System information
Configuring Security
Defining Access Profiles
Cisco Small Business 200 Series Smart Switch Administration Guide 170
16
A caution message displays if you selected any other access profile, warning you
that, depending on the selected access profile, you might be disconnected from
the web-based switch configuration utility.
NOTE Some 200 Series switches only support web access (http only, not
https). The profile you define may be customized according to a set of
settings provided in Access Profile entry, but ultimately will only provide
web access; console or any other methods (HTTPS, SSH & Telnet) are not
supported.
STEP 3 Click OK to select the active access profile or click Cancel to discontinue the
action.
STEP 4 Click Add to open the Add Access Profile Page. The page allows you to configure
a new profile and one rule. Go to the Defining Profile Rules section for
instructions on how to construct a rule.
STEP 5 Enter the parameters.
• Access Profile Name—Enter an access profile name. The access profile
name can contain up to 32 characters.
• Rule Priority—Enter the rule priority. When the packet is matched to a rule,
user groups are either granted or denied access to the switch. The rule
priority is essential to matching packets to rules, as packets are matched on
a first-match basis. One is the highest priority.
• Management Method— HTTP management is available.
• Action—Select the action attached to the rule. The options are:
- Permit—Permits access to the switch if the user matches the settings in
the profile.
- Deny—Denies access to the switch if the user matches the settings in the
profile.
• Applies to Interface—Select the interface attached to the rule. The options
are:
- All—Applies to all ports, VLANs, and LAGs.
- User Defined—Applies only to the port, or LAG selected.
• Applies to Source IP Address—Select the type of source IP address to
which the access profile applies. The Source IP Address field is valid for a
subnetwork. Select one of the following values:
- All—Applies to all types of IP addresses.