Cisco Cisco FirePOWER Appliance 7115

Page de 2442
Version 5.3
Sourcefire 3D System User Guide
2049
Managing System Policies
Configuring a System Policy
Chapter 48
To configure the access list:
A
CCESS
Admin
1. Select System > Local > System Policy.
The System Policy page appears.
2. You have the following options:
To modify the access list in an existing system policy, click the edit icon 
(
) next to the system policy.
To configure the access list as part of a new system policy, click Create 
Policy.
Provide a name and description for the system policy as described in 
 on page 2039, and click Save.
In either case, the Access List page appears.
3. Optionally, to delete one of the current settings, click the delete icon (
).
The setting is removed.
WARNING!
If you delete access for the IP address that you are currently 
using to connect to the appliance interface, and there is no entry for “
IP=any 
port=443
”, you will lose access to the system when you apply the policy.
4. Optionally, to add access for one or more IP addresses, click Add Rules.
The Add IP Address page appears.
5. In the IP Address field, you have the following options, depending on the IP 
addresses you want to add: 
an exact IP address (for example, 192.168.1.101)
an IP address block using CIDR notation (for example, 192.168.1.1/24)
For information on using CIDR in the Sourcefire 3D System, see 
any
, to designate any IP address