Applying a DAA service policy to a BAS interface allows access control between users in an enterprise as well as policy sharing between users in different enterprises.
When enterprise users access the router over a Layer 3 leased line, each enterprise belongs to a VPN. You can apply a DAA service policy to a BAS interface to allow access control between users in an enterprise as well as policy sharing between users in different enterprises. When Layer 2 or Layer 3 leased line users are not authenticated, applying a DAA service policy to a BAS interface is also required to allow access control between Layer 2 or Layer 3 leased line users.
The system view is displayed.
The interface view is displayed.
The BAS interface view is displayed.
The BAS interface is configured as a Layer 2 or Layer 3 leased line interface.
A DAA service policy is applied to the BAS interface.
Return to the system view.
The configuration is committed.