Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Webvpn and anyconnect on same interface

Hello !!

We have 5520 ASA firewall running with code.9.1(2) . We already have webvpn running on the firewall and has active users using it. Now the customer has come up with a new requirement to configure anyconnect on the same firewall. We have installed VPN plus premium license.

1) Is it possible to enable webvpn and anyconnect on the same interface. If so what are the aspects we need to consider to enable both on the same interface ?

2) how many webvpn and anyconnect vpn licenses do i have with my premium lincense ?

Please help on this.

attached shver for reference.

Best Regards,

Sri

Everyone's tags (1)
1 ACCEPTED SOLUTION

Accepted Solutions
Hall of Fame Super Silver

Your AnyConnect Premium peers

Your AnyConnect Premium peers licenses entitle you to both the clientless and client-based SSL VPN access.

The licensing is based on simultaneous users so whatever the concurrent mix is will work - as long as the number logged on doesn't exceed 100.

Your IPsec site-site VPN does not count against that licensing but is rather against the "Other VPN Peers" which does not require a separate license and is limited by the ASA's hardware capability (750 on your platform).

4 REPLIES
Hall of Fame Super Silver

Here are your answers:

Here are your answers:

1. By "webvpn" I assume you mean clientless SSL VPN. You can have both clientless SSL VPN and full tunnel SSL VPN (AnyConnect Secure Mobility client) running simultaneously. We usually do something like setup a separate connection profile for each type of access.

 

2. It appears you have licensed 50-user AnyConnect Premium on both units in a failover cluster (even though it's only required on one unit since ASA 8.3(1)), giving you a total of 100 user license of AnyConnect Premium.

AnyConnect Premium Peers          : 100            perpetual
New Member

Hello,Thanks for your

Hello,

Thanks for your response.

We already have 50+ webvpn users and one ipsec site-to-site tunnel on the same box. Can we use the rest of licenses ( nearly 50) for AnyConnect VPN ?

 

Cheers.

Hall of Fame Super Silver

Your AnyConnect Premium peers

Your AnyConnect Premium peers licenses entitle you to both the clientless and client-based SSL VPN access.

The licensing is based on simultaneous users so whatever the concurrent mix is will work - as long as the number logged on doesn't exceed 100.

Your IPsec site-site VPN does not count against that licensing but is rather against the "Other VPN Peers" which does not require a separate license and is limited by the ASA's hardware capability (750 on your platform).

New Member

Hello,Thank you so much for

Hello,

Thank you so much for your help in this regard. Its quite useful information for my current project.

Cheers.

142
Views
0
Helpful
4
Replies
CreatePlease to create content