[c-nsp] NAT-Device with authentication ?

2009-12-16 Thread Andreas Mueller
Hello, are there any (cisco)-NAT-devices which enable the NAT after the user has done some kind of authentication - which is checked against a radius-server or an active directory for example ? What I need is like a captive portal connected to a NAT-device. The scenario I try to have

Re: [c-nsp] NAT-Device with authentication ?

2009-12-16 Thread Brian Raaen
Try searching for Document ID: 13890. It is about setting up auth-proxy with nat. If you can't find it I can send you a pdf I had downloaded. -- -- Brian Raaen Network Engineer bra...@zcorum.com On Wednesday 16 December 2009, Andreas Mueller wrote: Hello,

Re: [c-nsp] NAT-Device with authentication ?

2009-12-16 Thread David Freedman
did you look at VLAN segregation pre/post authentication with either 802.1x (integrated auth) or VMPS (external auth)? Dave. Andreas Mueller wrote: Hello, are there any (cisco)-NAT-devices which enable the NAT after the user has done some kind of authentication - which is checked

Re: [c-nsp] NAT-Device with authentication ?

2009-12-16 Thread harbor235
The cisco ASA proxy authentication would authenticate you prior to being NAT'd, if that fails you are prevented from gaining external access. Thsi can be accomplished for any application you wish. I am sure most if not all enterprise class firewalls have this feature. Mike On Wed, Dec 16,

Re: [c-nsp] NAT-Device with authentication ?

2009-12-16 Thread Brett Looney
are there any (cisco)-NAT-devices which enable the NAT after the user has done some kind of authentication - which is checked against a radius-server or an active directory for example ? You're probably looking for the IOS auth-proxy feature. A configuration example is here: