Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Attention: The Community will be in read-only mode on 12/14/2017 from 12:00 am pacific to 11:30 am.

During this time you will only be able to see content. Other interactions such as posting, replying to questions, or marking content as helpful will be disabled for few hours.

We apologize for the inconvenience while we perform important updates to the Community.

New Member

firewall running on vpn client

Hello All,

Below is the content i copied from vpn concentrator help

If you choose Firewall Required, all users in this group must use the designated firewall. The VPN Concentrator drops any session that attempts to connect without the designated, supported firewall installed and running. In this case, the VPN Concentrator notifies the VPN Client that its firewall configuration does not match.

created a group and under the section client firewall,

enabled firewall required

cpp -policy to be pushed (created rules)

when a vpn client with stateful firewall always ON ticked , the client connects and the cpp policy is pushed.

when the stateful firewall always ON isnt ticked, i.e. when we disable the firewall, the client still connects and cpp policy is pushed

is this expected. because the help posted earlier says the concentrator will check if the firewall is running, if its not running, it will not allow to connect


CreatePlease to create content