D-Link DWC-1000 User Manual - Page 258

Using Network Resources

Page 258 highlights

Wireless Controller User Manual Appl y Pol i cy To: Th is refers t o t h e LA N res o u rces man ag ed b y t h e DW C-1000, an d the policy can provide (or prevent) acces s to network res ources , IP addres s , IP network, etc. Pol i cy Name: Th is field is a u n iq u e n ame fo r id en t ify in g t h e p o licy . IP ad d re s s : Required when the governed res ource is identified by its IP addres s or range of ad d res s es . Mas k Leng th: Req u ired wh en t h e g o v ern ed res o u rce is id en t ified b y a ran g e o f addres s es within a s ubnet. Port Range: If the policy governs a type of traffic, t his field is us ed for defining TCP o r UDP p o rt n u mb er(s ) co rrespo n d in g t o t h e g o v ern ed t raffic. Leav in g t h e s t art in g and ending port range blank corres ponds to all UDP and TCP traffic. S ervi ce : Th is is t h e SSL VPN s erv ice mad e av ailab le b y t h is p o licy . T h e s erv ices o ffered are VPN t u n n el, p o rt fo rward in g o r b o t h . Defined Res ources : This policy can provide acces s to s pecific network res ources . Net wo rk res o u rces mu s t b e co n figu red in ad v an ce o f creatin g t he p o licy t o make t h em available for s elect ion as a defined resource. Network res ources are created with the fo llo win g in fo rmat io n Permi s s ion: Th e as sig ned res ources d efin ed b y t his p olicy can b e exp licit ly p ermit t ed or denied. 9.2.1 Using Network Resources Setup > VPN Settings > SSL VPN Server > Resou rces Net wo rk res o u rces are s erv ices o r g ro u p s o f LA N IP ad d res s es t h at are u s ed t o eas ily creat e an d co n fig u re SSL VPN p o licies . Th is s h o rt cu t s av es t ime wh en creat in g s imilar p o licies fo r mu lt ip le remo t e SSL VPN u s ers . A d d in g a Net wo rk Res o u rce in v o lv es creat in g a u n iq u e n ame t o id en t ify t h e res ource and assigning it to one or all of the s upported SSL s ervices . Once this is done, editing one of the created network res ources allows you to configure the object type (either IP address or IP range) as sociated with the s ervice. The Network A d d res s , M as k Len g t h , an d Po rt Ran g e/ Po rt Nu mb er can all b e d efin ed fo r t h is 256

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324

Wireless Controller
User Manual
256
Apply Policy To
: This refers to the LAN resources managed by the DWC-1000, and
the policy can provide (or prevent) access to network resources, IP address, IP
network, etc.
Policy Name
: This field is a unique name for identifying the policy. IP address:
Required when the governed resource is identified by its IP address or range of
addresses.
Mask Length
: Required when the governed resource is identified by a range of
addresses within a subnet.
Port Range
: If the policy governs a type of traffic, this field is used for defining TCP
or UDP port number(s) corresponding to the governed traffic.
Leaving the starting
and ending port range blank corresponds to all UDP and TCP traffic.
Service
: This is the SSL VPN service made available by this policy.
The services
offered are VPN tunnel, port forwarding or both.
Defined Resources
: This policy can provide access to specific network resources.
Network resources must be configured in advance of creating the policy to make them
available for selection as a defined resource. Network resources are created with the
following information
Permission
: The assigned resources defined by this policy can be explicitly permitted
or denied.
9.2.1 Using Network Resources
Setup > VPN Settings > SSL VPN Server > Resources
Network resources are services or groups of LAN IP addresses that are used to
easily create and configure SSL VPN policies. This shortcut saves time when
creating similar policies for multiple remote SSL VPN users.
Adding a Network Resource involves creating a unique name to identify the
resource and assigning it to one or all of the supported SSL services. Once this is
done, editing one of the created network resources allows you to configure the
object type (either IP address or IP range) associated with the service. The Network
Address, Mask Length, and Port Range/Port Number can all be defined for this