No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Fat AP and Cloud AP V200R010C00 Command Reference

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).



The user-group command creates a user group or displays the user group view.

The undo user-group command deletes a user group.

By default, no user group is configured.


user-group group-name [ group-index group-index ]

undo user-group group-name


Parameter Description Value
group-name Specifies the name of a user group. The value is a string of 1-64 case-sensitive characters, which cannot be configured to - and --. It cannot contain spaces and the following symbols: / \ : * ? " < > | @ ' %.
group-index group-index Specifies the index of a user group.

The value is an integer that ranges from 0 to 127.


System view

Default Level

2: Configuration level

Usage Guidelines

Usage Scenario

In practical NAC applications, there are many access users and a large number of ACL rules need to be configured for each user. However, the number of user types is limited.

You can run the user-group command to create user groups on the device and associate each user group to a group of ACL rules (for details, see acl-id (user group view)). In this way, users in the same group share a group of ACL rules. The limited ACL resources can support a large number of access users.

  • The device supports a maximum of 128 user groups.
  • When you create a user group, ensure that the user group name is different from the number of an existing ACL. You can run the display acl all command to view the configuration of all ACL rules on the device.
  • If you want to delete the user group when the ACL bound to the user takes effect, run the cut access-user user-group command to disconnect all users bound to the user group.


# Create a user group test1.

<Huawei> system-view
[Huawei] user-group test1
Updated: 2019-11-21

Document ID: EDOC1100064352

Views: 248012

Downloads: 140

Average rating:
This Document Applies to these Products

Related Version

Related Documents

Previous Next