Chapter 9 Managing Policy Elements

Managing Policy Conditions

Step 5 Click Submit to save the changes.

Related Topics

Managing Network Conditions, page 9-6

Importing Network Conditions, page 9-8

Creating, Duplicating, and Editing End Station Filters, page 9-9

Creating, Duplicating, and Editing Device Port Filters, page 9-14

Defining IP Address-Based Device Filters

You can create, duplicate, and edit the IP addresses of network devices that you want to permit or deny access to. To do this:

Step 1 From the IP Address tab, do one of the following:

Click Create.

Check the check box next to the IP-based device filter that you want to duplicate, then click Duplicate.

Check the check box next to the IP-based device filter that you want to edit, then click Edit. A dialog box appears.

Step 2 Choose either of the following:

Single IP Address—If you choose this option, you must enter a valid IPv4 address of the format x.x.x.x, where x can be any number from 0 to 255.

IP Range(s)—If you choose this option, you must enter a valid IPv4 address and subnet mask to filter a range of IP addresses. By default, the subnet mask value is 32.

Step 3 Click OK.

Related Topics

Managing Network Conditions, page 9-6

Creating, Duplicating, and Editing Device Filters, page 9-12

Defining Name-Based Device Filters, page 9-13

Defining NDG-Based Device Filters, page 9-14

Defining Name-Based Device Filters

You can create, duplicate, and edit the name of the network device that you want to permit or deny access to. To do this:

Step 1 From the Device Name tab, do one of the following:

Click Create.

Check the check box next to the name-based device filter that you want to duplicate, then click Duplicate.

 

 

User Guide for Cisco Secure Access Control System 5.3

 

 

 

 

 

 

OL-24201-01

 

 

9-13

 

 

 

 

 

Page 243
Image 243
Cisco Systems OL-24201-01 manual Defining IP Address-Based Device Filters, Defining Name-Based Device Filters