Hi Roberto,You should be able to do this, you need to do NAS filtering on the basis ofIP-based access restrictionand select the routers where you want to deny those group of users.ThanksSujit
Hi,Can you please change this lineaaa authentication ppp default if-needed group radius to aaa authentication ppp default group radius Can you get us the following debugs.debug radiusdebug aaa authendebug aaa authordebug aaa per-userdebug vtemplateLo...
Hi,Yes this is possible, even if you are using EAP-MD5, it will assign different vlans based on different userid you login with , even from the same machine.ThanksSujit
Hi,Can you please provide us the config on the router and the following debugs.debug aaa authendebug aaa authordebug aaa accountingdebug aaa per-userdebug radiusThanksSujit
Hi Prem,Here is good link to configure IAS server to use with VPN concentrators.http://www.cisco.com/warp/public/471/vpn3k_ias.html#steps-2As far as routers are concerned the config on the IAS server remains same, so you can use the above link.Thanks...