E-8
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Appendix E Configuring an External Server for Authorization and Authentication
Configuring an External LDAP Server
cVPN3000-L2TP-MPPC-Compression Y 26 Integer Single 0 = Disabled
1 = Enabled
cVPN3000-IPSec-IP-Compression YYY27IntegerSingle0 = Disabled
1 = Enabled
cVPN3000-IPSec-IKE-Peer-ID-Check YYY28IntegerSingle1 = Required
2 = If supported by peer
certificate
3 = Do not check
cVPN3000-IKE-Keep-Alives YYY29BooleanSingle0 = Disabled
1 = Enabled
cVPN3000-IPSec-Auth-On-Rekey YYY30BooleanSingle0 = Disabled
1 = Enabled
cVPN3000-Required-Client-
Firewall-Vendor-Code
YYY31IntegerSingle1 = Cisco Systems (with Cisco
Integrated Client)
2 = Zone Labs
3 = NetworkICE
4 = Sygate
5 = Cisco Systems (with Cisco
Intrusion Prevention Security
Agent)
Table E-2 Security Appliance Supported LDAP Cisco Schema Attributes (continued)
Attribute Name/
OID (Object Identifier)
VPN
3000 ASA PIX
Attr.
OID
1
Syntax/
Type
Single
or
Multi-
Valued Possible Values