No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


CLI-based Configuration Guide - Security

AR500, AR510, and AR530 V200R007

This document describes the configurations of Security, including AAA, DAA,NAC, BRAS Access, ACL, Firewall, Deep Security Defense, Local Attack Defense;Attack Defense, Traffic Suppression, ARP Security, Port Security, DHCP Snooping, IPSG, URPF, PKI, SSL, HTTPS, Keychain, separating the management plane from the service plane, security risks.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring the Device as an HTTPS Server

Configuring the Device as an HTTPS Server

The HTTPS server function allows users to securely access the device on web pages.


A server SSL policy has been configured. For details on how to configure a server SSL policy, see Configuring a Server SSL Policy.


When users access a remote device functioning as an HTTP server, the following problems exist:

  • Users cannot authenticate the device.
  • Privacy and integrity of data transmitted between users and the device cannot be ensured.

To solve the preceding problems, configure the device as an HTTPS server. The device uses the SSL protocol's data encryption, identity authentication, and message integrity check mechanisms to protect security of data transmitted between users and the device. These mechanisms ensure that users securely access a remote device on web pages.


  1. Run:


    The system view is displayed.

  2. Run:

    http secure-server ssl-policy ssl-policy

    An SSL policy is applied to the HTTPS service.

    By default, the server SSL policy applied to the HTTPS service on the device is default_policy.

  3. (Optional) Run:

    http secure-server port port-number

    The port number is set for the HTTPS service.

    By default, the port number of the HTTPS service is 443.

  4. Run:

    http secure-server enable

    The HTTPS server function is enabled on the device.

    By default, the HTTPS server function is enabled on the device.

Checking the Configuration

# Run the display current-configuration command to check the configuration of the HTTPS server.

<Huawei> display current-configuration | include http secure-server
 http secure-server port 1026
 http secure-server ssl-policy user                                                   
 http secure-server enable
Updated: 2019-05-25

Document ID: EDOC1000097287

Views: 14721

Downloads: 40

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next