5 configuring group acl rules, 1 add/delete a user group – Asus SL6000 User Manual

Page 71

background image

70

ASUS VPN ADSL Router

Chapter 9

Chapter 9

9.5 Configuring Group ACL Rules

With this option, you can allow users belonging to different groups to access
different services at any desired time-frame. For instance, you can configure
user1 belonging to group1 to have access to services like NetMeeting during
morning and configure user2 of group2 to deny access to ICQ chat during
office hours. This user login is quite different from administrator’s login to
SL6000/SL6300.

Prior to configuring the access rule for user groups, you should have: (See
section 9.9.4 “Firewall User”.)

• Created a user group

• Created a user within that group

9.5.1 Add/Delete a User Group

1. To add a new user groups access rule, choose the Add New option in the

drop down list, select the action as either Allow or Deny. (Figure 9.5)

2. Choose the Rule Type that you’d like to add from the drop down list.

3. Select the user group from the drop down list.

4. Choose the Source IP from the drop down list, from where you’d like to

allow the traffic.

5. Choose the Destination IP from the drop down list, to where you’d like

to allow the traffic.

6. Choose the Source Port from the drop down list, from where you’d like

to allow the traffic.

7. Choose the Destination Port from the drop down list, to where you’d

like to allow the traffic.

8. Select the protocol of traffic. If you’d like to allow the traffic using

NAT, select the NAT Pool or Interface.

9. If you’d like to allow the traffic during any specific time, choose the

Time range option.

10. You can associate any Application Filter by selecting the filters from

the drop down list.

11. You can enable log and VPN for this Rule.

12. You can set the priority of the rule by making the rule first or second

depending on your wish.

This manual is related to the following products: