Cisco Downloadable ACL Enforcement Profile

Use this page to configure the Cisco Downloadable ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. Enforcement profile.

Profile Configuration

Use the Profile tab to configure the Cisco Downloadable ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. Enforcement profile.

The following figure displays the Cisco Downloadable ACL Enforcement > Profile dialog:

Figure 1  Cisco Downloadable ACL Enforcement > Profile Dialog

Specify the Cisco Downloadable ACL Enforcement > Profile parameters as described in the following table:

Table 1: Cisco Downloadable ACL Enforcement > Profile Parameters

Parameter

Action/Description

Template

Select the Cisco Downloadable ACL Enforcement template.

Name

Enter the name of the profile.

The name is displayed in the Name column on the Configuration > Enforcement > Profiles page.

Description

Enter a description of the profile.

The description is displayed in the Description column on the Configuration > Enforcement > Profiles page.

Type

The field is populated automatically with Type: RADIUS.

Action

To define the action to take on the request, click Accept, Reject, or Drop.

Device Group List

Select a Device Group from the drop-down list. The list displays all configured device groups.

All configured device groups are listed in the Configuration > Network > Device Groups page. After adding one or more device group(s), you can select a group and take one of the following actions:

To delete the selected Device Group List entry, click Remove.

To see the device group parameters, click View Details.

To change the parameters of the selected device group, click Modify.

NOTE: To add a new a device group, click the Add New Device Group link and see Adding and Modifying Device Groups.

Attributes Configuration

Use the Attribute tab to configure the attribute type, name, and value for the enforcement profile. The following figure displays the Cisco Downloadable ACL Enforcement > Attributes dialog:

Figure 2  Cisco Downloadable ACL Enforcement > Attributes Dialog

1. Specify the Cisco Downloadable ACL Enforcement > Attributes parameters as described in the following table:

Table 2: Cisco Downloadable ACL Enforcement > Attributes Parameters

Parameter

Action/Description

Type

The attribute type Radius: Cisco is selected by default, though you can click this option and select any of the available attribute types:

Radius:Aruba

Radius:IETF

Radius:Cisco

Radius: Hewlett-Packard-Enterprise

Radius: Lucent-Alcatel-Enterprise

Radius:Microsoft

Radius:Avenda

For more information, see RADIUS Namespaces.

Name

If you retained the default Radius: Cisco type, the default value for this setting is Cisco-IP-Downloadable-ACL, although the options displayed for the Name attribute depend on the Type attribute that was selected.

Value

By default, the ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. for the Cisco-IP-Downloadable-ACL is permit IP any any.

2. (Optional) To create another attribute, select the Click to Add field to define another new attribute type for that profile.

3. Click Save.

Summary Information

The Summary tab summarizes the parameters configured in the Cisco Downloadable ACL Enforcement profile.

Figure 3  Cisco Downloadable ACL Enforcement > Summary Tab