<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: WebVPN using External Authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701267#M5652</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the Base Group add the external server type (SDI, radius, NT) under IPSEC -&amp;gt; Authentication&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The server IP will be declared on Configuration -&amp;gt; Servers -&amp;gt; Authentication&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if this helped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Daniel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 09 Jan 2007 20:31:54 GMT</pubDate>
    <dc:creator>5220</dc:creator>
    <dc:date>2007-01-09T20:31:54Z</dc:date>
    <item>
      <title>WebVPN using External Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701265#M5650</link>
      <description>&lt;P&gt;I have a VPN concentrator 3005 that is configured for WebVPN which works great if I login with a local user. &lt;/P&gt;&lt;P&gt;I would like to authenticate my users through our LDAP. I created a SSLusers group that is setup for external authentication. The SSLusers group works fine when I use the Cisco VPN client to connect (I enter the group name/password in the text boxes, when it connects it asks for the username/password).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the logs it shows that it is checking for the user in the Internal server, I want to point it to my ACS box. I feel like there is a check box somewhere that I am missing that tells the concentrator 'if I can't find the user in my local database, check the external authentication server'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any advice on how to get the external authentication working with the WebVPN would be most appreciated. Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:17:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701265#M5650</guid>
      <dc:creator>dbobeldyk</dc:creator>
      <dc:date>2020-02-21T18:17:31Z</dc:date>
    </item>
    <item>
      <title>Re: WebVPN using External Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701266#M5651</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think I found it and seem to be on the right path now. Under System-&amp;gt;General-&amp;gt;Authentication you can specify group lookup. I'll post more once I have it completely working. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Jan 2007 15:53:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701266#M5651</guid>
      <dc:creator>dbobeldyk</dc:creator>
      <dc:date>2007-01-09T15:53:31Z</dc:date>
    </item>
    <item>
      <title>Re: WebVPN using External Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701267#M5652</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the Base Group add the external server type (SDI, radius, NT) under IPSEC -&amp;gt; Authentication&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The server IP will be declared on Configuration -&amp;gt; Servers -&amp;gt; Authentication&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if this helped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Daniel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Jan 2007 20:31:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701267#M5652</guid>
      <dc:creator>5220</dc:creator>
      <dc:date>2007-01-09T20:31:54Z</dc:date>
    </item>
    <item>
      <title>Re: WebVPN using External Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701268#M5653</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Daniel for the suggestion. I tried to add the above, but still received the same error. Is there an additional checkbox that needs to be marked for the base group to search the radius server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Authentication rejected: Reason = User was not found&lt;/P&gt;&lt;P&gt;handle = 686, server = Internal, user = bobeldde, domain = &lt;NOT specified=""&gt;&lt;/NOT&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It appears to work ok if I login with 'bobeldde#ssl';where the ssl group is configured for Radius Authentication.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Jan 2007 19:00:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/webvpn-using-external-authentication/m-p/701268#M5653</guid>
      <dc:creator>dbobeldyk</dc:creator>
      <dc:date>2007-01-11T19:00:36Z</dc:date>
    </item>
  </channel>
</rss>

