cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
691
Views
0
Helpful
0
Replies

Profile XML file issue

MATTHEW WADE
Level 1
Level 1

The issue is in the way AnyConnect processes the profile XML files. In our testing with ASDM 6.1 / ASA 8.0 and AnyConnect 2.4.0202 we have found that the profiles are processed in alphabetical order. So if a user is initially in a group with profile name default.xml and is moved into a group with a profile called sbl.xml, they will not see the changes in their client that are defined in SBL.xml.  In our example the SBL profile contains directives to use start before login. These features never materialize, as the default.xml file is the only one being processed.

Further, when a profile name is cahnged in an existing group - say we cahnge the profile in group a from default.xml to new-default.xml new-default.xml would not get processed. The anyconnect client does not delete old profiles that are no longer required - as soon as they are downloaded to the client pc they are there forever.

0 Replies 0
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: