cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
258
Views
0
Helpful
1
Replies

ASA remote access authentication

Larry Smith
Level 1
Level 1

Hello,

Is there a way to configure an ASA to dynamically assign different aaa-server groups based on AD group memberships of users trying to authenticate?

I don't seem to see a way to do this using DAP, could this be done with LDAP mappings?

 

Thanks in advance.

1 Reply 1

Hi Larry,

 

You can map AD group memberships to specific group policies on the ASA, you can find that configuration here:

 

- http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/91831-mappingsvctovpn.html

 

Let me know if further assistance is required!

 

Please proceed to rate and mark as correct the helpful Post!

 

David Castro,

 

Regards,