cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
186
Views
0
Helpful
1
Replies

Cisco AnyConnect/Secure Client and FTD - SSL VPN/IKEv2

mikiNet
Level 1
Level 1

Dear Team,

I have a quick question. Is it possible to configure a Firepower device for RA VPN functionality so that it first tries to connect using IKEv2, and if that fails (for example, because it’s on an airport network), it automatically attempts to establish a connection using SSL?

1 Reply 1

@mikiNet afaik no, it won't automatically attempt to failover to SSL. When you create a profile using the VPN profile editor, you can only select the primary protocol, not a backup/failover profile.

Not ideal, but you could create a secondary profile, configured to use SSL and educate the users to select that profile if they cannot connect using the primary profile.