<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Configure secondary-username-from-certificate in FTD? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4660282#M1092257</link>
    <description>&lt;P&gt;Yes, you are right about that. I found out that this command is a default command and only visible by the "show run all" command. The reason it was visible in the ASA cli code, was because someone have made a change to the default setting.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
    <pubDate>Fri, 29 Jul 2022 12:52:18 GMT</pubDate>
    <dc:creator>Chess Norris</dc:creator>
    <dc:date>2022-07-29T12:52:18Z</dc:date>
    <item>
      <title>Configure secondary-username-from-certificate in FTD?</title>
      <link>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4657422#M1092147</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I am in the process of migrating ASA code to FTD (7.0.1) but there is one command in the ASA that I cannot figure out where to&amp;nbsp;configure in FMC.&lt;/P&gt;
&lt;P&gt;On the ASA I have the following RA VPN settings configured under tunnel-group general-attributes&lt;/P&gt;
&lt;P&gt;authorization-required&lt;BR /&gt;secondary-username-from-certificate CN&lt;/P&gt;
&lt;P&gt;In FMC RA VPN configuration under the "Edit connection profile" and the AAA tab, there is a setting called "&lt;SPAN&gt;Map username from client certificate"&lt;/SPAN&gt;&amp;nbsp;but I can not see any option to use&amp;nbsp; "secondary-username-from-certificate"&lt;/P&gt;
&lt;P&gt;Anyone know if that's possible?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Tue, 26 Jul 2022 14:37:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4657422#M1092147</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2022-07-26T14:37:44Z</dc:date>
    </item>
    <item>
      <title>Re: Configure secondary-username-from-certificate in FTD?</title>
      <link>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4657855#M1092175</link>
      <description>&lt;P&gt;If the option is not in the GUI then you need to configure it via FlexConfig.&amp;nbsp; But I would suggest testing this in a lab before doing it in production.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Jul 2022 20:11:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4657855#M1092175</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2022-07-26T20:11:25Z</dc:date>
    </item>
    <item>
      <title>Re: Configure secondary-username-from-certificate in FTD?</title>
      <link>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4658375#M1092186</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/319690"&gt;@Marius Gunnerud&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;I tried to find this option in the as a device manager, just to see exactly what's it called there and see if I can find something similar in FMC. The RA VPN parameters use similar names in ASDM&amp;nbsp; and FMC, but I cannot find this option in ASDM either. This option must be available there, since the command is visible in the CLI.&amp;nbsp; Has anyone configured this in ASDM and now where this option is located?&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Wed, 27 Jul 2022 08:43:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4658375#M1092186</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2022-07-27T08:43:49Z</dc:date>
    </item>
    <item>
      <title>Re: Configure secondary-username-from-certificate in FTD?</title>
      <link>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4659185#M1092234</link>
      <description>&lt;P&gt;The ASDM does not support all configuration options for the ASA either. So, if that command is not present it just means it must also be configured using the CLI on the ASA&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jul 2022 07:44:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4659185#M1092234</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2022-07-28T07:44:58Z</dc:date>
    </item>
    <item>
      <title>Re: Configure secondary-username-from-certificate in FTD?</title>
      <link>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4660282#M1092257</link>
      <description>&lt;P&gt;Yes, you are right about that. I found out that this command is a default command and only visible by the "show run all" command. The reason it was visible in the ASA cli code, was because someone have made a change to the default setting.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Fri, 29 Jul 2022 12:52:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/configure-secondary-username-from-certificate-in-ftd/m-p/4660282#M1092257</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2022-07-29T12:52:18Z</dc:date>
    </item>
  </channel>
</rss>

