308CHAPTER 7: CONFIGURING AUTHENTICATION, AUTHORIZATION, AND ACCOUNTING PARAMETERS

Setting Up ACL Basic Properties

To set up ACL basic properties:

1Access the WX Switch wizard for the WX switch. (See “Accessing the WX Switch Wizard” on page 187.)

2Select AAA at the top of the wizard, if not already selected.

3Select Mobility Profile from the organizer list on the left side of the page, if not already selected.

4Click New ACL. The Create ACL wizard appears.

5In the ACL Name box, type the name for the ACL (1 to 32 alphanumeric characters, with no spaces or tabs). The name can include hyphens (-), underscores (_), or periods (.). ACL names are case-sensitive and must begin with a letter. Do not include any of the following terms in the name: all, default-action, map, help, editbuffer.

6Go to “Defining Access Control Entries”.

Defining Access Control Entries

As part of defining ACL properties, you need to define access control entries (ACEs) for the ACL. You can add the following types of ACEs to an ACL:

„IP — Filters packets by source and destination IP addresses, type of service (TOS), or precedence. For more information, see “Creating an IP ACE” on page 309.

„TCP — Filters packets by established TCP connections, source and destination IP addresses, TOS, precedence, or TCP source and destination ports. For more information, see “Creating a TCP or UDP ACE” on page 311.

„ICMP — Filters packets by source and destination IP addresses, TOS, precedence, ICMP type, or ICMP code. For more information, see “Creating an ICMP ACE” on page 312.

„UDP — Filters packets by source and destination IP addresses, TOS, precedence, or UDP source and destination ports. For more information, see “Creating a TCP or UDP ACE” on page 311.

„Layer 4 Protocol — Filters packets by source and destination IP addresses, TOS, precedence, or Layer 4 protocol. For more information, see “Creating a Layer 4 Protocol ACE” on page 314.

Page 308
Image 308
HP Manager Software manual Setting Up ACL Basic Properties, Go to Defining Access Control Entries