Cisco GSS Configuration Guide (Software Version 1.1)
Configuring Source Address Lists

Table Of Contents

Configuring Source Address Lists

Creating Source Address Lists

Modifying Source Address Lists

Deleting Source Address Lists

Where to Go Next


Configuring Source Address Lists


The next step in configuring DNS request handling on your GSS network is to define the addresses from which requests are sent to the GSS. This is accomplished through the creation of source address lists, collections of IP addresses or address blocks for known client DNS proxies (or D-proxies).


Note The deployment of source address lists is an optional process. A default source address list, named Anywhere, is supplied with the GSS software and matches any request for a domain.


Using the source address lists feature, you can enter one or more IP addresses, up to 30 addresses for each list, representing DNS proxies from which requests originate. Each GSS supports up to 60 source address lists.

In addition to adding individual addresses, the primary GSSM also allows you to enter IP address blocks conforming to the classless interdomain routing (CIDR) IP addressing scheme.

This chapter contains the following major sections:

Creating Source Address Lists

Modifying Source Address Lists

Deleting Source Address Lists

Creating Source Address Lists

To configure a source address list:

1. From the primary GSSM GUI, click the DNS Rules tab.

2. Click the Source Address Lists navigation link. The Source Address Lists list page appears (Figure 4-1).

Figure 4-1 Source Address Lists List Page

3. Click the Create Source Address List icon. The Creating New Source Address List details page appears (Figure 4-2).

Figure 4-2 Creating New Source Address List - General Configuration

4. In the General Configuration details page (General Configuration navigation link), perform the following:

a. In the Name field, enter a name for the new Source Address List. Source Address List names cannot contain spaces.

b. From the Owner drop-down list, select the GSS network resource with which the Source Address List is associated. The owner may be a hosting customer, an internal department such as human resources, or an IT staff resource.

c. In the Comments text area, enter any comments for the new Source Address List.

5. Click the Add Address navigation link to access the Add Addresses section of the page. Add new addresses or address blocks to your list of source addresses (Figure 4-3).

Figure 4-3 Creating New Source Address List - Add Addresses

6. In the Add Addresses section of the page, perform the following:

a. Enter the IP addresses, or CIDR address blocks. If you are entering multiple addresses, separate each one with a semicolon. You can enter up to 30 addresses for each list. You use this interface to add new addresses or address blocks to your list of source addresses. For example:

192.168.100.0/24; 10.89.0.0/16; 10.68.10.1

b. Click the Add button. The GSS software adds the addresses to the Source Address List.

7. Click the General Configuration navigation link to view the address block associated with the source address list. The addresses appear under the Current Members section of the details page (Figure 4-4).

Figure 4-4 Creating Source Address List - Current Members List

8. When you are satisfied with your Source Address List, click the Submit button to save your changes. You return to the Source Address Lists list page.

You can add or remove source addresses from the list at any time. See the "Modifying Source Address Lists" section that follows.

Modifying Source Address Lists

To modify an existing source address list:

1. From the primary GSSM GUI, click the DNS Rules tab.

2. Click the Modify Source Address List icon located to the left of the Source Address List you want to modify. The Modifying Source Address List details page appears.

3. In the General Configuration details page (General Configuration navigation link), use the fields provided to modify the name, comments, or owner for the source address list (see Figure 4-2). Source address list names cannot contain spaces.

4. To add more source addresses to the list, click the Add Addresses navigation link. Use the field provided (see Figure 4-3) to enter the names of source address lists you wish to add. Click the Add button to append the new source address to the existing list.

5. To remove addresses from the Source Address List, click the Remove Addresses navigation link. The Remove Addresses section of the page appears (Figure 4-5). Click the check box accompanying each source address you wish to remove from the list, then click the Remove Selected button to remove the selected source addresses from the list.

Figure 4-5 Modifying Source Address List - Remove Addresses

6. Review your updated source address list under the Current Members section of the details page (see Figure 4-4).

7. Click the Submit button to save your modified source address list. You return to the Source Address List list page.

Deleting Source Address Lists

You cannot delete source address lists that are associated with an existing DNS rule. Before proceeding with these instructions, first verify that none of your DNS rules reference the source address list that you are deleting.


Caution Deletions of any kind cannot be undone in the primary GSSM. If you might want to use the deleted data at a later point in time, we recommend performing a database backup of your GSSM. Refer to Chapter 9, GSS Administration and Troubleshooting for details.

To delete a source address list from your GSS network:

1. From the primary GSSM GUI, click the DNS Rules tab.

2. Click the Source Address Lists navigation link. The Source Address Lists list page appears.

3. Click the Modify Source Address List icon located to the left of the Source Address List you want to remove. The Source Address Lists details page appears.

4. Click the Delete Source Address List icon in the upper right corner of the page (Figure 4-6). The GSS software prompts you to confirm your decision to delete the Source Address List.


Note If an error appears informing you that the source address list is referenced by an existing DNS rule, disassociate the source address list from the DS rule and then attempt to delete the source address list again.


Figure 4-6 Modifying Source Address List - Delete Icon

5. Click OK. You return to the Source Address Lists list page. The source address list is removed from the list.

Where to Go Next

Chapter 5, Configuring Domain Lists, describes the creation of domain lists, collections of domain names for Internet or intranet resources, sometimes referred to as hosted domains, that are being requested by your users.