cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
512
Views
0
Helpful
1
Replies

password management of an AD integrated VPN

jfgomezsufi
Level 1
Level 1

Hello,

We have a client-server VPN with a cisco PIX 515 as the server. The authentication is integrated with Active Directory, so the user have an AD account. The problem arises when password in the AD expires and users have to change it, and since the Cisco VPN client won't allow vpn users for a password change they all have to call the Contact Center. Is there a way to allow the vpn clients to change password by themselves? maybe a module or additional software.

If not, which VPN server solution allows me this?

Thanks for your help.

Juan

1 Reply 1

Ivan Martinon
Level 7
Level 7

This will depend on your VPN server, Cisco ASA has the feature to allow the vpn client to change the password after it has expired, ASA uses password-management as a command under the tunnel group attributes for this vpn client connection, on thing to be aware is that after this is done you need to make sure that your authentication protocol is changed to mschapv2

http://www.cisco.com/en/US/docs/security/asa/asa80/command/reference/p.html#wp1879916

Review Cisco Networking for a $25 gift card