<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS5.1 and OTP in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685265#M233024</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks in Advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 04 Jul 2011 16:01:58 GMT</pubDate>
    <dc:creator>Si</dc:creator>
    <dc:date>2011-07-04T16:01:58Z</dc:date>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685264#M233023</link>
      <description>&lt;P&gt;Does anyone have a quick overview of how to setup how to communicate with ACS5.1 using an OTP server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want the user to&amp;nbsp; be authenicated in AD then send out the OTP if credentials are correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Si&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:08:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685264#M233023</guid>
      <dc:creator>Si</dc:creator>
      <dc:date>2019-03-11T01:08:54Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685265#M233024</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks in Advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Jul 2011 16:01:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685265#M233024</guid>
      <dc:creator>Si</dc:creator>
      <dc:date>2011-07-04T16:01:58Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685266#M233025</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What is your OTP server ? Does it act as a radius server ?&lt;/P&gt;&lt;P&gt;If so you can configure an external radius store in ACS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would then advise to configure an identity sequence in ACS that would check the OTP server for authetnication and then put AD in the "extra attribute retrieval store" to retrieve user groups and properties.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Jul 2011 06:50:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685266#M233025</guid>
      <dc:creator>Nicolas Darchis</dc:creator>
      <dc:date>2011-07-05T06:50:20Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685267#M233026</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the OTP is the Nordic Edge Server, which i believe is radius. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think im just struggling to put the Access Service and Rule selection together properly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;S&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Jul 2011 07:09:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685267#M233026</guid>
      <dc:creator>Si</dc:creator>
      <dc:date>2011-07-05T07:09:50Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685268#M233027</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What you want to achieve changes nothing to the access service and rule selection.&lt;/P&gt;&lt;P&gt;Just create an identity store sequence that authenticates against OTP but fetches the attributes found in AD.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Jul 2011 07:16:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685268#M233027</guid>
      <dc:creator>Nicolas Darchis</dc:creator>
      <dc:date>2011-07-05T07:16:27Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685269#M233028</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is it possible to check the AD first then check the OTP if in that group?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At the minute the OTP will get sent to anyone, then get denied by the AD afterwards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;S&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 12:58:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685269#M233028</guid>
      <dc:creator>Si</dc:creator>
      <dc:date>2011-07-07T12:58:46Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685270#M233029</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is an authenticating server and an attribute retrieval server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can't retrieve AD attributes first because the guy is not authenticated yet.&lt;/P&gt;&lt;P&gt;And you can't store attributes on the OTP server either right ?&lt;/P&gt;&lt;P&gt;The problem is that your password is on OTP only so it's OTP authenticating and not AD, so OTP has to be first.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 13:09:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685270#M233029</guid>
      <dc:creator>Nicolas Darchis</dc:creator>
      <dc:date>2011-07-07T13:09:24Z</dc:date>
    </item>
    <item>
      <title>ACS5.1 and OTP</title>
      <link>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685271#M233030</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;OK thanks for clearing that up. We'd like to stop the OTP being sent out to invalid users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;S&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Jul 2011 14:49:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs5-1-and-otp/m-p/1685271#M233030</guid>
      <dc:creator>Si</dc:creator>
      <dc:date>2011-07-07T14:49:50Z</dc:date>
    </item>
  </channel>
</rss>

