Hi,
We're planning to build a new client VPN with Cisco AnyConnect and 2FA, by integrating our ASA with Microsoft Azure AD. However a recent architecture change ocurred and now the requirement is to make the authentication directly to Azure via SAML. I have two questions:
- Is this supported in Cisco ASA now? We have currently 9.12(4) version running and although I've read some guides to configure this authentication method, I need to confirm if SAML is compatible with it, as well as some additional points I might to have into account.
- In case of being supported, and considering that we have currently several VPN profiles active and being used, will the creation of a new VPN profile with SAML authentication be disruptive for the other VPNs? My customer needs to be sure that the disruption is minimum.
Thanks.