peerpeer-ip
serveripaddr
esiparserrulerule-name
conditionexpression
domainname
enable
match{ipaddrexpression|macexpression|userexpression}
positionposition
set{blacklist|rolerole}
For example:
esiparserdomainforti_domain
server10.168.172.3
esiparserruleforti_virus
condition“log_id=[0-9]{10}[]”
matchipaddr“src=(.*)[]”
setblacklist
enable
Sample NAT-mode E SI Topology
This section describes the configuration for a sampleNA T-modet opology usingt heco ntrollerand three external
captive-portal servers.NA T mode uses a trusted interface for each external captive-portal serverand a different
destination port to redirect apacket to a port other than the original destination port in thepacket. An example
topology is shown below in Figure 349.
Figure 348: Example NAT-ModeTopology
DellPowerConnect W- Series ArubaOS 6.2 | UserGuide ExternalServicesInter face |766