cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1452
Views
0
Helpful
1
Replies

SSL VPN ASA 5510 Any connect

Hitesh Vinzoda
Level 4
Level 4

Hi,

I want to setup SSL VPN for Nomad users on ASA 5510 i have following requirements

> what are the License requirement on ASA 5510 for SSL VPN with Anyconnect?

> VPN users should have full access to LAN via ASA

> Authentication method preferred, Local or AD ( LDAP)

> users not using corporate laptops should be restricted to Clientless SSL VPN

> how to add URL's viewable by users in Webpage

> Can anyone post sample configuration for the above requirements

TIA

Hitesh Vinzoda

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

> If you need both AnyConnect and WebVPN (Clientless SSL VPN), you would need to purchase the AnyConnect Premium license (and it's user base license). The ASA would come with default 2 SSL VPN license.

> To have full access to LAN, you would need to use AnyConnect SSL VPN. Here is the sample configuration:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808efbd2.shtml

> You can authenticate to AD or Local or Radius, etc. By default, it would be local authentication.

> Here are a couple of sample configuration for clientless SSL VPN:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008072462a.shtml

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00806ea271.shtml

Hope that helps.

View solution in original post

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

> If you need both AnyConnect and WebVPN (Clientless SSL VPN), you would need to purchase the AnyConnect Premium license (and it's user base license). The ASA would come with default 2 SSL VPN license.

> To have full access to LAN, you would need to use AnyConnect SSL VPN. Here is the sample configuration:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808efbd2.shtml

> You can authenticate to AD or Local or Radius, etc. By default, it would be local authentication.

> Here are a couple of sample configuration for clientless SSL VPN:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008072462a.shtml

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00806ea271.shtml

Hope that helps.