cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
6513
Views
0
Helpful
7
Replies

ASA Cut through proxy configuration

dflores83
Level 1
Level 1

Hi guys,

I would like to configure limited internet access to olnly a select group of Windows AD users.

I beleive cut-through proxy will allow me to do this, just not sure how to configure it on a Cisco ASA-5510

thanks

7 Replies 7

Ivan Martinon
Level 7
Level 7

The link given will definitely work however you would not be able to select access based on the AD group, if that is what you need to achieve and you have ASA version 8.0 you can work Cut-Through-Proxy together with DAP.

Using Cut-Trough-Proxy with a standard authentication server will only allow or reject depending on the authentication result, but any user within your AD schema will be able to get internet access. If you need to restrict this based o Windows Groups as well your best shot is Cut-Through-Proxy with DAP and LDAP:

http://www.cisco.com/en/US/products/ps6120/products_white_paper09186a00809fcf38.shtml

Hi Ivan,

could you please give any suggestion about usage cut-through-proxy and DAP with LDAP together ?

any function config or any document on web ?

link you specified was just about DAP and there is no specified how it is possible join cut-through-proxy and DAP.

Thanks a lot,

Vladimir

Hi Ivan,

We cannot access to the doc on the link.

Can you help us ?

Thanks in advance.

Its too late. But if someone else need to access it. Please try

http://www.cisco.com/en/US/docs/security/asa/asa80/asdm60/user/guide/vpn_dap.html

Jatin Katyal

~Jatin

Ravi Singh
Level 7
Level 7

For configuration help on Cut through Proxy on ASA 5510 you can see the following config guide.

http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/access_idfw.html#wp1324095