How to restrict the period during which users access the Internet

0

You can define ACL rules with the time range specified. For example, to limit users' access to 2.2.2.0/24 from 00:00 to 08:00, perform the following configurations:
system-view
[Huawei] time-range wb 00:00 to 08:00 daily
[Huawei] acl number 3000
[Huawei-acl-adv-3000] rule deny ip destination 2.2.2.0 0.0.0.255 time-range wb
[Huawei-acl-adv-3000] rule permit ip
For details on how to configure a traffic classifiers, behaviors (action is set to permit), and traffic policies, see MQC Configuration in AR QoS Configuration Guide.

Other related questions:
How do I restrict the period during which users can access specific networks

You can define access control lists (ACLs) with time ranges. For example, under the following configuration, users cannot access 2.2.2.0/24 from 00:00 to 08:00 daily.

[Huawei] time-range wb 00:00 to 08:00 daily
[Huawei] acl number 3000
[Huawei-acl-adv-3000] rule deny ip destination 2.2.2.0 0.0.0.255 time-range wb
[Huawei-acl-adv-3000] rule permit ip

How to configure an ACL time range on a WLAN device
If some services or functions need to be started at intervals or a specific period of time, run the time-range command on a WLAN device. When configuring ACL rules, you can use the name of a time range to reference this time range. You can associate a time range with ACL rules in either of the following ways: Mode 1 �?Periodic time range: defines a time range by week. The associated ACL rules take effect at an interval of one week. For example, if the time range of ACL rules is 8:00-12:00 on Monday, the ACL rules take effect at 8:00-12:00 on every Monday. Format: time-range time-name start-time to end-time { days } &<1-7> Mode 2 �?Absolute time range: defines a time range from YYYY/MM/DD hh:mm to YYYY/MM/DD hh:mm. The associated ACL rules take effect only in this period. Format: time-range time-name from time1 date1 [ to time2 date2 ] Create time range working-time (8:00�?8:00 from Monday to Friday) and configure a rule in ACL work-acl. The rule rejects the packets from network segment 192.168.1.0/24 within the period of the working time. [HUAWEI] time-range working-time 8:00 to 18:00 working-day [HUAWEI] acl name work-acl basic [HUAWEI-acl-basic-work-acl] rule deny source 192.168.1.0 0.0.0.255 time-range working-time

Method used to restrict users to access the Internet within a specified period of time for the USG2000 and USG5000
In the NAT policy, run the policy time-range time-name command and configure the policy validity period. In this way, users can only access the Internet within the specified period of time.

Configuring Internet access only within a specified period of time on the USG6000
Configure a time-based security policy.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top