Specifications
May 18, 2009 Page 1 of 32
Configuring Policy
ThisdocumentdescribestheEnterasys
®
policyfeatureanditsconfigurationonEnterasysMatrix
®
N‐Series,EnterasysSecureStack™,D‐Series,G‐Series,andI‐Seriesswitchdevices.
What is Policy?
PolicyisacomponentofSecureNetworksthatprovidesfortheconfigurationofrole‐based
profilesforsecuringandprovisioningnetworkresourcesbasedupontheroletheuserordevice
playswithintheenterprise.Byfirstdefiningtheuserordevicerole,networkresourcescanbe
granularlytailoredtoaspecific
user,system,service,orport‐basedcontextbyconfiguringand
assigningrulestothepolicyrole.ApolicyrolecanbeconfiguredforanycombinationofClassof
Service,VLANassignment,classificationruleprecedence,logging,accounting,ordefault
behaviorbaseduponL2,L3,andL4packetfields.Hybridauthenticationallows
eitherpolicyor
dynamicVLANassignment,orboth,tobeappliedthroughRADIUSauthorization.
Why Would I Use Policy in My Network?
ThethreeprimarybenefitsofusingEnterasysSecureNetworkspolicyinyournetworkare
provisioningandcontrolofnetworkresources,security,andcentralized operationalefficiency
usingtheEnterasysNetSight
®
PolicyMa nager.
Policyprovidesfortheprovisioningandcontrolofnetworkresourcesbycreatingpolicyrolesthat
allowyoutodeterminenetworkprovisioningandcontrolattheappropriatenetworklayer,fora
givenuserordevice.Witharoledefined,rulescanbecreatedbaseduponupto23traffic
classification
typesfortrafficdroporforwarding.AClassofService(CoS)canbeassociatedwith
eachroleforpurposesofsettingpriority,forwardingqueue,ratelimiting,andrateshaping.
Note: See the Enterasys Matrix X Router Configuration Guide for X Router policy configuration
information.
For information about... Refer to page...
What is Policy? 1
Why Would I Use Policy in My Network? 1
How Can I Implement Policy? 2
Policy Overview 2
Configuring Policy 15
Policy Configuration Example 21
Terms and Definitions 31