Cisco Systems SG200 Life Jacket User Manual


 
Security
Management Access Profile Rules
Cisco Small Business SG200 Series 8-port Smart Switch 151
10
To limit access to the web-based switch configuration utility only to
specified users, for example, you can create a rule in which HTTP access is
denied to all users, and then create another rule in which specific users are
permitted. The rule that permits the specific users must have a higher Rule
Priority than the rule that denies all users.
CAUTION: If a profile is activated that denies access to an intranet or domain
where a current web management session is active, the session remains
active until logout or timeout. Future sessions are blocked by the profile.
Active sessions using Internet Explorer 8 are terminated immediately unless
the switch management IP address is added to the Local Intranet Sites list in
Internet Explorer. See Starting the Web-Based Switch Configuration
Utility for instructions.
Action—Select the action to be performed when the rules criteria is
matched.
- Permit—The specified interface, user, or IP address is permitted access
to the switch that would otherwise be explicitly forbidden by a deny rule.
- Deny—The specified interface, user, or IP address is denied access to
the switch.
Applies to Interface—Select All to apply this rule to all interfaces (ports and
LAGs). Or, select User Defined and select the port or LAG that the rule
applies to.
Applies to User—Select All to apply this rule to all system users. Or, select
User Defined and select a User Name that the rule applies to.
Applies to Source IP Address—Select All to apply the rule to any source IP
addresses. Or select User Defined and specify a source IPv4 address and
mask that this rule applies to.
STEP 6 Click Apply and then click Close. Your changes are saved to the Running
Configuration.
The new rule appears in the Profile Rule Table. You can select the rule and click
Edit to modify it or click Delete to remove it from the access profile.
NOTE User cisco will not be denied management access.