Professional Documents
Culture Documents
SECS05L04 - Configuring Cisco IOS Firewall Authentication Proxy
SECS05L04 - Configuring Cisco IOS Firewall Authentication Proxy
Defense
AAA
Server
Web
Server
Client Internet
Host
FTP
Server
Telnet
Server
Client
Host
TACACS+ RADIUS
TACACS+
Lucent
Freeware
AAA
For inbound proxy For outbound proxy Server
authentication, enable the authentication, enable
Cisco IOS Firewall the Cisco IOS Firewall
authentication proxy to authentication proxy to
intercept inward HTTP, intercept inward HTTP,
HTTPS, FTP, or Telnet HTTPS, FTP, or Telnet
traffic from the outside. traffic from the inside.
Check the
auth-proxy.
Check the
Custom attributes
checkbox.
Configure AAA
Configure the HTTP server
Create the authentication proxy rule
Apply the Cisco IOS Firewall authentication proxy rule to an
interface
Verify the Cisco IOS Firewall authentication proxy
WWW
S0 Internet 10.0.6.10
E0 S0 E0
Host A
10.0.1.12
R1 R2
(Firewall)
AAA
10.0.6.12
router(config)#