Cisco FirePOWER ASA 5500 series Configuration Manual page 919

Security appliance command line
Hide thumbs Also See for FirePOWER ASA 5500 series:
Table of Contents

Advertisement

Appendix E
Configuring an External Server for Authorization and Authentication
Table E-2
Security Appliance Supported LDAP Cisco Schema Attributes (continued)
Attribute Name/
OID (Object Identifier)
cVPN3000-Required-Client-Firewall-
Product-Code
cVPN3000-Required-Client-Firewall-
Description
cVPN3000-Require-Individual-User-Auth
cVPN3000-Require-HW-Client-Auth
cVPN3000-Authenticated-User-Idle-
Timeout
cVPN3000-Cisco-IP-Phone-Bypass
cVPN3000-IPSec-Split-Tunneling-Policy
cVPN3000-IPSec-Required-Client-Firewall-
Capability
OL-10088-01
VPN
Attr.
1
3000 ASA PIX
OID
Y
Y
Y
32
Y
Y
Y
33
Y
Y
Y
34
Y
Y
Y
35
Y
Y
Y
36
Y
Y
Y
37
Y
Y
Y
38
Y
Y
Y
39
Cisco Security Appliance Command Line Configuration Guide
Configuring an External LDAP Server
Single
or
Syntax/
Multi-
Type
Valued
Possible Values
Integer
Single
Cisco Systems Products:
1 = Cisco Intrusion
Prevention Security Agent
or Cisco Integrated Client
(CIC)
Zone Labs Products:
1 = Zone Alarm
2 = Zone AlarmPro
3 = Zone Labs Integrity
NetworkICE Product:
1 = BlackIce
Defender/Agent
Sygate Products:
1 = Personal Firewall
2 = Personal Firewall Pro
3 = Security Agent
String
Single
String
Integer
Single
0 = Disabled
1 = Enabled
Boolean Single
0 = Disabled
1 = Enabled
Integer
Single
1 - 35791394 minutes
Integer
Single
0 = Disabled
1 = Enabled
Integer
Single
0 = Tunnel everything
1 = Split tunneling
2 = Local LAN permitted
Integer
Single
0 = None
1 = Policy defined by remote
FW Are-You-There (AYT)
2 = Policy pushed CPP
4 = Policy from server
E-9

Advertisement

Table of Contents
loading

This manual is also suitable for:

Pix 500 seriesCisco asa 5500 series

Table of Contents