cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
457
Views
5
Helpful
1
Replies

authenticating clientless SSL vpn on asa 8.0(3) against novell edirectory

srue
Level 7
Level 7

We are able to authenticate users against edirectory with the current set up, however, we are trying to limit the access to a specific group w/in ldap. We are using the "customer name" of groupMembership and 'cisco-name" of IETF-Radius-Class.

The problem is users who are both members of and not members of this particular group defined by 'groupMembership' are getting authenticated.

any advice?

there seems to be very limited documentation for this, as all LDAP examples i can find use AD - go figure.

TIA

1 Reply 1

srue
Level 7
Level 7

problem solved.

i had to create a group policy that allowed 0 connections and assign it as a default group policy to my tunnel group.