Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
C-14
Cisco ASDM User Guide
OL-16647-01
Appendix C Configuring an External Server for Authorization and Authentication
Configuring an External LDAP Server
Additional Information for using ASDM to Configure LDAP
Additional information on using ASDM to configure LDAP is available on Cisco.com in the
documentation area for the security appliance at:
http://www.cisco.com/en/US/products/ps6121/
products_installation_and_configuration_guides_list.html
The category Selected ASDM Configuration Topics for ASA includes the following example procedures
for configuring authentication and authorization on the security appliance using the Microsoft Active
Directory server:
User-Based Attributes Policy Enforcement
Placing LDAP users in a specific Group-Policy
Enforcing Static IP Address Assignment for AnyConnect Tunnels
Enforcing Dial-in Allow or Deny Access
Enforcing Logon Hours and Time-of-Day Rules
Other configuration examples available on Cisco.com include the following TechNotes:
ASA/PIX: Mapping VPN Clients to VPN Group Policies Through LDAP Configuration Example at:
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149
d.shtml
PIX/ASA 8.0: Use LDAP Authentication to Assign a Group Policy at Login at:
http://www.cisco.com/en/US/partner/products/ps6120/products_configuration_example09186a008
08d1a7c.shtml
IP Protocol Internet Protocol (IP)
0 Protocol Internet Protocol (IP)
TCP Protocol Transmission Control Protocol (TCP)
6 Protocol Transmission Control Protocol (TCP)
UDP Protocol User Datagram Protocol (UDP)
17 Protocol User Datagram Protocol (UDP)
any Hostname Rule applies to any host.
host Hostname Any alpha-numeric string that denotes a hostname.
log Log When the event is hit, a filter log message appears. (Same as permit and log or
deny and log.)
lt Operator Less than value
gt Operator Greater than value
eq Operator Equal to value
neq Operator Not equal to value
range Operator Inclusive range. Should be followed by two values.
Table C-4 Security Appliance-Supported Tokens
Token Syntax Field Description