<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need clarification in message ids of cisco in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910943#M457714</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jouni the quick fire,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Thanks a lot man &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;, i dont need L2L vpn, for remote client vpn, why the group name differs? let me post you the logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;166&amp;gt;Feb 21 2011 10:31:58 FO-ELD-ASA : %ASA-6-&lt;STRONG&gt;113009&lt;/STRONG&gt;: AAA retrieved default group policy (&lt;STRONG&gt;GP-FTO-ELD-VPNGROUP&lt;/STRONG&gt;&lt;SPAN&gt;) for user = &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:dclem@ptengineering.com"&gt;dclem@gmail.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;164&amp;gt;Feb 21 2011 11:47:14 FO-ELD-ASA : %ASA-4-113019: Group = &lt;STRONG&gt;portal2PROFILE&lt;/STRONG&gt;&lt;SPAN&gt;, Username = &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:dclem@ptengineering.com"&gt;dclem@gmail.com&lt;/A&gt;&lt;SPAN&gt;, IP = 67.xxx.108.162, Session disconnected. Session Type: SSL, Duration: 1h:15m:16s, Bytes xmt: 1831910, Bytes rcv: 365237, Reason: Idle Timeout.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the above logs, which one i should take it as group? group is different for login and logout log.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;M.Viswesh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 27 Mar 2012 15:21:32 GMT</pubDate>
    <dc:creator>viswesh1406</dc:creator>
    <dc:date>2012-03-27T15:21:32Z</dc:date>
    <item>
      <title>Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910939#M457710</link>
      <description>&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I am analyzing cisco vpn logs, 113009 message id log contains the group name for that particualr user, when he logs out, 113019 log is sent, which has a different group name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Can you tell me what is the difference between the two groups? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;M.Viswesh.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:47:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910939#M457710</guid>
      <dc:creator>viswesh1406</dc:creator>
      <dc:date>2019-03-11T22:47:17Z</dc:date>
    </item>
    <item>
      <title>Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910940#M457711</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think the syslog ID 113009 message refers to the Group Policy that was applied to the user&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syslog ID 113019 message seems to refer to the name of the tunnel-group name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What device are the VPNs on and what software version?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Mar 2012 14:24:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910940#M457711</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-03-27T14:24:22Z</dc:date>
    </item>
    <item>
      <title>Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910941#M457712</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jouni,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Thanks a lot Jouni.&lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/tiny_mce3/plugins/jiveemoticons/images/spacer.gif"&gt;&lt;/SPAN&gt; Whether the values depend on cisco model and software version?coz In our network, we have more than 10 firewalls(I dont know the versions used). I am analyzing the logs to create reports.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; can you explain me what is a tunnel group name? Sorry for the basic questions.&lt;SPAN __jive_emoticon_name="plain" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/tiny_mce3/plugins/jiveemoticons/images/spacer.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;M.Viswesh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Mar 2012 14:46:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910941#M457712</guid>
      <dc:creator>viswesh1406</dc:creator>
      <dc:date>2012-03-27T14:46:16Z</dc:date>
    </item>
    <item>
      <title>Re: Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910942#M457713</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not sure if the type of device and software matter but just wanted to make sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not sure if I got the syslog ID right. &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"tunnel-group" is the name of the connection.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;- For L2L VPN the tunnel-group name in your ASA/PIX configurations is always the remote peer IP address. &lt;UL&gt;&lt;LI&gt;Like for example "tunnel-group 1.2.3.4 type ipsec-l2l"&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;- For Client VPN the group-name can be anything&amp;nbsp; &lt;UL&gt;&lt;LI&gt;Like for example "tunnel-group REMOTE-USER-VPN-01 type ipsec-ra"&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With Cisco IPsec VPN Client connections you use the tunnel-group name as the Group name in when you are configuring the VPN connection to your VPN Client software. Pre-shared-key in that situation is the password.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The very basic configurations for L2L VPN tunnel-group would be something like this (for the whole connection you ofcourse need alot more configurations but the tunnel-group configuration has atleast the "pre-shared-key" configuration):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel-group 1.2.3.4 type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.2.3.4 ipsec-attributes&lt;/P&gt;&lt;P&gt; pre-shared-key ThisIsThekey&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For a VPN Client connection the tunnel-group configuration could look something like this (Again not a full configuration):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel-group REMOTE-USER-VPN-01 type ipsec-ra&lt;/P&gt;&lt;P&gt;tunnel-group REMOTE-USER-VPN-01 general-attributes&lt;/P&gt;&lt;P&gt;address-pool REMOTE-VPN-POOL&lt;/P&gt;&lt;P&gt;default-group-policy REMOTE-USER-VPN-01-GP&lt;/P&gt;&lt;P&gt;tunnel-group REMOTE-USER-VPN-01 ipsec-attributes&lt;/P&gt;&lt;P&gt;pre-shared-key ThisIsThekey&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Mar 2012 15:02:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910942#M457713</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-03-27T15:02:22Z</dc:date>
    </item>
    <item>
      <title>Re: Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910943#M457714</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jouni the quick fire,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Thanks a lot man &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;, i dont need L2L vpn, for remote client vpn, why the group name differs? let me post you the logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;166&amp;gt;Feb 21 2011 10:31:58 FO-ELD-ASA : %ASA-6-&lt;STRONG&gt;113009&lt;/STRONG&gt;: AAA retrieved default group policy (&lt;STRONG&gt;GP-FTO-ELD-VPNGROUP&lt;/STRONG&gt;&lt;SPAN&gt;) for user = &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:dclem@ptengineering.com"&gt;dclem@gmail.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;164&amp;gt;Feb 21 2011 11:47:14 FO-ELD-ASA : %ASA-4-113019: Group = &lt;STRONG&gt;portal2PROFILE&lt;/STRONG&gt;&lt;SPAN&gt;, Username = &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:dclem@ptengineering.com"&gt;dclem@gmail.com&lt;/A&gt;&lt;SPAN&gt;, IP = 67.xxx.108.162, Session disconnected. Session Type: SSL, Duration: 1h:15m:16s, Bytes xmt: 1831910, Bytes rcv: 365237, Reason: Idle Timeout.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the above logs, which one i should take it as group? group is different for login and logout log.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;M.Viswesh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Mar 2012 15:21:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910943#M457714</guid>
      <dc:creator>viswesh1406</dc:creator>
      <dc:date>2012-03-27T15:21:32Z</dc:date>
    </item>
    <item>
      <title>Re: Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910944#M457715</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The first message tells that after the user (with the mentioned username) logged in, his connection was applied with the configurations/rules under the "group-policy &lt;STRONG&gt;GP-FTO-ELD-VPNGROUP&lt;/STRONG&gt;" on the ASA. The group-policy basicly just lets you define some specific settings to the actual VPN connection. Like which networks the user is allowed to access through the VPN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show run group-policy displays all the group-policies configured on your ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The second messages group tells the name of the actual VPN profile/connection the user was using&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show run tunnel-group displays all the tunnel-groups configured on your ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should find the above group-policy &lt;STRONG&gt;GP-FTO-ELD-VPNGROUP &lt;/STRONG&gt;configured under the tunnel-group configurations.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;portal2PROFILE&lt;/STRONG&gt; = tunnel-group = VPN connections name&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;GP-FTO-ELD-VPNGROUP&lt;/STRONG&gt; = group-policy = Contains additional settings for all the users using the VPN connection named &lt;STRONG&gt;portal2PROFILE&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this clarifies the thing a bit. I'm not sure if I was able to explain it any better.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if it was any help &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Mar 2012 15:42:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910944#M457715</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-03-27T15:42:57Z</dc:date>
    </item>
    <item>
      <title>Re: Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910945#M457716</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jouni,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Thanks a lot. It helped a lot &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 28 Mar 2012 05:55:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910945#M457716</guid>
      <dc:creator>viswesh1406</dc:creator>
      <dc:date>2012-03-28T05:55:20Z</dc:date>
    </item>
    <item>
      <title>Re: Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910946#M457724</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jouni,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I see that 113011 message id log shows user specific group policy. what is the difference between these two log?&lt;/P&gt;&lt;P&gt;But i see they havee different name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;166&amp;gt;Apr 12 2011 20:29:33 AWT-AA : %ASA-6-&lt;STRONG&gt;113011&lt;/STRONG&gt;: AAA retrieved user specific group policy (&lt;STRONG&gt;AWA-VPN-GP02&lt;/STRONG&gt;) for user = ktakepoochi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;lt;166&amp;gt;Apr 12 2011 20:29:33 AWT-AA : %ASA-6-&lt;STRONG&gt;113009&lt;/STRONG&gt;: AAA retrieved default group policy (&lt;STRONG&gt;NOACCESS&lt;/STRONG&gt;) for user = ktakepoochi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;M.Viswesh.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 28 Mar 2012 06:07:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910946#M457724</guid>
      <dc:creator>viswesh1406</dc:creator>
      <dc:date>2012-03-28T06:07:22Z</dc:date>
    </item>
    <item>
      <title>Need clarification in message ids of cisco</title>
      <link>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910947#M457733</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not 100% sure but it seems to me that the username "ktakeuchi" has its own "group-policy" configured. If you check the username configurations under ASDM, you can see that you assing "group-policy" straight to the username.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can also lock the username in question to some specific "tunnel-group".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't remember at the moment which setting overrides the other. I think there is certain order in which the "group-policy" rules are applied. I think the settings under "username" configurations apply. If the user didnt have the "group-policy" configured under his username, the "group-policy" configured under the tunnel-group/connection name that the person is using would be applied to the user.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As I said I'm not 100% sure &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; Maybe someone can confirm/correct what I just wrote.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 28 Mar 2012 06:33:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-clarification-in-message-ids-of-cisco/m-p/1910947#M457733</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-03-28T06:33:30Z</dc:date>
    </item>
  </channel>
</rss>

