02-02-2015 01:58 AM
Hello,
I hope this is the right place to ask this,
I got cisco asa 5512-x, with ipsec vpn remote users,
I want to tighten up the security on this, and my thought is to use the RSA securid software token(any other recommendations would be gladly accepted) as a second factor authentication,
and the following questions is, is that possible?
and if so, how?
Thank you very much.
02-02-2015 02:59 AM
Hello, Haim Zohar.
As I know it can be done by Cisco AnyConnect. But I didn't tested this application so can't tell anything more ten this.
Best Regards.
02-02-2015 09:26 AM
It is certainly possible to use RSA token as second factor authentication for Remote Access VPN users, and I do not see that it would matter much whether the VPN was IPsec or AnyConnect. You would need to configure an AAA authentication server group with appropriate parameters to communicate with the RSA server and then you would configure the tunnel group for the IPsec VPN users to authenticate with this server group.
HTH
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide