<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco PIX Local Http Authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-pix-local-http-authentication/m-p/230912#M434610</link>
    <description>&lt;P&gt;Hello group,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We currently have a PIX 501 to PIX 501 vpn between two offices.  We&lt;/P&gt;&lt;P&gt;have an AS400 at the main site.  At both locations we would like the&lt;/P&gt;&lt;P&gt;users to authenticate to the PIX locally for internet access.  I&lt;/P&gt;&lt;P&gt;understand that the PIX allows for telnet, ftp and http authentication&lt;/P&gt;&lt;P&gt;locally but will the users have to authenticate against the PIX for&lt;/P&gt;&lt;P&gt;other traffic being passed by the AS400 or other systems on the two&lt;/P&gt;&lt;P&gt;networks via the VPN.  Meaning we only want the user to have to&lt;/P&gt;&lt;P&gt;authenticate to the PIX for internet access only and not have to&lt;/P&gt;&lt;P&gt;authenticate against the PIX for normal traffic between the two sites.&lt;/P&gt;&lt;P&gt; This traffic should be allowed to flow freely without a user name and&lt;/P&gt;&lt;P&gt;password.  I have read the documentation on this but am unsure if this&lt;/P&gt;&lt;P&gt;is allowed.  ** At both sites internet access routes directly out it&lt;/P&gt;&lt;P&gt;does not tunnel through the VPN.  We do not have a radius or tacacs server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks as always,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Joe&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 14:44:26 GMT</pubDate>
    <dc:creator>joe.sallmann</dc:creator>
    <dc:date>2019-03-10T14:44:26Z</dc:date>
    <item>
      <title>Cisco PIX Local Http Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-pix-local-http-authentication/m-p/230912#M434610</link>
      <description>&lt;P&gt;Hello group,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We currently have a PIX 501 to PIX 501 vpn between two offices.  We&lt;/P&gt;&lt;P&gt;have an AS400 at the main site.  At both locations we would like the&lt;/P&gt;&lt;P&gt;users to authenticate to the PIX locally for internet access.  I&lt;/P&gt;&lt;P&gt;understand that the PIX allows for telnet, ftp and http authentication&lt;/P&gt;&lt;P&gt;locally but will the users have to authenticate against the PIX for&lt;/P&gt;&lt;P&gt;other traffic being passed by the AS400 or other systems on the two&lt;/P&gt;&lt;P&gt;networks via the VPN.  Meaning we only want the user to have to&lt;/P&gt;&lt;P&gt;authenticate to the PIX for internet access only and not have to&lt;/P&gt;&lt;P&gt;authenticate against the PIX for normal traffic between the two sites.&lt;/P&gt;&lt;P&gt; This traffic should be allowed to flow freely without a user name and&lt;/P&gt;&lt;P&gt;password.  I have read the documentation on this but am unsure if this&lt;/P&gt;&lt;P&gt;is allowed.  ** At both sites internet access routes directly out it&lt;/P&gt;&lt;P&gt;does not tunnel through the VPN.  We do not have a radius or tacacs server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks as always,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Joe&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 14:44:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-pix-local-http-authentication/m-p/230912#M434610</guid>
      <dc:creator>joe.sallmann</dc:creator>
      <dc:date>2019-03-10T14:44:26Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco PIX Local Http Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-pix-local-http-authentication/m-p/230913#M434611</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The PIX only authenticates HTTP traffic if you tell it to authenticate it. All other traffic, including FTP and telnet will not be authenticated unless you configure it.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2004 03:52:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-pix-local-http-authentication/m-p/230913#M434611</guid>
      <dc:creator>rmorrow</dc:creator>
      <dc:date>2004-04-04T03:52:33Z</dc:date>
    </item>
  </channel>
</rss>

