User Guide: AMF Security mini version 2.2.2

How to use the setting page



This section describes the basic screen configuration of the setting page and how to operate it.

Navigation menu

Navigation menu is located at the top of the screen.

Clicking a menu item opens dropdown submenus. Clicking a submenu item opens the screen corresponding to the item.


Searching and Sorting in Tables

The following pages have controls to search, filter or sort items in tables.


The next table shows which columns can be searched, filtered and sorted on each page.

Table 1: Target columns for search, filter and sort operations
Page Item Name Search Filter Sort Note
Device > Device List Device ID × ×  
Tag × ×  
Note × ×  
Number of Policies × ×  
Number of Interfaces × ×  
Interface: MAC Address* × × * This column is not displayed on the screen.
Interface: Name* × × * This column is not displayed on the screen.
Interface: Note* × × * This column is not displayed on the screen.
Device > MAC Address List MAC Address × ×  
Name × ×  
Device ID × ×  
Note × ×  
Device: Tag* × × * This column is not displayed on the screen.
Device: Note* × × * This column is not displayed on the screen.
Device > Active Device List MAC Address * × * Only the strings after "mac=", "ip=" and "vender=" can be matched.
Device ID *1 *2 *1 "Unregistered" cannot be matched. For devices connected or detected in the UnAuth Group, only strings after "group=" can be matched.
*2 Sorted in the order of "Unregistered", "UnAuth Group ID", "Empty" and "Device ID".
Connected Switch *1 *2 ※1 For AMF nodes, only the strings after "id=" and the Port Number in parenthesis after "port=" can be matched. For TQ's AMF Application Proxy, the strings after "id=", IPv4 Address after "ip=" and the strings after "port=" can be matched.
※2 For AMF nodes can be only sorted by the string after "id=". For TQ's AMF Application Proxy, the strings after "id=" and IPv4 Address after "ip=" can be sorted. Sorting by the string after "port=" is not supported. Sorting by the string after "port=" is not supported.
Connecting Network *1 *2 *1 Only VLAN ID after "vlan=" and Network ID after "id=" can be matched. "Untagged" and "No Connection" cannot be matched.
*2 Sorted in the order of "No Connection", "Empty", "vlan=Untagged" and "vlan=1-4094". Sorting by Network ID is not supported.
Status × × * * * Sorted in the order of "Authorized", "Blocked", "Link-Down", "Quarantined", "Authentication Failed", "Detected", "IP-Filter" and "Log-Only".
Group > UnAuth Group List Group ID × ×  
Enabled × ×  
Note × ×  
Number of Policies × ×  
Switches > AMF Member List Name × ×  
Account Group ID × ×  
Note × ×  
Switches > Active AMF Member List Name × ×  
Registration Status × ×  
Domain Name × ×  
Latest Access × ×  
Policy Settings > Network List Network ID × ×  
VLAN ID × ×  
Note × ×  
Policy Settings > Location List Location ID × ×  
Note × ×  
Number of Switches × ×  
Policy Settings > Schedule List Schedule ID × ×  
Start Date / Time × ×  
End Date / Time × ×  
Note × ×  
Policy Settings > Action List Action ID × ×  
Priority × ×  
Condition * × * Only the strings after "mac=", "ip=", "device-name=", "tag=", "location=", "switch=" and "network=" can be matched.
Action (OpenFlow, TQ/AMF) *1 *2 *1 Only the strings after "Pass(Permit)", "Drop(Block)" and "Quarantine" can be matched. AMF Action after them cannot be matched.
*2 Sorted in the order of "Pass(Permit)", "Drop(Block)", "Quarantine" and "Log-Only". Sort by the AMF Action is not supported.
Requester × ×  
Reason × ×  
System Settings > Account List Account Name ×  
Account Group ID ×  
System Settings > Account Group List Account Group ID × ×  
Note × ×  
System Settings > Action Log Duration ×  
MAC Address ×  
Device IPv4 Address ×  
Device Tag ×  
Action Originator ×  
Status ×  


Number of items displayed on the page

A range of currently displayed items and a total number of items are shown above each table in the form of "RANGE / TOTAL". You can also change the maximum number of items displayed on a page by using the dropdown menu.



Filter using search form

You can filter items to display by entering keywords in the search form.
If you enter multiple keywords separated by space, only items matching all the keywords are displayed. (AND search)
When you filter items, matched texts are highlighted in red. Matched texts are highlighted even when they are in the columns which cannot be matched.



Filter using dropdown menu

On the Device > Active Device List page, you can filter items by the status of Devices using drop-down menu.


Table 2: Status Dropdown Menu
Option What is displayed
All All the devices in any of the Authorized, Blocked, Link-Down, IP-Filter, Quarantined, Authentication Failed or Detected status.
Authorized Devices matching the security policy for the registered device or the UnAuth Group.
Blocked Devices which were blocked by an instruction of an external system or an operation of an administrator.
Link-Down Devices which are being blocked by AMF Application Proxy's Link-Down action.
IP-Filter Devices which are being blocked by AMF Application Proxy's IP-Filter (Layer 3) action.
Log-Only Devices for which logs were generated without taking any actions.
Quarantined Devices which were moved to quarantine network by an instruction of an external system or an operation of an administrator.
Authentication Failed Devices which failed to authenticate because they were not registered or they didn't match any security policy.
Quarantined | Blocked | IP-Filter | Authentication Failed Devices which are in any of the Quarantined, Blocked, Link-Down, IP-Filter or Authentication Failed status.
Detected Devices which were detected by the UnAuth Group's detection feature.


Sort

You can sort items by clicking small buttons next to the column headers.


Toggling Order

The sort order is toggled among ascending > descending > default order whenever you click the same button.

Apply Configuration Changes

There is the "Submit" button on each configuration page or dialog. After changing configurations on a page or a dialog, do not forget to click the "Submit" button before moving to another page.
When you click the "Submit" button, the changes you made on the page are immediately applied to the AMF Security mini's operation.
Note
There are some pages without the "Submit" button because they are read-only and do not have any configuration element to change.


Software being used by AMF Security mini

You can view the list of names and licenses of the software used by AMF Security mini.



12 Jul 2022 15:30