cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
274
Views
0
Helpful
2
Replies

AS5300 - SecurID logins

pokwan
Level 1
Level 1

Hi,

On the AS 5300 router, is there a way to prevent a user to have multiple logons (with the same SecurID card) at any one time? Currently the remote users dial-in to the AS5300 router using the SecurID card. Once the user successfully dialed into the AS 5300 router, the user will be authenticated against the ACE server. When the authentication is successful, the connection to the network is established. However, another user could still use the same SecurID card to dial-in to the network. How do I configure the As 5300 router to prevent this from happening ?

Thanks.

2 Replies 2

tepatel
Cisco Employee
Cisco Employee

Just configure on ACE server for "max sessions" to 1 for a user So only 1 simultaneous connection for this user is allowed. A session is any type of user connection supported by RADIUS or TACACS+; for example, PPP, NAS prompt, Telnet, ARAP, or IPX/SLIP. You just need to find a place for where to configure it in ACE server. Thanks..Tejal

Does the ACE server knows when the user logs off? I thought the ACE server only authenticate and does not have a record as to when the user terminates the session. No??

Review Cisco Networking for a $25 gift card