cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
340
Views
0
Helpful
1
Replies

ASA <> ACS 4.1 allowing admin only credentials (no VPN)

stretchlad
Level 1
Level 1

Hi

I have an ASA device configured to allow Cisco VPN client access which is authenticated by the ACS server. SSH and command authorization is also done by the same ACS server. Is there a way of setting an account as admin only so it has SSH access but not VPN access? The ASA is configured as a TACACS client.

Thanks

1 Reply 1

didyap
Level 6
Level 6

You will have to create different user groups for vpn users and SSH users. If a user requires both type of acces then configure the user under both groups in the ACS. Following link may help you

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.0/user/guide/qg.html

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: