<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX and Microsoft IAS in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26507#M692176</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Curtis.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I haven't forgot your request.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm putting down a webpage with addon screen dumps, how to set up an VPN solution with W2K IAS, PIX and 3 interfaces (outside,inside,dmz) and NAT.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm allmost half way &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Bjarne&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 01 Mar 2002 11:37:46 GMT</pubDate>
    <dc:creator>bsaltbaek</dc:creator>
    <dc:date>2002-03-01T11:37:46Z</dc:date>
    <item>
      <title>PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26502#M691991</link>
      <description>&lt;P&gt;I've seen several references to the use of MS IAS as a RADIUS server for PIX VPN authentication. I think this would be a good solution for us, but I'm wondering if anyone has followed Cisco's instructions and could relate their experience with installing, configuring, and maintaining this setup.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any information would be greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Curtis&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 05:59:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26502#M691991</guid>
      <dc:creator>curtiskline</dc:creator>
      <dc:date>2020-02-21T05:59:26Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26503#M692002</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Curtis.&lt;/P&gt;&lt;P&gt;Our company uses Windows 2000 IAS as authentication for our PIX (sw 6.1.0) with Cisco's VPN client 3.x to let our employes, customers and partners access our local network.&lt;/P&gt;&lt;P&gt;It tool me quite some time to set it up since Cisco does not give any setup information for Windows NT4 IAS or W2K IAS. They only describe how a RADIUS-server in general should behave.&lt;/P&gt;&lt;P&gt;But, now it works. And it works GREAT. We just have to add an Windows user account to a Windows user group and then the user do or do not have access to use VPN. Very simple.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Actually, we have different Windows user groups with dirrent users. Based on the group the user is in he is mapped to a specific "access-list" on the PIX. This way we can allow customers and partners access to parts of our local network via VPN by controlling it all in the Windows domain.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Feel free to ask for a setup example (I think I posted one some months ago here in the forum).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Bjarne Saltbaek (W2K IAS wizard?!? :-D)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Feb 2002 17:34:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26503#M692002</guid>
      <dc:creator>bsaltbaek</dc:creator>
      <dc:date>2002-02-27T17:34:42Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26504#M692051</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Bjarne,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the info!  Have you seen the following document on Cisco's website?  It seems to cover the Windows IAS setup in some detail...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/110/cvpn3k_pix_ias.html" target="_blank"&gt;http://www.cisco.com/warp/public/110/cvpn3k_pix_ias.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, do your VPN users run the Cisco VPN client or just the Microsoft built-in client? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Curtis&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Feb 2002 18:34:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26504#M692051</guid>
      <dc:creator>curtiskline</dc:creator>
      <dc:date>2002-02-27T18:34:39Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26505#M692103</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Curtis.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No, I haven't seen/read that.&lt;/P&gt;&lt;P&gt;And yes - in "some details". It doesn't tell you about access-list-mapping.&lt;/P&gt;&lt;P&gt;The example only allows global access to the network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you ask me. The document is worthless &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;&lt;P&gt;(or usefull if you can live with low security)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What if your company has a dial-in pool as well as VPN-access. Is the users that uses VPN allowed to use dial-in. In the cisco example yes.&lt;/P&gt;&lt;P&gt;In our company: really bad security!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And, our users run the Cisco VPN Client 3.x (downloaded from &lt;A class="jive-link-custom" href="http://www.cisco.com/cgi-bin/tablebuild.pl/vpnclient-3des" target="_blank"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/vpnclient-3des&lt;/A&gt;) - not the unsecure PPTP in Windows 2000 (IMHO).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Bjarne&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Feb 2002 21:14:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26505#M692103</guid>
      <dc:creator>bsaltbaek</dc:creator>
      <dc:date>2002-02-27T21:14:39Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26506#M692143</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Bjarne,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any chance that my Windows server admin coworker and/or I could email you for more info on your environment and config?  If so, send me an email at &lt;A href="mailto:ckline@housing.ucsb.edu"&gt;ckline@housing.ucsb.edu&lt;/A&gt; and I'll reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help!&lt;/P&gt;&lt;P&gt;Curtis&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Feb 2002 21:57:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26506#M692143</guid>
      <dc:creator>curtiskline</dc:creator>
      <dc:date>2002-02-27T21:57:08Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26507#M692176</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Curtis.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I haven't forgot your request.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm putting down a webpage with addon screen dumps, how to set up an VPN solution with W2K IAS, PIX and 3 interfaces (outside,inside,dmz) and NAT.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm allmost half way &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Bjarne&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Mar 2002 11:37:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26507#M692176</guid>
      <dc:creator>bsaltbaek</dc:creator>
      <dc:date>2002-03-01T11:37:46Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26508#M692204</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bjarne,&lt;/P&gt;&lt;P&gt;I am currently looking at the same solution for  Cisco VPN Client, and will be much appreciated if you can keep me posted. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="mailto:rlew@mdwfcu.com"&gt;rlew@mdwfcu.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Ryan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Mar 2002 22:01:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26508#M692204</guid>
      <dc:creator>rlew</dc:creator>
      <dc:date>2002-03-07T22:01:41Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26509#M692225</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am in the same position Curtis is.  I have not seen a post with your example.&lt;/P&gt;&lt;P&gt;Would you repost?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Jim&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Apr 2002 02:11:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26509#M692225</guid>
      <dc:creator>jmcburnett</dc:creator>
      <dc:date>2002-04-24T02:11:14Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Microsoft IAS</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26510#M692235</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Greetings all.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a look at a web page I have set up at:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.saltbaek.dk/cisco/" target="_blank"&gt;http://www.saltbaek.dk/cisco/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This page is a combination of Cisco's poor instructions at &lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/110/cvpn3k_pix_ias.html" target="_blank"&gt;http://www.cisco.com/warp/public/110/cvpn3k_pix_ias.html&lt;/A&gt; and my companys VPN setup.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please use the email on the webpage for comments/replys.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry to Curtis for the late reply (I have been busy :-))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Bjarne&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Apr 2002 14:40:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-microsoft-ias/m-p/26510#M692235</guid>
      <dc:creator>bsaltbaek</dc:creator>
      <dc:date>2002-04-24T14:40:42Z</dc:date>
    </item>
  </channel>
</rss>

