Chapter 5. Deploying Advanced Cisco ASA VPN Solutions

This chapter analyzes the advanced features of virtual private network (VPN) solutions, such as VPN authorization and accounting, Cisco Secure Desktop (CSD), dynamic access policies (DAP), and high availability.

Deploying VPN Authorization, Access Control, and Accounting

The terms access control and authorization are often used interchangeably. VPN implementation on ASA supports the following authorization methods:

• Local authorization through access control lists (ACL) or webtype ACLs. Control can be applied at a user or group level.

• RADIUS or Lightweight Directory Access Protocol (LDAP) authorization.

In contrast, VPN accounting is supported only with external AAA servers (TACACS+ and ...

Get CCNP Security VPN 642-647 Quick Reference now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.