Cisco Cisco ASA for Nexus 1000V Series Switch Manuale Tecnico

Pagina di 3
ASA Authentication to a Standby ASA When the
AAA Device is Located Through a L2L
Configuration Example
Document ID: 118089
Contributed by Gustavo Medina, Walter Lopez, and Alex Sanchez,
Cisco TAC Engineers.
Aug 13, 2014
Contents
Introduction
Prerequisites
     Requirements
     Components Used
Configure
     Network Diagram
Verify
     Router
Troubleshoot
Introduction
This document describes how to work around a scenario where the Administrator is not able to authenticate to
a Standby Cisco Adaptive Security Appliance (ASA) in a Failover Pair due to the fact that the Authentication,
Authorization, and Accounting (AAA) server is located on a remote location through a LAN−to−LAN (L2L).
Although fallback to LOCAL authentication can be used, RADIUS Authentication for both units is preferred.
Prerequisites
Requirements
Cisco recommends that you have knowledge of these topics:
ASA Failover
• 
VPN
• 
Network Address Translation (NAT)
• 
Components Used
This document is not restricted to specific software and hardware versions.
The information in this document was created from the devices in a specific lab environment. All of the
devices used in this document started with a cleared (default) configuration. If your network is live, make sure
that you understand the potential impact of any command.