1-14
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Network Admission Control
Changing Global NAC Framework Settings
Enabling and Disabling Clientless Authentication
Clientless authentication is enabled by default. The default configuration contains the
eou allow
clientless
configuration.
Restrictions
The
eou
commands apply
only
to NAC Framework sessions.
Detailed Steps
Follow these steps to enable clientless authentication for a NAC Framework configuration:
Changing the Login Credentials Used for Clientless Authentication
When clientless authentication is enabled, and the ASA fails to receive a response to a validation request
from the remote host, it sends a clientless authentication request on behalf of the remote host to the
Access Control Server. The request includes the login credentials that match those configured for
clientless authentication on the Access Control Server. The default username and password for clientless
authentication on the ASA matches the default username and password on the Access Control Server;
the default username and password are both “clientless.”
Prerequisites
If you change these values on the Access Control Server, you must also do so on the ASA.
Detailed Steps
Enter the following to change the username used for clientless authentication:
Command
Purpose
Step 1
global
Switches to global configuration mode.
Step 2
eou allow
{
audit
|
clientless
|
none
}
Example:
hostname(config)#
eou allow audit
hostname(config)#
Enables clientless authentication for a NAC
framework configuration.
•
audit
uses an audit server to perform clientless
authentication.
•
clientless
uses a Cisco Access Control Server to
perform clientless authentication.
•
none
disables clientless authentication.
Shows how to configure the ASA to use an audit
server to perform clientless authentication.
Step 3
[
no
]
eou allow
{
audit
|
clientless
|
none
}
Example:
hostname(config)#
no eou allow audit
hostname(config)#
Removes the command from the configuration.
Disables the use of an audit server.
Summary of Contents for 5505 - ASA Firewall Edition Bundle
Page 28: ...Glossary GL 24 Cisco ASA Series CLI Configuration Guide ...
Page 61: ...P A R T 1 Getting Started with the ASA ...
Page 62: ......
Page 219: ...P A R T 2 Configuring High Availability and Scalability ...
Page 220: ......
Page 403: ...P A R T 2 Configuring Interfaces ...
Page 404: ......
Page 499: ...P A R T 2 Configuring Basic Settings ...
Page 500: ......
Page 533: ...P A R T 2 Configuring Objects and Access Lists ...
Page 534: ......
Page 601: ...P A R T 2 Configuring IP Routing ...
Page 602: ......
Page 745: ...P A R T 2 Configuring Network Address Translation ...
Page 746: ......
Page 845: ...P A R T 2 Configuring AAA Servers and the Local Database ...
Page 846: ......
Page 981: ...P A R T 2 Configuring Access Control ...
Page 982: ......
Page 1061: ...P A R T 2 Configuring Service Policies Using the Modular Policy Framework ...
Page 1062: ......
Page 1093: ...P A R T 2 Configuring Application Inspection ...
Page 1094: ......
Page 1191: ...P A R T 2 Configuring Unified Communications ...
Page 1192: ......
Page 1333: ...P A R T 2 Configuring Connection Settings and QoS ...
Page 1334: ......
Page 1379: ...P A R T 2 Configuring Advanced Network Protection ...
Page 1380: ......
Page 1475: ...P A R T 2 Configuring Modules ...
Page 1476: ......
Page 1549: ...P A R T 2 Configuring VPN ...
Page 1550: ......
Page 1965: ...P A R T 2 Configuring Logging SNMP and Smart Call Home ...
Page 1966: ......
Page 2059: ...P A R T 2 System Administration ...
Page 2060: ......
Page 2098: ...1 8 Cisco ASA Series CLI Configuration Guide Chapter 1 Troubleshooting Viewing the Coredump ...
Page 2099: ...P A R T 2 Reference ...
Page 2100: ......