E-34
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Appendix E Configuring an External Server for Authorization and Authentication
Configuring an External RADIUS Server
Security Appliance RADIUS Authorization Attributes
Note
Authorization refers to the process of enforcing permissions or attributes. A RADIUS server defined as
an authentication server enforces permissions or attributes if they are configured.
Table E-5
lists all the possible security appliance supported RADIUS attributes that can be used for user
authorization.
Table E-6
Security Appliance Supported RADIUS Attributes and Values
Attribute Name
VPN
3000
ASA
PIX
Attr.
#
Syntax/
Type
Single
or
Multi-
Valued
Description or Value
Access-Hours
Y
Y
Y
1
String
Single
Name of the time range, for
example, Business-hours
Simultaneous-Logins
Y
Y
Y
2
Integer
Single
An integer from 0 to
2147483647
Primary-DNS
Y
Y
Y
5
String
Single
An IP address
Secondary-DNS
Y
Y
Y
6
String
Single
An IP address
Primary-WINS
Y
Y
Y
7
String
Single
An IP address
Secondary-WINS
Y
Y
Y
8
String
Single
An IP address
SEP-Card-Assignment
9
Integer
Single
Not used
Tunneling-Protocols
Y
Y
Y
11
Integer
Single
1 = PPTP
2 = L2TP
4 = IPSec
8 = L2TP/IPSec
16 = WebVPN
4 and 8 are mutually exclusive;
0-11 and 16-27 are legal values.
IPSec-Sec-Association
Y
12
String
Single
Name of the security
association
IPSec-Authentication
Y
13
Integer
Single
0 = None
1 = RADIUS
2 = LDAP (authorization only)
3 = NT Domain
4 = SDI
5 = Internal
6 = RADIUS with Expiry
7 = Kerberos/Active Directory
Banner1
Y
Y
Y
15
String
Single
Banner string
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......