Dell 6.2 Server User Manual


 
Predefined Policy Description
ipv6 access-list session v6-dhcp-acl
any any svc-v6-dhcp permit
Permits all IPv6 DHCP traffic.
ipv6 access-list session v6-dns-acl
any any svc-dns permit
Permits all IPv6 DNS traffic.
ipv6 access-list session v6-allowall
any any any permit
Permits all IPv6 traffic.
ipv6 access-list session v6-http-acl
any any svc-http permit
Permits all IPv6 HTTP traffic.
ipv6 access-list session v6-tftp-acl
any any svc-tftp permit
Permits all IPv6 TFTP traffic.
ipv6 access-list session v6-logon-control
user any udp 68 deny
any any svc-v6-icmp permit
any any svc-v6-dhcp permit
any any svc-dns permit
Provides equivalent functionality to the "logon-
control" policy, but for IPv6 clients.
Roles
The following are predefined roles.
NOTE: If you upgrade from a previous ArubaOS release, your existing configuration may have additional or different predefined
roles. The information in this section only describes the predefined roles for this release.
Predefined Role Description
user-role ap-role
session-acl control
session-acl ap-acl
This is an internal role and should not be edited.
user-role default-vpn-role
session-acl allowall
ipv6 session-acl v6-allowall
This is the default role used for VPN-connected clients. It is
referenced in the default "aaa authentication vpn" profile.
user-role voice
session-acl sip-acl
session-acl noe-acl
session-acl svp-acl
session-acl vocera-acl
session-acl skinny-acl
session-acl h323-acl
session-acl dhcp-acl
session-acl tftp-acl
session-acl dns-acl
session-acl icmp-acl
This role can be applied to voice devices in order to automatically
permit and prioritize all VoIP protocols.
user-role guest
session-acl http-acl
This is a default role for guest users. It permits only HTTP, HTTPS,
Table 402:
Predefined Roles
DellPowerConnectW-SeriesArubaOS6.2 | User Guide Behavior and Defaults | 830