The settings
listed in the table below must be performed for each Ethernet port.
■
Syntax
Protocol
Service type
http
GUI
Specify "-confirm-close-all yes" to disable all of the service ports for
the GUI and CLI connections or both of the service ports for the CLI
connection. If this parameter is not specified, the CLI command
terminates with an error message.
https
telnet
CLI
SSH
ETERNUS Maintenance Secure
Secure storage platform software (such as monitoring software)
ICMP
ping
SNMP
SNMP protocol
RCIL
RCIL
•
All the service ports can be disabled by using this command, but all software, CLI, GUI, and external
software such as monitoring software will not be able to establish a connection.
-
Contact your maintenance engineer when an ETERNUS DX410 S2/DX440 S2 or ETERNUS DX8100 S2/
DX8700 S2 is used.
-
For the ETERNUS DX80 S2/DX90 S2, the initial "all ports open" state can be restored by pushing the IP
RESET switch of the system. However, it should be noted that this will also clear all the network
information. For further information, refer to "ETERNUS DX80 S2/DX90 S2 Disk storage system User's
Guide -Installation-".
•
When any settings except for ICMP are changed, the CLI session is automatically disconnected after the
command is executed. Note that the session is disconnected even if a setting value not involved in CLI
connections is changed. For example, your system opens SSH and HTTPS ports, and closes all other ports.
At that case, if you requests to close only HTTPS port, your connection connected by SSH will be
disconnected. After disconnecting the connection, retry to log in the system.
•
It can take a little time for the requested changes to be applied. For example, when GUI is used to request
the opening of the SSH port, it may take around a minute before an SSH connected CLI session can be
initiated.
set firewall -port {maintenance | remote | fst} [-http {open | close}]
[-https {open | close}] [-telnet {open | close}] [-ssh {open | close}]
[-maintenance-secure {open | close}] [-icmp {open | close}]
[-snmp {open | close}] [-rcil {open | close}] [-ip-redirect-test {open | close}]
[-confirm-close-all {yes | no}]
Summary of Contents for Eternus DX410 S2
Page 2: ...This page is intentionally left blank ...
Page 756: ......