Contents
xxii
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Configuring Address Pools 30-53
Configuring Firewall Policies 30-54
Configuring Client Access Rules 30-57
Configuring Group-Policy WebVPN Attributes 30-58
Configuring User Attributes 30-69
Viewing the Username Configuration 30-70
Configuring Attributes for Specific Users 30-70
Setting a User Password and Privilege Level 30-70
Configuring User Attributes 30-71
Configuring VPN User Attributes 30-71
Configuring WebVPN for Specific Users 30-75
CHAPTER
31 Configuring IP Addresses for VPNs 31-1
Configuring an IP Address Assignment Method 31-1
Configuring Local IP Address Pools 31-2
Configuring AAA Addressing 31-2
Configuring DHCP Addressing 31-3
CHAPTER
32 Configuring Remote Access IPSec VPNs 32-1
Summary of the Configuration 32-1
Configuring Interfaces 32-2
Configuring ISAKMP Policy and Enabling ISAKMP on the Outside Interface 32-3
Configuring an Address Pool 32-4
Adding a User 32-4
Creating a Transform Set 32-4
Defining a Tunnel Group 32-5
Creating a Dynamic Crypto Map 32-6
Creating a Crypto Map Entry to Use the Dynamic Crypto Map 32-7
CHAPTER
33 Configuring Network Admission Control 33-1
Uses, Requirements, and Limitations 33-1
Configuring Basic Settings 33-2
Specifying the Access Control Server Group 33-2
Enabling NAC 33-2
Configuring the Default ACL for NAC 33-3
Configuring Exemptions from NAC 33-4
Changing Advanced Settings 33-5
Changing Clientless Authentication Settings 33-5