cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2526
Views
2
Helpful
3
Replies

Cisco FMC/FTD TLS 1.3 Anyconnect support

Hi Team

I have upgraded FMC and FTD to the latest version which is 7.3.1(FMC) and 7.3.0(FTD).

I am using TLS 1.2 for a while and want to change TLS 1.3 for security reasons. After selecting TLS 1.3, and can't connect VPN AnyConnect on a Windows client but everything works fine with the mobile Anyconnect app. It was everything fine with TLS1.2 Windows and mobile app.

The Anyconnect version is 4.10.07062 which is the latest version.

Does anyone know do I need to enable something inside the Anyconnect profile for Windows? 

chocolate2395777_0-1689299248608.png

 

Thank

1 Accepted Solution
3 Replies 3

Pavan Gundu
Cisco Employee
Cisco Employee

From the FTD CLI sh run all ssl

Take captures on the public interface of the FTD to confirm SSL handshake is getting completed. For example

capture capout interface outside match ip host <FTD-pub-IP> host <Client-Pub-IP>

Hi Rob,

It works after upgrading to Secure Client 5.0.

 

Thanks a lot.