<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cut-Through-proxy with accounting in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cut-through-proxy-with-accounting/m-p/1136381#M878874</link>
    <description>&lt;P&gt;We are using ASA 5510 boxes in active/standby-stateful to serve internet connectivity to about 2500-3000 users, the normal CPU usage of the ASA is about 15-18%.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now we are planning to set up Cut-through -proxy for all users with Cisco ACS (v 4.0, Server hardware: Intel XEON, 2 GB RAM). Also we require that all http sessions be Accounted in the ACS. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I read there are issues with the ASA authenticating more that 16 users simultaneously using https authentication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any such kind of issues with http authentication?&lt;/P&gt;&lt;P&gt;What will be the impact on the ASA CPU authenticating all these users and sending accounting information to the ACS about all the sessions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Clarify &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 14:25:19 GMT</pubDate>
    <dc:creator>victor_87</dc:creator>
    <dc:date>2019-03-11T14:25:19Z</dc:date>
    <item>
      <title>Cut-Through-proxy with accounting</title>
      <link>https://community.cisco.com/t5/network-security/cut-through-proxy-with-accounting/m-p/1136381#M878874</link>
      <description>&lt;P&gt;We are using ASA 5510 boxes in active/standby-stateful to serve internet connectivity to about 2500-3000 users, the normal CPU usage of the ASA is about 15-18%.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now we are planning to set up Cut-through -proxy for all users with Cisco ACS (v 4.0, Server hardware: Intel XEON, 2 GB RAM). Also we require that all http sessions be Accounted in the ACS. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I read there are issues with the ASA authenticating more that 16 users simultaneously using https authentication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any such kind of issues with http authentication?&lt;/P&gt;&lt;P&gt;What will be the impact on the ASA CPU authenticating all these users and sending accounting information to the ACS about all the sessions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Clarify &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:25:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cut-through-proxy-with-accounting/m-p/1136381#M878874</guid>
      <dc:creator>victor_87</dc:creator>
      <dc:date>2019-03-11T14:25:19Z</dc:date>
    </item>
    <item>
      <title>Re: Cut-Through-proxy with accounting</title>
      <link>https://community.cisco.com/t5/network-security/cut-through-proxy-with-accounting/m-p/1136382#M878875</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can configure the PIX Firewall in order to control user access to specific hosts or services. However, it is easier to maintain this kind of access control in a single location, at the authentication server. After you enable authentication and authorization, the PIX Firewall prompts users of FTP, Telnet, or HTTP (Web) access. The control of access to a specific system or service is handled by the authentication and authorization server. Here is the URL for the further description&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807349e7.shtml#intro" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807349e7.shtml#intro&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Dec 2008 19:39:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cut-through-proxy-with-accounting/m-p/1136382#M878875</guid>
      <dc:creator>tstanik</dc:creator>
      <dc:date>2008-12-18T19:39:29Z</dc:date>
    </item>
  </channel>
</rss>

