Cisco ASA 5505 Configuration Manual page 1365

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 64
General VPN Setup
Pre-fill Username from Certificate—Check to extract the names to be used for secondary
authentication from the primary and secondary fields specified in this panel. You must configure the
authentication method for both AAA and certificates before checking this attribute. To do so, return
to the Basic panel in the same window and check Both next to Method.
Hide username from end user—Check to hide the username to be used for authentication from the
VPN user.
Password—Choose one of the following methods to retrieve the password to be used for
authentication:
Specify the certificate fields to be used as the username—Specifies one or more fields to match as
the username. To use this username in the pre-fill username from certificate feature for the
secondary username/password authentication or authorization, you must also configure the
pre-fill-username and secondary-pre-fill-username.
The options for primary and secondary field attributes include the following:
Attribute
C
CN
DNQ
EA
GENQ
GN
I
L
N
O
OU
SER
SN
SP
T
UID
UPN
OL-20339-01
Prompt—Prompt the user for the password.
Use Primary—Reuse the primary authentication password for all secondary authentications.
Use—Enter a common secondary password for all secondary authentications.
Primary Field—Selects the first field to use from the certificate for the username. If this value
is found, the secondary field is ignored.
Secondary Field—Selects the field to us if the primary field is not found.
Definition
Country: the two-letter country abbreviation. These codes conform to ISO
3166 country abbreviations.
Common Name: the name of a person, system, or other entity. Not available
a s a secondary attribute.
Domain Name Qualifier.
E-mail address.
Generational Qualifier.
Given Name.
Initials.
Locality: the city or town where the organization is located.
Name.
Organization: the name of the company, institution, agency, association or
other entity.
Organizational Unit: the subgroup within the organization (O).
Serial Number.
Surname.
State/Province: the state or province where the organization is located
Title.
User Identifier.
User Principal Name.
Cisco ASA 5500 Series Configuration Guide using ASDM
Configuring SSL VPN Connections
64-55

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents