[c-nsp] router authentication of dial-up user through AAA server

Mohsen A. Momeni m.alimomeni at gmail.com
Sat Feb 4 03:57:00 EST 2006


I have two group of users connected to internet through a firewall for
traffic control. Both should be authenticated by firewall through an
AAA server before connecting to internet and there are different user
policies for different users in firewall.

1) LAN users.
2) Dial-up users which are connected to a router, and are
authenticated by an AAA server (for logging in)
The problem is that I don't want a second authentication. I want the
users logged in, can be automatically authenticated by the firewall.
Firewall should somehow know their username to apply the policies.
There should be a mapping from IP to username in AAA server. I think
this should be a function of the router to send the IP to AAA server
after authentication. AAA server can be LDAP or RADIUS server.

Is this possible? If yes, please tell me how.

More information about the cisco-nsp mailing list