<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NAC url direct using concentrator in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485813#M768102</link>
    <description>&lt;P&gt;we have a vpn concentrator 3030 runing 4.7 ver, have deployed csa 4.5 and cta 1.0 agents on the client.acs 3.3 is the policy server with local policies created. NAC process takes place and could see all the logs going well.under the quarantine group have created a acl to block certain connections which also works well..the only problem we are facing is the url direct. below are the settign set &lt;/P&gt;&lt;P&gt;posture-token=Quarantine&lt;/P&gt;&lt;P&gt;url-&lt;/P&gt;&lt;P&gt;redirect=&lt;A class="jive-link-custom" href="http://10.1.100.47/" target="_blank"&gt;http://10.1.100.47/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;status-query=30&lt;/P&gt;&lt;P&gt;revalidation-timeout=300&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This doesnt get poped up.Will this work with the concentrator or is it only limited to cisco routers and firewalls.how do i get the url direct working with vpn concentrator being the NAD device&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 08:40:10 GMT</pubDate>
    <dc:creator>followurself</dc:creator>
    <dc:date>2020-02-21T08:40:10Z</dc:date>
    <item>
      <title>NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485813#M768102</link>
      <description>&lt;P&gt;we have a vpn concentrator 3030 runing 4.7 ver, have deployed csa 4.5 and cta 1.0 agents on the client.acs 3.3 is the policy server with local policies created. NAC process takes place and could see all the logs going well.under the quarantine group have created a acl to block certain connections which also works well..the only problem we are facing is the url direct. below are the settign set &lt;/P&gt;&lt;P&gt;posture-token=Quarantine&lt;/P&gt;&lt;P&gt;url-&lt;/P&gt;&lt;P&gt;redirect=&lt;A class="jive-link-custom" href="http://10.1.100.47/" target="_blank"&gt;http://10.1.100.47/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;status-query=30&lt;/P&gt;&lt;P&gt;revalidation-timeout=300&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This doesnt get poped up.Will this work with the concentrator or is it only limited to cisco routers and firewalls.how do i get the url direct working with vpn concentrator being the NAD device&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 08:40:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485813#M768102</guid>
      <dc:creator>followurself</dc:creator>
      <dc:date>2020-02-21T08:40:10Z</dc:date>
    </item>
    <item>
      <title>Re: NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485814#M768112</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I had the same issue untill i discovered that the url has to be a hostname, not an ip address.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jan 2006 12:31:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485814#M768112</guid>
      <dc:creator>jan.nielsen</dc:creator>
      <dc:date>2006-01-25T12:31:24Z</dc:date>
    </item>
    <item>
      <title>Re: NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485815#M768117</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Jan, i shall try and update&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jan 2006 12:43:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485815#M768117</guid>
      <dc:creator>followurself</dc:creator>
      <dc:date>2006-01-25T12:43:52Z</dc:date>
    </item>
    <item>
      <title>Re: NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485816#M768123</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jan&lt;/P&gt;&lt;P&gt;I tried with the hostname but it doesnt work, is there anything which i need to check on ACS because i cant see the cisco/av pair attributes in passed authentications.it looks like it doesnt send it&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Jan 2006 11:36:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485816#M768123</guid>
      <dc:creator>followurself</dc:creator>
      <dc:date>2006-01-27T11:36:19Z</dc:date>
    </item>
    <item>
      <title>Re: NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485817#M768148</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Followurself,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am doing exactly the same and have sen up NAC using a VPN 3020 as the NAD device. I have got the URL-redirect working.&lt;/P&gt;&lt;P&gt;From my understanding, for the URL-redirect to work youhave to modify the settings on the Cisco Trust Agent. I am using CTA v2.0.0.30 and this setting is enabled by default. The setting is located in the 'ctad.ini' file that is installed along with the client. In this file there are settings under the {UserNotifies] section that defines the behaviour of pop-up messages sent from the ACS to the CTA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how you go!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Cam&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PS - I can send you the doco on the CTA v2 if you like.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Feb 2006 01:21:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485817#M768148</guid>
      <dc:creator>cammaher</dc:creator>
      <dc:date>2006-02-01T01:21:49Z</dc:date>
    </item>
    <item>
      <title>Re: NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485818#M768181</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I m using cta 1.0, can you let me know which setting in ctad.ini i need to look into.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now here we talking about web url direct to work when you have a cta installed but what if we want the same to work for clientless user. when we enable a clientless policy on concentrator and same get authenticated by the ACS server.can we make a url direct to work here..so the users will isntall cta/csa and then they go in&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Feb 2006 15:51:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485818#M768181</guid>
      <dc:creator>followurself</dc:creator>
      <dc:date>2006-02-01T15:51:53Z</dc:date>
    </item>
    <item>
      <title>Re: NAC url direct using concentrator</title>
      <link>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485819#M768201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I tried with CTA 2.0 and checked the settings in ini file but still the web direct configured in acs under&lt;/P&gt;&lt;P&gt;cisco/av pair isnt working&lt;/P&gt;&lt;P&gt;posture-token=Quarantine&lt;/P&gt;&lt;P&gt;url&lt;/P&gt;&lt;P&gt;-redirect=&lt;A class="jive-link-custom" href="http://xxxx/" target="_blank"&gt;http://xxxx/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;status-query=30&lt;/P&gt;&lt;P&gt;revalidation-timeout=300&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 Feb 2006 16:57:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-url-direct-using-concentrator/m-p/485819#M768201</guid>
      <dc:creator>followurself</dc:creator>
      <dc:date>2006-02-02T16:57:50Z</dc:date>
    </item>
  </channel>
</rss>

