Deployment Guide
Table Of Contents
- Table of Contents
 - Preface
 - About Extreme Campus Controller Deployment
 - Configuring DHCP, NPS, and DNS Services
 - Centralized Site with a Captive Portal
 - Centralized Site with AAA Network
 - Deploying a Mesh Network
 - Configuring an External NAC Server for MBA and AAA Authentication
 - Manage RADIUS Servers for User Authentication
 - External Captive Portal on a Third-Party Server
 - Access Control Rule Admin Portal Access
 - Deploying Centralized Web Authentication
 - Deploying ExtremeCloud IQ - SE as an External Captive Portal
- Deployment Strategy
 - Configuring an External Captive Portal Network
 - Editing the Configuration Profile for Network and Roles
 - Extreme Campus Controller Default Pass-Through Rule
 - Adding Extreme Campus Controller as a Switch to ExtremeCloud IQ - Site Engine
 - Editing the Unregistered Policy on ExtremeCloud IQ - Site Engine
 - Editing the ExtremeCloud IQ - Site Engine Profile for Policy and Location-Based Services
 
 - Deploying an ExtremeGuest Captive Portal
 - Deploying Client Bridge
 - Deploying an Availability Pair
 - Deploying Universal APs
 - Extreme Campus Controller Pair with ExtremeLocation and AirDefense
 - ECP Local Authentication
 - PHP External Captive Portal, Controller’s Firewall Friendly API
 - Index
 
2. Table 16 describes each setting and provides an example value configured for the Access Control
Rule. Configure the following rule settings:
Figure 40: Access Control Rule Configuration: Captive Portal Admins
Table 16: Access Control Rule Settings
Field Description
Name Rule name. Example: Lab40-ICP Admin
Rule Enabled Check to enable this rule.
Conditions
Note:
• If you select Any, then the criteria is ignored during the rule match process.
• If you select the Invert check box, it is considered a rule match if the end-system does not match
the selected value.
User-Group Any. No specific group configured.
End-System Group The end-system group that you configured in Configure Access
Control Group on page 113 (Captive Portal Admins).
End-systems that do not match any of the listed rules are
assigned the Default Catchall rule.
Device Type Group Any. No specific group configured.
Location Group The location group that you configured that is aected by the
rule. SSID: Lab40-ICP
Access Control Rule Admin Portal Access Configure Access Control Rule
Extreme Campus Controller Deployment Guide for version 5.46.03 117










