[c-nsp] Accounting VPN PIX and ACS

Aaron R aaronis at people.net.au
Wed Nov 5 05:48:47 EST 2008


Hi,

You can use netflow on your external router if you have one. ESP protocol or
Protocol 50. Take a look at what protocols your VPN client is using for
transport and filter netflow based on this info.

Cheers,

Aaron.

-----Original Message-----
From: cisco-nsp-bounces at puck.nether.net
[mailto:cisco-nsp-bounces at puck.nether.net] On Behalf Of omar parihuana
Sent: Wednesday, November 05, 2008 4:22 AM
To: cisco-nsp at puck.nether.net
Subject: [c-nsp] Accounting VPN PIX and ACS

Hi List,

I'm facing a trouble, I have a PIX and one ACS 3.3. The pix act like VPN
concetrator for the clients (Windows Based - Cisco VPN Client) and ACS like
authenticator I'm using TACACS+. All were working well. But now my boss
said: We need to get the VPN usage so I need:, who? when? and  how long...?
were connected...  please could you provide me some suggestions, some
samples, or docs... maybe to change to RADIUS? or is it possible with
TACACS+?


Rgds.

-- 
Omar E.P.T
-----------------
Certified Networking Professionals make better Connections!
_______________________________________________
cisco-nsp mailing list  cisco-nsp at puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/



More information about the cisco-nsp mailing list