Access Rule Configuration Parameters - Aruba IAP-335 User Manual

Instant software
Hide thumbs Also See for IAP-335:
Table of Contents

Advertisement

Table 39: Access Rule Configuration Parameters
Service
Category
Network
Action
Destination
Log
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide
Description
Select a service from the list of available services. You can allow or deny access to any or
all of the services based on your requirement:
any—Access is allowed or denied to all services.
l
custom—Available options are TCP, UDP, and Other. If you select the TCP or UDP
l
options, enter appropriate port numbers. If you select the Other option, enter the
appropriate ID.
NOTE: If Transmission Control Protocol (TCP) and User Datagram Protocol (UDP) use the
same port, ensure that you configure separate access rules to permit or deny access.
Select any of following actions:
Select Allow to allow access to users based on the access rule.
l
Select Deny to deny access to users based on the access rule.
l
Select Destination-NAT to allow making changes to the destination IP address.
l
Select Source-NAT to allow making changes to the source IP address.
l
Default: All client traffic is directed to the default VLAN.
Tunnel: The traffic from the Network Assigned clients is directed to the VPN tunnel.
VLAN: Specify the non-default VLAN ID to which the guest traffic needs to be redirected to.
Select a destination option for the access rules for network services, applications, and
application categories. You can allow or deny access to any the following destinations
based on your requirements.
to all destinations— Access is allowed or denied to all destinations.
l
to a particular server—Access is allowed or denied to a particular server. After
l
selecting this option, specify the IP address of the destination server.
except to a particular server—Access is allowed or denied to servers other than the
l
specified server. After selecting this option, specify the IP address of the destination
server.
to a network—Access is allowed or denied to a network. After selecting this option,
l
specify the IP address and netmask for the destination network.
except to a network—Access is allowed or denied to networks other than the
l
specified network. After selecting this option, specify the IP address and netmask of the
destination network.
to domain name—Access is allowed or denied to the specified domains. After
l
selecting this option, specify the domain name in the Domain Name text box.
Select the Log check box if you want a log entry to be created when this rule is triggered.
Instant supports firewall-based logging. Firewall logs on the IAPs are generated as security
logs.
Roles and Policies |
184

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents