03-21-2024 05:56 AM
Hi everyone. How to configure Windows NSP on Firepower as a radius server for authorization and authentication of VPN users. I will be glad if someone shares his experience.
Solved! Go to Solution.
03-21-2024 07:13 AM
NPS configuration on the FTD won't be any different compared to how you would configure ISE as the RADIUS server with the exception for the change of authorization (CoA) which I don't believe it will be supported with the NPS. Of course on the NPS you have to add the FTD as a client with the same PSK key that you will configure on the FTD, and the FTD must be able to communicate with the NPS server. Please take a look at this post of mine that shows you how to setup AnyConnect SSL VPN using ISE as the RADIUS server:
https://bluenetsec.com/fmc-anyconnect-ssl-vpn/
03-21-2024 06:42 AM
03-21-2024 07:13 AM
NPS configuration on the FTD won't be any different compared to how you would configure ISE as the RADIUS server with the exception for the change of authorization (CoA) which I don't believe it will be supported with the NPS. Of course on the NPS you have to add the FTD as a client with the same PSK key that you will configure on the FTD, and the FTD must be able to communicate with the NPS server. Please take a look at this post of mine that shows you how to setup AnyConnect SSL VPN using ISE as the RADIUS server:
https://bluenetsec.com/fmc-anyconnect-ssl-vpn/
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide