EasyManuals Logo
Home>Cisco>Firewall>FirePOWER ASA 5500 series

Cisco FirePOWER ASA 5500 series User Manual

Cisco FirePOWER ASA 5500 series
989 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #930 background imageLoading...
Page #930 background image
E-20
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Appendix E Configuring an External Server for Authorization and Authentication
Configuring an External LDAP Server
hostname(config-aaa-server-host)# ldap-naming-attribute cn
hostname(config-aaa-server-host)# ldap-login-password anypassword
hostname(config-aaa-server-host)# ldap-login-dn cn=Administrator,cn=Users,
dc=frdevtestad,dc=local
hostname(config-aaa-server-host)# ldap-attribute-map LdapSvrName
hostname(config-aaa-server-host)#
Step 4 Create a tunnel group that specifies SDI Authentication and LDAP authorization, as shown in the
following example commands:
hostname(config)# tunnel-group ipsec-tunnelgroup type ipsec-ra
hostname(config)# tunnel-group ipsec-tunnelgroup general-attributes
hostname(config)# authentication-server-group sdi-group
hostname(config)# authorization-server-group ldap-authorize-group
hostname(config)#
Note This example does not show the configuration for sdi-group.
Example 2: Configuring LDAP Authentication with Microsoft Active Directory
This example presents a configuration procedure for LDAP authentication with Microsoft Active
Directory. To secure the user credentials during transmission, this procedure configures the security
appliance to exchange messages with the LDAP directory over a SSL connection. It also configures the
security appliance to interpret the department attribute in the Microsoft AD user record as the group
policy to which the user is assigned. The authorization attributes for this group are retrieved from a
RADIUS server.
View the user records by clicking the User folder in the Active Directory Users and Computers window
as shown in Figure E-3.
Figure E-3 Active Directory Users and Computers Window Showing User Folder

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco FirePOWER ASA 5500 series and is the answer not in the manual?

Cisco FirePOWER ASA 5500 series Specifications

General IconGeneral
BrandCisco
ModelFirePOWER ASA 5500 series
CategoryFirewall
LanguageEnglish

Related product manuals