DefensePro User Guide
Security Configuration
Document ID: RDWR-DP-V0602_UG1201
205
Configuring ACL Policy Rules
Configure ACL policy rules to create a flexible and focused stateful access-control policy.
You can activate and de-activate rules using predefined event schedules. For more information
about configuring event schedules, see
Configuring the Device Event Scheduler, page 91
Before you configure ACL rules, ensure that you have configured classes for the networks, physical
port groups, and VLAN tag groups that you want to use in the rules. For more information, see
.
To configure an ACL policy rule
1. In the Configuration perspective ACL tab navigation pane, select ACL Policies > Modify
Policy.
2. To add or modify a policy rule, do one of the following:
—
To add a rule, click the
(Add) button.
—
To edit a rule, double-click the entry in the table.
3. Configure the parameters.
4. To activate your configuration changes on the device, click Activate Latest Changes.
Tip:
You can update all configuration policies on the device in a single operation. For more
information, see
Updating Policy Configurations on a DefensePro Device, page 246
Max Number of Report
Traps
The maximum number of detailed reports that the device generates
per second.
Values: 1–100
Default: 10
Packet Trace
Specifies whether the DefensePro device sends attack packets to the
specified physical port.
Default: Disabled
Caution:
When this feature is enabled here, for the feature to take
effect, the global setting must be enabled
(Configuration perspective > Advanced Parameters
> Security Reporting Settings > Enable Packet
Trace). In addition, a change to this parameter takes
effect only after you update policies.
Table 104: Global ACL Parameters
Parameter
Description
Summary of Contents for DefensePro 6.02
Page 1: ...DefensePro User Guide Software Version 6 02 Document ID RDWR DP V0602_UG1201 January 2012 ...
Page 2: ...DefensePro User Guide 2 Document ID RDWR DP V0602_UG1201 ...
Page 20: ...DefensePro User Guide 20 Document ID RDWR DP V0602_UG1201 ...
Page 28: ...DefensePro User Guide Table of Contents 28 Document ID RDWR DP V0602_UG1201 ...
Page 116: ...DefensePro User Guide Device Network Configuration 116 Document ID RDWR DP V0602_UG1201 ...
Page 302: ...DefensePro User Guide Real Time Security Reporting 302 Document ID RDWR DP V0602_UG1201 ...
Page 308: ...DefensePro User Guide Administering DefensePro 308 Document ID RDWR DP V0602_UG1201 ...
Page 324: ...DefensePro User Guide Troubleshooting 324 Document ID RDWR DP V0602_UG1201 ...