<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS IP Pools in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617510#M422514</link>
    <description>&lt;P&gt;What I am trying to configure is a way to have 4 groups that get assigned different IP addressing when they authenicate against windows domain.  Should this be done with the domain group mappings configuration, where I have a domain group, tie this to a ACS group, which then is tied to a IP Pool.&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 21:49:47 GMT</pubDate>
    <dc:creator>rschwendeman</dc:creator>
    <dc:date>2019-03-10T21:49:47Z</dc:date>
    <item>
      <title>ACS IP Pools</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617510#M422514</link>
      <description>&lt;P&gt;What I am trying to configure is a way to have 4 groups that get assigned different IP addressing when they authenicate against windows domain.  Should this be done with the domain group mappings configuration, where I have a domain group, tie this to a ACS group, which then is tied to a IP Pool.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:49:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617510#M422514</guid>
      <dc:creator>rschwendeman</dc:creator>
      <dc:date>2019-03-10T21:49:47Z</dc:date>
    </item>
    <item>
      <title>Re: ACS IP Pools</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617511#M422515</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is currently not possible to make use of any AD attributes from the authentication response and associate to groups dynamically to categorize users and assign ip addresses based on the groups.Alternately When ACS passes the authentication request, it is passed to AD and AD responds. When AD responds, the user information is cashed in ACS. And on ACS, based on the userid, a specific IP address can be assigned to distinguish different users and there by enabling network access controls on firewalls or routers for those IP addresses (in turn users).Advantage of this method is that there is no need to change the user profile information on clients. But the downside is that, whenever a user is added, ACS needs to be manually configured with an IP address for each user and also the user has to try first time login before the user is cashed and be configured with an IP address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Nov 2006 15:25:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617511#M422515</guid>
      <dc:creator>pradeepde</dc:creator>
      <dc:date>2006-11-13T15:25:25Z</dc:date>
    </item>
    <item>
      <title>Re: ACS IP Pools</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617512#M422516</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think this is possible using ACS version 4.0. You can use the NAP/NAF/RAC feature in ACS . For more details check the ACS 4.0 documentation. Below are the links .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For RAC:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs40/user/c.htm#wp707665" target="_blank"&gt;http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs40/user/c.htm#wp707665&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For NAF:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs40/user/c.htm#wp696532" target="_blank"&gt;http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs40/user/c.htm#wp696532&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For NAP:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs40/user/sp.htm" target="_blank"&gt;http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs40/user/sp.htm&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Nov 2006 19:51:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-ip-pools/m-p/617512#M422516</guid>
      <dc:creator>jasjsingh</dc:creator>
      <dc:date>2006-11-13T19:51:14Z</dc:date>
    </item>
  </channel>
</rss>

