[c-nsp] vpn client issues with ASA

Brandon Ewing nicotine at warningg.com
Thu Feb 5 11:04:23 EST 2009


On Thu, Feb 05, 2009 at 05:41:39AM -0500, John Aldrich wrote:
> We just upgraded our firewall from a Pix to an ASA, and now, for some 
> reason, even though we have it specified in the VPN Client software, we are 
> having to enter our password every time. Is this a feature of the ASA or is 
> it configurable? We never had to do this before, and it's rather annoying. I 
> don't think it's the client as I never had to do this before, and also, I 
> set up a new connection from scratch and it required the password as well 
> when connecting.
> Any suggestions?

You need to add "isakmp ikev1-user-authentication none" to the RA
tunnel-group to disable XAUTH.

-- 
Brandon Ewing                                        (nicotine at warningg.com)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20090205/82e9383e/attachment.bin>


More information about the cisco-nsp mailing list