cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
945
Views
0
Helpful
4
Replies

Restrict Certain SVC Clients from Connecting to VPN

MrPrince1979
Level 1
Level 1

Hi,

I’d like to know if it’s possible to restrict which version of SVC it’s possible to allow for remote users to connect to my AnyConnect VPN. I know it’s possible with IPSEC clients – i.e.

group-policy [policy_name] attributes

client-access-rule 1 permit type WinNT version 5.0.05.0290

client-access-rule 2 deny type * version *

exit

Is there something similar for SVC ? Thanks.

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

Unfortunately there is no client-access-rule restriction with anyconnect client.

However, only anyconnect image/version that you install on the ASA will allow user to connect.

View solution in original post

4 Replies 4

Jennifer Halim
Cisco Employee
Cisco Employee

Unfortunately there is no client-access-rule restriction with anyconnect client.

However, only anyconnect image/version that you install on the ASA will allow user to connect.

Agree

yes

So only the people\clients with the image specified as: svc image disk0:/anyconnect....pkg are able to connect? What would happen if they had an older version wouldn't the ASA upgrade them automatically?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: