PredefinedPolicy Description
ipv6 access-list session v6-dhcp-acl
any any svc-v6-dhcp permit
Permits all IPv6 DHCP traffic.
ipv6 access-list session v6-dns-acl
any any svc-dns permit
Permits all IPv6 DNS traffic.
ipv6 access-list session v6-allowall
any any any permit
Permits all IPv6 traffic.
ipv6 access-list session v6-http-acl
any any svc-http permit
Permits all IPv6 HTTP traffic.
ipv6 access-list session v6-tftp-acl
any any svc-tftp permit
Permits all IPv6 TFTP traffic.
ipv6 access-list session v6-logon-control
user any udp 68 deny
any any svc-v6-icmp permit
any any svc-v6-dhcp permit
any any svc-dns permit
Providesequi valent functionality to the"l ogon-
control"pol icy, but for IPv6 clients.
Roles
The followingare predefined roles.
NOTE:If you upgrade from a previous ArubaOS release, your existing configuration may have additional or different predefined
roles. The information in this section only describesthe predefined roles for this release.

PredefinedRole Description

user-role ap-role
session-acl control
session-acl ap-acl
Thisi san i nternal role and should not be edited.
user-role default-vpn-role
session-acl allowall
ipv6 session-acl v6-allowall
Thisi sthe default role used for VPN-connected clients. It is
referencedin the default "aaa authentication vpn" profile.
user-role voice
session-acl sip-acl
session-acl noe-acl
session-acl svp-acl
session-acl vocera-acl
session-acl skinny-acl
session-acl h323-acl
session-acl dhcp-acl
session-acl tftp-acl
session-acl dns-acl
session-acl icmp-acl
Thisrol e can be applied to voice devices in order to automatically
permit and prioritize all VoIPprotocols.
user-role guest
session-acl http-acl
Thisi s a default role for guest users. It permits only HTTP, HTTPS,

Table40 2:

PredefinedRoles

DellPowerConnect W- Series ArubaOS 6.2 | UserGuide Behaviorand Defaults | 830