Cisco Systems SG200 Life Jacket User Manual


 
Security
Management Access Profile Rules
Cisco Small Business SG200 Series 8-port Smart Switch 150
10
Management Access Profile Rules
Use the Management Access Profile Rules page to define a profile and rules for
accessing the device for management purposes.
You can limit access to specific user names, ingress ports or LAGs, and source IP
addresses.
To display this page, click Security > Management Access Profile Rules in the
navigation window.
The Access Profile Table lists the profile name of the currently configured profile, if
one exists. The Profile Rule Table shows the existing rules for the profile. By
default, no access profiles and rules are configured on the switch. You can create
and enable only one profile and all the rules you create are assigned to that profile.
Configuring an Access Profile and Rules
To create an access profile and assign rules to it:
STEP 1 In the Access Profile Table, click Add.
STEP 2 Specify the Access Profile Name and select Enable.
STEP 3 Click Apply and then click Close.
The new profile appears in the Access Profile Table. Next, add the rules to the
profile.
STEP 4 In the Profile Rule table, click Add.
STEP 5 Specify any of the following parameters to restrict or allow access:
Rule Priority—The rules are validated against the incoming management
request in the ascending order of their priorities. If a rule matches, the
specified action is performed and rules below are ignored. For example, if
you configure Source IP 10.10.10.10 with priority 1 to Permit, and configure
Source IP 10.10.10.10 with priority 2 to Deny, then access is permitted to this
IP address when the profile is active, and the second rule is ignored. The
range is 1 to 16, with 1 having the highest priority.