<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Hide AnyConnect Profile in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161314#M1074423</link>
    <description>&lt;P&gt;I've tried removing my Mgmt Tunnel VPN's fqdn and that actually broke it. I added it back then it was able to auto connect again.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 04 Oct 2020 22:05:57 GMT</pubDate>
    <dc:creator>gilbert.aispuro1</dc:creator>
    <dc:date>2020-10-04T22:05:57Z</dc:date>
    <item>
      <title>Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161172#M1074396</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;How do I hide Profiles from being selectable while connecting to the VPN?&lt;/P&gt;&lt;P&gt;I have 3 Connection Profiles and I only want to see one. The other two are for testing and I don't want my staff seeing those and getting confused.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 05:50:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161172#M1074396</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-04T05:50:17Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161187#M1074397</link>
      <description>&lt;P&gt;You can edit the XML file and remove the FQDN which is not required so they do not get any pull down menu.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Generally file will be available in Local PC : depends on how environment, some time you can push centrally these settings.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;C:\Users\&amp;lt;Windows User&amp;gt;\AppData\Local\Cisco\Cisco AnyConnect Secure Mobility Client\preferences.xml&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/anyconnect40/administration/guide/b_AnyConnect_Administrator_Guide_4-0/anyconnect-profile-editor.html" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/anyconnect40/administration/guide/b_AnyConnect_Administrator_Guide_4-0/anyconnect-profile-editor.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 07:24:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161187#M1074397</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-10-04T07:24:59Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161227#M1074405</link>
      <description>&lt;P&gt;Change the configuration on the ASA side. for each connection profile (known as tunnel-group in the cli), there will be a section like this:&lt;/P&gt;
&lt;PRE&gt;tunnel-group &amp;lt;profile name&amp;gt; webvpn-attributes
   group-alias &amp;lt;profile name&amp;gt; enable&lt;/PRE&gt;
&lt;P&gt;Remove the group-alias sections to make them not appear in the dropdown list.&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 11:51:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161227#M1074405</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-10-04T11:51:33Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161314#M1074423</link>
      <description>&lt;P&gt;I've tried removing my Mgmt Tunnel VPN's fqdn and that actually broke it. I added it back then it was able to auto connect again.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 22:05:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161314#M1074423</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-04T22:05:57Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161316#M1074424</link>
      <description>&lt;P&gt;I have no alias configured for the Profiles but yet I still see the profiles upon connecting as an option.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm actually using FMC for my FTD 2110's.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Oct 2020 22:07:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161316#M1074424</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-04T22:07:38Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161338#M1074427</link>
      <description>&lt;P&gt;My recommendation covers the initial display of profiles. &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/286878"&gt;@balaji.bandi&lt;/a&gt; 's recommendation covers whether or not they push to the client a persistent identification of the profile. If they ever did so, the profile must be manually deleted from the client computer. Profiles are stored in a C:\programdata subdirectory for Windows clients.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 01:37:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161338#M1074427</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-10-05T01:37:30Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161348#M1074431</link>
      <description>&lt;P&gt;The thing is, I deleted all profiles, and when my management VPN profile kicks in when I log off, it then becomes an option to pick after that.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 02:27:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161348#M1074431</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-05T02:27:50Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161376#M1074435</link>
      <description>&lt;P&gt;Can you share your remote access VPN configuration stanzas? (show run webvpn, group-policy and tunnel-group)&lt;/P&gt;</description>
      <pubDate>Mon, 05 Oct 2020 05:43:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4161376#M1074435</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-10-05T05:43:09Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4174490#M1075245</link>
      <description>&lt;P&gt;fp# sho run webvpn&lt;BR /&gt;webvpn&lt;BR /&gt;enable Outside&lt;BR /&gt;anyconnect-custom-attr dynamic-split-include-domains description traffic for these domains will be sent to the VPN headend&lt;BR /&gt;http-headers&lt;BR /&gt;hsts-server&lt;BR /&gt;enable&lt;BR /&gt;max-age 31536000&lt;BR /&gt;include-sub-domains&lt;BR /&gt;no preload&lt;BR /&gt;hsts-client&lt;BR /&gt;enable&lt;BR /&gt;x-content-type-options&lt;BR /&gt;x-xss-protection&lt;BR /&gt;content-security-policy&lt;BR /&gt;anyconnect image disk0:/csm/anyconnect-win-4.8.03043-webdeploy-k9.pkg 1 regex "Windows"&lt;BR /&gt;anyconnect image disk0:/csm/anyconnect-macos-4.8.03043-webdeploy-k9.pkg 2 regex "Mac OS"&lt;BR /&gt;anyconnect profiles AC_Profile_Hostname disk0:/csm/AC_Profile_Hostname.xml&lt;BR /&gt;anyconnect profiles MPHC-VPN-IPsecProfile disk0:/csm/MPHC-VPN-IPsecProfile.xml&lt;BR /&gt;anyconnect profiles VpnMgmtTunProfile disk0:/csm/VpnMgmtTunProfile.xml&lt;BR /&gt;anyconnect enable&lt;BR /&gt;tunnel-group-list enable&lt;BR /&gt;cache&lt;BR /&gt;no disable&lt;/P&gt;&lt;P&gt;fp# sho run group-policy&lt;BR /&gt;group-policy DfltGrpPolicy attributes&lt;BR /&gt;dns-server value x&lt;BR /&gt;vpn-tunnel-protocol ikev2 ssl-client&lt;BR /&gt;split-tunnel-policy tunnelspecified&lt;BR /&gt;split-tunnel-network-list value ACL-Split_Tunnel_Networks&lt;BR /&gt;default-domain value mphc.com&lt;BR /&gt;split-tunnel-all-dns enable&lt;BR /&gt;user-authentication-idle-timeout none&lt;BR /&gt;webvpn&lt;BR /&gt;anyconnect keep-installer none&lt;BR /&gt;anyconnect modules value dart&lt;BR /&gt;anyconnect ask none default anyconnect&lt;BR /&gt;http-comp none&lt;BR /&gt;activex-relay disable&lt;BR /&gt;file-entry disable&lt;BR /&gt;file-browsing disable&lt;BR /&gt;url-entry disable&lt;BR /&gt;deny-message none&lt;BR /&gt;group-policy .DefaultS2SGroupPolicy internal&lt;BR /&gt;group-policy .DefaultS2SGroupPolicy attributes&lt;BR /&gt;vpn-idle-timeout 30&lt;BR /&gt;vpn-idle-timeout alert-interval 1&lt;BR /&gt;vpn-session-timeout none&lt;BR /&gt;vpn-session-timeout alert-interval 1&lt;BR /&gt;vpn-filter none&lt;BR /&gt;vpn-tunnel-protocol ikev1 ikev2&lt;BR /&gt;group-policy MPHC_RA-GROUP-POLICY internal&lt;BR /&gt;group-policy MPHC_RA-GROUP-POLICY attributes&lt;BR /&gt;banner none&lt;BR /&gt;wins-server none&lt;BR /&gt;dns-server value x&lt;BR /&gt;dhcp-network-scope none&lt;BR /&gt;vpn-simultaneous-logins 1&lt;BR /&gt;vpn-idle-timeout 30&lt;BR /&gt;vpn-idle-timeout alert-interval 1&lt;BR /&gt;vpn-session-timeout none&lt;BR /&gt;vpn-session-timeout alert-interval 1&lt;BR /&gt;vpn-filter none&lt;BR /&gt;vpn-tunnel-protocol ikev2 ssl-client&lt;BR /&gt;split-tunnel-policy tunnelspecified&lt;BR /&gt;ipv6-split-tunnel-policy tunnelall&lt;BR /&gt;split-tunnel-network-list value ACL-Split_Tunnel_Networks&lt;BR /&gt;default-domain value mphc.com&lt;BR /&gt;split-dns none&lt;BR /&gt;split-tunnel-all-dns enable&lt;BR /&gt;client-bypass-protocol disable&lt;BR /&gt;vlan none&lt;BR /&gt;address-pools none&lt;BR /&gt;anyconnect-custom dynamic-split-include-domains value includeddomains&lt;BR /&gt;webvpn&lt;BR /&gt;anyconnect ssl dtls enable&lt;BR /&gt;anyconnect mtu 1406&lt;BR /&gt;anyconnect firewall-rule client-interface public none&lt;BR /&gt;anyconnect firewall-rule client-interface private none&lt;BR /&gt;anyconnect ssl keepalive 20&lt;BR /&gt;anyconnect ssl rekey time none&lt;BR /&gt;anyconnect ssl rekey method none&lt;BR /&gt;anyconnect dpd-interval client 30&lt;BR /&gt;anyconnect dpd-interval gateway 300&lt;BR /&gt;anyconnect ssl compression none&lt;BR /&gt;anyconnect dtls compression none&lt;BR /&gt;anyconnect modules value dart&lt;BR /&gt;anyconnect profiles value AC_Profile_Hostname type user&lt;BR /&gt;anyconnect ask none default anyconnect&lt;BR /&gt;anyconnect ssl df-bit-ignore disable&lt;BR /&gt;group-policy AnyConnect_MGMT_Tunnel internal&lt;BR /&gt;group-policy AnyConnect_MGMT_Tunnel attributes&lt;BR /&gt;banner none&lt;BR /&gt;wins-server none&lt;BR /&gt;dns-server value x&lt;BR /&gt;dhcp-network-scope none&lt;BR /&gt;vpn-simultaneous-logins 3&lt;BR /&gt;vpn-idle-timeout 30&lt;BR /&gt;vpn-idle-timeout alert-interval 1&lt;BR /&gt;vpn-session-timeout none&lt;BR /&gt;vpn-session-timeout alert-interval 1&lt;BR /&gt;vpn-filter none&lt;BR /&gt;vpn-tunnel-protocol ikev2&lt;BR /&gt;split-tunnel-policy tunnelspecified&lt;BR /&gt;ipv6-split-tunnel-policy tunnelspecified&lt;BR /&gt;split-tunnel-network-list value ACL-Split_Tunnel_Networks&lt;BR /&gt;default-domain value mphc.com&lt;BR /&gt;split-dns none&lt;BR /&gt;split-tunnel-all-dns enable&lt;BR /&gt;client-bypass-protocol enable&lt;BR /&gt;vlan none&lt;BR /&gt;address-pools value VPN-DHCP_Pool_2&lt;BR /&gt;webvpn&lt;BR /&gt;anyconnect ssl dtls enable&lt;BR /&gt;anyconnect mtu 1406&lt;BR /&gt;anyconnect firewall-rule client-interface public none&lt;BR /&gt;anyconnect firewall-rule client-interface private none&lt;BR /&gt;anyconnect ssl keepalive 20&lt;BR /&gt;anyconnect ssl rekey time none&lt;BR /&gt;anyconnect ssl rekey method none&lt;BR /&gt;anyconnect dpd-interval client 30&lt;BR /&gt;anyconnect dpd-interval gateway 30&lt;BR /&gt;anyconnect ssl compression none&lt;BR /&gt;anyconnect dtls compression none&lt;BR /&gt;anyconnect modules value dart&lt;BR /&gt;anyconnect profiles value VpnMgmtTunProfile type user&lt;BR /&gt;anyconnect ask none default anyconnect&lt;BR /&gt;anyconnect ssl df-bit-ignore disable&lt;BR /&gt;group-policy AnyConnect_CertVPN_Tunnel internal&lt;BR /&gt;group-policy AnyConnect_CertVPN_Tunnel attributes&lt;BR /&gt;banner none&lt;BR /&gt;wins-server none&lt;BR /&gt;dns-server value x&lt;BR /&gt;dhcp-network-scope none&lt;BR /&gt;vpn-simultaneous-logins 3&lt;BR /&gt;vpn-idle-timeout 30&lt;BR /&gt;vpn-idle-timeout alert-interval 1&lt;BR /&gt;vpn-session-timeout none&lt;BR /&gt;vpn-session-timeout alert-interval 1&lt;BR /&gt;vpn-filter none&lt;BR /&gt;vpn-tunnel-protocol ikev2&lt;BR /&gt;split-tunnel-policy tunnelspecified&lt;BR /&gt;ipv6-split-tunnel-policy tunnelspecified&lt;BR /&gt;split-tunnel-network-list value ACL-Split_Tunnel_Networks&lt;BR /&gt;default-domain value mphc.com&lt;BR /&gt;split-dns none&lt;BR /&gt;split-tunnel-all-dns enable&lt;BR /&gt;client-bypass-protocol enable&lt;BR /&gt;vlan none&lt;BR /&gt;address-pools none&lt;BR /&gt;anyconnect-custom dynamic-split-include-domains value includeddomains2&lt;BR /&gt;webvpn&lt;BR /&gt;anyconnect ssl dtls enable&lt;BR /&gt;anyconnect mtu 1406&lt;BR /&gt;anyconnect firewall-rule client-interface public none&lt;BR /&gt;anyconnect firewall-rule client-interface private none&lt;BR /&gt;anyconnect ssl keepalive 20&lt;BR /&gt;anyconnect ssl rekey time none&lt;BR /&gt;anyconnect ssl rekey method none&lt;BR /&gt;anyconnect dpd-interval client 30&lt;BR /&gt;anyconnect dpd-interval gateway 30&lt;BR /&gt;anyconnect ssl compression none&lt;BR /&gt;anyconnect dtls compression none&lt;BR /&gt;anyconnect modules value dart&lt;BR /&gt;anyconnect profiles value MPHC-VPN-IPsecProfile type user&lt;BR /&gt;anyconnect ask none default anyconnect&lt;BR /&gt;anyconnect ssl df-bit-ignore disable&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;fp# sho run tunnel-group&lt;BR /&gt;tunnel-group MPHC-VPN type remote-access&lt;BR /&gt;tunnel-group MPHC-VPN general-attributes&lt;BR /&gt;address-pool VPN-DHCP_Pool&lt;BR /&gt;address-pool VPN-DHCP_Pool_2&lt;BR /&gt;authentication-server-group MPHC-AD&lt;BR /&gt;authorization-server-group MPHC-Radius&lt;BR /&gt;accounting-server-group MPHC-Radius&lt;BR /&gt;default-group-policy MPHC_RA-GROUP-POLICY&lt;BR /&gt;tunnel-group MPHC-VPN webvpn-attributes&lt;BR /&gt;group-alias MPHC-VPN enable&lt;BR /&gt;tunnel-group AnyConnect_MGMT_Tunnel type remote-access&lt;BR /&gt;tunnel-group AnyConnect_MGMT_Tunnel general-attributes&lt;BR /&gt;address-pool VPN-DHCP_Pool&lt;BR /&gt;address-pool VPN-DHCP_Pool_2&lt;BR /&gt;default-group-policy AnyConnect_MGMT_Tunnel&lt;BR /&gt;tunnel-group AnyConnect_MGMT_Tunnel webvpn-attributes&lt;BR /&gt;authentication certificate&lt;BR /&gt;group-url x enable&lt;BR /&gt;tunnel-group MPHC-Cert-VPN type remote-access&lt;BR /&gt;tunnel-group MPHC-Cert-VPN general-attributes&lt;BR /&gt;address-pool VPN-DHCP_Pool_2&lt;BR /&gt;tunnel-group MPHC-Cert-VPN webvpn-attributes&lt;BR /&gt;authentication certificate&lt;BR /&gt;group-alias Cert-VPN disable&lt;BR /&gt;tunnel-group MPHC-VPN-IPSec type remote-access&lt;BR /&gt;tunnel-group MPHC-VPN-IPSec general-attributes&lt;BR /&gt;address-pool VPN-DHCP_Pool_2&lt;BR /&gt;default-group-policy AnyConnect_CertVPN_Tunnel&lt;BR /&gt;tunnel-group MPHC-VPN-IPSec webvpn-attributes&lt;BR /&gt;authentication certificate&lt;BR /&gt;fp#&lt;/P&gt;</description>
      <pubDate>Tue, 27 Oct 2020 17:15:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4174490#M1075245</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-27T17:15:33Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4174495#M1075247</link>
      <description>&lt;P&gt;I also changed all tunnels to IKEv2, removed SSL settings. I removed the FQDN in the Management profile, and it still populates.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Oct 2020 17:19:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4174495#M1075247</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-27T17:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4174700#M1075259</link>
      <description>&lt;P&gt;So, I just removed the Mgmt tunnel AC profile in the headend, which fixed the issue. For some reason, when users would connect and update with the headend, it will populate the Mgmt tunnel profile in the wrong directory of&amp;nbsp;"C:\ProgramData\Cisco\Cisco AnyConnect Secure Mobility Client\Profile\" which made it visible upon logging in. Since we're rolling the Mgmt tunnel profile via GPO, the headend doesn't need to update the users.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Oct 2020 23:28:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/4174700#M1075259</guid>
      <dc:creator>gilbert.aispuro1</dc:creator>
      <dc:date>2020-10-27T23:28:15Z</dc:date>
    </item>
    <item>
      <title>Re: Hide AnyConnect Profile</title>
      <link>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/5236219#M1118189</link>
      <description>&lt;P&gt;you can adjust the profile.xml file in the parameter below , if you remove this from your xml file which firewall is pushing you will no longer see dropdown in anyconnect&lt;/P&gt;&lt;P&gt;&amp;lt;HostName&amp;gt;testvpn&amp;lt;/HostName&amp;gt;&lt;/P&gt;</description>
      <pubDate>Thu, 12 Dec 2024 19:53:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/hide-anyconnect-profile/m-p/5236219#M1118189</guid>
      <dc:creator>srajiwate</dc:creator>
      <dc:date>2024-12-12T19:53:29Z</dc:date>
    </item>
  </channel>
</rss>

