cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1147
Views
0
Helpful
1
Replies

SSL VPN Group Authentication

sagittarius
Level 1
Level 1

Hi,

I have upgraded my VPN concentrator 3015 to 4.1 ver. We have also enabled SSL VPN on the same. When I try to login to VPN it says "Login error", but when is mention the username as "username#<group name>" it is able to authenticate. I need to configure my concentrator to autheticated using username only. Has anyone faced such problem before.

Thanks,

Saggi

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

By default, WebVPN users use the Base Group settings, since there is nowhere to enter a group name in a WebVPN login (apart from the way you're doing it). I think what's happening is your Base Group is set up to authenticate users from say, the internal database, whereas you're trying to authenticate tme to say, a Radius server.

Go under Config - User Mgmt - Base Group, under the IPSec tab and check the setting for the Authentication field, make sure it is what you expect. If you're doing Radius authentication and you want to assign the users to a specific group, read this forum post:

http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.1dd5e69a