Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

IAS handing out access lists

Status
Not open for further replies.

cormon

Technical User
Mar 4, 2005
73
GB
hi Lads,

Dont know if anyone has tried the below but here goes.

We have various remote access support staff who come in via vpn clients into our 6.3(3) firewall .They are given an ip address from the 192.168.255.0 network range. There are remote access policies in Microsoft IAS then that is pushing an access-list to the users allowing them only access to a a particular ip address. So once the condition of them being in a group in IAS is meet the polcy then pushes out an access-list in the format
of ip:access-list 120 permit tcp any host 1.1.1.1 eq 23.

This is detailed in this document


here is my question if anyone can answer.

1) Does the access list have to existon the firewall before hand

and

2) is the syntax above correct.


thanks in advance as I am really stumped on this .
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top