E-28
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Appendix E Configuring an External Server for Authorization and Authentication
Configuring an External RADIUS Server
Required-Client- Firewall-Vendor-Code
YYY
45 Integer
Single
1 = Cisco Systems (with Cisco
Integrated Client)
2 = Zone Labs
3 = NetworkICE
4 = Sygate
5 = Cisco Systems (with Cisco
Intrusion Prevention Security
Agent)
Required-Client-Firewall-Product-Code
YYY
46 Integer
Single
Cisco Systems Products:
1 = Cisco Intrusion
Prevention Security Agent
or Cisco Integrated Client
(CIC)
Zone Labs Products:
1 = Zone Alarm
2 = Zone AlarmPro
3 = Zone Labs Integrity
NetworkICE Product:
1 = BlackIce
Defender/Agent
Sygate Products:
1 = Personal Firewall
2 = Personal Firewall Pro
3 = Security Agent
Required-Client-Firewall-Description
YYY
47 String
Single
String
Require-HW-Client-Auth
YYY
48 Boolean
Single
0 = Disabled
1 = Enabled
Required-Individual-User-Auth
YYY
49 Integer
Single
0 = Disabled
1 = Enabled
Authenticated-User-Idle-Timeout
YYY
50 Integer
Single
1-35791394 minutes
Cisco-IP-Phone-Bypass
YYY
51 Integer
Single
0 = Disabled
1 = Enabled
IPSec-Split-Tunneling-Policy
YYY
55 Integer
Single
0 = No split tunneling
1 = Split tunneling
2 = Local LAN permitted
Table E-4 Security Appliance Supported RADIUS Attributes and Values (continued)
Attribute Name
VPN
3000 ASA PIX
Attr.
#
Syntax/
Type
Single
or
Multi-
Valued
Single or Multi-
Valued