How to set a specified time range on an AR to limit users to access the network

Method 1: You can configure an ACL with the time range specified and configure a traffic policy.
Create a time range, for example, 8:00 to 18:00 from Monday to Friday.
[Huawei]time-range workday 8:00 to 18:00 working-day
Create an ACL based on the time range.
[Huawei]acl 3000 //Set the validity period of ACL 3000 to workday.
[Huawei-acl-adv-3000]rule permit ip source 10.1.1.0 0.0.0.255 time-range workday //Match network segment 10.1.1.0/24 on the intranet, and set the validity time to workday.
Then create a traffic classifier, traffic behavior, and traffic policy, and apply the traffic policy.

Method 2: You can also disable NAT in the specified time range to limit users to access the network.
Create a time range, for example, 8:00 to 18:00 from Monday to Friday.
[Huawei]time-range workday 8:00 to 18:00 working-day
Create an ACL based on the time range.
[Huawei]acl 3000 //Set the validity period of ACL 3000 to workday.
[Huawei-acl-adv-3000]rule permit ip source 10.1.1.0 0.0.0.255
[Huawei-acl-adv-3000]rule permit ip source 10.1.2.0 0.0.0.255 time-range workday //Match network segment 10.1.2.0/24 on the intranet, and set the validity time to workday.
[Huawei]interface GigabitEthernet 0/0/2
[Huawei-GigabitEthernet0/0/2]nat outbound 3000 //Devices on the network segment 10.1.2.0/24 can only access the network at 8:00 to 18:00 from Monday to Friday, while devices on the network segment 10.1.1.0/24 can access the network at any time.

Scroll to top