cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

CSCvh07595 - FDM VPN AnyConnect profile with CertificateStoreMac XML tag is not supported

mikael.dautrey
Spotlight
Spotlight

Trying to use anyconnect profil editor to build an anyconnect profil XML file that will be deployed on ASA FTD.

FTD version :  6.2.x

Anyconnect editor version : tools-anyconnect-win-4.8.01090-profileeditor-k9

 

You can't load the xml profile using the FDM web gui because the file format is not accepted. You have to edit the XML file manually and comment or delete the following fields :

<SuspendOnConnectedStandby>
<LinuxLogonEnforcement>
<LinuxVPNEstablishment>
<MatchOnlyCertsWithKU>
<RetainVpnOnLogoff>
<CaptivePortalRemediationBrowserFailover>

 

Incidentally, the xml schema is not versionned and not accessible whereas it should :

xsi:schemaLocation="http://schemas.xmlsoap.org/encoding/ AnyConnectProfile.xsd"

 

 

IT Infrastructure deployer
Security practicioner
Spare time devops
Who Me Too'd this topic