Firewall Wizards mailing list archives

RE: Authentication on PIX.


From: "George J. Jahchan, Eng." <Firewall-Wizards () Compucenter org>
Date: Tue, 16 Sep 2003 08:37:00 +0300

Martijn,

To clarify my question, here is an example of what I need to do:

- I need to restrict access to the ssh port of servers in DMZ (from the
inside) to users belonging to a 'server admins' group.

The result is that port 22 from inside to DMZ is closed by default. It
becomes accessible only after a user belonging to the 'server admins' group
has supplied to the PIX (in encrypted form) a valid user name / password
combo, irrespective of which 'inside' IP address they log in from.

TIA
-----Original Message-----
From:   mjans001 [mailto:m.jansen001 () chello nl]
Sent:   Monday, September 15, 2003 9:11 PM
To:     'George J. Jahchan, Eng.'; 'Firewall Wizards List'
Subject:        RE: [fw-wiz] Authentication on PIX.

First get clear what you mean.

What services?

Than I will answer as in systems- or infra based solution.

There is more to Radius than most people use.

Martijn Jansen


-----Oorspronkelijk bericht-----
Van: firewall-wizards-admin () honor icsalabs com
[mailto:firewall-wizards-admin () honor icsalabs com] Namens George J.
Jahchan, Eng.
Verzonden: maandag 8 september 2003 12:38
Aan: Firewall Wizards List
Onderwerp: [fw-wiz] Authentication on PIX.

I need to enable authentication on the PIX515 for multiple user groups,
each group having access to a pre-defined set of services. A user can be
part of more than one group.

Can this be done on a PIX with Radius authentication?

TIA


_______________________________________________
firewall-wizards mailing list firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: