We are running PIX 7.2 on a PIX 525. Is is possible to somehow make sure users can only log into one vpn group based on their AD security group. We are currently using IAS to authenticate users but any user that has VPN rights in the AD can log into any remote VPN group on the firewall.
Basically I want to define several security groups in the AD and only users in security group "manager" can use the remote tunnel group "manger", etc.
Is this possible?