cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
532
Views
5
Helpful
2
Replies

automatically configure AnyConnect clients to best VPN server

tato386
Level 6
Level 6

I am looking for a way to setup some kind of portal for our AnyConnect clients that can be used to autoconfigure them to connect to a specific VPN device based on geographic area and device availability.   At a very basic level I am thinking maybe I can setup multiple profiles with different ASA preference connection orders and assign them to users based on their home region.  This would mean I would have to keep a bunch of ASA VPN configs in sync so maybe not cleanest option.  I am hoping there might be a more elegant and manageable option?

 

Thanks,

Diego

 

 

1 Accepted Solution

Accepted Solutions

Hi @tato386 

You could configure AnyConnect Optimal Gateway Selection, which selects the closest gateway using lowest RTT.

The downside to OGS however is the gateway is cached for 14 days, which might be an issue if the user roams between regions.

https://community.cisco.com/t5/security-documents/anyconnect-optimal-gateway-selection-operation/ta-p/3124296

 

View solution in original post

2 Replies 2

Hi @tato386 

You could configure AnyConnect Optimal Gateway Selection, which selects the closest gateway using lowest RTT.

The downside to OGS however is the gateway is cached for 14 days, which might be an issue if the user roams between regions.

https://community.cisco.com/t5/security-documents/anyconnect-optimal-gateway-selection-operation/ta-p/3124296

 

That looks like what I need.

 

Thank you!

 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: