cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
502
Views
5
Helpful
2
Replies

How to have use ACS support both wireless user and VPN user?

jastch1976
Level 1
Level 1

I am new to ACS and need to setup the following requirement:

1) ACS to authenticate wireless user with window AD.

2) After successfully connected to the wireless, the user will need to use remote-access VPN with the ASA.

3) The end-user will have only 1 common username but different password.

eg:

username: cisco password: cisco for wireless.

username: cisco password: 1234 for VPN.

Can ACS suppport this, if yes how can it be done? For do I need 2 set of ACS?

1 Accepted Solution

Accepted Solutions

Jagdeep Gambhir
Level 10
Level 10

Yes, acs should work fine as per your need.

In ACS , we have a feature called NAP "network access profile" where in we can set the condition based on source ip or attributes that , let say if request comes from wireless device acs will forward that to AD and if request comes from VPN acs will forward to it diff Database.

Basically we would need to use two database in acs.

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.1/user/NAPs.html

Regards,

~JG

Do rate helpful posts

View solution in original post

2 Replies 2

Jagdeep Gambhir
Level 10
Level 10

Yes, acs should work fine as per your need.

In ACS , we have a feature called NAP "network access profile" where in we can set the condition based on source ip or attributes that , let say if request comes from wireless device acs will forward that to AD and if request comes from VPN acs will forward to it diff Database.

Basically we would need to use two database in acs.

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.1/user/NAPs.html

Regards,

~JG

Do rate helpful posts

Thanks for your advice. I will read about the link and rate your post.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: