cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
520
Views
0
Helpful
1
Replies

IOS Anyconnect policy-group selection with Raidus authentication

MARK CASEY
Level 1
Level 1

I am trying to use radius rather than LDAP for authentication.

With LDAP I can define an attribute map that matches a returned LDAP attribute to user-vpn-group

Then select the webVPN  policy group based on that.

This means I can have multiple group policies / contexts  and hence different access based on the LDAP Attribute

 

Can I do the same thing with radius ?

ie: Select the webvpn based on some property in radius or alternatively with multiple contexts using the same radius server allow access based on a radius property

 

Thanks in Advance

 

Mark

 

 

 

 

1 Reply 1

balaji.bandi
Hall of Fame
Hall of Fame

Sure if you have different Radius groups in Radius ( is this ACS ? of FreeRaidus ?)

 

here is example guide to setup one :

 

https://integratingit.wordpress.com/2017/04/22/configuring-cisco-ios-ssl-vpn-with-radius/

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help