07-24-2002 03:17 AM - edited 03-08-2019 11:40 PM
Is it possible with Cisco ACS, to allow a User access only if the user comes from a spez. NAS. I would like to define a Group and if the user is a member of this group he only gets access if he comes from this spez. NAS. For example i have a VPN-Group (VPN-NAS) and a RAS-Group (RAS-NAS), and a user in the VPN-Group should not be able to dial into the RAS-NAS.
thank you!!
07-24-2002 10:50 PM
Yes, you can configure NAS restrictions on a per user or group basis.
NAS restrictions on a user-level
NAS restrictions on a group-level
HTH
R/Yusuf
07-25-2002 03:19 AM
Thank you for the Information but i tried this allready and it doesn't work. For the vpn-group i made a "Denied Calling/Point of Access Locations" for the RAS-Server ( Port=* and IP-Adress=* ) but vpn-user can still dial in to the RAS-Server ?!
Is there a problem with radius authentication?
Thank you, Walter
07-25-2002 03:20 AM
Thank you for the Information but i tried this allready and it doesn't work. For the vpn-group i made a "Denied Calling/Point of Access Locations" for the RAS-Server ( Port=* and IP-Adress=* ) but vpn-user can still dial in to the RAS-Server ?!
Is there a problem with radius authentication?
Thank you, Walter
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide