Cisco ASA 5505 Configuration Manual page 669

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 31
Configuring AAA Servers and the Local Database
To map the LDAP attribute names used in your organization to their Cisco counterparts on the adaptive
security appliance, perform the following steps:
Choose Configuration > Remote Access VPN > AAA Local Users > LDAP Attribute Map, and then
Step 1
click Add.
The Add LDAP Attribute Map dialog box appears with the Map Name tab active.
In the Name field, add a name for the map.
Step 2
In the Customer Name field, add the name of your organization's corresponding attribute.
Step 3
From the Cisco Name drop-down list, choose an attribute.
Step 4
Click Add.
Step 5
To add more names, repeat Steps
Step 6
To map the customer names, click the Map Value tab.
Step 7
Step 8
Click Add.
The Add LDAP Attributes Map Value dialog box appears.
Step 9
Choose the attribute from the Customer Name drop-down list.
In the Customer Value field, add the value for this attribute.
Step 10
In the Cisco Value field, add the Cisco value to which the value in Step 10 maps.
Step 11
Click Add.
Step 12
The values are mapped.
To map more names, repeat Steps
Step 13
Click OK to return to the Map Value tab, and then click OK again to close the dialog box.
Step 14
In the LDAP Attribute Map pane, click Apply.
Step 15
The value mappings are saved to the running configuration.
Adding an Authentication Prompt
You can specify text to display to the user during the AAA authentication challenge process. You can
specify the AAA challenge text for HTTP, FTP, and Telnet access through the adaptive security appliance
when requiring user authentication from TACACS+ or RADIUS servers. This text is primarily for
cosmetic purposes and appears above the username and password prompts that users see when they log
in.
If you do not specify an authentication prompt, users see the following when authenticating with a
RADIUS or TACACS+ server:
Connection Type
FTP
HTTP
Telnet
OL-20339-01
1
through 5.
8
through 12.
Default Prompt
FTP authentication
HTTP Authentication
None
Cisco ASA 5500 Series Configuration Guide using ASDM
Adding an Authentication Prompt
31-23

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents