1-25
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Clientless SSL VPN
Using Single Sign-on with Clientless SSL VPN
Command
Purpose
Step 1
aaa-server-host
Switches to the aaa-server-host configuration mode.
Step 2
start-url
Example:
hostname(config)#
aaa-server testgrp1 protocol
http-form
hostname(config)#
aaa-server testgrp1 host 10.0.0.2
hostname(config-aaa-server-host)#
start-url
http://example.com
/
east/Area.do?Page-Grp1
hostname(config-aaa-server-host)#
If the authenticating web server requires it, specifies
the URL from which to retrieve a pre-login cookie
from the authenticating web server.
Specifies the authenticating web server URL
http://example.com/east/Area.do?Page-Grp1 in the
testgrp1 server group with an IP address of 10.0.0.2.
Step 3
action-uri
Example:
http://www.example.com/auth/index.html/appdir/authc/
forms/MCOlogin.fcc?TYPE=33554433&REALMOID=06-000a131
1-a828-1185-ab41-8333b16a0008&GUID=&SMAUTHREASON=0&M
ETHOD=GET&SMAGENTNAME=$SM$5FZmjnk3DRNwNjk2KcqVCFbIrN
T9%2bJ0H0KPshFtg6rB1UV2PxkHqLw%3d%3d&TARGET=https%3A
%2F%2Fauth.example.com
To specify this action URI, enter the following
commands:
hostname(config-aaa-server-host)#
action-uri
http://www.example.com/auth/index.htm
hostname(config-aaa-server-host)#
action-uri
l/appdir/authc/forms/MCOlogin.fcc?TYP
hostname(config-aaa-server-host)#
action-uri
554433&REALMOID=06-000a1311-a828-1185
hostname(config-aaa-server-host)#
action-uri
-ab41-8333b16a0008&GUID=&SMAUTHREASON
hostname(config-aaa-server-host)#
action-uri
=0&METHOD=GET&SMAGENTNAME=$SM$5FZmjnk
hostname(config-aaa-server-host)#
action-uri
3DRNwNjk2KcqVCFbIrNT9%2bJ0H0KPshFtg6r
hostname(config-aaa-server-host)#
action-uri
B1UV2PxkHqLw%3d%3d&TARGET=https%3A%2F
hostname(config-aaa-server-host)#
action-uri
%2Fauth.example.com
hostname(config-aaa-server-host)#
Specifies a URI for an authentication program on the
authenticating web server.
A URI can be entered on multiple, sequential lines.
The maximum number of characters per line is 255.
The maximum number of characters for a complete
URI is 2048.
You must include the hostname and protocol in the
action URI. In this example, these appear at the start
of the URI in http://www.example.com.
Step 4
user-parameter
Example:
hostname(config-aaa-server-host)#
user-parameter
userid
hostname(config-aaa-server-host)#
Configures a username parameter for the HTTP
POST request.
Configures the username parameter userid.
Step 5
password-parameter
Example:
hostname(config-aaa-server-host)#
password-parameter
user_password
hostname(config-aaa-server-host)#
Configures a user password parameter for the HTTP
POST request.
Configures a user password parameter named
user_password.
Summary of Contents for 5505 - ASA Firewall Edition Bundle
Page 28: ...Glossary GL 24 Cisco ASA Series CLI Configuration Guide ...
Page 61: ...P A R T 1 Getting Started with the ASA ...
Page 62: ......
Page 219: ...P A R T 2 Configuring High Availability and Scalability ...
Page 220: ......
Page 403: ...P A R T 2 Configuring Interfaces ...
Page 404: ......
Page 499: ...P A R T 2 Configuring Basic Settings ...
Page 500: ......
Page 533: ...P A R T 2 Configuring Objects and Access Lists ...
Page 534: ......
Page 601: ...P A R T 2 Configuring IP Routing ...
Page 602: ......
Page 745: ...P A R T 2 Configuring Network Address Translation ...
Page 746: ......
Page 845: ...P A R T 2 Configuring AAA Servers and the Local Database ...
Page 846: ......
Page 981: ...P A R T 2 Configuring Access Control ...
Page 982: ......
Page 1061: ...P A R T 2 Configuring Service Policies Using the Modular Policy Framework ...
Page 1062: ......
Page 1093: ...P A R T 2 Configuring Application Inspection ...
Page 1094: ......
Page 1191: ...P A R T 2 Configuring Unified Communications ...
Page 1192: ......
Page 1333: ...P A R T 2 Configuring Connection Settings and QoS ...
Page 1334: ......
Page 1379: ...P A R T 2 Configuring Advanced Network Protection ...
Page 1380: ......
Page 1475: ...P A R T 2 Configuring Modules ...
Page 1476: ......
Page 1549: ...P A R T 2 Configuring VPN ...
Page 1550: ......
Page 1965: ...P A R T 2 Configuring Logging SNMP and Smart Call Home ...
Page 1966: ......
Page 2059: ...P A R T 2 System Administration ...
Page 2060: ......
Page 2098: ...1 8 Cisco ASA Series CLI Configuration Guide Chapter 1 Troubleshooting Viewing the Coredump ...
Page 2099: ...P A R T 2 Reference ...
Page 2100: ......