Friday, February 7, 2020

Cisco ASA - VPN using Identity/CDA for ACL Rules

Hello,

As the title suggests - has anyone got Identity/CDA working when using user rules in a filter access list?

What I want to achieve is users VPN in using their AD credentials. From here, there’s a Filter ACL that limits what users can access depending on their user group.

When authenticating - I can see the user on CDA with the IP address of the VPN subnet, however i cannot pass traffic.

If I remove the ACL or put an IP any any at the top, traffic works fine.

Any suggestions?



No comments:

Post a Comment