Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
Community Member

Limitation access with License VPN for mobile.


I have an ASA5520, with a premium license for SSL VPN Peers plus a license for Anyconnect Mobile.

I manage Remote VPN access by ACS server.

Can you tell me if it is possible to restrict VPN connections  with AnyConnect Mobile, just same users will have the right to use the  license anyconnect For Mobile.

If yes, premium and mobile licenses are sufficient? How can i do that by Dynamic Access Policies (DAP)?

Thanks for your Help.

Everyone's tags (6)
Hall of Fame Super Silver

Limitation access with License VPN for mobile.

The Mobile license is unlimited so by itself it doesn't consume license count. If you want only some users to be able to connect via mobile for other reasons, you could use DAP.

For instance create a group for PC-based SSL VPN users, check for OS = Windows. (plus Mac and Linux if applicable). Create a second VPN group for mobile users checking that group for OS = Apple iIOS (plus Android if applicable) AND a AAA attribute (user = member of a defined group or listed by userid). You could further restrict it by device UID if you want to be that granular.

See the example here:

CreatePlease to create content