04-16-2013 02:55 PM - edited 03-11-2019 06:29 PM
I have a 5515 ASA that has the webVPN configured on it and it is using active directory to authenticate. The client would like to set up groups in active directory and restrict access to those groups when they are connected to the webVPN. For example, they have a group in active directory that they only want to access their "web" interface. What is the best way to configure this on the asa? Thanks!
Solved! Go to Solution.
04-22-2013 08:30 PM
Hello Benjamin,
You can accomplish this using LDAP authentication with attribute mapping and to be honest with you . It's really easy to accomplish:
ttp://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808d1a7c.shtml
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808c3c45.shtml
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149d.shtml
I think those links should do it, let me know what you think
Regards,
04-22-2013 10:27 AM
Anyone have any ideas on this?
04-22-2013 08:30 PM
Hello Benjamin,
You can accomplish this using LDAP authentication with attribute mapping and to be honest with you . It's really easy to accomplish:
ttp://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808d1a7c.shtml
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808c3c45.shtml
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008089149d.shtml
I think those links should do it, let me know what you think
Regards,
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: