<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RADIUS authentication for VPN users in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768662#M2467</link>
    <description>&lt;P&gt;I'm trying to authenticate users on our VPN concentrator to use our Windows 2003 IAS RADIUS server but am having no luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I goto Configuration &amp;gt; system &amp;gt; servers &amp;gt; authentication and test my Active Directory account it fails.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am sure i have configured my IAS RADIUS server correctly, can anyone guide or help via this post or email?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;let me know what info you need posted and  I'll get straight back to you, I'm sure this can be done?&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 18:18:38 GMT</pubDate>
    <dc:creator>whiteford</dc:creator>
    <dc:date>2020-02-21T18:18:38Z</dc:date>
    <item>
      <title>RADIUS authentication for VPN users</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768662#M2467</link>
      <description>&lt;P&gt;I'm trying to authenticate users on our VPN concentrator to use our Windows 2003 IAS RADIUS server but am having no luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I goto Configuration &amp;gt; system &amp;gt; servers &amp;gt; authentication and test my Active Directory account it fails.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am sure i have configured my IAS RADIUS server correctly, can anyone guide or help via this post or email?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;let me know what info you need posted and  I'll get straight back to you, I'm sure this can be done?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:18:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768662#M2467</guid>
      <dc:creator>whiteford</dc:creator>
      <dc:date>2020-02-21T18:18:38Z</dc:date>
    </item>
    <item>
      <title>Re: RADIUS authentication for VPN users</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768663#M2468</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Whiteford, r u using ASDM, somewhere somehow the authentication will fail if you are using the Test button key , make sure&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you add the domain with the username when you are testing&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username@domain&lt;/P&gt;&lt;P&gt;password&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;give it a try &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;of &lt;/P&gt;&lt;P&gt;DOMAIN\user&lt;/P&gt;&lt;P&gt;password&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jul 2007 15:44:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768663#M2468</guid>
      <dc:creator>r.docuyanan</dc:creator>
      <dc:date>2007-07-11T15:44:27Z</dc:date>
    </item>
    <item>
      <title>Re: RADIUS authentication for VPN users</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768664#M2469</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Still no luck the test button still fails, is there a tool I can test RADIUS with?  ADSM?  I only use that for a PIX not a concentrator.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What info can I give you, or can you give me?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just want to allow a certain Active Directory security group VPN access via ISA RADIUS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope you can help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jul 2007 18:13:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768664#M2469</guid>
      <dc:creator>whiteford</dc:creator>
      <dc:date>2007-07-11T18:13:31Z</dc:date>
    </item>
    <item>
      <title>Re: RADIUS authentication for VPN users</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768665#M2470</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here's how i set it up (PIX and ASA):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Windows 2003 Ent. IAS&lt;/P&gt;&lt;P&gt;Radius Clients:&lt;/P&gt;&lt;P&gt; Address: Internal IP Adress&lt;/P&gt;&lt;P&gt; Protocol: RADIUS&lt;/P&gt;&lt;P&gt; Type: RADIUS Standard&lt;/P&gt;&lt;P&gt; Request must contain ... attribute: disabled&lt;/P&gt;&lt;P&gt; Shared Secret: examplekey&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remote Access Policies:&lt;/P&gt;&lt;P&gt; Name: VPN Device&lt;/P&gt;&lt;P&gt; Conditions: (all AND) &lt;/P&gt;&lt;P&gt;  Day-and-Time-Restrictions matches: full week&lt;/P&gt;&lt;P&gt;  Windows-Groups-Matches: &lt;DOMAIN&gt;&lt;/DOMAIN&gt;&lt;/P&gt;&lt;P&gt;  NAS-IP-Address matches: &lt;INSIDE ip="" vpn="" device=""&gt;&lt;/INSIDE&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX/ASA:&lt;/P&gt;&lt;P&gt;AAA Server Groups:&lt;/P&gt;&lt;P&gt; Server Group RADIUS:&lt;/P&gt;&lt;P&gt;  Server Name: &lt;IP address="" ias=""&gt;&lt;/IP&gt;&lt;/P&gt;&lt;P&gt;  Interface Name: Inside&lt;/P&gt;&lt;P&gt;  Timeout: 5 sec's&lt;/P&gt;&lt;P&gt;  Server Authentication Port: 1645&lt;/P&gt;&lt;P&gt;  Server accounting port: 1646&lt;/P&gt;&lt;P&gt;  Retry Interval: 10 sec's&lt;/P&gt;&lt;P&gt;  Server Secret Key: examplekey&lt;/P&gt;&lt;P&gt;  common password: &lt;BLANK&gt;&lt;/BLANK&gt;&lt;/P&gt;&lt;P&gt;  ACL Netmask Convert: Standard&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then when i select the Radius Server and click Test&amp;gt; Authentication i can successfully authenticate accounts which are member of the AD group specified for &lt;DOMAIN&gt;&lt;/DOMAIN&gt;&lt;/P&gt;&lt;P&gt;  &lt;/P&gt;&lt;P&gt;For diverse reasons i use 2 IAS servers on our network, but you have to keep them in sync manually.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind regards, hope it helps&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2007 08:39:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768665#M2470</guid>
      <dc:creator>j.vonk</dc:creator>
      <dc:date>2007-07-31T08:39:12Z</dc:date>
    </item>
    <item>
      <title>Re: RADIUS authentication for VPN users</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768666#M2471</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I use 2003 AD/IAS for both ASA SSL and PIX IPSec VPN Client remote access but I haven't tried VPN Concentrator.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One setting to remember when creating account in 2003 AD, in the Dial-In tab under Remote Access Dial-in [or VPN] select "Allow Access", by default this is "Deny Access".&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2007 12:41:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-for-vpn-users/m-p/768666#M2471</guid>
      <dc:creator>Danilo Dy</dc:creator>
      <dc:date>2007-07-31T12:41:38Z</dc:date>
    </item>
  </channel>
</rss>

