cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
2
Replies

ASA easy VPN server

alex goshtaei
Level 1
Level 1

Hi All,

I've setup ASA as easy VPN server. I don't want user authentication, which means when I run VPN client, I want to connect directly without to ask me username and password. I know we can do this in router, but I couldn't figure out in ASA.

any suggestion would be very appreciated.

thanks

Alex

2 Replies 2

Maxim Zimovets
Level 1
Level 1

Hello!

Try to add following command to tunnel-group ipsec-attributes:

isakmp ikev1-user-authentication none

But I should warn you - this practice is too insecure. Because in IKE's Aggressive mode group name and other attributes go in clear text.

With best regards.

also, when someone leaves the company who has either the pcf file or knows the groupname and password, everything is compromised. you should consider the security concerns inherent with not using xauth in this situation.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card