Hello everyone,
does anybody know if there's the possibility to pin the public key of the CA that signed the identity certificate on the ASA, so that if a MITM attack would occur (which would probably change the public key of the cert visible to AnyConnect), the connection would be impossible.
I noticed that there's a field for a "CA thumbprint" under the Server List in the profile manager. Is this what I'm searching for?
Thanks in advance and kind regards