Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

Cisco ASA and downlodable acl problem

HI,all

Can somebody shed some light on how to configure ACS for downloading user base acl.

We have used TACCAS for remote access user authentication.

Do I required any config on ASA or i have to just configure Policy element /authorisation profile  and bind that profile with user?

thanks in advance

1 ACCEPTED SOLUTION

Accepted Solutions
Silver

Re: Cisco ASA and downlodable acl problem

Configuration Example.

4 REPLIES
Silver

Cisco ASA and downlodable acl problem

Hello Sandeep,

First of all, if you are using TACACS+ for VPN Remote Access then Downloadable ACL's are not supported. You might need to change the ASA configuration to use RADIUS as the authentication protocol instead.

I am attaching a configuration example to this post.

Hope this helps.

Regards

Silver

Re: Cisco ASA and downlodable acl problem

Configuration Example.

Cisco ASA and downlodable acl problem

Dear Carlos,

Thanks for reply.

That mean i have to change authentication method RADIUS for remot access vpn users and also I have to use radius for authorizaton.

Silver

Cisco ASA and downlodable acl problem

Hello Sandeep,

You are right. RADIUS includes Authentication/Authorization on the same packet which causes the authentication response from the RADIUS server to include the Authorization Attributes as well.

Regards.

433
Views
0
Helpful
4
Replies