05-29-2007 07:42 AM
Hello,
WebVPN with radius (MS IAS) authentication works perfectly, alone. It's the same for local authentication.
But i can't use both authentication method.
Here is my authentication configuration:
tunnel-group DefaultWEBVPNGroup general-attributes
address-pool POOL_SSL
authentication-server-group AUTH-RADIUS LOCAL
accounting-server-group AUTH-RADIUS
But that doesn't seem to work.
In fact, i would like that my "own" users can log on Active Directory (with Radius authentication) and that my partners log on with the local database.
Somebody can help me ?
Thanks.
Julien
05-29-2007 12:00 PM
Julien,
This cant be done. User authentication to your local database will happen only if your RADIUS server not available.
What you are trying to do, will not work.
Sorry to give you the bad news.
Cheers
Gilbert
05-29-2007 11:11 PM
Hello,
Gilbert, Thanks for the reply.
I was afraid about this type of answer...But not very surprise.
So, Maybe it's possible to use 2 tunnelgroup policy ? One using Radius authentication and the other Local authentication ?
If it's not possible, i dont' t understand why it's possible to create many WebVPN tunnel group (at least 2 !) without being able to use it ?
Any idea ?
Thanks.
Julien
05-29-2007 11:39 PM
Hello again,
I've found a solution.
I create a second tunnelgroup call "partners", use local database authentication et create an alias like.
https://vpn.mycompany.com/partners
That works perfectly !!
Thanks for your help.
Julien
06-18-2007 12:45 PM
Hello,
Can you post the relevant ssl config parts including the second vpn tunnel. This may help me resolve an issue. Thanks.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide