<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PPP Authentication Local and External in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129045#M438235</link>
    <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If possible, I have a router configured to authenticate all incomming dialin users to authenticate against an RSA Server running SecureID, this is working fine. What I want to do is have one user authenticate against the local database, so can I have some users authenticate with an external database and others with the local database. Or is either one or the other.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advanced..&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 14:14:15 GMT</pubDate>
    <dc:creator>bobo23</dc:creator>
    <dc:date>2019-03-10T14:14:15Z</dc:date>
    <item>
      <title>PPP Authentication Local and External</title>
      <link>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129045#M438235</link>
      <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If possible, I have a router configured to authenticate all incomming dialin users to authenticate against an RSA Server running SecureID, this is working fine. What I want to do is have one user authenticate against the local database, so can I have some users authenticate with an external database and others with the local database. Or is either one or the other.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advanced..&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 14:14:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129045#M438235</guid>
      <dc:creator>bobo23</dc:creator>
      <dc:date>2019-03-10T14:14:15Z</dc:date>
    </item>
    <item>
      <title>Re: PPP Authentication Local and External</title>
      <link>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129046#M438236</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes you can do that, 2 options:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1/ Make a new group and place the user in the this group. The user can authenticate against the local database. The other users are authenticate against the RSA database.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2/ If all users are in the same group than the user properties can be changed for that user. Select for that user to authenticate against the local database. &lt;/P&gt;&lt;P&gt;If the user makes a connection the router send it to the ACS server and the server check the properties of the user. For this user it has to ask it's local database.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I always use this for testing. I create a user for testing (authenticate against the RSA database) and one user for local database. Now I can see if my router is configurred correctly and were the problem exsists if I can't loggin.&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 Apr 2003 13:04:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129046#M438236</guid>
      <dc:creator>r.vanwolferen</dc:creator>
      <dc:date>2003-04-03T13:04:16Z</dc:date>
    </item>
    <item>
      <title>Re: PPP Authentication Local and External</title>
      <link>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129047#M438237</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for that reply, but its not exactly what Im looking for. What I think that you are suggestion is that I create another group within the ACS Server and authenticate them on the local database.&lt;/P&gt;&lt;P&gt; What I want to do is authenticate them against the local router database (Have the router authenticate them against locally configured usernames and passwords) only one user and have the rest sent of for Radius Authentication.&lt;/P&gt;&lt;P&gt;So if I dial in as user A I get authenticated locally, and if I dial in as user B I get authenticated against Radius.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Derek&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Apr 2003 20:23:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129047#M438237</guid>
      <dc:creator>bobo23</dc:creator>
      <dc:date>2003-04-07T20:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: PPP Authentication Local and External</title>
      <link>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129048#M438238</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No you can't do this.  You can have the local database as a backup for the Radius database in case Radius is not available, but there's no way to say that user x is local whereas users y and z are on the Radius server.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 08 Apr 2003 04:11:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ppp-authentication-local-and-external/m-p/129048#M438238</guid>
      <dc:creator>gfullage</dc:creator>
      <dc:date>2003-04-08T04:11:06Z</dc:date>
    </item>
  </channel>
</rss>

