[c-nsp] ASA5500 authentication with Kerberos/NT Domain Controler

Scott Granados gsgranados at comcast.net
Mon Aug 3 10:15:03 EDT 2009


Hi, I have a pair of ASA5500 devices that I wish to use to provide VPN 
services. I've been googling but all the examples I've found on Cisco.com 
and other sites are designed for configuration using the ASDM. The ASDM is 
absolutely awful to use and also almost entirely inaccessible with a screen 
reader.
Does anyone have some configuration examples using the command line that 
allow for users with Cisco VPN clients to authenticate against a Domain 
controler using Kerberos/NT and authenticates to a specific VPN group with a 
preshared key?  I have a very basic network with a 10.x.0.0/16 network that 
I wish to share to users via VPN clients.

Any basic pointers or any pointers to a site that's more command line 
specific either on or off Cisco.com would be appreciated.

Thank you
Scott




More information about the cisco-nsp mailing list