Quick Guide to Adding a Resource, User/Group Definition, and Access Rule in AMC
03/26/2020 12 12861
DESCRIPTION: Quick Guide to Adding a Resource, User/Group Definition, and Access Rule in AMC
This KB offers a quick example of creating a host resource, a user/group definition, and an access control rule in AMC. It is not meant to replace the detailed instructions in the Installation and Administration Guide, it is simply a quick reference.
For detailed instructions on how to add resources, user/group definitions, and access control rules, see Part 5 of the Installation and Administration Guide or the online help in AMC (Appliance Management Console). This guide can be downloaded from MySonicWall or the main support website.
The following steps assume the following:
The backend authentication server is based on Active Directory.
The local subnet being created on the appliance is in the 192.168.0.0/255.255.0.0 range.
A group of users will be allowed access to the subnet listed above.
A realm has already been configured that points to your authentication server.
Adding a resource:
Log in to AMC.
On the left side of the page, click Resources under Security Administration.
Click the New button and then choose Subnet.
On the following page, enter a Name for the resource, enter the IP address, and then enter the Subnet mask:
After you've completed this, click the Save button.
Adding a user/group definition:
On the left side in AMC, click Users & Groups under Security Administration.
On the Groups page, click New and then choose Directory search.
A new window will open. In this window, in the Search for text box, enter the name of the group you want to use in your access control rule, and then click Search:
In the list of groups, click on the name of your group and make sure that the Details pane of this window looks correct, and that the users listed are what you expect.
Click the checkbox next to the group name and then at the bottom of the window, click Insert Selected Groups:
In the list of groups you'll now see the group you just added:
Adding an Access Control Rule:
In AMC, click Access Control under Security Administration.
Click the New button.
Set the appropriate Number in the rule (rules are evaluated in order, from top to bottom).
Set your Action to Permit or Deny access to the resource.
This rule will allow access from the user group you created to the subnet resource you created:
In the From text box, click the Edit button.
In the separate window that opens, select the group you created, and then click Save:
In the To text box, click the Edit button.
In the separate window that opens, select the subnet resource you created earlier, and then click Save:
In the Basic settings section of the Edit Access Rule page, you'll now see that the group and resource have been selected:
Because this is just a simple rule, click the Finish button at the bottom of the page. You'll be returned to the main rules page:
Click Pending changes to apply changes to the appliance so that the resource, group definition, and rule will take effect for users.