great... thanks for your answers. the only thing is that I beleive you have radius and tacacs mixed up. As per Cisco, in order to suport user downloadable ACL's, the ACS has to be in Radius .... I'm not 150% sure, but if I remember correctly, I read that somewhere on their site.
ok... so after a bit of research, I found that Cisco secure ACS does support user downloadable ACL's.... You don't define a split-tunnel command in your vpngroup, the ACL is downloaded from the ACS...
Now when they say User downloadable, does that mean that after the user imputs his...
I have one question for all of you... I'd REALLY appreciate an answer to this one....
I am writing a proposal on an implementation of a client VPN scenario on a PIX 525. My client is going to provide client VPN access to certain of it's partners in the world. Each partner will have their own...
so does that mean that with SCP running on my web server, I'd allow an SSH connection through the FW, (from the Web server to the file server), and that it will copy the data over SSL ?? no netbios ???
1st of all, thank you for your answer, I think it's putting me on the right path. Doe the OS, I am running Windows 2000 with IIS 5.
I don't understand exactly your answer though... CYGWIN will provide me with an SCP application which can be used to copy files from my internal file server to the...
that's exactly it. replace the ANY with the IP addresses of your mail servers.
In regards to changing it, just connect via telnet to your PIX, issue a NO comand to your conduit.
NO conduit permit tcp host mailserver eq smtp any
and then reimput your conduit commands with the actual IP...
alright people, I REALY need some advice on this one.. Here is the scenario.
We have external partners that are connecting to a web site sitting in the DMZ. There is a local authentication that happens on the web site (using some sort of database for validation). Once the user is authenticated...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.