Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Search results for query: *

  • Users: qwasd
  • Order by date
  1. qwasd

    User based ACLs

    Thanks. >I would try cut-through proxy authentication instead of >virtual telnet. >Something like this: >* Use option 2 for VPN authentication. (vpdn client >authentication radius). >* Define a restrictive access-list for VPN clients that >will block their network access. >* Use "aaa...
  2. qwasd

    User based ACLs

    A step closer! I was able to use acl=<access-list> using virtual telnet, aaa authentication, and RADIUS. What I have now is: 1 - If I come in with PPTP using vpdn client authentication LOCAL and vpdn username, then PPTP works and uauth is not being used (show uauth shows nothing). (I am not...
  3. qwasd

    User based ACLs

    Thanks for the reply. >>You can differentiate them by htere ip address ! Anyone can be connecting from anywhere. Before they connect, I do not know what IP they will have. When they connect to the VPN, I am assigning IP addresses. Once they connect, how do I assign UserA a specific IP address...
  4. qwasd

    User based ACLs

    How do I differentiate on the from side? How do I define userA and UserB?
  5. qwasd

    User based ACLs

    Hi. I would like to PPTP to a PIX 515. I would like to grant access to the internal network based on who connected. For example, userA may go to File server. UserB may use Database. It looks like it can be done using RADIUS (e.g. acl=eng). Has anyone done it? Can you give any hints? Is it...
  6. qwasd

    Problem accessing the DMZ from the Inside

    Regarding the last point. If you need the web server accessible from outside, and you need the web server to access the AS/400, is there a better way of doing it?
  7. qwasd

    Can I download user acls from RADIUS with PPTP?

    I want to use RADIUS for PPTP. Then together with authentication I want to return Filter-ID with the name of an access list (which would be previously defined on the PIX). Then the user would be restricted based on the access list. Thanks.
  8. qwasd

    sysopt route dnat

    Does anyone have any info on what 'sysopt route dnat' does? The documentation gives a not-very-helpful 1 paragraph explanation. What does it do? When would I want to use it? Thanks.
  9. qwasd

    Can I download user acls from RADIUS with PPTP?

    Do you have a PIX config (or part) for it that you could post or E-mail to me? It would be greatly appreciated. Thanks.
  10. qwasd

    Can I download user acls from RADIUS with PPTP?

    Can I download user acls from RADIUS with PPTP or just with IPSEC? Thanks.
  11. qwasd

    Downloading user access list

    Hi. I am trying to download a user access list from a RADIUS server. It looks like the server is passing it, but the firewall is ignoring it. I am using FreeRADIUS (latest - 0.7.1) and PIX 515 6.2(2). Any gotchas that I could be missing? Am I correct that I want no sysopt connection permit-pptp...

Part and Inventory Search

Back
Top