cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
700
Views
0
Helpful
0
Replies

Setting Up AnyConnect for ASA 5525

D T
Level 1
Level 1

Hi,

I have a requirement to setup AnyConnect for my user, the license is as below.

Is my understanding correct that I can only have 2 AnyConnect user connected to my firewall (IPSEC - client based or SSL - clientless)

ASA# show ver

Cisco Adaptive Security Appliance Software Version 9.2(3)

Licensed features for this platform:
Maximum Physical Interfaces       : Unlimited      perpetual
Maximum VLANs                     : 200            perpetual
Inside Hosts                      : Unlimited      perpetual
Failover                          : Active/Active  perpetual
Encryption-DES                    : Enabled        perpetual
Encryption-3DES-AES               : Enabled        perpetual
Security Contexts                 : 2              perpetual
GTP/GPRS                          : Disabled       perpetual
AnyConnect Premium Peers          : 2              perpetual
AnyConnect Essentials             : Disabled       perpetual
Other VPN Peers                   : 750            perpetual
Total VPN Peers                   : 750            perpetual
Shared License                    : Disabled       perpetual
AnyConnect for Mobile             : Disabled       perpetual
AnyConnect for Cisco VPN Phone    : Disabled       perpetual
Advanced Endpoint Assessment      : Disabled       perpetual
UC Phone Proxy Sessions           : 2              perpetual
Total UC Proxy Sessions           : 2              perpetual
Botnet Traffic Filter             : Disabled       perpetual
Intercompany Media Engine         : Disabled       perpetual
IPS Module                        : Disabled       perpetual
Cluster                           : Enabled        perpetual
Cluster Members                   : 2              perpetual

Another question is the VPN will be terminated on my tier 2 firewall, so user traffic will go through my internet/edge firewall before actually the hitting the VPN gateway.

Is this possible? I assume this is doable if I created the VPN profile using the VPN wizard and then configure NAT of the ASA outside interface on the tier 1 firewall.

Thanks,

Dan

0 Replies 0
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: