06-17-2020 03:50 AM
Hello Guys,
I have a radius server located in our head office and we have a connection there via site to site VPN from our branch office using FTD. The use case is that I want to authenticate my remote access VPN using the RADIUS server.
However, when I tried it, it cannot communicate from the inside interface of FTD to the RADIUS over the IPSEc VPN tunnel. When I checked the internet, it stated I need to have the "management-access" command but I think it is not supported in the FTD.
Thanks
06-17-2020 04:01 AM
06-17-2020 07:29 PM
Hi @Rob Ingram thanks for your feedback I will this one.
But just wondering, I put the whole subnet in the crypto ACL for my site to site VPN, this means that the interface of my FTD should be included already right and no need for the management-access command?
Thanks
06-17-2020 10:26 PM
You will need the inside interface as part of the crypto ACL to identify interesting traffic, but you will also need the management-access comand defined in order to connect to the ASA via the inside interface when managing over a VPN tunnel which terminates on the outside interface.
HTH
06-17-2020 11:33 PM
Hi @Rob Ingram noted on that. Can I use the actual command instead of using a variable in creating FlexConfig? Thanks
06-18-2020 12:12 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide