Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN Client -> ASA Group+Shared secret only?

Hi,

Have users connecting into ASA, and they are required to enter Group+Shared secret, but then also a username+password(Which we have added as local accounts on the ASA) - Is there anyway to have just Group+shared secret auth?

Thanks in advance

2 REPLIES

Re: VPN Client -> ASA Group+Shared secret only?

http://www.cisco.com/en/US/docs/security/asa/asa80/command/reference/a2.html#wp1629625

check the above command reference, under related tunnel-group, add "authentication-server-group NONE" to disable user authentication.

New Member

Re: VPN Client -> ASA Group+Shared secret only?

Thanks Kevin!

Appears that command is now deprecated, new command is:

isakmp ikev1-user-authentication none

Under tunnel-group foo ipsec-attributes

Thanks again for the assistance.

380
Views
5
Helpful
2
Replies
CreatePlease to create content