Preview Tool

Cisco Bug: CSCuj16036 - CX Active auth needs a way to track activity for >1 user per address

Last Modified

Jun 01, 2017

Products (1)

  • Cisco ASA Next-Generation Firewall Services

Known Affected Releases

9.1(2) 9.2(1.1.3) 9.2(1.2.50)

Description (partial)

This is an enhancement request to improve the way active authentication works on CX. There currently is no log-off mechanism available for end-users that are logged. As a result, if a different user logs on to a machine before the timeout, he/she might gain access to resources otherwise forbidden based on policies or vice versa.

Also, the way active authentication works today, it doesn't support multiple users logged in to a host using the same IP address. (for example, virtual IP addressing on windows server)

Active authentication configured on CX.
Bug details contain sensitive information and therefore require a account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.