Specifications

May 18, 2009 Page 1 of 32
Configuring Policy
ThisdocumentdescribestheEnterasys
®
policyfeatureanditsconfigurationonEnterasysMatrix
®
NSeries,EnterasysSecureStack™,DSeries,GSeries,andISeriesswitchdevices.
What is Policy?
PolicyisacomponentofSecureNetworksthatprovidesfortheconfigurationofrolebased
profilesforsecuringandprovisioningnetworkresourcesbasedupontheroletheuserordevice
playswithintheenterprise.Byfirstdefiningtheuserordevicerole,networkresourcescanbe
granularlytailoredtoaspecific
user,system,service,orportbasedcontextbyconfiguringand
assigningrulestothepolicyrole.ApolicyrolecanbeconfiguredforanycombinationofClassof
Service,VLANassignment,classificationruleprecedence,logging,accounting,ordefault
behaviorbaseduponL2,L3,andL4packetfields.Hybridauthenticationallows
eitherpolicyor
dynamicVLANassignment,orboth,tobeappliedthroughRADIUSauthorization.
Why Would I Use Policy in My Network?
ThethreeprimarybenefitsofusingEnterasysSecureNetworkspolicyinyournetworkare
provisioningandcontrolofnetworkresources,security,andcentralized operationalefficiency
usingtheEnterasysNetSight
®
PolicyMa nager.
Policyprovidesfortheprovisioningandcontrolofnetworkresourcesbycreatingpolicyrolesthat
allowyoutodeterminenetworkprovisioningandcontrolattheappropriatenetworklayer,fora
givenuserordevice.Witharoledefined,rulescanbecreatedbaseduponupto23traffic
classification
typesfortrafficdroporforwarding.AClassofService(CoS)canbeassociatedwith
eachroleforpurposesofsettingpriority,forwardingqueue,ratelimiting,andrateshaping.
Note: See the Enterasys Matrix X Router Configuration Guide for X Router policy configuration
information.
For information about... Refer to page...
What is Policy? 1
Why Would I Use Policy in My Network? 1
How Can I Implement Policy? 2
Policy Overview 2
Configuring Policy 15
Policy Configuration Example 21
Terms and Definitions 31