1-11
Cisco ASA Series CLI Configuration Guide
Appendix 1 Configuring an External Server for Authorization and Authentication
Configuring an External LDAP Server
Use-Client-Address Y Boolean Single 0 = Disabled
1 = Enabled
User-Auth-Server-Name Y String Single IP address or hostname
User-Auth-Server-Port Y Integer Single Port number for server protocol
User-Auth-Server-Secret Y String Single Server password
WebVPN-ACL-Filters Y String Single Webtype access list name
WebVPN-Apply-ACL-Enable Y Y Integer Single 0 = Disabled
1 = Enabled
With Version 8.0 and later, this
attribute is not required.
WebVPN-Citrix-Support-Enable Y Y Integer Single 0 = Disabled
1 = Enabled
With Versions 8.0 and later, this
attribute is not required.
WebVPN-Enable-functions Integer Single Not used - deprecated
WebVPN-Exchange-Server-
Address
String Single Not used - deprecated
WebVPN-Exchange-Server-
NETBIOS-Name
String Single Not used - deprecated
WebVPN-File-Access-Enable Y Y Integer Single 0 = Disabled
1 = Enabled
WebVPN-File-Server-Browsing-
Enable
Y Y Integer Single 0 = Disabled
1 = Enabled
WebVPN-File-Server-Entry-
Enable
Y Y Integer Single 0 = Disabled
1 = Enabled
WebVPN-Forwarded-Ports Y String Single Port-forward list name
WebVPN-Homepage Y Y String Single A URL such as
http://www.example.com
WebVPN-Macro-Substitution-
Val u e1
Y Y String Single See the SSL VPN Deployment Guide
for examples at the following URL:
http://www.cisco.com/en/US/docs/s
ecurity/asa/asa80/asdm60/ssl_vpn_
deployment_guide/deploy.html
WebVPN-Macro-Substitution-
Val u e2
Y Y String Single See the SSL VPN Deployment Guide
for examples at the following URL:
http://www.cisco.com/en/US/docs/s
ecurity/asa/asa80/asdm60/ssl_vpn_
deployment_guide/deploy.html
Table 1-2 ASA Supported Cisco Attributes for LDAP Authorization (continued)
Attribute Name
VPN
3000 ASA PIX
Syntax/
Type
Single or
Multi-Value
dPossible Values