cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1618
Views
15
Helpful
3
Replies

How to hide AC profile setting"Block connections to untrusted servers"

Palazsto
Level 1
Level 1

Hello Guys I'm searching for an option to hide or gray out  this setting, because the users are permanently disabling it  : 

Block to Untrusted servers.PNG

 

Any ideas ? 

 

 

3 Replies 3

@Palazsto modify the "AnyConnectLocalPolicy.xml" file located "C:\ProgramData\Cisco\Cisco AnyConnect Secure Mobility Client" and amend the line <StrictCertificateTrust>false</StrictCertificateTrust> and set the value to true.

 

This is the local policy file, so you will need to copy this file to all computers via some means, such as your software management solution.

Palazsto
Level 1
Level 1

@Rob Ingram  Thanks ! 

jgustafzon
Level 1
Level 1

I have the opposite issue where I can't get this box to show up at all, seems to be no check box in the profile editor that gives me the option to display this tick box. Tried editing local policy in %appdata% with <BlockUntrustedServers> and AnyConnectLocalPolicy.xml does have <StrictCertificateTrust>false</StrictCertificateTrust>