Acsei startup and running, Configuring acsei server on the network device, Configuring acsei client on the firewall module – H3C Technologies H3C SecPath F1000-E User Manual

Page 60

Advertising
background image

52

The monitoring timer is used to periodically trigger the ACSEI client to send monitoring requests to

the ACSEI server. You cannot set this timer.

ACSEI startup and running

ACSEI starts up and runs in the following procedures:
The firewall module runs the ACSEI client application to enable ACSEI client.
Start up the network device and enable the ACSEI server function on it.
The ACSEI client multicasts a registration request.
After the ACSEI server receives a valid registration request, it negotiates parameters with the ACSEI client

and establishes a connection with the client if the negotiation succeeds.
The ACSEI server and the ACSEI client mutually monitor the connection.
Upon detecting the disconnection of the ACSEI client, the ACFP server removes the configuration and
policies associated with the client.

Configuring ACSEI server on the network device

Step Command

Remarks

1.

Enter system view.

system-view

N/A

2.

Enable ACSEI server

acsei server enable Disabled

by

default.

3.

Enter ACSEI server view acsei server

N/A

4.

Configure the clock
synchronization timer

acsei timer clock-sync minutes

Optional.
Five minutes by default.

5.

Configure the monitoring

timer

acsei timer monitor seconds

Optional.
Five seconds by default.

6.

Close the specified
ACSEI client

acsei client close client-id

Optional.
Supported on the ACSEI client running

Linux only.

7.

Restart the specified
ACSEI client

acsei client reboot client-id Optional.

Configuring ACSEI client on the firewall module

Step Command

Remarks

1.

Enter system view.

system-view

N/A

2.

Enter interface view

interface interface-type
interface-number

N/A

3.

Enable the ACSEI client

acsei-client enable

Disabled by default.
The Comware platform can run only one
ACSEI client, that is, the ACSEI client can

be enabled on only one interface at a

time. But the ACSEI client on the
Comware platform and that on the

firewall module can run simultaneously.

Advertising