[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: OATH support in XAUTH on firewalls



Hi Hill,

No, XAUTH is not standardized for IKEv1, and never will be.  Cisco does
support it in IOS, PIX, VPN3000, and Client applications.

Cisco PIX firewall supports native SDI token authentication, and any other
tokens that can be proxy'd via RADIUS.

IKEv2 will be supported in IOS and PIX sometime in 2005 (dates not
finalized).  

Regards,
Stephane.



> -----Original Message-----
> From: owner-ietf-xauth@xxxxxxxxxxxxx 
> [mailto:owner-ietf-xauth@xxxxxxxxxxxxx] On Behalf Of 
> Hill.Rutyer@xxxxxxxxxxxxx
> Sent: Friday, September 10, 2004 5:49 AM
> To: ietf-xauth@xxxxxxxx
> Subject: OATH support in XAUTH on firewalls 
> 
> 
> 
> 
> Hi there
> 
> I have just joined the list and so am unaware of the progress 
> of many items that would have been covered in this list If 
> there are now standardisation which are supported by all 
> major vendors it would be interesting to know
> 
> Can anyone tell which if any firewalls support OATH token 
> authentication in XAUTH on IKEv1
> 
> Can anyone also tell me any information available on the 
> likely implementation of IKEv2 by any major firewall vendors
> 
> all help on ike and XAUTH support by firewall vendrs is much 
> appreciated
> 
> Many thanks in advance
> 
> Kind Regards
> Hill Ruyter
> 
> 
>