Get the App
SLTechnology News&Howtos  ›  Network Security  › 

Visual configuration of Huawei USG6000V Firewall

Shulou Source: shulou.com Published: 2022-06-01 04:27:01 10月05日 Update

As we all know, there are two ways to configure a firewall, the first is to link console commands, and the second is to make a trial configuration on the web page.

More intuitive and clear. Today we will briefly talk about the visual configuration of Huawei firewall.

First of all, the environment in Huawei simulator is as follows:

As shown in the figure, we have marked the address planning and area division in the figure. Here we emphasize that the default configuration address of g0UniUniG0 in Huawei Firewall USG6000V is: 192.168.0.1.

First of all, we need to manually configure a password when we open the firewall to enter the cli. The length of the password is 8-16 digits, and the difficulty of the password requires at least two characters.

After configuring the password, we go to the system view and take a look at the default configuration of the firewall: display current-configuration

We will see that there is a default configuration in port g0UniGram 0 as shown in the figure, and these configurations are also for us to easily access the visual configuration from the browser.

Then let's first use our virtual network card and change the address to 192.168.0.66 Universe 24 Gateway to 192.168.1.254.

To keep the firewall and our virtual network card on the same network segment:

Then we find the Windows system on the start menu:

Run the command prompt as an administrator:

Then configure the following:

After the configuration, let's verify:

Then let's configure the cloud:

It is important to keep in mind here that the port of the cloud link firewall must be GE 0Universe 0!

Then we open Firefox and it seems that we can only access it with Firefox. Enter 192.168.0.1 to enter a view interface:

Select Advanced and add an exception:

Then there will be a login interface. The default user name of Huawei firewall is: admin password is Admin@123

After entering, we will go to this interface to change the password:

After changing the password as required, we will let you log in again and then we will enter the network:

Then you will see this interface:

Then we click to edit GE 1-0-0:

Then we click to edit GE 1-0-1:

Then we click to edit GE 1-0-2:

After the configuration is completed, we allow the untrust region to access the http/ftp/icmp of the dmz region. We configure it under the policy:

Now let's check it out:

You can communicate with ping.

But to access the server in the dmz zone, these configurations are certainly not enough. If you want to know what happens, let's see what happens next time.

Tags: Configuration firewall fire protection password view Huawei zone interface address browser browsing command method clear Firefox port system network card link login Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Docker Shulou Tech Info vpn Linux Shulou Technology