31-24
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 31 Configuring AAA Servers and the Local Database
AAA Servers Monitoring
To add an authentication prompt, perform the following steps:
Step 1 From the Configuration > Device Management > Users/AAA > Authentication Prompt pane, add a
message to appear above the username and password prompts that users see when they log in by entering
text in the Prompt field.
The following are the allowed character limits for authentication prompts:
Step 2 In the Messages area, add messages in the User accepted message and User rejected message fields.
If the user authentication occurs from Telnet, you can use the User accepted message and User rejected
message options to display different status prompts to indicate that the authentication attempt is accepted
or rejected by the AAA server.
If the AAA server authenticates the user, the adaptive security appliance displays the User accepted
message text, if specified, to the user; otherwise, the adaptive security appliance displays the User
rejected message text, if specified. Authentication of HTTP and FTP sessions displays only the challenge
text at the prompt. The User accepted message and User rejected message text are not displayed.
Step 3 Click Apply.
The changes are saved to the running configuration.
AAA Servers Monitoring
To monitor AAA Servers, see the following panes:
Application
Character Limit for
Authentication Prompt
Microsoft Internet Explorer 37
Telnet 235
FTP 235
Path Purpose
Monitoring > Properties > AAA Servers Shows the configured AAA server statistics.
Monitoring > Properties > AAA Servers Shows the AAA server running configuration.
Choose Tools > Command Line Interface, then
press Send.
Shows all LDAP attribute maps in the running configuration.
Choose Tools > Command Line Interface, then
press Send.
Shows the Zone Labs Integrity server configuration.
Choose Tools > Command Line Interface, then
press Send.
Applies only to AD servers using LDAP, and shows groups that are listed on
an AD server.