<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTD Certificate Authentication - Remote Access VPN in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3939168#M936406</link>
    <description>&lt;P&gt;Thanks for the update.&lt;/P&gt;
&lt;P&gt;Are you able to share the Flexconfig that you used? It would be a useful piece of knowledge for the community.&lt;/P&gt;</description>
    <pubDate>Fri, 11 Oct 2019 10:20:56 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2019-10-11T10:20:56Z</dc:date>
    <item>
      <title>FTD Certificate Authentication - Remote Access VPN</title>
      <link>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3938455#M936404</link>
      <description>&lt;P&gt;Hello experts,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We recently migrated from ASA to FTD (FMC managed) running 6.4 code. The remote access SSL VPN works great with a Public signed cert, however we are no longer able to authenticate another VPN profile designed for Cisco IP Phones that uses certificate based authentication.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking at the phone logs, it appears that the FTD only uses the public signed cert during the exchange, is there currently a limitation on the FTD that only allows 1 CA to be used for certificate based authentication? We imported the phone's CA under FMC&amp;gt; Devices &amp;gt; Certificates and verified it on the FTD's CLI. The only difference I noticed is that on FMC, due to the fact I manually imported the CA's cert, its asking me to install identity certificate as well, which I don't have, nor it was required on the legacy ASA platform.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could someone point me to the right direction?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:34:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3938455#M936404</guid>
      <dc:creator>Kai Rong</dc:creator>
      <dc:date>2020-02-21T17:34:36Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Certificate Authentication - Remote Access VPN</title>
      <link>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3938949#M936405</link>
      <description>&lt;P&gt;After playing with GUI option for hours, I tried to deploy it using flexconfig and following the ASA syntax. It worked..&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Oct 2019 00:50:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3938949#M936405</guid>
      <dc:creator>Kai Rong</dc:creator>
      <dc:date>2019-10-11T00:50:35Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Certificate Authentication - Remote Access VPN</title>
      <link>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3939168#M936406</link>
      <description>&lt;P&gt;Thanks for the update.&lt;/P&gt;
&lt;P&gt;Are you able to share the Flexconfig that you used? It would be a useful piece of knowledge for the community.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Oct 2019 10:20:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-certificate-authentication-remote-access-vpn/m-p/3939168#M936406</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-10-11T10:20:56Z</dc:date>
    </item>
  </channel>
</rss>

