cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
348
Views
0
Helpful
1
Replies

VPN Client / AnyConnect manager solution nedded

Shannon Sutter
Level 1
Level 1

Hi,

I have currently 100 VPN users, half are using VPN client software, the other half have moved to Cisco AnyConnect.

I am running local authentication on our ASA5520.

What I need is to be able to provide users to change there own passwords. Also it would be great to be able to set up an expiration date for all VPN clients passwords.

I am aware configuring a RADIUS server is one of the solution, but I'm open to explore what's new out there or if there are better secure solutions than a RADIUS server.

Thanks for your help in advance.

1 Reply 1

Herbert Baerten
Cisco Employee
Cisco Employee

Hi Zeek

I'm not aware of any solutions that allow users to change their pw when using local auth.

Radius would indeed be a solution. Or if your users are in a Windows domain / Active Directory, you can configure your DC as LDAP server, and configure ldap auth on the ASA, so the users will be able to authenticate their vpn using their domain password.

This will have to be LDAPS (ldap over ssl) if you want the users to be able to change their password from the vpn client.

hth
Herbert