cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
478
Views
0
Helpful
2
Replies

Specifying Client Auth Cert in Anyconnect NAM

evanspall
Level 1
Level 1

Hi guys,

Currently i have set up an SSID which uses EAP-FAST to perform user certificate authentication against an Identity store in ISE connected to AD. On the client devices I have install the Anyconnect NAM to act as the dot1x supplicant and have been in the process of setting up the profile using the Anyconnect Profile Editor.

The issue that I am having is users on the network have several certs assigned to them from AD. Orindarily it the NAM just prompts the user to select the correct certificate when they attempt to connect, which is not feasible.

Can I configure the NAM to use a specific user Cert to authenticate to the SSID (without prompting the user on connection)? And if so how?

Thanks

2 Replies 2

mmangat
Level 1
Level 1

Hello Evan,

Please check the following Cisco doc for specifying client auth cert in anyconnect. Hope it helps!

http://www.cisco.com/en/US/docs/security/vpn_client/anyconnect/anyconnect24/administration/guide/ac02asaconfig.html

Thanks for your reply Mantej, but that looks like the configuration of the Anyconnect VPN client. My issue relates to the Network Access Manager. I am not using the VPN client in my implementation.