cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
955
Views
0
Helpful
4
Replies

VPN LDAP auth when AD server over L2L

Stuart-ITGL
Level 1
Level 1

I have an ASA5512 with an AnyConnect profile using LDAP to carry out authentication of users to a local AD server.

This server is being migrated up to the cloud and shut down.

There is a Site-to-Site VPN from the ASA to the cloud but I'm struggling on getting the ASA to use the cloud AD through the VPN.

aaa-server OUR-CLOUD-AD (outside) host 10.254.x.x

Whenever I try to do a test auth to the cloud it fails with Server not responding.

Any advice or things I need to do?  

TIA

 

4 Replies 4

Hi,
The source of this traffic would be the ASA's outside interface IP address, is that included in the crypto ACL used for VPN tunnel?

HTH

Ahh okay I didn't realise that.

 

No it isn't included in the crypto acl yet but I'll add that in and feedback.

 

Thanks :)

Unfortunately that didn't work and also had unintended knock-on effect to a remote office who use a L2L as well.

Still fails with the same error: Server not responding

Hi,

 

  Can you post your VPN and NAT configuration?

 

Regards,

Cristian Matei.