Ahh that is it.  Ok so I will need to match my tunnel-group to the OU that
is defined in the Certificate. So that is the link. Ok I will do some
additional reading on that.

 

Thank you!!

 

James

 

From: Marta Sokolowska [mailto:[email protected]] 
Sent: Friday, November 23, 2012 12:52 PM
To: James K Keddington II
Cc: ccie security
Subject: Re: [OSL | CCIE_Security] IPexperts Technology Lab 4A Part 2 Task
4.11

 

James,

make sure that the client's certificate has got the same OU field as the
name of the tunnel-group (e.g. you should have OU=EZgroup2 in the
certificate that you use to connect via Cisco VPN Client). 

Additionally, can you post ISAKMP debugs from Cisco ASA?


Marta Sokolowska.

  _____  

No virus found in this message.
Checked by AVG - www.avg.com
Version: 2013.0.2793 / Virus Database: 2629/5914 - Release Date: 11/23/12

_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Are you a CCNP or CCIE and looking for a job? Check out 
www.PlatinumPlacement.com

Reply via email to