cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1004
Views
0
Helpful
1
Replies

Bypassing specific destination traffic from authentication on PIX firewall

cltoh
Level 1
Level 1

I had currently turn on TACACS authentication for all traffic going to internet.

Is there anyway for me to bypass a specific destination and port from TACACS authentication? The rest of the traffic must still challenge by the ACS server.

1 Reply 1

pcomeaux
Cisco Employee
Cisco Employee

Yes - if you are using a Pix firewall, here is a link which includes sample configurations for the Pix. You would simple exclude or deny the traffic from the aaa authentication process.

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/cmdref/ab.htm#wp1111727