cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
702
Views
5
Helpful
6
Replies

Server 2019 VPN firepower 1010

Gurvinderyfy
Level 1
Level 1

Hi I've been trying to configure the server 2019 native VPN service but when I go to connect from the windows 10 client it always gives me an error. What do I have to configure through the FDM to allow the win 10 connection to get through the firepower 1010 set up at the server. 

6 Replies 6

The best way would be to terminate the remote-access-VPN on the FTD with AnyConnect.

But if you really want to do it on the Windows server:

  1. Ideally move the RAS server to a DMZ and configure tight access-control from this server to the internal network
  2. Configure Port forwarding for UDP/500 and UDP/4500 to the RAS server
  3. Allow these two ports in Access-Control
  4. Configure both the RAS-Server and the Win10 client for IKEv2/IPsec VPNs.

Yes I'd like to use Any connect but this is only for an office of 6 people
and purchasing an anyconnect license for 25 makes no sense for this one
office. Are there any ways to purchase fewer then 25 licenses?

The 25 user license is the smallest that is possible. But the PLUS subscription is not that expensive. It will save you time implementing it and you'll likely end with a network that is more secure. 

One more follow up. If I purchase the 25 licenses do they all have to be applied to the same device. Am I able to purchase 25 and allocate to different devices/offices if needed? 

The licensing is user-based. You can apply the license to as many devices as you want as long as they all belong to the same organisation.

are you use native L2TP PTPP or IKEv2 ??

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card