Troubleshooting guide

1-5
Cisco Wide Area Application Services Configuration Guide
OL-26579-01
Chapter 1 Creating and Managing IP Access Control Lists for WAAS Devices
Creating and Managing IP ACLs for WAAS Devices
Step 7 Set up conditions for an extended IP ACL:
a. From the drop-down list, choose a purpose (Permit or Deny).
b. From the Extended Type drop-down list, choose Generic, TCP, UDP, or ICMP. (See Table 1-2.)
After you choose a type of extended IP ACL, various options become available in the GUI,
depending on what type you choose.
c. In the fields that are enabled for the chosen type, enter the data. (For more information, see Table 1-4
on page 1-8 through Table 1-7 on page 1-10.)
d. Click Submit to save the condition.
The Modifying IP ACL window reappears, displaying the condition and its configured parameters
in tabular format.
e. To add another condition to the IP ACL, repeat the steps.
f. To reorder your list of conditions from the Modifying IP ACL window, use the Up or Down Arrows
in the Move column, or click a column heading to sort by any configured parameter.
Note The order of the conditions listed in the WAAS Central Manager GUI becomes the order in
which IP ACLs are applied to the device.
g. When you have finished adding conditions to the IP ACL, and you are satisfied with all your entries
and the order in which the conditions are listed, click Submit in the Modifying IP ACL window to
commit the IP ACL to the device database.
Table 1-1 Standard IP ACL Conditions
Field Default Value Description
Purpose
1
1. Required field.
Permit Specifies whether a packet is to be passed (Permit) or dropped
(Deny).
Source IP
1
0.0.0.0 Number of the network or host from which the packet is being sent,
specified as a 32-bit quantity in 4-part dotted decimal format.
Source IP
Wildcard
1
255.255.255.255 Wildcard bits to be applied to the source, specified as a 32-bit
quantity in 4-part dotted decimal format. Place a 1 in the bit
positions that you want to ignore and identify bits of interest with
a 0.
Table 1-2 Extended IP ACL Conditions
Field Default Value Description
Purpose
1
1. Required field.
Permit Specifies whether a packet is to be passed or dropped. Choices are
Permit or Deny.
Extended
Type
1
Generic Specifies the Internet protocol to be applied to the condition.
When selected, the GUI window refreshes with applicable field
options enabled. The options are generic, TCP, UDP, or ICMP.