cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2634
Views
0
Helpful
2
Replies

VPN Client -> ASA Group+Shared secret only?

johnelliot6
Level 2
Level 2

Hi,

Have users connecting into ASA, and they are required to enter Group+Shared secret, but then also a username+password(Which we have added as local accounts on the ASA) - Is there anyway to have just Group+shared secret auth?

Thanks in advance

2 Replies 2

Edison Ortiz
Hall of Fame
Hall of Fame

They shouldn't be entering the 'Group + Secret' information while attempting a VPN Client connection.

This information should be loaded in their profile if they are using Cisco VPN Client (Connection Entry -> Select Connection -> Modify -> Group Authentication).

Once that's properly entered, all they need to input is their username and password. This is mandatory and you can't connect to the ASA without supplying these values.

Hi Edison - Correct, shared secret/group is eneterd only when profile is created - The username/pass combo is no longer needed after 'isakmp ikev1-user-authentication none' was added

Review Cisco Networking products for a $25 gift card