69-29
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter69 General VPN Setup
ACL Manager
Step4 Click Add and then Add ACL. Specify a name for the new ACL.
Step5 Choose the new ACL in the table and click Add and then Add ACE. The Edit ACE window displays.
Step6 For Action, choose the Permit radio button. Specify the Destination as 169.254.0.0. For Service, choose
IP. Click OK.
Step7 In the Split Tunneling pane, for Policy, choose Exclude Network List Below. For Network List, choose
the ACL you created. Click OK, then Apply.
Fields
Public Network Rule—Use the drop-down list to choose from the existing defined ACLs.
Manage—Displays the ACL Manager dialog box, with which you can add, edit, and delete Access
Control Lists (ACLs) and Extended Access Control Lists (ACEs).
Private Network Rule—Use the drop-down list to choose from the existing defined ACLs.
Manage—Displays the ACL Manager dialog box, with which you can add, edit, and delete Access
Control Lists (ACLs) and Extended Access Control Lists (ACEs).
Modes
The following table shows the modes in which this feature is available:
ACLs
This dialog box lets you configure ACLs for Clientless SSL VPN.
Fields
View (Unlabeled)—Indicates whether the selected entry is expanded (minus sign) or contracted
(plus sign).
# column—Specifies the ACE ID number.
Enable—Indicates whether this ACL is enabled or disabled. You can enable or disable the ACL
using this check box.
Action—Specifies whether this ACL permits or denies access.
Type—Specifies whether this ACL applies to a URL or a TCP address/port.
Filter—Specifies the type of filter being applied.
Syslog Level (Interval)—Specifies the syslog parameters for this ACL.
Time Range—Specifies the name of the time range, if any, for this ACL. The time range can be a
single interval or a series of periodic ranges.
Description—Specifies the description, if any, of the ACL.
Add ACL—Displays the Add Web Type ACL dialog box, in which you can specify an ACL ID.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——