08-16-2011 06:28 AM - edited 03-10-2019 06:19 PM
Dear Support Team
IPSEC VPN users are using ACS for extended authentication, whenever authentication is made, entries are available on ACS,
now i need the session duration info on ACS, that means total time during which the user was active should be available.
i have enabled accounting globally on the ASA firewall through aaa accounting enable console ACS and also enable accounting in the tunnel-group itself, to which the user is using.
on ACS 5.1 ,i could not find any option / TAB that can give some information on the session duration.
Any help will be highly appreciated.
Regards
Ahad
08-17-2011 08:23 AM
Mansoorq123,
Launch your monitor and report viewer and click on session directory. You will be able to see all of your session history including the fields you want.
Thanks,
Randy
08-17-2011 06:22 PM
Hi Randy
Thanks for your time to look into the issue, i explored session history as well, selected 'query & run' and fetched the details relevant to a particular user 'admin' for last day ( details are in attachment), however none of the tab is giving me total time, this user was active on the network, it is showing Average session time and Max session time, how i can come to know that how long a particular user was accessing the network.
my ASA firewall (VPN gateway) is sending all accounting information to ACS.
THanks again.
Ahad
08-19-2011 05:06 AM
Ahad,
From that screen shot, if you would click on the date Aug 17, it will bring you to a more detailed page, from there you can look at all users that logged in that day and if you want to know the runtime of their session click on the little magnifying glass next to their name. At the bottom is some text that looks like code, the session time is in there. it looks like time=## or something like that.
Randy
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide