03-08-2022 01:57 AM
Hi All ,
I would like to know ASAv can authentication with more Radius server in VPN Tunnel ?
In configuration below. If I have 2 radius group on ASAv and 2 tunnel / group-policy . can i separate
radius group depend on tunnel-group or not ?
Example Configuration.
Configuration on ASAv
aaa-server ISE protocol radius
aaa-server ISE (INTERNAL) host 1.1.1.1
key *****
aaa-server ISE-2 protocol radius
aaa-server ISE-2 (INTERNAL) host 2.2.2.2
key *****
group-policy TEST attributes
group-lock value TEST
tunnel-group TEST type remote-access
tunnel-group TEST general-attributes
authentication-server-group ISE
accounting-server-group ISE
group-policy TEST-2 attributes
group-lock value TEST-2
tunnel-group TEST-2 type remote-access
tunnel-group TEST-2 general-attributes
authentication-server-group ISE-2
accounting-server-group ISE-2
Thank you .
Solved! Go to Solution.
03-08-2022 05:12 AM
yes. correct you can do that.
03-08-2022 05:12 AM
@jewfcb001 yes, you can have many tunnel-groups that use many RADIUS server groups.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide