cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
403
Views
0
Helpful
5
Replies

RADIUS authentication for VPN users?

whiteford
Level 1
Level 1

We have a VPN concentrator, how can I stop users using local accounts and use their Windows Active Directory user accounts?

5 Replies 5

Richard Burts
Hall of Fame
Hall of Fame

Andy

Would I be correct in assuming that your VPN concentrator is one of the Cisco 3000 series concentrators?

Maybe I am missing something, but it seems to me to be fairly straightforward: the concentrator specifies how to authenticate and apparently now it is configured to use its local database of user accounts. It should be a fairly simple change to specify that it should authenticate these users with Radius. At that point it should stop using local accounts.

HTH

Rick

HTH

Rick

I it is a Cisco 3015 series concentrator, where do I configure this?

Andy

I assume that your 3015 operates the same as the 3060s that I work with. From the Configuration line, to the User Management line, to the Groups line. Select the group that the user belongs to, on the right side of the screen is an option to modify Authentication Servers. Select this option and configure the external server that will authenticate.

HTH

Rick

HTH

Rick

I would like to use windows 2003 IAS (Radius) I want to allow only users in the AD Radius group called "VPN" to be able to access our network.

Can this be done and the users will then log in using their AD usernames and passwords?

Andy

I believe that this can be done. Make sure that your users are in the group, specify that the group should use 2003 IAS (Radius) as its authentication server. It should work.

HTH

Rick

HTH

Rick