07-13-2023 06:49 PM
Hi Team
I have upgraded FMC and FTD to the latest version which is 7.3.1(FMC) and 7.3.0(FTD).
I am using TLS 1.2 for a while and want to change TLS 1.3 for security reasons. After selecting TLS 1.3, and can't connect VPN AnyConnect on a Windows client but everything works fine with the mobile Anyconnect app. It was everything fine with TLS1.2 Windows and mobile app.
The Anyconnect version is 4.10.07062 which is the latest version.
Does anyone know do I need to enable something inside the Anyconnect profile for Windows?
Thank
Solved! Go to Solution.
07-13-2023 11:40 PM
@chocolate2395777 to use TLS 1.3 for RAVPN you need to use Secure Client 5.0 (which is the new name for AnyConnect and the latest version).
https://software.cisco.com/download/home/286330811/type/282364313/release/5.0.03076
07-13-2023 10:26 PM
From the FTD CLI sh run all ssl
Take captures on the public interface of the FTD to confirm SSL handshake is getting completed. For example
capture capout interface outside match ip host <FTD-pub-IP> host <Client-Pub-IP>
07-13-2023 11:40 PM
@chocolate2395777 to use TLS 1.3 for RAVPN you need to use Secure Client 5.0 (which is the new name for AnyConnect and the latest version).
https://software.cisco.com/download/home/286330811/type/282364313/release/5.0.03076
07-14-2023 12:17 AM
Hi Rob,
It works after upgrading to Secure Client 5.0.
Thanks a lot.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide