2-9
Cisco ASA Series Firewall CLI Configuration Guide
Chapter 2 Objects for Access Control
Configure Objects
hostname(config-security-object-group)#
description
string
Configure Time Ranges
A time range object defines a specific time consisting of a start time, an end time, and optional recurring
entries. You use these objects on ACL rules to provide time-based access to certain features or assets.
For example, you could create an access rule that allows access to a particular server during working
hours only.
Note
You can include multiple periodic entries in a time range object. If a time range has both absolute and
periodic values specified, then the periodic values are evaluated only after the absolute start time is
reached, and they are not further evaluated after the absolute end time is reached.
Creating a time range does not restrict access to the device. This procedure defines the time range only.
You must then use the object in an access control rule.
Procedure
Step 1
Create the time range.
time-range
name
Step 2
(Optional.) Add a start or end time (or both) to the time range.
absolute
[
start
time
date
] [
end
time
date
]
If you do not specify a start time, the default start time is now.
The
time
is in the 24-hour format
hh
:
mm
. For example, 8:00 is 8:00 a.m. and 20:00 is 8:00 p.m.
The
date
is in the format
day
month
year
; for example,
1 January 2014
.
Step 3
(Optional.) Add recurring time periods.
periodic
days-of-the-week time
to
[
days-of-the-week
]
time
You can specify the following values for
days-of-the-week
. Note that you can specify a second day of
the week only if you specify a single day for the first argument.
•
Monday
,
Tuesday
,
Wednesday
,
Thursday
,
Friday
,
Saturday
, or
Sunday
. You can specify more
than one of these, separated by spaces, for the first
days-of-the-week
argument.
•
daily
•
weekdays
•
weekend
The
time
is in the 24-hour format
hh
:
mm
. For example, 8:00 is 8:00 a.m. and 20:00 is 8:00 p.m.
You can repeat this command to configure more than one recurring period.
Содержание ASA 5508-X
Страница 11: ...P A R T 1 Access Control ...
Страница 12: ......
Страница 60: ...4 14 Cisco ASA Series Firewall CLI Configuration Guide Chapter 4 Access Rules History for Access Rules ...
Страница 157: ...P A R T 2 Network Address Translation ...
Страница 158: ......
Страница 204: ...9 46 Cisco ASA Series Firewall CLI Configuration Guide Chapter 9 Network Address Translation NAT History for NAT ...
Страница 232: ...10 28 Cisco ASA Series Firewall CLI Configuration Guide Chapter 10 NAT Examples and Reference DNS and NAT ...
Страница 233: ...P A R T 3 Service Policies and Application Inspection ...
Страница 234: ......
Страница 379: ...P A R T 4 Connection Management and Threat Detection ...
Страница 380: ......
Страница 400: ...16 20 Cisco ASA Series Firewall CLI Configuration Guide Chapter 16 Connection Settings History for Connection Settings ...
Страница 414: ...17 14 Cisco ASA Series Firewall CLI Configuration Guide Chapter 17 Quality of Service History for QoS ...