Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

Web-auth using ASA and ACS 5.1

In order to restrict access to websites on our internal network, would we be able to put an ASA in front of the web server and force users to authenticate through the ASA and, once authenticated, allow only port 80 or 443 traffic for that use?  The ASA would query the ACS 5.1 server for authentication/authorization using AD as the identity store.  Is this even possible with TACACS? 

1 REPLY
Silver

Web-auth using ASA and ACS 5.1

Hello,

You might want to look for "Cut through proxy" on Cisco.com. That feature would allow you to accomplish the described scenario! Also, you might want to use RADIUS instead of TACACS+.

Regards.

454
Views
0
Helpful
1
Replies
CreatePlease to create content