cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
690
Views
0
Helpful
2
Replies

Triple A authentication using LDAP

Lake
Level 1
Level 1

Hi Guys,

 

We have a Cisco ASA5516 firewall running version 9.7. We are currently using RADIUS authentication for anyconnect VPN. We will be upgrading our Domain Controllers to 2012 R2 and we plan to use LDAP authentication for Anyconnect VPN instead of RADIUS.

Can someone please confirm if the commands below should be removed from our ASA:

aaa-server RADIUS-NEW protocol radius
aaa-server RADIUS-NEW (inside) host 192.x.x.x

Also, Please let me know what commands I need to add to configure LDAP authentication?

Any help will be greatly appreciated.

 

Thanks,

Lake

 

 

 

 

1 Accepted Solution

Accepted Solutions

GioGonza
Level 4
Level 4

Hello @Lake

 

Yes, in order to remove the commands for RADIUS those 2 are the one to clear that configuration, also if you want to configure LDAP you can follow this link: https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/98625-asa-ldap-authentication.html

 

HTH

Gio

View solution in original post

2 Replies 2

GioGonza
Level 4
Level 4

Hello @Lake

 

Yes, in order to remove the commands for RADIUS those 2 are the one to clear that configuration, also if you want to configure LDAP you can follow this link: https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/98625-asa-ldap-authentication.html

 

HTH

Gio

Thank you.