<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic web authentication for admission in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/web-authentication-for-admission/m-p/1518491#M605774</link>
    <description>&lt;P&gt;Hello All&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a group of users connected to our network that I need to authenticate.&amp;nbsp; These users are all on an easily identified subnet.&lt;/P&gt;&lt;P&gt;There's also servers on the 'other side' that we allow.&lt;/P&gt;&lt;P&gt;Currently we use ACLs on a 6509 switch.. where each of these special users has a static IP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What I'd like to do is put an ASA or other device in place such that the end users on the 'other side' must do a web based authentication.&lt;/P&gt;&lt;P&gt;I don't want any vpn/ipsec/tunneling ... just a simple authentication. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is similar to the auth-proxy function in a Router.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I thought we could do this on an ASA, but can't find it in the doc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm also considering using web-auth on the 3560/4948.6509 switch. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appreciate any suggestions &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Wes&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 19:19:29 GMT</pubDate>
    <dc:creator>wsmith@ca.ibm.com</dc:creator>
    <dc:date>2019-03-11T19:19:29Z</dc:date>
    <item>
      <title>web authentication for admission</title>
      <link>https://community.cisco.com/t5/network-security/web-authentication-for-admission/m-p/1518491#M605774</link>
      <description>&lt;P&gt;Hello All&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a group of users connected to our network that I need to authenticate.&amp;nbsp; These users are all on an easily identified subnet.&lt;/P&gt;&lt;P&gt;There's also servers on the 'other side' that we allow.&lt;/P&gt;&lt;P&gt;Currently we use ACLs on a 6509 switch.. where each of these special users has a static IP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What I'd like to do is put an ASA or other device in place such that the end users on the 'other side' must do a web based authentication.&lt;/P&gt;&lt;P&gt;I don't want any vpn/ipsec/tunneling ... just a simple authentication. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is similar to the auth-proxy function in a Router.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I thought we could do this on an ASA, but can't find it in the doc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm also considering using web-auth on the 3560/4948.6509 switch. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appreciate any suggestions &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Wes&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:19:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-authentication-for-admission/m-p/1518491#M605774</guid>
      <dc:creator>wsmith@ca.ibm.com</dc:creator>
      <dc:date>2019-03-11T19:19:29Z</dc:date>
    </item>
    <item>
      <title>Re: web authentication for admission</title>
      <link>https://community.cisco.com/t5/network-security/web-authentication-for-admission/m-p/1518492#M605776</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The ASA can do it and it is called cut through proxy this time. Here is a sample config &lt;A class="active_link" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807349e7.shtml"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807349e7.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Like you said, web-auth/auth-proxy can be considered on the switch &lt;A href="http://www.cisco.com/en/US/products/sw/secursw/ps1018/products_configuration_example09186a008009466e.shtml"&gt;http://www.cisco.com/en/US/products/sw/secursw/ps1018/products_configuration_example09186a008009466e.shtml&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 07 Dec 2010 20:36:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/web-authentication-for-admission/m-p/1518492#M605776</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-12-07T20:36:47Z</dc:date>
    </item>
  </channel>
</rss>

