<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Is the read only access in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/some-statement-log-are-missing-in-my-acs-log/m-p/2824928#M915149</link>
    <description>&lt;P&gt;Is the read only access working for you and you just don't see the attempts in ACS logging?&lt;/P&gt;
&lt;P&gt;Here is an example of setting Read Only access with Radius&lt;/P&gt;
&lt;P&gt;https://supportforums.cisco.com/document/114076/bluecoat-packetshaper-and-cisco-acs-v5-x-configurationpdf&lt;/P&gt;
&lt;P&gt;Also, check under Monitoring &amp;amp; reports &amp;gt; Dashboard &amp;gt; reports &amp;gt; AAA protocol &amp;gt; Radius authentication.&lt;/P&gt;
&lt;P&gt;let me know if you've any doubts.&lt;/P&gt;
&lt;P&gt;- Jatin&lt;/P&gt;</description>
    <pubDate>Sat, 16 Jan 2016 20:47:50 GMT</pubDate>
    <dc:creator>Jatin Katyal</dc:creator>
    <dc:date>2016-01-16T20:47:50Z</dc:date>
    <item>
      <title>Some statement log are missing in my ACS log</title>
      <link>https://community.cisco.com/t5/network-security/some-statement-log-are-missing-in-my-acs-log/m-p/2824927#M915146</link>
      <description>&lt;P&gt;Hi !&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;We are using our ACS server 5.6 running patch Level 4 to authenticate users on&amp;nbsp;different telecom equipment &amp;nbsp;with in the Compagny.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm actually trying to configure "read only access" for some users to our BlueCoat Packet Shapper device.&amp;nbsp; The full access works properly actually.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I had add a new statement in the Policy before the Full access statement.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Statements are&amp;nbsp;pretty simple the restricted statement said :&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;if Identity group is "limited" and "Device Type" is "BlueCoat" Shell Profile is "Permit access" Rule number 8&lt;/P&gt;
&lt;P&gt;the next statement do not take care of user member group membership &amp;nbsp;but "Device Type" is "BlueCoat" Shell Profile is "Permit Touch" Rule number 9&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;When I look at the AAA report I know some of my attemp aren't log (and I'd liked to know why...)&lt;/P&gt;
&lt;P&gt;I don't know what I can do more to make my first statement match instead of the second&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Anyone may help ?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 13:41:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/some-statement-log-are-missing-in-my-acs-log/m-p/2824927#M915146</guid>
      <dc:creator>xine xine</dc:creator>
      <dc:date>2020-02-21T13:41:37Z</dc:date>
    </item>
    <item>
      <title>Is the read only access</title>
      <link>https://community.cisco.com/t5/network-security/some-statement-log-are-missing-in-my-acs-log/m-p/2824928#M915149</link>
      <description>&lt;P&gt;Is the read only access working for you and you just don't see the attempts in ACS logging?&lt;/P&gt;
&lt;P&gt;Here is an example of setting Read Only access with Radius&lt;/P&gt;
&lt;P&gt;https://supportforums.cisco.com/document/114076/bluecoat-packetshaper-and-cisco-acs-v5-x-configurationpdf&lt;/P&gt;
&lt;P&gt;Also, check under Monitoring &amp;amp; reports &amp;gt; Dashboard &amp;gt; reports &amp;gt; AAA protocol &amp;gt; Radius authentication.&lt;/P&gt;
&lt;P&gt;let me know if you've any doubts.&lt;/P&gt;
&lt;P&gt;- Jatin&lt;/P&gt;</description>
      <pubDate>Sat, 16 Jan 2016 20:47:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/some-statement-log-are-missing-in-my-acs-log/m-p/2824928#M915149</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2016-01-16T20:47:50Z</dc:date>
    </item>
  </channel>
</rss>

