Quick Guide to Adding a Resource, User/Group Definition, and Access Rule in AMC

Description

Quick Guide to Adding a Resource, User/Group Definition, and Access Rule in AMC

Resolution

 

Overview:

This KB offers a quick example of creating a host resource, a user/group definition, and an access control rule in AMC.  

Assumptions:

The following steps assume the following:

  • The backend authentication server is based on LDAP.
  • The local subnet being created on the appliance is in the 192.168.0.0/255.255.0.0 range.
  • A group of users will be allowed access to the subnet listed above.
  • A realm has already been configured that points to your authentication server.


Adding a resource:

  1. Log in to AMC.
  2. On the left side of the page, click Resources under Security Administration.
  3. Click the + button and then choose Subnet.
    Image
  4. On the following page, enter a Name for the resource, enter the IP address, and then enter the Subnet mask:
    Image
  5. After you've completed this, click the Save button.

Adding a user/group definition:

  1. On the left side in AMC, click Users & Groups under Security Administration.
  2. On the Groups page, click and then choose Browse Directory.
    Image
  3. A new window will open.  In this window, in the Search for text box, enter the name of the group you want to use in your access control rule, and then click Search:
    Image
  4. Click the checkbox next to the group name and then at the bottom of the window, click Add Selected.
  5. In the list of groups, you'll now see the group you just added:

Image

Adding an Access Control Rule:

  1. In AMC, click Access Control under Security Administration.
  2. Click the button.
  3. Set the appropriate Number in the rule (rules are evaluated in order, from top to bottom).
  4. Set your Action to Permit or Deny access to the resource.
  5. This rule will allow access from the user group you created to the subnet resource you created:
  6. In the From text box, click the Edit button. 
  7. In the separate window that opens, select the group you created, and then click Save:
    Image
  8. In the To text box, click the Edit button. 
  9. In the separate window that opens, select the subnet resource you created earlier, and then click Save:
    ImageImage
  10. Once access rule is added, you should see it listed as below:
    Image
  11. Click Pending changes to apply changes to the appliance so that the resource, group definition and access control rule will take effect for users.

 

NOTE: For detailed instructions on how to add resources, user/group definitions, and access control rules, Please see the 12.4 Administration Guide

 

 

Related Articles

  • SMA100 End of Support No-Charge Replacement FAQ
    Read More
  • SMA1000: Post upgrade to 12.5.0 on AWS and Azure, we show the error Could not retrieve the DNS settings once we log in to AMC/CMS console
    Read More
  • Firmware version required to upgrade to version 12.5.0.
    Read More
not finding your answers?