cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
448
Views
0
Helpful
1
Replies

vpn authentication

suthomas1
Level 6
Level 6

one of our clients has an ssl vpn setup of firewall -- ACS -- Domain database.

There is a requirement that we have a fallback for authentication to vpn in case domain database is unavailable/fails.

i.e. if this happens, ACS checks the domain & if it is not available, goes in for local database authentication.

But in no way they want the local usernames on the firewall. the acs has to do the job.

Is this possible.Please advise.

Thanks!

1 Reply 1

Farrukh Haroon
VIP Alumni
VIP Alumni

Did you have a look at Dynamic Access Polices (DAP) in Cisco ASA? They might help you in this regard

http://www.cisco.com/en/US/products/ps6120/products_white_paper09186a00809fcf38.shtml

Regards

Farrukh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card