Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

ACS 4.1, PIX 515, Active Directory

I have a Windows environment with a PIX 515E firewall. We have site-to-site VPNs as well as VPN clients.

I have just installed ACS 4.1 and would like to configure it to do vpn client authentication againt Active Directory.

Can someone please post a link to a doc which describes this? I have been looking all day!

Thanks in advance,

Paul

1 ACCEPTED SOLUTION

Accepted Solutions

Re: ACS 4.1, PIX 515, Active Directory

If you remove the

vpngroup authentication-server

from the PIX it should then use local username/passwd.

4 REPLIES

Re: ACS 4.1, PIX 515, Active Directory

Community Member

Re: ACS 4.1, PIX 515, Active Directory

Thanks for the response. I actually figured this out since I posted the question yesterday. However, now I have a new question. I already have a client VPN set up on the PIX (6.3, btw) and I don't want to affect the current setup. I found how to exclude xauth from site-to-site VPNs, but is there any way that you can exclude current vpngroups from xauth?

thanks,

Paul

Re: ACS 4.1, PIX 515, Active Directory

If you remove the

vpngroup authentication-server

from the PIX it should then use local username/passwd.

Community Member

Re: ACS 4.1, PIX 515, Active Directory

Very good!

Thanks,

Paul

144
Views
0
Helpful
4
Replies
CreatePlease to create content