05-29-2013 11:41 AM - edited 02-21-2020 06:56 PM
Hi All,
I have successfully configured cisco AnyConnect vpn. I can connect well with SSL but not IPSec. Currently the users want to connect via IPSec as well. How do I enable/configure both SSL and IPSec on Anyconnect VPN.
I have ASA AnyConnect Mobile license and Cisco AnyConnect Essentials license.
Thanks in advance
05-29-2013 11:55 AM
There are basically three steps that have to be added to enable IPSec for your working AnyConnect-Clients. Here are the steps for ASDM:
And of course you need the proper versions. Thats at least AnyConnect 3.0 and ASA 8.4.
--
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni
05-29-2013 12:03 PM
Hi Karsten,
Thanks for your response. I have AnyConnect 3.0 but my ASA is 8.2...
Would that work? Right now i cant access my network so I can only try the configs in 10 hours time.
05-29-2013 01:22 PM
No, that won't work. IKEv2 was introduced in ASA v8.4(1), and thats the only IPsec implementation the AnyConnect client supports. You need to upgrade the ASA. For that be aware that older ASAs need an memory upgrade to support the new software.
The only other option is to implement the legacy IPSec model (IKEv1) with the old IPSec VPN client.
--
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni
05-30-2013 04:25 AM
Hi karsten,
Thank you for the response.
Im now planning for an upgrade of the firewall to version 8.4.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide