<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic wevbpn restrict access in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858066#M974109</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;i have ASA 7.2 with ACS 4.0, all authentication is done on the ACS, now if i enable webvpn, how can i restrict specific user from my network to access it, so that not anyone who has a user and pass on ACS can access it, what attribute should i use ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 11:19:09 GMT</pubDate>
    <dc:creator>josephium</dc:creator>
    <dc:date>2019-03-11T11:19:09Z</dc:date>
    <item>
      <title>wevbpn restrict access</title>
      <link>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858066#M974109</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;i have ASA 7.2 with ACS 4.0, all authentication is done on the ACS, now if i enable webvpn, how can i restrict specific user from my network to access it, so that not anyone who has a user and pass on ACS can access it, what attribute should i use ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 11:19:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858066#M974109</guid>
      <dc:creator>josephium</dc:creator>
      <dc:date>2019-03-11T11:19:09Z</dc:date>
    </item>
    <item>
      <title>Re: wevbpn restrict access</title>
      <link>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858067#M974110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ..  you need to use IETF attribute 25 class. The below link will give you an idea of what you need to do. Basically you would need to use group-lock on the ASA. I have configured this before but don't have access to the devices right now. Have a look at the below link and let me know if you still can't work out how to do it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps ..  please rate it if it does !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ciscotaccc.com/kaidara-advisor/security/showcase?case=K01201325" target="_blank"&gt;http://www.ciscotaccc.com/kaidara-advisor/security/showcase?case=K01201325&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2007 06:35:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858067#M974110</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2007-10-02T06:35:16Z</dc:date>
    </item>
    <item>
      <title>Re: wevbpn restrict access</title>
      <link>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858068#M974111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thank you for your fast response, but by using this IETF attribute i can make sure that other users in ACS (the ones that i don't want to enable) will not be able to authenticate in the webvpn ? and shouldn't i use the Radius of vpn/asa instead of the IETF radius ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Oct 2007 07:20:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wevbpn-restrict-access/m-p/858068#M974111</guid>
      <dc:creator>josephium</dc:creator>
      <dc:date>2007-10-03T07:20:35Z</dc:date>
    </item>
  </channel>
</rss>

