Cisco Cisco Web Security Appliance S670 Betriebsanweisung
Chapter 8 Access Policies
Creating Access Policies
8-10
Cisco IronPort AsyncOS 7.1 for Web User Guide
OL-23207-01
Subnets
Choose whether or not to define policy group membership by
subnet or other addresses.
subnet or other addresses.
You can choose to use the addresses that may be defined with
the associated Identity, or you can enter specific addresses
here.
the associated Identity, or you can enter specific addresses
here.
Note: If the Identity associated with this policy group
defines its membership by addresses, then in this policy
group you must enter addresses that are a subset of the
Identity’s addresses. Adding addresses in the policy group
further narrows down the list of transactions that match this
policy group.
defines its membership by addresses, then in this policy
group you must enter addresses that are a subset of the
Identity’s addresses. Adding addresses in the policy group
further narrows down the list of transactions that match this
policy group.
Time Range
Choose whether or not to define policy group membership by
a defined time range. Choose the time range from the Time
Range field and then choose whether this policy group
should apply to the times inside or outside the selected time
range.
a defined time range. Choose the time range from the Time
Range field and then choose whether this policy group
should apply to the times inside or outside the selected time
range.
For more information on creating time based policies, see
.
For more information on creating time ranges, see
URL Categories
Choose whether or not to define policy group membership by
URL categories. Select the user defined or predefined URL
categories.
URL categories. Select the user defined or predefined URL
categories.
Note: If the Identity associated with this policy group
defines Identity membership by this advanced setting, the
setting is not configurable at the non-Identity policy group
level.
defines Identity membership by this advanced setting, the
setting is not configurable at the non-Identity policy group
level.
Table 8-1
Access Policy Group Advanced Options (continued)
Advanced Option
Description