Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I have setup authentication using LDAP and it is working fine.I am trying to restrict only users that are member of a particular Security group (VPN Users) to be able to VPN in.I have created an LDAP attribute map (vpnmap) that checks if the user ...
This was the issue I was having in the first place.People not getting mapped to xxxvpntunnel via the ldap attribute map, we still able to login using xxxvpntunnel group policy.When I set the default policy to vpn-simultaneous-logins 0, I could not ge...
Thanks for the reply, srue.I tried this but for some reason, but it was not checking for this attribute. I had debug ldap 255 running but could not see any matches to msNPAllowDialin. Maybe I did not configure the attribute map correctly.I have creat...
Hi Hadbou.Thanks for the reply and the links. The first one is quite detailed and I will use it to refine what I have done as indicated below.I have created a new AD group called VPN Deny and added users that I do not have VPN access to this group.I ...
What do you mean Internet on Ethernet? Do you mean that you will have a public IP address available that can be used to configure the outside interface of the ASA.If yes, then you have nothing to worry about. Set the inside interface to the Private I...