Cisco Bug: CSCuj16036 - CX Active auth needs a way to track activity for >1 user per address
Jun 01, 2017
- Cisco ASA Next-Generation Firewall Services
Known Affected Releases
9.1(2) 9.2(1.1.3) 9.2(1.2.50)
Symptom: This is an enhancement request to improve the way active authentication works on CX. There currently is no log-off mechanism available for end-users that are logged. As a result, if a different user logs on to a machine before the timeout, he/she might gain access to resources otherwise forbidden based on policies or vice versa. Also, the way active authentication works today, it doesn't support multiple users logged in to a host using the same IP address. (for example, virtual IP addressing on windows server) Conditions: Active authentication configured on CX.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases