A router is being configured for IKEv2 AnyConnect using AnyConnect-EAP. How would the administrator separate profiles for administrators and employees so that authorization differs when they connect?
I'm not sure, but I think B) Define group-urls on the headend and create two XML profiles to match the administrator and user group urls could also be a valid option.
I'm leaning towards option C. Using a certificate map to match on specific fields could provide a more secure way to differentiate between administrators and employees.
Zana
9 days agoEveline
10 days agoJose
10 days agoKami
12 days agoEmelda
18 days agoMerlyn
6 days ago