Cisco Explorer 4700 Installationsanleitung Seite 120

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 648
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 119
4-70
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 4 Configuring Virtual Contexts
Configuring Object Groups
The ACLs table appears listing the existing ACLs.
Step 2 In the ACLs table, choose an ACL, and click Details.
The show access-list access-list detail CLI command output appears. For details about the displayed
output fields, see the Security Guide, Cisco ACE Application Control Engine, Chapter 1, Configuring
Security Access Control Lists.
Step 3 Click Update Details to refresh the output for the show access-list access-list detail CLI command.
Step 4 Click Close to return to the ACLs table.
Related Topics
Configuring Virtual Context Expert Options, page 4-79
Creating ACLs, page 4-59
Setting Extended ACL Attributes, page 4-61
Resequencing Extended ACLs, page 4-66
Editing or Deleting ACLs, page 4-69
Configuring Object Groups
An object group is a logical grouping of objects such as hosts (servers and clients), services, and
networks. When you create an object group, you select a type, such as network or service, and then
specify the objects that belong to the groups. In all, there are four types of object groups: Network,
protocol, service, and ICMP-type.
After you configure an object group, you can include it in ACLs, thereby including all objects within
that group and reducing overall configuration size.
Use this procedure to configure object groups that you can associate with ACLs.
Procedure
Step 1 Choose Config > Virtual Contexts > context > Security > Object Groups.
The Object Groups table appears, listing existing object groups.
Step 2 Click Add to create a new object group, or select an existing object group, and then click Edit to modify
it.
The Object Groups configuration screen appears.
Step 3 In the Name field, enter a unique name for this object group.
Valid entries are unquoted text strings with no spaces and a maximum of 64 alphanumeric characters.
Step 4 In the Description field, enter a brief description for the object group.
Step 5 In the Type field, select the type of object group you are creating:
Network—The object group is based on a group of hosts or subnet IP addresses.
Service—The object group is based on TCP or UDP protocols and ports, or ICMP types, such as
echo or echo-reply.
Step 6 Do one of the following:
Click Deploy Now to immediately deploy this configuration. This option appears for virtual
contexts. The screen refreshes with tables additional configuration options.
Seitenansicht 119
1 2 ... 115 116 117 118 119 120 121 122 123 124 125 ... 647 648

Kommentare zu diesen Handbüchern

Keine Kommentare