
AOS-W Instant 6.3.1.1-4.0 | User Guide Roles and Policies | 164
Chapter 14
Roles and Policies
This chapter describes the procedures for configuring user roles, role assignment, and firewall policies.
l Firewall Configuration on page 164
l Access Control List Rules on page 169
l Configuring User Roles on page 175
l Configuring Derivation Rules on page 178
Firewall Configuration
AOS-W Instant firewall provides identity-based controls to enforce application-layer security, prioritization, traffic
forwarding, and network performance policies for wired and wireless networks. Using AOS-W Instant firewall, you
can enforce network access policies that define access to the network, areas of the network that users may access,
and the performance thresholds of various applications.
AOS-W Instant supports a role-based stateful firewall. AOS-W Instant firewall recognizes flows in a network and
keeps track of the state of sessions. Instant firewall manages packets according to the first rule that matches
packet. The firewall logs on the OAW-IAPs are generated as syslog messages. Instant firewall also supports the
Application Layer Gateway (ALG) functions such as SIP, Vocera, Alcatel NOE, and Cisco Skinny protocols.
Configuring ALG Protocols
You can enable or disable protocols for Application Layer Gateway (ALG) in AOS-W Instant using AOS-W Instant UI
or CLI.
In the AOS-W Instant UI
To configure protocols for ALG:
1. Click the Security link at the top right corner of AOS-W Instant main window.
2. Clickthe Firewall Settings tab. The Firewall Settings tab contents are displayed. The following figure shows
the contents of the Firewall Settings tab:
Kommentare zu diesen Handbüchern