<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: &amp;quot;authentication proxy&amp;quot; from PIX inside interface????? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/quot-authentication-proxy-quot-from-pix-inside-interface/m-p/369585#M2961</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you are thinking in the right direction. you can use virtual telnet/http (auth proxy), but you have to use some radius server . you cant directly connect to active directory. you can configure the radius server to talk to active directory.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 03 Feb 2005 18:32:53 GMT</pubDate>
    <dc:creator>nkhawaja</dc:creator>
    <dc:date>2005-02-03T18:32:53Z</dc:date>
    <item>
      <title>"authentication proxy" from PIX inside interface?????</title>
      <link>https://community.cisco.com/t5/network-access-control/quot-authentication-proxy-quot-from-pix-inside-interface/m-p/369584#M2960</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have a customer with a Watchguard firewall.  They have an interesting feature in that they can http (or https) to the inside interface address on port 4100.  This throws a username/password applet back to the user.  When authenticated (done locally on the watchguard) they can browse the web.  This allows users to browse from any PC (so we don't have to worry about inside IP addresses) and bypass the websweeper http proxy.  This is a very useful facility for authenticated users given access to this service - i.e. bosses !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can I do anything similar to this on PIX515E?  I was thinking of the virtual telnet/http service.  Would it be possible to authenicate locally on the PIX? Could I also authenticate on a Windows Active directory instead of a Radius server?  This is advanced stuff for me at the moment sicen I am a newbie to PIX so forgive me if this question is a bit previous.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any suggestions or URL's&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Steve&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:12:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/quot-authentication-proxy-quot-from-pix-inside-interface/m-p/369584#M2960</guid>
      <dc:creator>kirkster</dc:creator>
      <dc:date>2020-02-21T18:12:11Z</dc:date>
    </item>
    <item>
      <title>Re: "authentication proxy" from PIX inside interface?????</title>
      <link>https://community.cisco.com/t5/network-access-control/quot-authentication-proxy-quot-from-pix-inside-interface/m-p/369585#M2961</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you are thinking in the right direction. you can use virtual telnet/http (auth proxy), but you have to use some radius server . you cant directly connect to active directory. you can configure the radius server to talk to active directory.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 Feb 2005 18:32:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/quot-authentication-proxy-quot-from-pix-inside-interface/m-p/369585#M2961</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2005-02-03T18:32:53Z</dc:date>
    </item>
  </channel>
</rss>

