![LevelOne WGR-2301 Скачать руководство пользователя страница 135](http://html.mh-extra.com/html/levelone/wgr-2301/wgr-2301_user-manual_1885199135.webp)
Chapter 12 VPN
http://www.level1.com
Page 135
12.2.4
Access Control Settings instance
This section describes two instances of access control.
一、
Instance I
Requirements: An enterprise Intranet requires allowing only the users with the IP addresses of
192.168.1.10 - 192.168.1.20 to use WEB services during working hours (Monday to Friday,
9:00-18:00).
Analysis:
Custom policy 1: Allows the DNS application in 192.168.1.10-192.168.1.20.
Custom policy 2: Allows the WEB application in 192.168.1.10-192.168.1.20.
Custom policy 3: Disallows all other applications in 192.168.1.10-192.168.1.20.
What calls for special attention is that (Policy 3) when all services are prohibited, the DNS service
is also prohibited. In order to make the users in this address field access the network normally,
Policy 3 should be configured to the last.
Access control policy list:
Figure 12_8 Access Control Settings - Instance I