<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPNc 3005 version 4.7.2 and ACS 4.1 authentication question in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828937#M386765</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;David&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have looked for a way in the VPN concentrator to authenticate with ACS and to have a fall back to local if ACS was not available. While the implementation of authenticate with ACS and fall back to local when ACS is not available is common in IOS I have not found a way to do it with the VPN concentrator. I do not believe that this capability exists in the VPN concentrator.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 15 Jan 2008 16:35:41 GMT</pubDate>
    <dc:creator>Richard Burts</dc:creator>
    <dc:date>2008-01-15T16:35:41Z</dc:date>
    <item>
      <title>VPNc 3005 version 4.7.2 and ACS 4.1 authentication question</title>
      <link>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828935#M386763</link>
      <description>&lt;P&gt;I want to use ACS for managing the VPN&lt;/P&gt;&lt;P&gt;concentrator 3005.  Right now I can &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="https://VPNc_ip_address" target="_blank"&gt;https://VPNc_ip_address&lt;/A&gt; into the concentrator using accounts I created on&lt;/P&gt;&lt;P&gt;the ACS.  I want to configure the vpn3k&lt;/P&gt;&lt;P&gt;to fall back to local authentication if&lt;/P&gt;&lt;P&gt;the ACS become unreachable.  Is it &lt;/P&gt;&lt;P&gt;possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2nd part of the question is that the&lt;/P&gt;&lt;P&gt;VPNc console does not accept ACS &lt;/P&gt;&lt;P&gt;accounts?  It only takes "admin" account.&lt;/P&gt;&lt;P&gt;How do I go about doing the same thing&lt;/P&gt;&lt;P&gt;when logging into the console port of &lt;/P&gt;&lt;P&gt;the VPNc and force it to take AAA account?  If AAA server is not available,&lt;/P&gt;&lt;P&gt;it will fall back to "admin"  account.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:35:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828935#M386763</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2019-03-10T22:35:58Z</dc:date>
    </item>
    <item>
      <title>Re: VPNc 3005 version 4.7.2 and ACS 4.1 authentication question</title>
      <link>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828936#M386764</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am going to modify the 2n part of the question a little bit.  Right now the vpnc&lt;/P&gt;&lt;P&gt;console takes botht the AAA accounts and&lt;/P&gt;&lt;P&gt;the "admin" account.  I want the vpnc NOT&lt;/P&gt;&lt;P&gt;to use the "admin" when AAA is available.  &lt;/P&gt;&lt;P&gt;Only use the "admin" account when AAA becomes&lt;/P&gt;&lt;P&gt;unavailable.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 12 Jan 2008 13:59:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828936#M386764</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-01-12T13:59:45Z</dc:date>
    </item>
    <item>
      <title>Re: VPNc 3005 version 4.7.2 and ACS 4.1 authentication question</title>
      <link>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828937#M386765</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;David&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have looked for a way in the VPN concentrator to authenticate with ACS and to have a fall back to local if ACS was not available. While the implementation of authenticate with ACS and fall back to local when ACS is not available is common in IOS I have not found a way to do it with the VPN concentrator. I do not believe that this capability exists in the VPN concentrator.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jan 2008 16:35:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828937#M386765</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2008-01-15T16:35:41Z</dc:date>
    </item>
    <item>
      <title>Re: VPNc 3005 version 4.7.2 and ACS 4.1 authentication question</title>
      <link>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828938#M386766</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Rick,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically, I am screwed if the ACS becomes &lt;/P&gt;&lt;P&gt;unavailable.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What about console authentication?  currently,&lt;/P&gt;&lt;P&gt;I can log into the VPN3k with both the "admin"&lt;/P&gt;&lt;P&gt;and accounts on the ACS server even when&lt;/P&gt;&lt;P&gt;the ACS is available?  Is it another bug in &lt;/P&gt;&lt;P&gt;the vpn3k?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CCIE security&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jan 2008 17:09:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/vpnc-3005-version-4-7-2-and-acs-4-1-authentication-question/m-p/828938#M386766</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-01-15T17:09:58Z</dc:date>
    </item>
  </channel>
</rss>

