I have a VPN3030 and a Cisco ACS 4.1 SE. I'm using WebVPN and want the URLs displayed to the remote access user to be dependent on the group w/in ACS. I created four external groups w/in the VPN3k and the URLs under each group. I also created the groups in ACS and the users w/in those groups. I tried adding âOU=groupname;â for IETF attribute #25, when I do that, the user authentication fails and in ACS I see the failure and a passed authentication. If I disable attribute 25 or disable authorization, I can authenticate but only get what's defined in the base group. What am I missing?
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...