Cisco ASA 5505 User Manual

Page 1933

Advertising
background image

C-35

Cisco ASA 5500 Series Configuration Guide using the CLI

Appendix C Configuring an External Server for Authorization and Authentication

Configuring an External RADIUS Server

Smart-Tunnel-Auto-Signon-Enable

Y

139

String

Single

Name of a Smart Tunnel Auto
Signon list appended by the
domain name

VLAN

Y

140

Integer

Single

0 - 4094

NAC-Settings

Y

141

String

Single

Name of the NAC policy

Member-Of

Y

Y

145

String

Single

Comma-delimited string, for
example:

Engineering, Sales

An administrative attribute that
can be used in dynamic access
policies. It does not set a group
policy.

Tunnel Group Name

Y

Y

146

String

Single

1 - 253 characters

Client Type

Y

Y

150

Integer

Single

1 = Cisco VPN Client (IKEv1)
2 = AnyConnect Client SSL
VPN
3 = Clientless SSL VPN
4 = Cut-Through-Proxy
5 = L2TP/IPsec SSL VPN
6 = AnyConnect Client IPsec
VPN (IKEv2)

Session Type

Y

Y

151

Integer

Single

0 = None
1 = AnyConnect Client SSL
VPN
2 = AnyConnect Client IPSec
VPN (IKEv2)
3 = Clientless SSL VPN
4 = Clientless Email Proxy
5 = Cisco VPN Client (IKEv1)
6 = IKEv1 LAN-LAN
7 = IKEv2 LAN-LAN
8 = VPN Load Balancing

Session Subtype

Y

Y

152

Integer

Single

0 = None
1 = Clientless
2 = Client
3 = Client Only

Session Subtype applies only
when the Session Type (151)
attribute has the following
values: 1, 2, 3, and 4.

Address-Pools

Y

Y

217

String

Single

Name of IP local pool

IPv6-Address-Pools

Y

218

String

Single

Name of IP local pool-IPv6

Table C-7

ASA Supported RADIUS Attributes and Values (continued)

Attribute Name

VPN
3000

ASA

PIX

Attr.
No.

Syntax/
Type

Single
or
Multi-
Valued

Description or Value

Advertising