IBM Tivoli and Cisco User Manual page 347

Building a network access control solution with ibm tivoli and cisco systems
Table of Contents

Advertisement

4. The new role should be visible under
Figure 7-97 List of Roles
Creating traffic policies
For new installations of Cisco NAC Appliance, the default allows all traffic from
the trusted network to the untrusted network, and to block all traffic from the
untrusted network to the trusted network.
Two types of traffic policies are available, IP-based policies and host-based
policies:
IP-based policies
Host-based policies Are less flexible than IP-based policies, but have the
1. Click User Management → User Roles → Traffic Control → IP.
Chapter 7. Network enforcement subsystem implementation
List Of Roles
Allow you to specify IP protocol numbers, as well as
source and destination port numbers. IP-based policies
can block or allow traffic moving from the untrusted to the
trusted network and vice-versa.
advantage of allowing a host to be specified by host name
or domain name when a host has multiple or dynamic IP
addresses.
, depicted in Figure 7-97.
329

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network access control solution

Table of Contents