cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
950
Views
0
Helpful
4
Replies

Restrict Certain SVC Clients from Connecting to VPN

MrPrince1979
Level 1
Level 1

Hi,

I’d like to know if it’s possible to restrict which version of SVC it’s possible to allow for remote users to connect to my AnyConnect VPN. I know it’s possible with IPSEC clients – i.e.

group-policy [policy_name] attributes

client-access-rule 1 permit type WinNT version 5.0.05.0290

client-access-rule 2 deny type * version *

exit

Is there something similar for SVC ? Thanks.

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

Unfortunately there is no client-access-rule restriction with anyconnect client.

However, only anyconnect image/version that you install on the ASA will allow user to connect.

View solution in original post

4 Replies 4

Jennifer Halim
Cisco Employee
Cisco Employee

Unfortunately there is no client-access-rule restriction with anyconnect client.

However, only anyconnect image/version that you install on the ASA will allow user to connect.

Agree

yes

So only the people\clients with the image specified as: svc image disk0:/anyconnect....pkg are able to connect? What would happen if they had an older version wouldn't the ASA upgrade them automatically?