Configuring the Session ACL
First you need to configure a sessionACLAccess Control List. ACL is a common way of restricting certain types of traffic on a physical port.that “permits” corporate traffic to be forwarded to themanaged deviceand that routes, or locally bridges, local traffic.
The following procedure describes how to configure sessionACLAccess Control List. ACL is a common way of restricting certain types of traffic on a physical port.:
1.In thenode hierarchy, navigate to thetab.
2.Clickto create a new policy.
3.Enter the name in thefield.
4.Selectfrom thedrop-down list.
5.Click.
6.Select the policy created and clickundertable.
7.Selectoption in thefield.
8.Click.
9.To complete creating the rule:
a.Selectorfrom thedrop-down list.
b.Selectfrom thedrop-down list.
c.Selectfrom thedrop-down list.
d.Selectfrom thedrop-down list.
e.Selectfrom thedrop-down list.
f.Selectfor IPv4 orfor IPv6 from thedrop-down list.
g.Click.
10.To create a new forwarding rule:
a.Select policy created and clickin thetable.
b.Selectoption in thefield.
c.Click.
d.Selectorfrom thedrop-down list.
e.Selectfrom thedrop-down list.
f.Selectfrom thedrop-down list.
g.Clickin thedrop-down list.
h.In thewindow, clickin thetable.
i.Selectfrom thedrop-down list.
j.Enter the public IP address of themanaged devicein thefield.
k.Enter thenetmaskNetmask is a 32-bit mask used for segregating IP address into subnets. Netmask defines the class and range of IP addresses.or range in thefield.
l.Click. The new alias appears in thedrop-down list.
m.Click.
11.Navigate to the>tab.
Roles can be created only in themanaged device. |
a.Clickto create a new role.
b.Enter the role name in thefield.
c.Click.
d.Click the new role created.
e.Click.
f.Click.
g.Select选择和选择策略创建的drop-down list.
h.Click.
12.Click.
13.In thewindow, select the check box and click.
The followingCLICommand-Line Interface. A console interface with a command line shell that allows users to execute text input as commands and convert these commands to appropriate functions.commands configure sessionACLAccess Control List. ACL is a common way of restricting certain types of traffic on a physical port.:
Ifdhcp serverinap system profileis enabled:
(host) [md] (config) #ip access-list session
(host) [md] (config) #user any any route src-nat
Ifdhcp serverinap system profileis disabled:
(host) [md] (config) #ip access-list session
(host) [md] (config) #any any any permit
(host) [md] (config) #user-role
(host) [md] (config) #session-acl
To configure anACLAccess Control List. ACL is a common way of restricting certain types of traffic on a physical port.to Restrict Local Debug Homepage Access, seeConfiguring an ACL to Restrict Local Debug Homepage Access on page 1. |