<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Restrict access for non-domain users on a CISCO ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331961#M780014</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;NAC is a way to go &lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/netsol/ns466/networking_solutions_package.html" target="_blank"&gt;http://www.cisco.com/en/US/netsol/ns466/networking_solutions_package.html&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can also use ACS to authenticate users before going through the ASA. You can also integrate ACS with your Active Directory.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not very trivial tasks but the technology is there to support them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 14 Oct 2009 11:33:39 GMT</pubDate>
    <dc:creator>Panos Kampanakis</dc:creator>
    <dc:date>2009-10-14T11:33:39Z</dc:date>
    <item>
      <title>Restrict access for non-domain users on a CISCO ASA</title>
      <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331960#M779976</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you know if there is a way to deny trafic through a CISCO ASA for all non-domain users?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or do we have to use a NAC system ? (and, if yes, what kind of NAC system?)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards,&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:25:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331960#M779976</guid>
      <dc:creator>khayhuynh</dc:creator>
      <dc:date>2019-03-11T16:25:46Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict access for non-domain users on a CISCO ASA</title>
      <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331961#M780014</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;NAC is a way to go &lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/netsol/ns466/networking_solutions_package.html" target="_blank"&gt;http://www.cisco.com/en/US/netsol/ns466/networking_solutions_package.html&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can also use ACS to authenticate users before going through the ASA. You can also integrate ACS with your Active Directory.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not very trivial tasks but the technology is there to support them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 14 Oct 2009 11:33:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331961#M780014</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2009-10-14T11:33:39Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict access for non-domain users on a CISCO ASA</title>
      <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331962#M780073</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you are trying to do this for VPN connections into your ASA:&lt;/P&gt;&lt;P&gt;-you can deny the non-domain users from logging in with ldap attribute maps or dap&lt;/P&gt;&lt;P&gt;-you can also restrict access with a vpn-filter acl or webvpn type acl applied in the group policy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 14 Oct 2009 17:10:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331962#M780073</guid>
      <dc:creator>hdashnau</dc:creator>
      <dc:date>2009-10-14T17:10:56Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict access for non-domain users on a CISCO ASA</title>
      <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331963#M780103</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACS seems to be a good way. However, I can't find any information about authenticating trafic users on ASA with ACS. I only saw documentation on how secure access on the firewall with ACS, but nothing about authenticating users when they are trying to pass through the FW.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone help me by providing me some URL about it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 19 Oct 2009 06:59:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331963#M780103</guid>
      <dc:creator>khayhuynh</dc:creator>
      <dc:date>2009-10-19T06:59:36Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict access for non-domain users on a CISCO ASA</title>
      <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331964#M780123</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello hdashnau,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's not for VPN connections but for all trafic from one local zone to another.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm still looking for a way to do that, with ACS or NAC, but i can't find any documentation on it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did someone already face this issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Oct 2009 07:43:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331964#M780123</guid>
      <dc:creator>khayhuynh</dc:creator>
      <dc:date>2009-10-21T07:43:19Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict access for non-domain users on a CISCO ASA</title>
      <link>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331965#M780139</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi K,&lt;/P&gt;&lt;P&gt;have a look at "cut-through proxy" aka "AAA for network access" :&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/access_fwaaa.html" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/access_fwaaa.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hth&lt;/P&gt;&lt;P&gt;H&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Oct 2009 13:08:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/restrict-access-for-non-domain-users-on-a-cisco-asa/m-p/1331965#M780139</guid>
      <dc:creator>Herbert Baerten</dc:creator>
      <dc:date>2009-10-21T13:08:23Z</dc:date>
    </item>
  </channel>
</rss>

