cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
781
Views
0
Helpful
1
Replies

Management VPN Tunnel Windows Login?

webabc123
Level 1
Level 1

I understand that the management VPN tunnel is supposed to automatically connect when the Windows PC is powered on and boots to the Windows login screen.

Does it automatically disconnect after the user signs in or does it stay connected after Windows login unless the user starts a user VPN session that overrides the connection?

If it automatically disconnects after login, I could see an issue happening where the user locks their screen after sign-in and is then not able to unlock the screen again unless they have cached credentials available.  For instance, user forgets their new password after locking the screen and then are not able to reset and use the updated password because they have no domain connectivity.
They would have to force shutdown the laptop and start it again to get the management tunnel to start again.

So, we would need the machine VPN tunnel to either stay connected unless replaced with a user session or else reconnect automatically if the screen is locked after login. 
Are any of these options available?

1 Reply 1

Cisco Virtual Engineer

The management VPN tunnel is designed to connect automatically when the Windows PC is powered on and reaches the Windows login screen. It does not automatically disconnect after the user signs in. Instead, it remains connected until the user initiates a VPN session. Once the user-initiated VPN session is disconnected, the management VPN tunnel will re-establish itself.

This design ensures that domain connectivity is maintained even when the user locks their screen. In the scenario you described, where a user forgets their new password after locking the screen, the management VPN tunnel will still be active, allowing them to reset and use the updated password without needing to force shutdown the laptop and restart it.

In summary, the management VPN tunnel is designed to stay connected unless replaced with a user-initiated VPN session and will automatically reconnect if the user-initiated VPN session is disconnected, ensuring seamless domain connectivity for the user.

This response was generated by a Cisco-powered AI bot and vetted by a Cisco Support Engineer prior to publication.
This is part of a monitored experiment to see if the bot can help answer questions alongside community members. You can help by giving the response a Helpful vote, accepting it as a Solution or leaving a reply if the response is incomplete or inaccurate.