E-13
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Appendix E Configuring an External Server for Authorization and Authentication
Configuring an External LDAP Server
cVPN3000-WebVPN-SVC-Keep-Enable Y Y 87 Integer Single 0 = Disabled
1 = Enabled
cVPN3000-IE-Proxy-Server Y 88 String Single IP address
cVPN3000-IE-Proxy-Method Y 89 Integer Single 1 = No Modify
2 = No Proxy
3 = Auto Detect
4 = Other
cVPN3000-IE-Proxy-Exception-List Y 90 String Single newline (\n)-separated list of
DNS domains
cVPN3000-IE-Proxy-Bypass-Local Y 91 Integer Single 0 = None
1 = Local
cVPN3000-Tunnel-Group-Lock Y Y 92 String Single Name of the tunnel group or
“none”
cVPN3000-Firewall-ACL-In Y Y 93 String Single Access list ID
cVPN3000-Firewall-ACL-Out Y Y 94 String Single Access list ID
cVPN3000-PFS-Required YYY95BooleanSingle0 = No
1 = Yes
cVPN3000-WebVPN-SVC-Keepalive Y Y 96 Integer Single 0 = Disabled
n = Keepalive value in seconds
(15 - 600)
cVPN3000-WebVPN-SVC-Client-DPD Y Y 97 Integer Single 0 = Disabled
n = Dead Peer Detection value
in seconds (30 - 3600)
cVPN3000-WebVPN-SVC-Gateway-DPD Y Y 98 Integer Single 0 = Disabled
n = Dead Peer Detection value
in seconds (30 - 3600)
cVPN3000-WebVPN-SVC-Rekey-Period Y Y 99 Integer Single 0 = Disabled
n = Retry period in minutes (4 -
10080)
cVPN3000-WebVPN-SVC-Rekey-Method Y Y 100 Integer Single 0 = None
1 = SSL
2 = New tunnel
3 = Any (sets to SSL)
cVPN3000-WebVPN-SVC-Compression Y Y 101 Integer Single 0 = None
1 = Deflate Compression
Table E-2 Security Appliance Supported LDAP Cisco Schema Attributes (continued)
Attribute Name/
OID (Object Identifier)
VPN
3000 ASA PIX
Attr.
OID
1
Syntax/
Type
Single
or
Multi-
Valued Possible Values