Specifications

7-12
Cisco NAC Appliance - Clean Access Manager Configuration Guide
OL-28003-01
Chapter 7 User Management: Configuring Authentication Servers
Adding an Authentication Provider
Step 19 Select the Filter Action tab and click Add to add a new filter action (Figure 7-7).
Figure 7-7 New Filter Action
Step 20
Select the General tab and enter a name (for example, “NAC IPSec Filter Action”).
Step 21 Select the Security Methods tab.
Step 22 Choose the Negotiate security option and click Add.
Step 23 Specify Integrity and encryption as the security method and click OK.
Step 24 Ensure that the following settings are defined:
AH Integrity is <None>
ESP Confidentiality is 3DES
ESP Integrity is SHA1
Step 25 Check (enable) the Use session key perfect forward secrecy (PFS) option and click OK.
Step 26 Choose the NAC IPsec Filter Action option.