Amer Networks E5Web GUI User Manual
Page 549

InControl
Follow the same steps used for the Web Interface below.
Web Interface
Create the IP4Address object that specifies the IP range of connecting clients with the
authentication group client_group:
1.
Go to: Objects > Address Book > Add > IP4 Address
2.
Now enter:
•
Name: client_net
•
IP Address: 192.168.10.10-192.168.10.255
•
User Authentication: client_group
3.
Click OK
Create the IP Rule object that grants access to the networks on the interface If2 using the address
object created above as the source network:
1.
Go to: Policies > Add > IPRule
2.
Specify a suitable name for the rule, for example LAN_HTTP
3.
Now enter:
•
Name: client_access_rule
•
Action: Allow
•
Service: all_services
•
Source Interface: If1
•
Source Network: client_net
•
Destination Interface: If2
•
Destination Network: all-nets
4.
Click OK
Note: Authentication address objects have only one use
IP address objects that are used for authentication with the authentication property set
can only be used as the source network or destination network of an IP rule or IP policy.
They cannot be used for other purposes. This will be reflected in the IP address lists
presented by the Web Interface or InControl and the tab completion choices provided by
the CLI.
Chapter 8: User Authentication
549