Техническая Инструкция для Cisco Cisco ASA for Nexus 1000V Series Switch

Скачать
Страница из 7
ASA 8.x: Allow Users to Select a Group at WebVPN
Login via Group−Alias and Group−URL Method
Document ID: 98580
Contents
Introduction
 Prerequisites
 Configure an Alias and Enable the Drop−down
      ASDM
      CLI
 Configure a URL and Enable the Drop−down
      ASDM
      CLI
      Q and A
 Verify
 Troubleshoot
 Related Information
Introduction
SSL VPN users (both AnyConnect/SVC and Clientless) can choose which tunnel group [Connection Profile
in Adaptive Security Device Manager (ASDM) lingo] to access using these different methods:
group−url
• 
group−alias (tunnel group drop−down list on login page)
• 
certificate−maps, if using certificates
• 
This document demonstrates how to configure the Adaptive Security Appliance (ASA) to allow users to select
a group via a drop−down menu when they login to the WebVPN service. The groups that appear in the menu
are either aliases or URLs of real connection profiles (tunnel groups) configured on the ASA. This document
illustrates how to create aliases and URLs for connection profiles (tunnel groups) and then configure the
drop−down to appear. This configuration is performed using ASDM 6.0(2) on an ASA running software
version 8.0(2).
Note: ASA version 7.2.x supports two methods: group−url and group−alias list.
Note: ASA version 8.0.x supports three methods: group−url, group−alias, and certificate−maps.
Prerequisites
Basic WebVPN configuration
Configure an Alias and Enable the Drop−down
In this section, you are presented with the information to configure an alias for a connection profile (tunnel
group) and then configure those aliases to appear in the Group drop−down menu on the WebVPN login page.