Creating a User Role
User roles comprises of user role settings, firewall Firewall is a network security system used for preventing unauthorized access to or from a private network. policies, and bandwidth contracts. This section describes the procedure to create and delete a user role, and associate a firewall Firewall is a network security system used for preventing unauthorized access to or from a private network. policy with that role.
The commands to associate an ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. to a user role vary, depending upon the type of ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. being associated to that role. User roles are applied globally across all managed devices, so ethertype, MAC Media Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network. and session ACLs Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. can be applied to global user roles. However, routing access lists may vary between locations, so they are mapped to a user role in a local configuration setting.
- To associate a user role with an ethertype, MAC Media Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network. or session ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port., use the command.
- To associate a user role with an routing ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port., use the command.
The following procedure describes how to create a new user role:
- In the node hierarchy, navigate to the > > .
- Click to create a new role.
- Enter a for the new role and click .
- Select the role created and click under table.
- Click one of the options in the filed to select a rule and click
- In the section, configure all the parameters.
- Click .
- Select one of the following options to add a policy to the role:
- In the tab select the role created and click under the table. Enter a for the policy and select a . Click .
- To associate an existing policy to a user role:
- Select the from thetab and click in table.
- Click under the tab.
- Select option and select a policy from the drop-down list.
- Click .
For more information on creating a firewall Firewall is a network security system used for preventing unauthorized access to or from a private network. policy, see Firewall Policies.
- (Optional) If the user role contains more than one firewall Firewall is a network security system used for preventing unauthorized access to or from a private network. policy, use the up and down arrows to assign priorities to each role. The higher the policy on the list, the higher its priority.
- Click and enter the configuration values as described in Table 1.
- Click
- Click .
- In the window, select the check box and click .
- Assign the user role to a AAA Authentication, Authorization, and Accounting. AAA is a security framework to authenticate users, authorize the type of access based on user credentials, and record authentication events and information about the network access and network resource consumption. profile in the managed device. After assigning the user role, execute the > command on the managed device to see the profiles that reference this role. For more information, see Workflow for Assigning a User Role
Deleting a User Role
The following procedure describes how to delete a user role:
- In the node hierarchy, navigate to the tab on the WebUI.
- Select the and click the icon.
You cannot delete a user-role that is referenced to profile or server derived role. Deleting a server referenced role will result in an error. Remove all references to the role and then perform the delete operation.