No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Configuration Guide - Network Management and Monitoring

CloudEngine 12800 and 12800E V200R005C10

This document describes the configurations of Network Management and Monitoring, including SNMP, RMON, LLDP, NQA, Service Diagnosis, Mirroring, Packet Capture, sFlow, and NETCONF.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Example for Configuring RESTCONF-based Device Management

Example for Configuring RESTCONF-based Device Management

Networking Requirements

RESTCONF is an HTTP-based protocol that provides RESTful APIs. External applications can use HTTP to access APIs to implement remote device management and operations. Figure 4-8 shows a network where RESTCONF is used for device management.

Figure 4-8 RESTCONF-based device management

Configuration Roadmap

The configuration roadmap is as follows:

  1. Create an AAA user.

  2. CConfigure an SSL policy and load a digital certificate.

  3. Enable the HTTP server function.

Data Preparation

To complete the configuration, you need SSL policy configuration.

Procedure

  1. Create an AAA user.

    <HUAWEI> system-view
    [~HUAWEI] aaa
    [~HUAWEI-aaa] local-user huawei123 password cipher Huawei@123_h_w
    [*HUAWEI-aaa] local-user huawei123 service-type ssh
    [*HUAWEI-aaa] quit
    [*HUAWEI] ssh authentication-type default password 
    [*HUAWEI] commit

  2. Configure an SSL policy and load a digital certificate.

    [~HUAWEI] ssl policy policy1
    [*HUAWEI-ssl-policy-policy1] certificate load pem-cert servercert.pem key-pair dsa key-file serverkey.pem auth-code cipher huawei-123456
    [*HUAWEI-ssl-policy-policy1] commit
    [*HUAWEI-ssl-policy-policy1] quit

  3. Enable the HTTP server function on the server side.

    [~HUAWEI] http
    [*HUAWEI-http] service restconf
    [*HUAWEI-http-service-restconf] secure-server enable
    [*HUAWEI-http-service-restconf] ssl-policy policy1
    [*HUAWEI-http-service-restconf] ssl-verify peer
    [*HUAWEI-http-service-restconf] commit
    [~HUAWEI-http-service-restconf] quit
    [~HUAWEI-http] quit

Server Configuration Files

#
ssl policy policy1
#
aaa
  local-user huawei123 password irreversible-cipher $1c$vi0^!e4S`K$+$7-&aq_=QiN[@
X,$$U"C_I023We~C+G}-~EVwzM$
 local-user huawei123 service-type ssh 
#
http
 service restconf
  secure-server enable
  ssl-policy policy1
  ssl-verify peer
#
return
Translation
Download
Updated: 2019-04-20

Document ID: EDOC1100075344

Views: 28439

Downloads: 29

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next