Cisco PIX 500 Series Configuration Manual page 1079

Security appliance command line
Hide thumbs Also See for PIX 500 Series:
Table of Contents

Advertisement

Appendix E
Configuring an External Server for Authorization and Authentication
Table E-5
Security Appliance Supported RADIUS Attributes and Values (continued)
Attribute Name
IPSec-Required-Client-Firewall-Capability
IPSec-Client-Firewall-Filter-Name
IPSec-Client-Firewall-Filter-Optional
IPSec-Backup-Servers
IPSec-Backup-Server-List
DHCP-Network-Scope
Intercept-DHCP-Configure-Msg
MS-Client-Subnet-Mask
Allow-Network-Extension-Mode
Authorization-Type
Authorization-Required
Authorization-DN-Field
IKE-KeepAlive-Confidence-Interval
WebVPN-Content-Filter-Parameters
OL-12172-03
VPN
Attr.
3000 ASA PIX
#
Y
Y
Y
56
Y
57
Y
Y
Y
58
Y
Y
Y
59
Y
Y
Y
60
Y
Y
Y
61
Y
Y
Y
62
Y
Y
Y
63
Y
Y
Y
64
Y
Y
Y
65
Y
66
Y
Y
Y
67
Y
Y
Y
68
Y
Y
69
Cisco Security Appliance Command Line Configuration Guide
Configuring an External RADIUS Server
Single
or
Syntax/
Multi-
Type
Valued
Description or Value
Single
Integer
0 = None
1 = Policy defined by remote
FW Are-You-There (AYT)
2 = Policy pushed CPP
4 = Policy from server
Single
String
Specifies the name of the filter
to be pushed to the client as
firewall policy
Single
Integer
0 = Required
1 = Optional
Single
String
1 = Use Client-Configured list
2 = Disable and clear client list
3 = Use Backup Server list
Single
String
Server Addresses (space
delimited)
Single
String
IP Address
Single
Boolean
0 = Disabled
1 = Enabled
Single
Boolean
An IP address
Single
Boolean
0 = Disabled
1 = Enabled
Single
Integer
0 = None
1 = RADIUS
2 = LDAP
Single
Integer
0 = No
1 = Yes
Single
String
Possible values: UID, OU, O,
CN, L, SP, C, EA, T, N, GN,
SN, I, GENQ, DNQ, SER,
use-entire-name
Single
Integer
10-300 seconds
Single
Integer
1 = Java ActiveX
2 = Java Script
4 = Image
8 = Cookies in images
E-29

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5500 series

Table of Contents