Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Firewall Wizards: RE: Authentication on PIX.

RE: Authentication on PIX.

From: George J. Jahchan, Eng. <Firewall-Wizards_at_Compucenter.org>
Date: Tue, 16 Sep 2003 08:37:00 +0300

Martijn,

To clarify my question, here is an example of what I need to do:

- I need to restrict access to the ssh port of servers in DMZ (from the
inside) to users belonging to a 'server admins' group.

The result is that port 22 from inside to DMZ is closed by default. It
becomes accessible only after a user belonging to the 'server admins' group
has supplied to the PIX (in encrypted form) a valid user name / password
combo, irrespective of which 'inside' IP address they log in from.

TIA
-----Original Message-----
From: mjans001 [mailto:m.jansen001_at_chello.nl]
Sent: Monday, September 15, 2003 9:11 PM
To: 'George J. Jahchan, Eng.'; 'Firewall Wizards List'
Subject: RE: [fw-wiz] Authentication on PIX.

First get clear what you mean.

What services?

Than I will answer as in systems- or infra based solution.

There is more to Radius than most people use.

Martijn Jansen

-----Oorspronkelijk bericht-----
Van: firewall-wizards-admin_at_honor.icsalabs.com
[mailto:firewall-wizards-admin_at_honor.icsalabs.com] Namens George J.
Jahchan, Eng.
Verzonden: maandag 8 september 2003 12:38
Aan: Firewall Wizards List
Onderwerp: [fw-wiz] Authentication on PIX.

I need to enable authentication on the PIX515 for multiple user groups,
each group having access to a pre-defined set of services. A user can be
part of more than one group.

Can this be done on a PIX with Radius authentication?

TIA

_______________________________________________
firewall-wizards mailing list firewall-wizards_at_honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Received on Sep 16 2003

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos