Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, I trust you must be doing well.I want to point 2 things here: ++Tunnel can be only initiated from Cisco ASA as you have configured it to originate only.++Secondly, you have configured pfs group for phase 2 on Cisco 1010. Either remove it or confi...
Hi, I trust you must be doing well.I can see that the user is not getting internet access after connecting to the VPN. Here could be the possible reasons: ++PAT not configured on ASA for Anyconnect's pool.++Conflicting connection profile that connect...
Hi, I trust you must be doing well.Yes, it can have both internal identity (local users) and external (AD). Even if you configure authentication from AD, it should not stop you from creating a new internal user. Could you please share the exact error...
Hi, I trust you must be doing well.Anyconnect does not require a NAM module to perform posture, it has the ISE_Posture module to perform the same. It could be an old document where NAM could be used for the same. It is not required with AC. Regards,B...
Hi, I can see that you have configured dynamic nat, it works only if your traffic initiates from Inside. It dynamically may the source of outgoing packet and keep a session session for the return traffic. You need to either use port-map if you want ...