Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

Labels

Forum Posts

I want to restrict access to a group of IPs in my network for certain users dialing in through my NAS. I have read the http://www.cisco.com/warp/public/480/tacacs_ACL1.html and it is exactly what I want to do. I'd like to create ACLs on the ACS Serve...

ikarmona by Level 1
  • 2013 Views
  • 1 replies
  • 0 Helpful votes

Hi,I'm using ACS 3.1 with an access server and RADIUS. We maintain two user databases: one i n ACS and one in Novell eDirectory. We want to deal only with one databse in the future, the Novell eDirectory one. I can set up the ACS box to work with t...

ticonaru by Level 1
  • 2256 Views
  • 3 replies
  • 0 Helpful votes

Hello,I have a scenario were we have two groups in the VPN 3005, group1 and group2. I also have two users, user1 and user2 who are authenticated in AD via the ACS. What I want to accomplish is to tie user1 with group1 and user2 with group2. For examl...

maraz by Level 1
  • 2025 Views
  • 2 replies
  • 0 Helpful votes

I have a basic AAA question...Is it possible with RADIUS to restrict access to certain resources for specific users. In other words how do I configure an access list on the RADIUS that can be applied to users dialling into the network.Can these work...

a.mayat by Level 1
  • 2782 Views
  • 6 replies
  • 0 Helpful votes

Hi,I am tring to setup VPN connection with:. Cisco VPN Concentrator. Microsoft Windows 2000 VPN client. NT authenticationI got the following log messages:"273 02/03/2003 14:28:59.950 SEV=5 PPP/8 RPT=79 192.168.100.13 User [xxx\yyy]Authenticated succe...

wei.hu by Level 1
  • 1544 Views
  • 2 replies
  • 0 Helpful votes

I want to restrict some users to "show running-config" command. I have created a Shell Command Authorization Set with "show" command "permit running-config". Under the TACACS+ setting the Shell (exec) is selected and Privilege level with a value of ...

rrcarter79 by Level 1
  • 4408 Views
  • 21 replies
  • 0 Helpful votes

I'm trying to config a 12.0(5.1)XP 2900XL IOS switch to automatically go into enable mode once authenticated, without having to enter "enable." I'm running ACS3.1. Her is the AAA config:aaa new-modelaaa authentication login default group tacacs+ loc...

gamoore by Level 1
  • 3151 Views
  • 9 replies
  • 0 Helpful votes