C-16
Cisco ASDM User Guide
OL-16647-01
Appendix C Configuring an External Server for Authorization and Authentication
Configuring an External RADIUS Server
Table C-5 Security Appliance Supported RADIUS Attributes and Values
Attribute Name
VPN
3000 ASA PIX
Attr.
#
Syntax/
Type
Single
or
Multi-
Valued Description or Value
Access-Hours YYY1StringSingleName of the time range, for
example, Business-hours
Simultaneous-Logins YYY2IntegerSingleAn integer 0 to 2147483647
Primary-DNS YYY5StringSingleAn IP address
Secondary-DNS YYY6StringSingleAn IP address
Primary-WINS YYY7StringSingleAn IP address
Secondary-WINS YYY8StringSingleAn IP address
SEP-Card-Assignment 9 Integer Single Not used
Tunneling-Protocols YYY11IntegerSingle1 = PPTP
2 = L2TP
4 = IPSec
8 = L2TP/IPSec
16 = WebVPN
4 and 8 are mutually exclusive;
0-11 and 16-27 are legal values.
IPSec-Sec-Association Y 12 String Single Name of the security
association
IPSec-Authentication Y 13 Integer Single 0 = None
1 = RADIUS
2 = LDAP (authorization only)
3 = NT Domain
4 = SDI
5 = Internal
6 = RADIUS with Expiry
7 = Kerberos/Active Directory
Banner1 YYY15StringSingleBanner string
IPSec-Allow-Passwd-Store YYY16BooleanSingle0 = Disabled
1 = Enabled
Use-Client-Address Y 17 Boolean Single 0 = Disabled
1 = Enabled