Intel A31032-001 manual Access Control

Models: A31032-001

1 196
Download 196 pages 18.6 Kb
Page 127
Image 127

C H A P T E R 6

Access Control

NOTE: To show, list or delete blocks and permits, see the Command Reference in Chapter 5.

Access Control

The 7110/7115 provides block and permit commands which allow you to deny or allow clients to access servers based on IP, IP mask, port and port mask.

To block a client, specified by IP and IP mask, from accessing a specified server, use the create block command as illustrated below:

Intel 7115> create block

Client IP to block [0.0.0.0]: 10.1.2.1

Client IP mask [0.0.0.0]: 255.255.255.255

Server IP to block [0.0.0.0]: 20.1.2.1

Server IP mask [0.0.0.0]: 255.255.255.255

Server Port to block: 80

Server Port mask [0xffff]:<Enter>

To permit a client, specified by IP and IP mask, access to a specified server, use the create permit command as illustrated below:

Intel 7115> create permit Client IP [0.0.0.0]: 10.1.2.1

Client IP Mask [0.0.0.0]:255.255.255.255

Server IP [0.0.0.0]:20.1.2.1

Server IP Mask [0.0.0.0]:255.255.255.255

Server port [xx]: 443

Server port mask [0xffff]: <Enter>

6-21

Page 127
Image 127
Intel A31032-001 manual Access Control