Sun Java System Web Proxy Server 4.0.3 2006Q2 Administration Guide

Setting Access Control Globally

ProcedureTo set access control for all servers

Steps
  1. Access the Administration Server and click the Global Settings tab.

  2. Click the Administer Access Control link.

  3. Select the administration server (proxy-admserv) from the drop-down list, click Go to load data, and then click New ACL (or Edit ACL).

  4. Authenticate if prompted. The Access Control Rules For page displays.

    The Administration Server has two lines of default access control rules, which cannot be edited.

  5. Select Access Control Is On, if not already selected.

  6. To add a default ACL rule to the bottom row of the table, click the New Line button.

    To change the position of an access control restriction, click the up or down arrow.

  7. Click Anyone in the Users/Groups column.

    The User/Group page displays in the lower frame.

  8. Select the users and groups to which you will allow access, and click Update.

    Clicking the List button for Group or User provides lists from which to choose. For more information about the settings, see the online Help. Also see Specifying Users and Groups.

  9. Click Anyplace in the From Host column.

    The From Host page displays in the lower frame.

  10. Specify the host names and IP addresses allowed access, and click Update.

    For more information about the settings, see the online Help. Also see Specifying the From Host.

  11. Click All in the Programs column.

    The Programs page displays in the lower frame.

  12. Select the Program Groups or enter the specific file name in the Program Items field to which you will allow access, and click Update.

    For more information about the settings, see the online Help. Also see Restricting Access to Programs.

  13. (Optional) Click the X in the Extra column to add a customized ACL expression.

    The Customized Expressions page displays in the lower frame. For more information, see Writing Customized Expressions.

  14. Select the checkbox in the Continue column, if not already selected.

    The server evaluates the next line before determining if the user is allowed access. When creating multiple lines, work from the most general restrictions to the most specific.

  15. (Optional) Click the trash can icon to delete the corresponding line from the access control rules.

  16. (Optional) Click the Response When Denied link to specify the response a user receives when denied access. The Access Deny Response page displays in the lower frame.

    Select the desired response, specify additional information if appropriate, and then click Update. For more information about the settings, see Responding When Access is Denied.

  17. Click Submit to store the new access control rules in the ACL file, or Revert to reset elements in the page to the values they contained before changes were made.