I am seeing these authentication failure messages in the logs of the switches.2y20w: %SNMP-3-AUTHFAIL: Authentication failure for SNMP req from host aa.aa.aa.aa2y20w: %SNMP-3-AUTHFAIL: Authentication failure for SNMP req from host bb.bb.bb.bbI have t...
SAML authorization based on the attributes:As per the document https://www.cisco.com/c/en/us/td/docs/security/asa/asa917/asdm717/vpn/asdm-717-vpn-config/vpn-asdm-dap.html#task_bs3_q1v_tsb:~:text=From%20the%20AAA%20Attribute%20Type%20drop%20down%2C%20...
I am trying to send the user group information to Cisco ASA from Okta. Verified through SAML tracer, attributes are being sent. However, I cannot see any info related to custom attributes using "debug webvpn saml 255"How to extract this info?
Sanitized the content. This is my SNMP config. logging snmp-authfail snmp-server engineID local XXXXXXXXXXXXXXXXXXXXXXXXsnmp-server community public RO snmp-server location AA IDC (ABC) [00.0000000000, 00.0000000000]
Thank you for your reply Flavio. I understand "logging snmp-authfail" will fix the issue but we want to understand why this error messages are getting generated even though I see the data on observium and ntopng servers without any problem. Also, we ...
@Rob Ingram The ASA we use is 5506-X and I don't see the 9.17 version available. Our version is 9.12(4)Software Download - Cisco SystemsLet me know If I am looking at the wrong place. I want to know if there is an alternative approach using the SAML...