In my organization , we have Cisco ASA 5540 that is configured with the remote access VPN profile. The Remote VPN is configured in such a way that the user authentication will be through Microsoft LDAP ( AD server).
Currently the VPN client is using the Group Authentication method and we would like to go for certificate based authentication (
Mutual Group Authentication) using CA server. Below are my queries regarding to the these migration.
1.Have anyone did Remote Access VPN with CA Server ?
2.Can i use the same AD server as CA server ?
3. What are configuration changes that required in ASA for the Remote VPN users to enroll the certificate with CA server ?