<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ACS with RSA ACE (Callback) in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40624#M438625</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You have to instruct the router to only authenticate on dialin and not on dialout with the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ppp authentication pap callin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, you have to mak e sure that you use PAP (instead of the default CHAP) when authenticating with RSA tokens. Hope this helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;VS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 13 Jan 2003 13:48:53 GMT</pubDate>
    <dc:creator>vsanavia</dc:creator>
    <dc:date>2003-01-13T13:48:53Z</dc:date>
    <item>
      <title>Cisco ACS with RSA ACE (Callback)</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40621#M438620</link>
      <description>&lt;P&gt;Hi !&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using a Cisco ACS box combined with RSA ACE. Authentification is successful for the first time. But the router issues a callback and wants to authenticate twice. On the second attempt the tokencode is no longer valid - and callback is not successful because of the failure : RE-USE ATTACK &lt;/P&gt;&lt;P&gt;on the RSA ACE Server.&lt;/P&gt;&lt;P&gt;Why do I need a second authentification ? The call is successfully authenticated on the first time - why is there a second authentication needed ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thx Hans&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 14:03:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40621#M438620</guid>
      <dc:creator>schimekh</dc:creator>
      <dc:date>2019-03-10T14:03:43Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ACS with RSA ACE (Callback)</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40622#M438621</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You may need to configure Token Caching as shown here:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/129/25.html" target="_blank"&gt;http://www.cisco.com/warp/public/129/25.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/129/26.html#intro" target="_blank"&gt;http://www.cisco.com/warp/public/129/26.html#intro&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You may also want to ask your RSA people if a similar feature is avalable in the ACE Server.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Sep 2002 16:17:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40622#M438621</guid>
      <dc:creator>lisa.hall</dc:creator>
      <dc:date>2002-09-27T16:17:34Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ACS with RSA ACE (Callback)</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40623#M438623</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;we are having the same problem you are describing .I see that your case is from september, did you solve it and how&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;guy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Jan 2003 11:49:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40623#M438623</guid>
      <dc:creator>guy.alexander</dc:creator>
      <dc:date>2003-01-06T11:49:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ACS with RSA ACE (Callback)</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40624#M438625</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You have to instruct the router to only authenticate on dialin and not on dialout with the following command:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ppp authentication pap callin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, you have to mak e sure that you use PAP (instead of the default CHAP) when authenticating with RSA tokens. Hope this helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;VS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Jan 2003 13:48:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-with-rsa-ace-callback/m-p/40624#M438625</guid>
      <dc:creator>vsanavia</dc:creator>
      <dc:date>2003-01-13T13:48:53Z</dc:date>
    </item>
  </channel>
</rss>

