cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
231
Views
2
Helpful
1
Replies

FMC and Remote Access

Simple40
Level 1
Level 1

Hello All,

I have an ASA 5516-x that support two different connection profiles off a single device.  The remote user has the ability to select the different connection profiles via the Secure Client application.  This configuration works fine. 

I am trying to implement this same type of configuration on my firepower that is connected to FMC.  When I build the two Remote Access profiles it will only let me target the device with one of the connection profiles.

 

Is there a way to build two connection profiles each having their own group policy and secure client profile configurations.  I want one of the connection profiles to do SAML and the other to do RADIUS.  The user would select the dropdown on the Secure Client just like they do today when using the ASA 5516-x.

Thanks for you time.

 

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

You add connection profiles (aka "tunnel-groups" in the running-config) within the remote access VPN policy for a given device (or HA pair).

Once you do that, each can have unique group policies, AAA methods, profiles etc.

Review Cisco Networking for a $25 gift card