cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
272
Views
1
Helpful
2
Replies

tunnel group alias last used

F0rge
Level 1
Level 1

Hi experts,

I have 2 alias published to cisco AnyConnect, group1 is local AAA, and Group2 is SAML, and allow users to select tunnel group is selected, my issue is after connecting to group 2 they automatically connect since they met conditional access requirements, and the idea of choosing group is lost. Is there a way to default the group 1 as default always?

thanks!

2 Replies 2

Config group-policy for each tunnel-group 

tvotna
Spotlight
Spotlight

What do you mean by "conditional access requirements"? Is it TND or something else? Last "group-alias" selected is cached in preferences. You can try to put <RestrictPreferenceCaching>all</RestrictPreferenceCaching> into the local policy file. Another option is to put <DefaultGroup>YourDefaultTunnelGroup</DefaultGroup> into the global preferences file or user preferences (takes priority). This may help.

Local Policy: AnyConnectLocalPolicy.xml

Global Preferences: preferences_global.xml

User Preferences: preferences.xml