cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
503
Views
0
Helpful
1
Replies

Does remote vpn support two authentication servers?

kope
Level 1
Level 1

Does the remote vpn support two authentication-server groups?

There is a command available on the asa - seondary-authenticaion-server-group" but it did not accept the command after I entered; it returns as i must

use anyconnect client....I am not sure if this is right.

The ASA is running 8.4 code.

tunnel-group TEST general-attributes

authentication-server-group RADIUS

The intention was using Radius to authenticate to a Entrust server as the first-factor authentication; and using LDAP as the second-factor authentication.

Any input much appreciated.

1 Reply 1

Marcin Latosiewicz
Cisco Employee
Cisco Employee

IPsec doesn't have the facility to perform double authentication.

Mode config will be only sent to one configured server.

Webvpn - AC and clientless - does allow you to perform doubale authentication and all the cool things around it.

M.