The Meraki Community
Register or Sign in
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • About Exsilium
Exsilium

Exsilium

Conversationalist

Member since Jul 6, 2021

‎06-21-2022
Kudos from
User Count
RomanMD
RomanMD
1
PaulMcG
PaulMcG
1
View All
Kudos given to
User Count
PhilipDAth
Kind of a big deal PhilipDAth
1
View All

Community Record

4
Posts
2
Kudos
0
Solutions

Badges

ECMS1
Lift-Off View All
Latest Contributions by Exsilium
  • Topics Exsilium has Participated In
  • Latest Contributions by Exsilium

Re: Cisco AnyConnect - RADIUS Challenge Support - Feature Request

by Exsilium in Security / SD-WAN
‎05-31-2022 02:14 PM
‎05-31-2022 02:14 PM
Right now we use ISE to apply a DACL to the session based on AD usergroup. For instance, restricting the admin subnet from non IT staff. ... View more

Re: Cisco AnyConnect - RADIUS Challenge Support - Feature Request

by Exsilium in Security / SD-WAN
‎05-31-2022 01:38 PM
‎05-31-2022 01:38 PM
I know that 🙂 The problem is Meraki MX doesnt support RADIUS Challenge and we believe there is some problem with SAML+ISE+Meraki+DUO also. ... View more

Re: Cisco AnyConnect - RADIUS Challenge Support - Feature Request

by Exsilium in Security / SD-WAN
‎05-31-2022 05:30 AM
‎05-31-2022 05:30 AM
I am investigating switching the system over to SAML, as well as removing ISE from the authentication process. I believe that was put in place (way before I started) because there was no 2FA solution in place at the time. It also adds the functionality of adding a DACL based on the user group... which... has its own benefits. Not sure if I want to give up that functionality or not.     ... View more

Cisco AnyConnect - RADIUS Challenge Support - Feature Request

by Exsilium in Security / SD-WAN
‎05-26-2022 09:22 AM
2 Kudos
‎05-26-2022 09:22 AM
2 Kudos
To start with, I cant find the status of our Feature Request anywhere. Months ago we, along with CDW, put in a feature request to support RADIUS Challenge.   We migrated from ASA 5525-X to Meraki MX250 over the last year. One of the last items we have to migrate is our remote client VPN connections. While the MX supports AnyConnect, it does not support RADIUS Challenge. This prompts the user for the type of 2FA authentication they want, a Push, Text or Call.   This means we have had to leave the EoL ASA in place, in parallel to the MX, which obviously isnt ideal.   Additional item to consider is that we use ISE in the middle of all of this.   If anyone knows how to make this work, please let me know, or at least direct me to where I can find the status of our Feature Request. ... View more
Labels:
  • Labels:
  • Client VPN
Kudos from
User Count
RomanMD
RomanMD
1
PaulMcG
PaulMcG
1
View All
Kudos given to
User Count
PhilipDAth
Kind of a big deal PhilipDAth
1
View All
My Top Kudoed Posts
Subject Kudos Views

Cisco AnyConnect - RADIUS Challenge Support - Feature Request

Security / SD-WAN
2 896
View All
Powered by Khoros
custom.footer.
  • Community Guidelines
  • Cisco Privacy
  • Khoros Privacy
  • Privacy Settings
  • Terms of Use
© 2023 Meraki