02-16-2018 08:04 AM - edited 03-12-2019 05:02 AM
Hi Guys,
We have a Cisco ASA5516 firewall running version 9.7. We are currently using RADIUS authentication for anyconnect VPN. We will be upgrading our Domain Controllers to 2012 R2 and we plan to use LDAP authentication for Anyconnect VPN instead of RADIUS.
Can someone please confirm if the commands below should be removed from our ASA:
aaa-server RADIUS-NEW protocol radius
aaa-server RADIUS-NEW (inside) host 192.x.x.x
Also, Please let me know what commands I need to add to configure LDAP authentication?
Any help will be greatly appreciated.
Thanks,
Lake
Solved! Go to Solution.
02-16-2018 08:49 AM
Hello @Lake,
Yes, in order to remove the commands for RADIUS those 2 are the one to clear that configuration, also if you want to configure LDAP you can follow this link: https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/98625-asa-ldap-authentication.html
HTH
Gio
02-16-2018 08:49 AM
Hello @Lake,
Yes, in order to remove the commands for RADIUS those 2 are the one to clear that configuration, also if you want to configure LDAP you can follow this link: https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/98625-asa-ldap-authentication.html
HTH
Gio
02-16-2018 10:21 AM
Thank you.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide