08-14-2020 05:51 AM
Hello everyone, we noticed that in the client VPN group "XXXX" access to internal resources without AD group membership (ATTRIBUTE_MAP) is possible!!. E.g. Open the $ shared folders of internal systems (tested with \\ 10.10.8.10 \c$\ if the user does not have any VPN AD groups; it shouldn't be like that. Can you please tell me why!!??
Regard
Ashkan
Solved! Go to Solution.
08-15-2020 07:38 AM
AnyConnect simply allows or denies access to IP addresses. What, if any, access a connected endpoint or users has to a reachable network resource is controlled by the OS on that resource - not AnyConnect or the ASA (or whatever AnyConnect comes in through).
08-15-2020 07:38 AM
AnyConnect simply allows or denies access to IP addresses. What, if any, access a connected endpoint or users has to a reachable network resource is controlled by the OS on that resource - not AnyConnect or the ASA (or whatever AnyConnect comes in through).
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide