[c-nsp] VPN users w/ different ACLs

Kevin Graham mahargk at gmail.com
Mon Jan 22 16:02:49 EST 2007


On 1/22/07, Steve Francis <sfrancis at fastclick.com> wrote:

> When using an IOS device as the VPN endpoint for PPTP sessions, is it
> possible to have different classes of users have different ACL's applied
> to them?
[...]
>   Some extended RADIUS attribute?

Correct, you should be able to treat it the same as any other PPP call
and assign ACL's via framed-attributes in a RADIUS response, ie:

http://www.cisco.com/warp/public/793/access_dial/basicradius.shtml


More information about the cisco-nsp mailing list