Solved

Radius configuration

Posted on 2007-11-20
3
599 Views
Last Modified: 2008-02-01
Hello to all.

This is sort of a duplicate question to the one I have out there.

What are the commands i needs to get my PIX 525 to talk to a MS wind2k3 server running RADIUS SERVER with an IP of 1.1.1.1

aaa-server RADIUS protocol radius
aaa-server partnerauth protocol radius
aaa-server partnerauth (inside) host 192.168.1.51 <PWS is yet to be determined> timeout 15





0
Comment
Question by:vburshte
  • 2
3 Comments
 
LVL 36

Expert Comment

by:grblades
ID: 20321595
The 3 lines you posted will give you the basics. You will need to change the IP address though.

Then you will just need to enable whatever feature you want to use radius.
For example if you want to use Radius to authenticate VPN users then you would also add a line such as :-
crypto map outside_map client authentication partnerauth
0
 

Author Comment

by:vburshte
ID: 20321666
crypto map outside_map client authentication partnerauth  -- outside?? even for incoming VPN???
0
 
LVL 36

Accepted Solution

by:
grblades earned 500 total points
ID: 20322219
outside_map is just a name. Its what Cisco use in their examples and so if what a lot of people tend to use.
I suppose it is called outside_map since all the VPN is performed on traffic coming into the outside interface.
0

Featured Post

3 Use Cases for Connected Systems

Our Dev teams are like yours. They’re continually cranking out code for new features/bugs fixes, testing, deploying, testing some more, responding to production monitoring events and more. It’s complex. So, we thought you’d like to see what’s working for us.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Can Cisco resolve internet address internally 4 44
Radius setup on a Cisco Switch with Server 2012 23 79
Cisco Firewall setup within a managed office 8 92
ASA Tunnel 18 27
If you have an ASA5510 then this sort of thing would be better handled with a CSC Module, however on an ASA5505 thats not an option, and if you want to throw in a quick solution to stop your staff going to facebook during work time, then this is the…
This article will cover setting up redundant ISPs for outbound connectivity on an ASA 5510 (although the same should work on the 5520s and up as well).  It’s important to note that this covers outbound connectivity only.  The ASA does not have built…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

813 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now