Book A
Remote Annex 6300 Supplement to the Remote Annex Administrator's Guide for UNIX
The following is an example:
user username=jill
climask slip ppp end
end
user group=finance;time="8:00AM-6:00PM Monday-Wednesday"
clicmd ppp end
user group=finance
deny
end
In the above example, user username=jill can also be specified as
user jill.
In this example, even if user jill is a member of the finance group and
meets all of the criteria in that profile criteria specification, jill is not
permitted to use slip or ppp, since the first match found is the userid jill.
The remainder of the example specifies that the finance group is allowed
to connect only if its members log in between 8:00 A.M. and 6:00 P.M.
on the specified days. The CLI port they are connected to will be converted
to ppp mode after the group members have been authenticated. At any
other time, they are denied access.
You can specify the following entry options (the following subsections
discuss these options in detail):
•
accesscode
•
clicmd
•
climask
•
deny
•
filter
•
route
•
at_zone
•
at_connect_time
•
at_nve_filter
•
at_passwd
•
chap_secret
Chapter 15
Using RA 6300 Security
A-251