11-16-2010 09:29 AM - edited 02-21-2020 04:58 PM
Hello,
I am trying to look for a certain registry key to allow access through IPSEC VPN.
I know I can do this with CSD on the Anyconnect Client, but need to be able to do this with IPSEC also.
What I am trying to do is ensure the client computer is part of the domain before it is allowed to connect.
Thank You,
Cory Peterson
11-16-2010 03:00 PM
Hi,
At least as far as I'm aware, the capacity to scan the remote computer is a feature of SSL-based VPN.
With IPsec you can configure the server to allow only certain versions of IPsec VPN clients for example, but I've not seen an option to scan the host for some registry keys like with CSD/Host scan.
Federico.
11-17-2010 07:31 AM
So my only option would be to setup NAC for the IPSEC vpn tunnels, and this would require a NAC device on the inside for the ASA to talk to correct?
11-17-2010 03:36 PM
Well I think it will be the best option yes... and propably the most expensive as well...
Federico.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide