Hi all,
We are using an ASA 5540 running 9.1.1 code. I am currently testing the anyconect client that is authenticating using a Windows 2008 radius server, and when users connect using anyconnect, they see a connection profile drop-down list. There are currently 3 connection profiles in the list (Admin, User, Vendor). My question is this:
Is there a way I can make it so that when a user chooses one of the 3 proflies, they have to be in a specific Active Directory group to authenticate?
Note: It would have to be a DIFFERENT AD group for each profile (this is what confuses me, I currenlty have it setup so they have to be a part of an AD group, but I don't know how to make the correlation between specific Cisco connection profle and specific AD group).
Any help is apprecited, thanks.