03-22-2003 12:38 PM - edited 03-10-2019 07:12 AM
We have a VPN 3000 concentrator where users connect from the internet and extranet too.
We want to restrict some users to certain IP sources, this is in radius attribute 66 Tunnel-Client-Endpoint.
Is this restriction possible with CS ACS 3.1? Could find a way to do it.
THANKS,
Martin
03-27-2003 06:32 AM
In ACS it would be under the user or group setup and then Radius IETF. If you don't see it there then goto Interface configuration> Radius IETF option for 66.
Also check if you concentrator version is compatible with ACS 3.1
04-01-2003 07:49 AM
The question is still the same: we want to restrict some users to certain IP sources, this info is in radius attribute 66 Tunnel-Client-Endpoint.
Is this restriction possible with CS ACS 3.1?
Couldn't find a way to do it.
(I can return IP addresses in attribute 66 to the concentrator, but it doesn't seem to process them, so CSACS should deny the request if the received attribute 66 is not O.K.)
THANKS,
Martin
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide