<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS as proxy radius and class 25 attribute in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-as-proxy-radius-and-class-25-attribute/m-p/424436#M428915</link>
    <description>&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello !&lt;/P&gt;&lt;P&gt;Could you please help ? &lt;/P&gt;&lt;P&gt;we have cisco3640 as nas, cs acs 2.6 as radius-server.&lt;/P&gt;&lt;P&gt;Now we would need to &lt;/P&gt;&lt;P&gt;forward authentication request to another radius-server ( username is unknown to the acs) &lt;/P&gt;&lt;P&gt;Username is provided with a certain prefix and according to that prefix, request is forwarded to another radius-server. &lt;/P&gt;&lt;P&gt;That another server should give back accept/deny and class attribute 25.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here comes the question&lt;/P&gt;&lt;P&gt;Can acs 2.6 take the class attribute and use it as username's group-information ?.&lt;/P&gt;&lt;P&gt;for example class attribute  25 named test is forwarded to acs and acs has a group named test. According to group test ACS gives ip/dns information back to to cisco3640 and ras-client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or could you please tell me how we could forward username authentication and then bind username that is not known to acs to a certain acs group ?&lt;/P&gt;&lt;P&gt;The ip/dns information must be provided by acs.&lt;/P&gt;&lt;P&gt;Any help will be appreciated !&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Susanna&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 21:12:30 GMT</pubDate>
    <dc:creator>kuismsu</dc:creator>
    <dc:date>2019-03-10T21:12:30Z</dc:date>
    <item>
      <title>ACS as proxy radius and class 25 attribute</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-as-proxy-radius-and-class-25-attribute/m-p/424436#M428915</link>
      <description>&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello !&lt;/P&gt;&lt;P&gt;Could you please help ? &lt;/P&gt;&lt;P&gt;we have cisco3640 as nas, cs acs 2.6 as radius-server.&lt;/P&gt;&lt;P&gt;Now we would need to &lt;/P&gt;&lt;P&gt;forward authentication request to another radius-server ( username is unknown to the acs) &lt;/P&gt;&lt;P&gt;Username is provided with a certain prefix and according to that prefix, request is forwarded to another radius-server. &lt;/P&gt;&lt;P&gt;That another server should give back accept/deny and class attribute 25.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here comes the question&lt;/P&gt;&lt;P&gt;Can acs 2.6 take the class attribute and use it as username's group-information ?.&lt;/P&gt;&lt;P&gt;for example class attribute  25 named test is forwarded to acs and acs has a group named test. According to group test ACS gives ip/dns information back to to cisco3640 and ras-client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or could you please tell me how we could forward username authentication and then bind username that is not known to acs to a certain acs group ?&lt;/P&gt;&lt;P&gt;The ip/dns information must be provided by acs.&lt;/P&gt;&lt;P&gt;Any help will be appreciated !&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Susanna&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:12:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-as-proxy-radius-and-class-25-attribute/m-p/424436#M428915</guid>
      <dc:creator>kuismsu</dc:creator>
      <dc:date>2019-03-10T21:12:30Z</dc:date>
    </item>
    <item>
      <title>Re: ACS as proxy radius and class 25 attribute</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-as-proxy-radius-and-class-25-attribute/m-p/424437#M428917</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As far as I know, ACS 2.6 cannot take the class attribute and use it as username's group-information....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Jul 2005 18:20:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-as-proxy-radius-and-class-25-attribute/m-p/424437#M428917</guid>
      <dc:creator>umedryk</dc:creator>
      <dc:date>2005-07-06T18:20:15Z</dc:date>
    </item>
  </channel>
</rss>

