Clearing A Security Acl From A User Or Group - 3Com 3CRWX120695A, 3CRWX440095A Configuration Manual

Wireless lan switch and controller
Table of Contents

Advertisement

320
C
13: C
HAPTER
ONFIGURING
Clearing a Security
ACL from a User or
Group
AAA
N
U
FOR
ETWORK
SERS
For example, the following command applies security ACL acl-101 to
packets coming into the WX from user Jose:
WX1200# set user Jose attr filter-id acl-101.in
success: change accepted.
The following command applies the incoming filters of acl-101 to the
users who belong to the group eastcoasters:
WX1200# set usergroup eastcoasters attr filter-id acl-101.in
success: change accepted.
Assigning a Security ACL on a RADIUS Server
To assign a security ACL name as the Filter-Id authorization attribute of a
user or group record on a RADIUS server, see the documentation for your
RADIUS server. MSS can receive the Filter-ID attribute with the Profile
value for an inbound ACL and the OutboundACL for an outbound ACL.
Any of the following are valid:
filter-id = "Profile=acl1"
filter-id = "OutboundACL=acl2"
filter-id = "Profile=acl1 OutboundACL=acl2"
(Each example goes on a single line on the server.) The format in which to
specify the values depends on the RADIUS server.
To clear a security ACL from the profile of a user, MAC user, or group of
users or MAC users in the local WX database, use the following
commands:
clear user username attr filter-id
clear usergroup groupname attr filter-id
clear mac-user username attr filter-id
clear mac-usergroup groupname attr filter-id
If you have assigned both an incoming and an outgoing filter to a user or
group, enter the appropriate command twice to delete both security
ACLs. Verify the deletions by entering the display aaa command and
checking the output.
To delete a security ACL from a user's configuration on a RADIUS server,
see the documentation for your RADIUS server.

Advertisement

Table of Contents
loading

Table of Contents