Extreme Networks Summit WM Series Betriebsanweisung Seite 94

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 228
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 93
WM Access Domain Configuration
Summit WM-Series WLAN Switch and Altitude Access Point Software Version 1.0 User Guide
94
Here is another example of filtering rules for a Default Filter:
Filtering Rules for an AAA Group WM-AD
If you defined a child group for an AAA WM-AD, it will have the same authentication parameters and
Filter IDs as the parent WM-AD. However, you can define different filtering rules for these Filters IDs in
the child configuration than in the parent configuration.
1 In the WM Access Domain Configuration screen, highlight the WM-AD group name in the list and
click on the Filtering tab. The Filtering screen for this WM-AD group appears.
2 Follow Steps 2 to 6, as described above for a parent WM-AD.
3 To save the filtering rules, click on the Save button.
Filtering rules between two wireless devices
Traffic from two wireless devices that are on the same WM-AD and are connected to the same Altitude
AP will pass through the Summit WM-Series Switch and therefore be subject to filtering policy. You can
set up filtering rules that allow each wireless device access to the default gateway, but prevent each
device from communicating each other.
Add the following two rules to a Filter ID filter before allowing everything else:
In Out Allow IP / Port Description
x Port 80 (HTTP) on host IP Deny all incoming wireless devices access to
web browsing the host
x Intranet IP 10.3.0.20, ports 10-30 Deny all traffic from the network to the wireless
devices on the port range, such as TELNET
(port 23) or FTP (port 21)
x x Intranet IP 10.3.0.20 Allow all other traffic from the wireless devices
to the Intranet network
x x Intranet IP 10.3.0.20 Allow all other traffic from Intranet network to
wireless devices
x x x *.*.*.*. Allow everything else
In Out Allow IP / Port Description
x x x [Intranet IP] Allow access to the Gateway IP address of the WM-AD only
x x [Intranet IP, range] Deny all access to the WM-AD subnet range 0/24
x x x *.*.*.*. Allow everything else
Seitenansicht 93
1 2 ... 89 90 91 92 93 94 95 96 97 98 99 ... 227 228

Kommentare zu diesen Handbüchern

Keine Kommentare