<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ACS Proxy Distribution Table - Logs ? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119206#M374494</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The starting point for enabling and configuring service logs is the Service Control page, which you access by choosing System Configuration &amp;gt; Service Control. The starting point for enabling and configuring all other logs and loggers is the Logging Configuration page, which you access by choosing System Configuration &amp;gt; Logging. The Logging Configuration page also displays which ACS logs are currently enabled. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 29 Oct 2008 19:43:39 GMT</pubDate>
    <dc:creator>smahbub</dc:creator>
    <dc:date>2008-10-29T19:43:39Z</dc:date>
    <item>
      <title>ACS Proxy Distribution Table - Logs ?</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119205#M374484</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have setup a proxy distribution table in my Cisco ACS v4.2 (patch 6).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have two type of users: Suppliers (external) and TI user (internal). They connect to our Internal Network by a VPN SSL connection (AEP Netilla box).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This box have 2 realms. One for suppliers, another for TI users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The aim is that:&lt;/P&gt;&lt;P&gt;* For the suppliers connect trought the Netilla box which forwards the authentication (RADIUS Authentication) to the ACS which forwards the request to an RSA server.&lt;/P&gt;&lt;P&gt;* For TI User, they connect trought the Netilla Box which forwards the request (RADIUS Authentication) to the ACS which check the Active Directory.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;=&amp;gt; It's working perfectly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The problem is that I have no logs from the ACS box about the suppliers which are forwarded to the RSA server. If possible, I want to know which users try to connect, if they are permit (or not) and eventually how many times they are connected.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The problem is the Netilla box doesn't have Radius Accouting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was hoping that the ACS logs these kinds of connections. (It's working for users, TI users, authenticated by the Active Directory).&lt;/P&gt;&lt;P&gt;Is-it possible that the ACS forwards only the request without taking attention of what it is forwared (except remove the Character String).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there another way to do what I'm talking about ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See my VISIO attachement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance for your attention,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 23:08:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119205#M374484</guid>
      <dc:creator>glemaire</dc:creator>
      <dc:date>2019-03-10T23:08:50Z</dc:date>
    </item>
    <item>
      <title>Re: ACS Proxy Distribution Table - Logs ?</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119206#M374494</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The starting point for enabling and configuring service logs is the Service Control page, which you access by choosing System Configuration &amp;gt; Service Control. The starting point for enabling and configuring all other logs and loggers is the Logging Configuration page, which you access by choosing System Configuration &amp;gt; Logging. The Logging Configuration page also displays which ACS logs are currently enabled. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 29 Oct 2008 19:43:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119206#M374494</guid>
      <dc:creator>smahbub</dc:creator>
      <dc:date>2008-10-29T19:43:39Z</dc:date>
    </item>
    <item>
      <title>Re: ACS Proxy Distribution Table - Logs ?</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119207#M374507</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I really hate draggin up old posts, but I have the same exact question.&amp;nbsp; In my scenario, I am proxying requests for eduroam (basically any user name that ends in .uk, .com, .ca or any other country suffix) off to our national server(s).&amp;nbsp; I would like to know if/when these requests get proxied over.&amp;nbsp; smahbub's suggestion only directs where to find the settings for loggin.&amp;nbsp; I have these enabled, but cannot seem to locate any setting that applies to the proxy distribution table.&amp;nbsp; If anyone has any idea, it would be greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 May 2010 18:14:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-proxy-distribution-table-logs/m-p/1119207#M374507</guid>
      <dc:creator>Patrick Knee</dc:creator>
      <dc:date>2010-05-17T18:14:48Z</dc:date>
    </item>
  </channel>
</rss>

