<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Using Active Directory Groups in Firewall Policy in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350622#M783449</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Solpandor,&lt;/P&gt;&lt;P&gt;I cannot use an ACL without a lot of re-design of my networks. I would also have to probably write AD Login scripts to change people's subnet.&lt;/P&gt;&lt;P&gt;Am specifically looking for Frewall Integration with AD.&lt;BR /&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 11 Jan 2010 16:47:19 GMT</pubDate>
    <dc:creator>karthik_rao</dc:creator>
    <dc:date>2010-01-11T16:47:19Z</dc:date>
    <item>
      <title>Using Active Directory Groups in Firewall Policy</title>
      <link>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350620#M783376</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Am trying to undestand if I can use an ASA 5510 to set up firewall policies for AD Groups.&lt;/P&gt;&lt;P&gt;E.g. I have an AD group allowed_users that I want to allow access to the internet.&lt;/P&gt;&lt;P&gt;Can I integrate an ASA with my AD, and then create a Policy that allows this group access to port 80/443 to all external IPs?&lt;/P&gt;&lt;P&gt;I found help on the Cisco Site for Tunnel Groups, but that is not what I want.&lt;/P&gt;&lt;P&gt;Am a newbie/non-technical evaluator and would appreciate any pointers.&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;&lt;P&gt;Kar&lt;/P&gt;&lt;P&gt;Jogged this thread on 20 Jan. Hope to receive some expert advise on this now &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:55:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350620#M783376</guid>
      <dc:creator>karthik_rao</dc:creator>
      <dc:date>2019-03-11T16:55:53Z</dc:date>
    </item>
    <item>
      <title>Re: Using Active Directory Groups in Firewall Policy</title>
      <link>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350621#M783413</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;karthik&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i dont think you can do it that way -&amp;nbsp; (experts pls correct if im wrong)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;are your AD groups on different subnets? if so then you can do it via ACL where you create and access list for the subnet you want to allow all access and then deny the rest&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Jan 2010 16:40:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350621#M783413</guid>
      <dc:creator>SOL10</dc:creator>
      <dc:date>2010-01-11T16:40:48Z</dc:date>
    </item>
    <item>
      <title>Re: Using Active Directory Groups in Firewall Policy</title>
      <link>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350622#M783449</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Solpandor,&lt;/P&gt;&lt;P&gt;I cannot use an ACL without a lot of re-design of my networks. I would also have to probably write AD Login scripts to change people's subnet.&lt;/P&gt;&lt;P&gt;Am specifically looking for Frewall Integration with AD.&lt;BR /&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Jan 2010 16:47:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/using-active-directory-groups-in-firewall-policy/m-p/1350622#M783449</guid>
      <dc:creator>karthik_rao</dc:creator>
      <dc:date>2010-01-11T16:47:19Z</dc:date>
    </item>
  </channel>
</rss>

