76
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enter interface view
interface
interface-type
interface-number
Required
Enable the ACSEI client
acsei-client enable
Disabled by default.
NOTE:
The Comware platform can run only one ACSEI
client, that is, the ACSEI client can be enabled on
only one interface at a time. But the ACSEI client on
the Comware platform and that on the firewall
module can run simultaneously.
Displaying and maintaining ACSEI server and client
To do…
Use the command…
Remarks
Display ACSEI client summary
display acsei client summary
[
client-id
]
On the
network
device
Display ACSEI client information
display acsei client info
[
client-id
]
Display ACSEI client information
display acsei-client information
On the
firewall
module Display current ACSEI client state
display acsei-client status
Available in any
view
Example for monitoring and managing the firewall
module from the network device
Network requirements
A firewall module is installed in slot 3 of the network device to detect the traffic passing the network
device. The internal interface Ten-GigabitEthernet 3/0/1 on the network device is connected to the
internal interface Ten-GigabitEthernet0/0 on the firewall module.
The network device redirects received traffic to the firewall module. The firewall module processes the
traffic based on the configured security policy, and redirects permitted traffic to the network device for
forwarding.
Configure the network device and firewall module so that you can log in to and restart the firewall
module from the network device. Configure the clock synchronization timer as 10 minutes, and configure
the monitoring timer as 10 seconds.