Dell PowerConnect W Clearpass 100 Software Guía de usuario Pagina 155

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 296
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 154
AOS-W Instant 6.2.1.0-3.3| User Guide Roles and Policies | 155
Chapter 14
Roles and Policies
This chapter describes the procedures for configuring user roles, role assignment, and firewall policies.
l Instant Firewall Policies and Access Rules on page 155
l Configuring User Roles on page 165
l Configuring Role Assignment Rules on page 166
l Configuring VLAN Assignment Rules on page 168
Instant Firewall Policies and Access Rules
The OAW-IAP clients are associated with user roles, which determine the client’s network privileges and the
frequency at which clients re-authenticate. You can configure rules and apply those to client or user role.
AOS-W Instant supports a firewall feature that uses a simplified firewall policy language. An administrator can define
the firewall policies on an SSID or wired profile. At the end of the authentication process, these policies are uniformly
applied to users connected to that network. The AOS-W Instant Firewall allows you to limit packets or bandwidth
available to a particular class of users. AOS-W Instant firewall manages packets according to the first rule that
matches packet.
The firewall logs on the AOS-W Instant APs are generated as syslog messages.
AOS-W Instant firewall also supports the Application Layer Gateway (ALG) functions such as SIP, Vocera, Alcatel
NOE, and Cisco Skinny protocols.
You can configure of up to 64 access control rules for a firewall policy.
This section provides the following information:
l Understanding Service Options on page 155
l Understanding Destination Options on page 157
l Configuring Access Rules on page 158
l Configuring Source NAT on page 159
l Examples for Access Rules on page 160
l Configuring ALG Protocols on page 162
l Configuring Firewall Settings for Protection from ARP Attacks on page 163
Understanding Service Options
The following table lists the set of service options available in the Instant UI. You can allow or deny access to any or
all of these services depending on your requirements.
Service Description
any Access is allowed or denied to all services.
Table 24: Network Service Options
Vista de pagina 154
1 2 ... 150 151 152 153 154 155 156 157 158 159 160 ... 295 296

Comentarios a estos manuales

Sin comentarios