cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
607
Views
0
Helpful
3
Replies

Access to group-url denied by reserved keywords?

asaki0327
Level 1
Level 1

Hi.

I'm configuring ASA 8.4 for SSLVPN allowing Web Portal access with group-url.

I've noticed that if I put certain keywords after slash mark on group-url, client access would be denied by http 404 error.

Here's my configuration:

tunnel-group test type remote-access

tunnel-group test general-attributes

default-group-policy test

tunnel-group admin webvpn-attributes

group-url https://1.1.1.1/admin enable

The above url doesn't work. If I change group-url that doesn't start with "admin" i.e, "group-url https://1.1.1.1/abc enable" it works fine.

I'm gussing that DDTs CSCtd61732 has something to do with it.

-----------------------------------------

CSCtd61732

http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCtd61732

Workaround:

Do not use reserved keywords in Group-url

-----------------------------------------

Could somebody provide more information on "reserved keywords"?

What other keywords are reserved besides "admin"?

Thanks in advance.

1 Accepted Solution

Accepted Solutions

Hi,

Basically:

admin

capture

https://1.1.1.1/admin

https://1.1.1.1/capture/test/capin

http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a0080a9edd6.shtml

The first one points to the ASDM and the second one is to get a packet-capture from the ASA.

I hope it helps.

View solution in original post

3 Replies 3

Hi,

Basically:

admin

capture

https://1.1.1.1/admin

https://1.1.1.1/capture/test/capin

http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a0080a9edd6.shtml

The first one points to the ASDM and the second one is to get a packet-capture from the ASA.

I hope it helps.

Dear Javier,

Thank you for your help!

I appreciate your info

Saki

Dear Saki,

I am glad to hear that.

Please do not hesitate to contact us at any time.

Take care.