cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
394
Views
0
Helpful
1
Replies

Why VPN authenticates a local user

Anand Narayana
Level 6
Level 6

HI,

i am using the similar config in my Cisco ASA listed below in the website of the config. in that user marty is a local user name for authenticating the ASA via SSH from LAN, but user marty is also able to login VPN, how do i avoid that MARTY user to deny VPN acces?

my requirement, i should specify a vpn group name eg. anand, & anand only should be allowed for VPN, but he should not be allowed for SSH, vice versa for marty also the same.

http://cisco.com/en/US/products/ps6120/products_configuration_example09186a008060f25c.shtml

1 Reply 1

rajbhatt
Level 3
Level 3

Hi,

You can create an access list specifying what that user ip pool will be allowed to access .

Please Check this website to create groups:

http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_7_2/conf_gd/vpn/vpngrp.htm

Raj