cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1271
Views
0
Helpful
1
Replies

FMC RAVPN access rules per AD Group

tferreira
Level 1
Level 1

Hello,

 

I'm fairly new to Firepower devices, and I've hit a barrier.

I need to specify remote access vpn access rules per AD Group, so that I can limit the routes presented to each group of users.

 

I cannot find anywhere where to do this, is it possible with Firepower devices to filter the routes presented to the remote access users.

 

Many thanks,

tferreira

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

That sort of thing would be generically referred to as LDAP Authorization. Unfortunately as of the current Firepower Threat Defense (Version 6.2.3.x), that feature is not supported.

 

Reference:

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/firepower_threat_defense_remote_access_vpns.html#reference_xby_dml_wy

 

Note if you are using a RADIUS server, you can apply a predefined Filter ACL. That is described later in the same document linked above.

View solution in original post

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

That sort of thing would be generically referred to as LDAP Authorization. Unfortunately as of the current Firepower Threat Defense (Version 6.2.3.x), that feature is not supported.

 

Reference:

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/firepower_threat_defense_remote_access_vpns.html#reference_xby_dml_wy

 

Note if you are using a RADIUS server, you can apply a predefined Filter ACL. That is described later in the same document linked above.

Review Cisco Networking products for a $25 gift card