Creating ipsec rules, Enabling ipsec rules, Defining address templates – Dascom 7010 PrintServer Manual User Manual
Page 119: Defining service templates, Defining sa templates, Defining ike templates

Internet Protocol Security (IPsec)
Print Server User Manual
119
Example 2
Target:
No participant in the company is allowed to print via the printer ’y’.
- The ’Sales’ and ’Support’ departments will be allowed to print.
- Due to sensitive data the Sales Manager is supposed to print via IPsec.
The SA template ’Level 1’ will be used for this purpose.
- The printer will be configured via IPsec by the ’Support’ department only. The SA template
’Level 2’ will be used for this purpose.
Implementation concept:
- All relevant printing services are specified in the ’Printing’ service filter.
- All relevant protocols for the administration are specified in the ’Configuring’ service
filter.
What do you want
to do?
Rule
Active
Addresses
Filter
Service
Filter
Action
SA (Security
Association)
1
x
Director (IP)
Printing
Require IPsec
Level 1
2
x
Sales (IP range)
Printing
Allow all
---
3
x
Support (IP range)
Configuring
Require IPsec
Level 2
4
x
Support (IP range)
Printing
Allow all
---
Default
All IP addresses
All services
Drop all
---