<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440018#M67199</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What version are you running on the IPS?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Login to the CLI and keep running the show events command, then login with HTTPS (IDM) and post the exact error in the event log&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 17 Nov 2011 03:25:38 GMT</pubDate>
    <dc:creator>Farrukh Haroon</dc:creator>
    <dc:date>2011-11-17T03:25:38Z</dc:date>
    <item>
      <title>Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440011#M67176</link>
      <description>&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have been tasked with the configuring centralized authentication via IAS for all the IPS/IDS devices in the enterprise.&amp;nbsp; After much invest I'm almost sure that due to limitations inherent to the device my goal is not obtainable.&amp;nbsp; However, I am still not 100% sure.&amp;nbsp; My questions are:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Can anyone provide a link or any documentation showing definitively whether or not the IPS 4260 supports IAS/Radius authentication?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; a. If not, what would be a suitable alternative? CSM, etc.?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:01:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440011#M67176</guid>
      <dc:creator>Racquel_Mays</dc:creator>
      <dc:date>2019-03-10T12:01:55Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440012#M67179</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cisco's IPS sensors do not currently support externally authenticated access.&amp;nbsp; They will only support&lt;/P&gt;&lt;P&gt;local username/password authentication and role assignment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Jun 2010 16:28:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440012#M67179</guid>
      <dc:creator>Scott Fringer</dc:creator>
      <dc:date>2010-06-17T16:28:17Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440013#M67183</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is available with the latest release.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Jul 2010 20:47:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440013#M67183</guid>
      <dc:creator>trippi</dc:creator>
      <dc:date>2010-07-30T20:47:33Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440014#M67187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To be specific, software release 7.0(4)E4 adds support for AAA via RADIUS (but not TACACS+).&amp;nbsp; For more information, check out the Cisco document here:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/ips/7.0/configuration/guide/cli/cli_setup.html#wp1033251"&gt;http://www.cisco.com/en/US/docs/security/ips/7.0/configuration/guide/cli/cli_setup.html#wp1033251&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's important to note that AAA/RADIUS is NOT supported with the latest release of IME (7.0(3)).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 10 Aug 2010 08:21:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440014#M67187</guid>
      <dc:creator>mikecrowe4ICS_2</dc:creator>
      <dc:date>2010-08-10T08:21:09Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440015#M67193</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks!&amp;nbsp; I'll try this.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Aug 2010 21:36:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440015#M67193</guid>
      <dc:creator>Racquel_Mays</dc:creator>
      <dc:date>2010-08-17T21:36:33Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440016#M67196</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please note that the latest IME version (7.1.1) supports the Radius (AAA) Feature on CIsco IPS Sensors:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/ips/7.1/release/notes/24340_01.html#wp1296082"&gt;http://www.cisco.com/en/US/docs/security/ips/7.1/release/notes/24340_01.html#wp1296082&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if helpful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 Feb 2011 08:54:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440016#M67196</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2011-02-26T08:54:26Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440017#M67197</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have several IPS ASA-SSM-10 and IPS 4260, I spent several hours trying to get them to authenticate through MS IAS 2003 R2, I was able to get them authenticated thru SSH but not in ASDM. I really appreciate if anyone have any information how to get these working in ASDM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Si&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Nov 2011 23:56:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440017#M67197</guid>
      <dc:creator>bestsoftware</dc:creator>
      <dc:date>2011-11-16T23:56:43Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440018#M67199</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What version are you running on the IPS?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Login to the CLI and keep running the show events command, then login with HTTPS (IDM) and post the exact error in the event log&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Nov 2011 03:25:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440018#M67199</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2011-11-17T03:25:38Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440019#M67201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Farrukh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All IPS/IDS are running version 7.0.4. I did what you recommended and below are the logs I captured:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;evStatus: eventId=1306479664548993105 vendor=Cisco &lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp; originator: &lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; hostId: NACAIRVIDLAB1&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; appName: cidwebserver&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; appInstanceId: 349&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp; time: 2011/11/17 16:57:45 2011/11/17 16:57:45 UTC&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp; loginAction: action=loginFailed &lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; description: User failed to authenticate with the HTTP server&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; userName: best\xsxtran&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; userAddress: port=64368 10.90.204.17&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;evStatus: eventId=1306479664548993106 vendor=Cisco &lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp; originator: &lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; hostId: NACAIRVIDLAB1&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; appName: cidwebserver&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; appInstanceId: 349&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp; time: 2011/11/17 16:57:58 2011/11/17 16:57:58 UTC&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp; loginAction: action=loginFailed &lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; description: User failed to authenticate with the HTTP server&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; userName: best\xsxtran&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; userAddress: port=64369 10.90.204.17&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for all your help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Si&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Nov 2011 17:08:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440019#M67201</guid>
      <dc:creator>bestsoftware</dc:creator>
      <dc:date>2011-11-17T17:08:28Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440020#M67204</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think I saw the same issue before, in your AAA config on the sensor(s) please change the default user role to administrator.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the CLI:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;service aaa&lt;/P&gt;&lt;P&gt;default-user-role administrator&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This can also be done through the GUI (IDM).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 19 Nov 2011 07:24:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440020#M67204</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2011-11-19T07:24:09Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440021#M67207</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Farrukh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for helping. I figured out the problem. It was the IOS bug. It worked as soon as I upgraded to version 7.0.6. All my IPS/IDS authenticated through Microsoft Radius now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Si&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Nov 2011 16:28:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440021#M67207</guid>
      <dc:creator>bestsoftware</dc:creator>
      <dc:date>2011-11-21T16:28:44Z</dc:date>
    </item>
    <item>
      <title>Re: Centralized (IAS/Radius) Authentication under IDS/IPS 4260</title>
      <link>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440022#M67210</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm glad you have it working now and thanks for sharing with everybody&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Nov 2011 17:51:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/centralized-ias-radius-authentication-under-ids-ips-4260/m-p/1440022#M67210</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2011-11-21T17:51:33Z</dc:date>
    </item>
  </channel>
</rss>

