<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: downloadable ACL in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001064#M406906</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you help me ..&lt;/P&gt;&lt;P&gt;I got the same matter, but downloadable ACL doesn't work.&lt;/P&gt;&lt;P&gt;My current device : Router 2691(c2691-advsecurityk9-mz.124-9.T5), ACS 4.2, VPN client 4.6.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;P&gt;*aw&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 30 Jan 2009 04:05:26 GMT</pubDate>
    <dc:creator>ariantow123</dc:creator>
    <dc:date>2009-01-30T04:05:26Z</dc:date>
    <item>
      <title>downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001057#M406891</link>
      <description>&lt;P&gt;I m trying to configure download able acl in ACS for my remote access vpn user.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My concentrator is able to authenticate the user via ACS but after getting the ip and authentication client is not able to reach anywhere.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached the downloadable acl configuration that i did on ACS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want remote vpn user only able to access 172.28.31.171, 170 server nothing else.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but client only able to connect but cant connect with any of the servers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:53:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001057#M406891</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2019-03-10T22:53:30Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001058#M406893</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Wasim,&lt;/P&gt;&lt;P&gt;I would suggest you to push the Downloadable ACL's via another method. For this you need to configure the attribute 009\001]cisco-av-pair, on the ACS Server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Following link talks about how to configure this attribute on the ACS server, to push the required  ACL's.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_administration_guide_chapter09186a008015ce39.html#2006410" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_administration_guide_chapter09186a008015ce39.html#2006410&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate helpful posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2008 15:34:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001058#M406893</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-06-05T15:34:21Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001059#M406897</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the reply, but now it is working for me via downloadable access-list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;same configuration that i attached is now working fine for me. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2008 22:02:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001059#M406897</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-06-05T22:02:02Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001060#M406900</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am able to configure the downloadable acl for remote access vpn user. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;permit ip any host 172.28.65.24&lt;/P&gt;&lt;P&gt;permit ip any host 172.28.65.25&lt;/P&gt;&lt;P&gt;deny ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but when i try to restrict whole network like this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;permit ip any 172.28.65.0 255.255.255.0&lt;/P&gt;&lt;P&gt;permit ip any 172.28.70.0 255.255.255.0&lt;/P&gt;&lt;P&gt;deny ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not able to get the results, even user is not able to connect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have tried to do the configuration mention in the link, but this is for firewall and IOS not for concentrator.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_administration_guide_chapter09186a008015ce39.html#2006410" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_administration_guide_chapter09186a008015ce39.html#2006410&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please tell me how to allow user to access particular subnet.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2008 12:37:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001060#M406900</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-06-09T12:37:00Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001061#M406902</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;problem solved actually i was using subnet mask in the access-list but infact it required wild card mask. now it is working fine. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2008 12:50:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001061#M406902</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-06-09T12:50:08Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001062#M406904</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Great.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the update&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2008 12:51:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001062#M406904</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-06-09T12:51:47Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001063#M406905</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;problem solved, i was using subnet mask, but it required wild card mask.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2008 13:04:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001063#M406905</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-06-09T13:04:25Z</dc:date>
    </item>
    <item>
      <title>Re: downloadable ACL</title>
      <link>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001064#M406906</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you help me ..&lt;/P&gt;&lt;P&gt;I got the same matter, but downloadable ACL doesn't work.&lt;/P&gt;&lt;P&gt;My current device : Router 2691(c2691-advsecurityk9-mz.124-9.T5), ACS 4.2, VPN client 4.6.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;P&gt;*aw&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jan 2009 04:05:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/downloadable-acl/m-p/1001064#M406906</guid>
      <dc:creator>ariantow123</dc:creator>
      <dc:date>2009-01-30T04:05:26Z</dc:date>
    </item>
  </channel>
</rss>

