Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, We have two main sites with a PIX515 in each site. Both Inside interfaces are on the backbone OSPF area (0) & the Outside Interfaces are in different OSPF areas (51 & 53). The two sites are connected together by our internal network on the Inside...
Hi folks,I was running ACS2.6 & using TACACS+ to authenticate dial in users & access to routers. When dial up users tried to telnet to a router they received an authorisation failure (EXEC box not ticked) if they tried to log in. Since upgrading to A...
Hi, I am currently using a 3015 (ver3.5.5), ACS (3.1) & the VPN client (3.5.1). Is it possible to implement password expiry when NOT using the windows domain controller for authentication (i.e. Using the CiscoSecure ACS internal database)?If so, does...
Hi, I am currently using a 3015 (ver3.5.5), ACS (3.1) & the VPN client (3.5.1). I would like to implement password expiry however I do not use the windows domain for authentication - I use the ACS internal database. I don't seem to be able to find an...
Hi,I seem to be having a strange problem with using CPP to push a filter to a VPN client. I am using a 3015 (3.5.5) & the S/W client (3.5.1) using the Cisco integrated firewall. My goal is to push a filter which will allow the user to access the corp...
I would rather they cannot get onto the router at all. Even in non-priveledged mode you can gain quite a bit of information about the router & telnet to other devices.
Hi Jazib,I have 6 subnets in the ST list, the subnet I can access has a key against it. If I ping another device in one of the other subnets the key does not appear. Using the default VPN filter when I ping a device a key appears & the traffic works ...