Cisco Cisco FirePOWER Appliance 7115
Version 5.3
Sourcefire 3D System User Guide
2049
Managing System Policies
Configuring a System Policy
Chapter 48
To configure the access list:
A
CCESS
: Admin
1. Select System > Local > System Policy.
The System Policy page appears.
2. You have the following options:
•
To modify the access list in an existing system policy, click the edit icon
(
) next to the system policy.
•
To configure the access list as part of a new system policy, click Create
Policy.
Provide a name and description for the system policy as described in
Provide a name and description for the system policy as described in
on page 2039, and click Save.
In either case, the Access List page appears.
3. Optionally, to delete one of the current settings, click the delete icon (
).
The setting is removed.
WARNING!
If you delete access for the IP address that you are currently
using to connect to the appliance interface, and there is no entry for “
IP=any
port=443
”, you will lose access to the system when you apply the policy.
4. Optionally, to add access for one or more IP addresses, click Add Rules.
The Add IP Address page appears.
5. In the IP Address field, you have the following options, depending on the IP
addresses you want to add:
•
an exact IP address (for example, 192.168.1.101)
•
an IP address block using CIDR notation (for example, 192.168.1.1/24)
For information on using CIDR in the Sourcefire 3D System, see
For information on using CIDR in the Sourcefire 3D System, see
•
any
, to designate any IP address