Cisco Systems Servers Benutzerhandbuch

Seite von 654
Chapter 10      Setting Up and Managing Administrators and Policy
Access Policy
10-12
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
Setting Up Access Policy
For information about access policy options, see the 
To set up Cisco Secure ACS Access Policy, follow these steps:
Step 1
In the navigation bar, click Administration Control.
Result: Cisco Secure ACS displays the Administration Control page.
Step 2
Click Access Policy.
Result: The Access Policy Setup page appears.
Step 3
To allow remote access to the HTML interface from any IP address, in the IP 
Address Filtering table, select the Allow all IP addresses to connect option.
Step 4
To allow remote access to the HTML interface only from IP addresses within a 
range or ranges of IP addresses, follow these steps:
a.
In the IP Address Filtering table, select the Allow only listed IP addresses 
to connect
 option.
b.
For each IP address range from within which you want to allow remote access 
to the HTML interface, complete one row of the IP Address Ranges table. In 
the Start IP Address box, type the lowest IP address in the range. In the End 
IP Address box, type the highest IP address in the range.
Step 5
To allow remote access to the HTML interface only from IP addresses outside a 
range or ranges of IP addresses, follow these steps:
a.
In the IP Address Filtering table, select the Reject connections from listed 
IP addresses
 option.
b.
For each IP address range from outside of which you want to allow remote 
access to the HTML interface, complete one row of the IP Address Ranges 
table. Type the lowest IP address in the range in the Start IP Address box. 
Type the highest IP address in the range in the End IP Address box.
Step 6
To allow Cisco Secure ACS to use any valid TCP port for administrative sessions, 
either local or remote, select the Allow any TCP ports to be used for 
Administration HTTP Access
 option.