Verifying and Testing Authentication Proxy


Like other Cisco router features, authentication proxy services allow for the display of various parameters using show commands. You can also debug authentication proxy services using debugging commands, and you can delete authentication proxy cache entries using a clear command.

Show Commands

If you want to display the users who currently have authentication proxy entries along with their IP addresses and other connection state information, you can use the show ip auth-proxy cache command.

To display the authentication proxy configurations on a router, use the show ip auth-proxy configuration command.

graphics/alert_icon.gif

If the output of the show ip auth-proxy cache command displays HTTP_ESTAB , that specific user has authenticated successfully.


Debug Commands

Debugging can be helpful when you need to troubleshoot your authentication proxy configuration. Cisco has a number of debug commands for use with authentication proxy. Some of the more important authentication proxy debug commands follow:

 
 debug ip auth-proxy function-trace debug ip audit object-creation debug ip audit object-deletion debug ip audit timers 

Clearing Authentication Proxy Entries

If you want to have a router remove any dynamically created authentication proxy ACLs and authentication proxy entries, you can use the command clear ip auth-proxy cache [* ip_address ] . To remove all entries, use the clear ip auth-proxy cache * command. To remove the entries associated with a single IP address, use the command clear ip auth-proxy cache ip_address .



CCSP SECUR Exam Cram 2
CCSP SECUR Exam Cram 2 (642-501)
ISBN: B000MU86IQ
EAN: N/A
Year: 2003
Pages: 291
Authors: Raman Sud

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net