Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Users might experience few discrepancies in Search results. We are working on this on our side. We apologize for the inconvenience it may have caused.
New Member

group matching

i´d want to do a rule in group matching option, in vpn3030, that checks the field "subject alternative name", but, for my surprise, it doesn´t have this option to configure in the concentrator, because it follows the X.520, not X.509, pattern.

sb knows a workaround to this issue or is it something about concentrator software deployment?

1 REPLY
Silver

Re: group matching

Once you have defined rules, you must configure a certificate group matching policy to define the method you want to use to identify the permission groups of certificate users: match the group from the rules, match the group from the OU field, or use a default group for all certificate users. You can use any or all of these methods.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_configuration_guide_chapter09186a00800b4829.html#1450058

100
Views
0
Helpful
1
Replies
CreatePlease to create content