Chapter 10 Managing Access Policies

Configuring the Service Selection Policy

Note If you create and save a simple policy, and then change to a rule-based policy, the simple policy becomes the default rule of the rule-based policy. If you have saved a rule-based policy and then change to a simple policy, you will lose all your rules except for the default rule. ACS automatically uses the default rule as the simple policy.

Configuring a Simple Service Selection Policy

A simple service selection policy applies the same access service to all requests.

To configure a simple service selection policy:

Step 1 Select Access Policies > Service Selection Policy.

By default, the Simple Service Selection Policy page appears.

Step 2 Select an access service to apply; or, choose Deny Access.

Step 3 Click Save Changes to save the policy.

Service Selection Policy Page

Use this page to configure a simple or rule-based policy to determine which service to apply to incoming requests.

To display this page, choose Access Policies > Service Selection.

If you have already configured the service selection policy, the corresponding Simple Policy page (see Table 10-1) or Rule-based Policy page (see Table 10-2) opens; otherwise, the Simple Policy page opens by default.

Table 10-1 Simple Service Selection Policy Page

Option

Description

 

 

Policy type

Defines the type of policy:

 

Select one result—The results apply to all requests.

 

Rule-based result selection—Configuration rules apply different results depending on the

 

request.

 

 

Service Selection Policy

Access service to apply to all requests. The default is Deny Access.

 

 

 

User Guide for Cisco Secure Access Control System 5.3

10-6

OL-24201-01

Page 270
Image 270
Cisco Systems OL-24201-01 Configuring a Simple Service Selection Policy, Select Access Policies Service Selection Policy