cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
397
Views
0
Helpful
1
Replies

Cisco Client VPN and ACS

andy-gerace
Level 1
Level 1

I am wanting to use ACS 3.2 to authenticate users who use the Cisco VPN client software to connect back to our Pix 520. Currently we are using a "pre-shared" key. I want to be able to authenticate users with Windows Active Directory. I am already doing this for our switches and routers, as well as wireless, but I can't seem to find a "how-to" document on the VPN client. Does anybody have a link or their own account of detailed instructions that need to be done in order for this to work? Any input is appreciated.

Thanks.

1 Reply 1

mustafa.mail
Level 1
Level 1

Hi,

Use Extended Authentication (Xauth) on Firewall for VPN Cleint. On ACS's user settings, use active directory which you already configured in External database as a password authentication type.

Use following reference to configure xauth on f/w.

http://www.cisco.com/en/US/partner/tech/tk583/tk372/technologies_configuration_example09186a0080094cea.shtml

http://www.cisco.com/en/US/partner/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094840.shtml

http://www.cisco.com/en/US/partner/products/sw/secursw/ps2120/products_configuration_guide_chapter09186a0080172787.html#wp1066294

Regards,

Mustafa