<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ASA Missing Attribute in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-asa-missing-attribute/m-p/1461209#M308295</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Its not missing, it has been replaced with a different command---&amp;nbsp; IETF-Radius-Class&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ldap attribute-map CISCOMAP&lt;BR /&gt;&amp;nbsp; map-name&amp;nbsp; msNPAllowDialin cVPN3000-IETF-Radius-Class&lt;BR /&gt;&amp;nbsp; map-value msNPAllowDialin FALSE NOACCESS&lt;BR /&gt;&amp;nbsp; map-value msNPAllowDialin TRUE ALLOWACCESS&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mapping VPN Clients to VPN Group Policies Through LDAP Configuration Example&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149d.shtml#configs"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149d.shtml#configs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regds,&lt;/P&gt;&lt;P&gt;JK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate hekpful posts-&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 13 May 2010 00:09:15 GMT</pubDate>
    <dc:creator>Jatin Katyal</dc:creator>
    <dc:date>2010-05-13T00:09:15Z</dc:date>
    <item>
      <title>Cisco ASA Missing Attribute</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-asa-missing-attribute/m-p/1461208#M308283</link>
      <description>&lt;P&gt;I'm trying to set up my ASA so our SSL VPN users can authenticate against a microsoft AD server. From what I've read I need to map the AD attribute 'msNPAllowDialin' to the Cisco Attribute '&lt;EM&gt;CVPN3000&lt;/EM&gt;−Radius−IETF−Class', but my ASA doesn't seem to have that. Is there something I'm suppose to do first for this to show up? Here's what is available:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA(config-ldap-attribute-map)# map-name msNPAllowDialin ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ldap mode commands/options:&lt;/P&gt;&lt;P&gt;cisco-attribute-names:&lt;/P&gt;&lt;P&gt;&amp;nbsp; Access-Hours&lt;/P&gt;&lt;P&gt;&amp;nbsp; Allow-Network-Extension-Mode&lt;/P&gt;&lt;P&gt;&amp;nbsp; Auth-Service-Type&lt;/P&gt;&lt;P&gt;&amp;nbsp; Authenticated-User-Idle-Timeout&lt;/P&gt;&lt;P&gt;&amp;nbsp; Authorization-Required&lt;/P&gt;&lt;P&gt;&amp;nbsp; Authorization-Type&lt;/P&gt;&lt;P&gt;&amp;nbsp; Banner1&lt;/P&gt;&lt;P&gt;&amp;nbsp; Banner2&lt;/P&gt;&lt;P&gt;&amp;nbsp; Cisco-AV-Pair&lt;/P&gt;&lt;P&gt;&amp;nbsp; Cisco-IP-Phone-Bypass&lt;/P&gt;&lt;P&gt;&amp;nbsp; Cisco-LEAP-Bypass&lt;/P&gt;&lt;P&gt;&amp;nbsp; Client-Intercept-DHCP-Configure-Msg&lt;/P&gt;&lt;P&gt;&amp;nbsp; Client-Type-Version-Limiting&lt;/P&gt;&lt;P&gt;&amp;nbsp; Confidence-Interval&lt;/P&gt;&lt;P&gt;&amp;nbsp; DHCP-Network-Scope&lt;/P&gt;&lt;P&gt;&amp;nbsp; DN-Field&lt;/P&gt;&lt;P&gt;&amp;nbsp; Firewall-ACL-In&lt;/P&gt;&lt;P&gt;&amp;nbsp; Firewall-ACL-Out&lt;/P&gt;&lt;P&gt;&amp;nbsp; Group-Policy&lt;/P&gt;&lt;P&gt;&amp;nbsp; IE-Proxy-Bypass-Local&lt;/P&gt;&lt;P&gt;&amp;nbsp; IE-Proxy-Exception-List&lt;/P&gt;&lt;P&gt;&amp;nbsp; IE-Proxy-Method&lt;/P&gt;&lt;P&gt;&amp;nbsp; IE-Proxy-Server&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Class&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Filter-Id&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Framed-IP-Address&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Framed-IP-Netmask&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Idle-Timeout&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Service-Type&lt;/P&gt;&lt;P&gt;&amp;nbsp; IETF-Radius-Session-Timeout&lt;/P&gt;&lt;P&gt;&amp;nbsp; IKE-DPD-Retry-Interval&lt;/P&gt;&lt;P&gt;&amp;nbsp; IKE-Keep-Alives&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Allow-Passwd-Store&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Auth-On-Rekey&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Authentication&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Backup-Server-List&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Backup-Servers&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Client-Firewall-Filter-Name&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Client-Firewall-Filter-Optional&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSec-Default-Domain&lt;/P&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Extended-Auth-On-Rekey&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-IKE-Peer-ID-Check&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-IP-Compression&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Mode-Config&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Over-UDP&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Over-UDP-Port&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Required-Client-Firewall-Capability&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Split-DNS-Names&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Split-Tunnel-List&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Split-Tunneling-Policy&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-Tunnel-Type&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; IPSec-User-Group-Lock&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; L2TP-Encryption&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; L2TP-MPPC-Compression&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; MS-Client-Subnet-Mask&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; PFS-Required&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; PPTP-Encryption&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; PPTP-MPPC-Compression&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Primary-DNS&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Primary-WINS&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Privilege-Level&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Require-HW-Client-Auth&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Require-Individual-User-Auth&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Required-Client-Firewall-Description&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Required-Client-Firewall-Product-Code&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Required-Client-Firewall-Vendor-Code&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Secondary-DNS&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Secondary-WINS&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Simultaneous-Logins&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Strip-Realm&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; TACACS-Authtype&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; TACACS-Privilege-Level&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Tunnel-Group-Lock&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Tunneling-Protocols&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; Use-Client-Address&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; User-Auth-Server-Name&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; User-Auth-Server-Port&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; User-Auth-Server-Secret&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; VPN-Smartcard-Removal-Disconnect&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-ACL-Filters&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Apply-ACL-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Citrix-Support-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Content-Filter-Parameters&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Enable-Functions&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Exchange-NETBIOS-Name&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Exchange-Server-Address&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-File-Access-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-File-Server-Browsing-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-File-Server-Entry-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Forwarded-Ports&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Homepage&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Macro-Substitution-Value1&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Macro-Substitution-Value2&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Port-Forwarding-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Port-Forwarding-Exchange-Proxy-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Port-Forwarding-HTTP-Proxy-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Port-Forwarding-Name&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Client-DPD&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Compression&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Gateway-DPD&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Keep-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Keepalive&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Rekey-Method&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Rekey-Period&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-SVC-Required-Enable&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-Single-Sign-On-Server-Name&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; WebVPN-URL-Entry-Enable&lt;/DIV&gt;&lt;DIV&gt; &lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:08:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-asa-missing-attribute/m-p/1461208#M308283</guid>
      <dc:creator>houstonrob</dc:creator>
      <dc:date>2019-03-11T00:08:03Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA Missing Attribute</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-asa-missing-attribute/m-p/1461209#M308295</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Its not missing, it has been replaced with a different command---&amp;nbsp; IETF-Radius-Class&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ldap attribute-map CISCOMAP&lt;BR /&gt;&amp;nbsp; map-name&amp;nbsp; msNPAllowDialin cVPN3000-IETF-Radius-Class&lt;BR /&gt;&amp;nbsp; map-value msNPAllowDialin FALSE NOACCESS&lt;BR /&gt;&amp;nbsp; map-value msNPAllowDialin TRUE ALLOWACCESS&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mapping VPN Clients to VPN Group Policies Through LDAP Configuration Example&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149d.shtml#configs"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149d.shtml#configs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regds,&lt;/P&gt;&lt;P&gt;JK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate hekpful posts-&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 May 2010 00:09:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-asa-missing-attribute/m-p/1461209#M308295</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2010-05-13T00:09:15Z</dc:date>
    </item>
  </channel>
</rss>

