cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
210
Views
0
Helpful
1
Replies

ASA remote access authentication

Larry Smith
Level 1
Level 1

Hello,

Is there a way to configure an ASA to dynamically assign different aaa-server groups based on AD group memberships of users trying to authenticate?

I don't seem to see a way to do this using DAP, could this be done with LDAP mappings?

 

Thanks in advance.

1 Reply 1

Hi Larry,

 

You can map AD group memberships to specific group policies on the ASA, you can find that configuration here:

 

- http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/91831-mappingsvctovpn.html

 

Let me know if further assistance is required!

 

Please proceed to rate and mark as correct the helpful Post!

 

David Castro,

 

Regards,

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: