Cisco ASA 5505 Configuration Manual page 702

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Configuring Authentication for Network Access
Configuring Network Access Authentication
To enable network access authentication, perform the following steps. For more information about
authentication, see the
From the Configuration > Firewall > AAA Rules pane, choose Add > Add Authentication Rule.
Step 1
The Add Authentication Rule dialog box appears.
From the Interface drop-down list, choose the interface for applying the rule.
Step 2
In the Action field, click one of the following, depending on the implementation:
Step 3
From the AAA Server Group drop-down list, choose a server group. To add a AAA server to the server
Step 4
group, click Add Server. See the
information.
If you chose LOCAL for the AAA server group, you can optionally add a new user by clicking Add User.
See the
In the Source field, add the source IP address, or click the ellipsis (...) to choose an IP address already
Step 5
defined in ASDM.
In the Destination field, enter the destination IP address, or click the ellipsis (...) to choose an IP address
Step 6
already defined in ASDM.
In the Service field, enter an IP service name or number for the destination service, or click ellipsis (...)
Step 7
button to choose a service.
Step 8
(Optional) In the Description field, add a description.
(Optional) Click More Options to do any of the following:
Step 9
Click OK.
Step 10
The dialog box closes and the rule appears in the AAA Rules table.
Click Apply.
Step 11
The changes are saved to the running configuration.
Cisco ASA 5500 Series Configuration Guide using ASDM
33-4
"Information About Authentication" section on page
Authenticate
Do not Authenticate.
"Adding a User Account" section on page 31-18
To specify a source service for TCP or UDP, enter a TCP or UDP service in the Source Service field.
The destination service and source service must be the same. Copy and paste the destination Service
field to the Source Service field.
To make the rule inactive, uncheck Enable Rule.
You may not want to remove a rule, but instead turn it off.
To set a time range for the rule, from the Time Range drop-down list, choose an existing time range.
To add a new time range, click the ellipsis (...). For more information, see the
Ranges" section on page
13-15.
Chapter 33
"Configuring AAA Server Groups" section on page 31-8
for more information.
Configuring AAA Rules for Network Access
33-2.
for more
"Configuring Time
OL-20339-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents