5 configuring group acl rules, 1 add/delete a user group – Asus SL6000 User Manual
Page 71
70
ASUS VPN ADSL Router
Chapter 9
Chapter 9
9.5 Configuring Group ACL Rules
With this option, you can allow users belonging to different groups to access
different services at any desired time-frame. For instance, you can configure
user1 belonging to group1 to have access to services like NetMeeting during
morning and configure user2 of group2 to deny access to ICQ chat during
office hours. This user login is quite different from administrator’s login to
SL6000/SL6300.
Prior to configuring the access rule for user groups, you should have: (See
section 9.9.4 “Firewall User”.)
• Created a user group
• Created a user within that group
9.5.1 Add/Delete a User Group
1. To add a new user groups access rule, choose the Add New option in the
drop down list, select the action as either Allow or Deny. (Figure 9.5)
2. Choose the Rule Type that you’d like to add from the drop down list.
3. Select the user group from the drop down list.
4. Choose the Source IP from the drop down list, from where you’d like to
allow the traffic.
5. Choose the Destination IP from the drop down list, to where you’d like
to allow the traffic.
6. Choose the Source Port from the drop down list, from where you’d like
to allow the traffic.
7. Choose the Destination Port from the drop down list, to where you’d
like to allow the traffic.
8. Select the protocol of traffic. If you’d like to allow the traffic using
NAT, select the NAT Pool or Interface.
9. If you’d like to allow the traffic during any specific time, choose the
Time range option.
10. You can associate any Application Filter by selecting the filters from
the drop down list.
11. You can enable log and VPN for this Rule.
12. You can set the priority of the rule by making the rule first or second
depending on your wish.