Wow thanks for the info. Like I mentioned we have a lot of users, really vendors and support people not typical "users". So we like to lock them down only to the IPs they really need. But we don't lock down port. The access is so diverse that we can't really say or know what port level access users would need. It just varies too much. And I'm working on the migration and finding I'm going to have to copy the same IP or network list into mulitple areas, (web, telnet, pulse, etc). Is your setup the same? Am I missing something? Seems like a single global area where I could say "This role gets access to these IPs over these ports" would work better.
... View more