755| External Ser vicesInterface DellPowerConnect W- Series ArubaOS 6.2 | User Guide
In the CLI
Use these CLI commands to configure an ESI server group, identify its ass ociated ping health-checkmethod, and
associate a server with this group:
esigroupname
pingprofile_name
serverserver_identity
For example:
esigroupfortinet
pingdefault
serverforti_1
Redirection Po licies and User R ole
The followingsecti ons describe how to configure the redirection policies and userrole using the WebUI and CLI.
In the WebUI
To configureuser roles to redirect the required traffic to the server(s), navigate to the Configuration > Access
Control > User Roles view.
1. To add a new role, click Add.
To change an existing role,click Edit for the firewall policy to be changed. The WebUI displays the User Roles
tab on top.
2. Role Name. Entert hename for the role.
3. To add a policy for the new role, click Add in the Firewall Policies section. The WebUI expands the Firewall
Policies section.
Choose from existing configuredpolici es, create a new policy based on existing policies, or create a new policy.
a. If you elect to create a new policy, click on the radio button for Create New Policy and then click Create.
The WebUI displays the Policiestab.
b. In t he Policies tab:
Policy Name.Provi det hepolicy name and select theI Pv4 Session policy type from the drop-down list. The
WebUI expandsthe Policies tab.
c. In the drop-downlist s,c hoose parameterssuch as source, destination, service in the same way as other firewall
policy rules.For certai n choices, the WebUI expands and adds drop-downlist s.
d. In the Act ion drop-downmenu, select the redirect to ESI group option.
e. In the Action drop-down menu,select the appropriate ESI group.
f. Select the traffic direction. Forward refers to the direction of traffic from the (untrusted) client or usert o the
(trusted) server(such as t he HTTP server or email server).
g. To add this rule to the policy, click Add.
h. Repeat t he steps to configure additional rules.
i. Click Done t o returnto the User Roles tab. The WebUI returns to the User Roles tab.
4. Click A pplyto apply the configuration changes.
5. R efert o Roles and Policies on page 296, for directions on how to apply a policy t o a userrole.
In the CLI
Use these commands to define the redirectionfilter for sending traffic to the ESI server and apply the firewallpolicy
to a user role.
ip access-listsessionpolicy