Support for Cisco ASA AnyConnect VPN with Microsoft Azure MFA

Support for Cisco ASA AnyConnect VPN with Microsoft Azure MFA

0 vote

avatar

Hello
would it be possible to implement support for Cisco AnyConnect VPN when it has been reconfigured to MS Azure MFA?

Current vpncli.exe reports the following error:
VPN> connect server.company.com/RMM
  >> contacting host (server.company.com/RMM) for login information...
  >> notice: Contacting server.company.com/RMM.
  >> warning: No valid certificates available for authentication.
  >> error: The requested authentication type is not supported in AnyConnect CLI.  >> The requested authentication type is not supported in AnyConnect CLI.
  >> state: Disconnected

I am an end user of this VPN so I have no info about VPN's configuration but I believe it is based on https://www.cisco.com/c/en/us/support/docs/security/anyconnect-secure-mobility-client/215935-configure-asa-anyconnect-vpn-with-micros.html.

How it works from end user's perpective is described in the same document as "Test AnyConnect with SAML Auth".

Regards

Radek

All Comments (1)

avatar

Hello,

Unfortunately I'm not sure if it's possible. RDM uses the AnyConnect CLI to open the VPN, but as you've shown in your logs, it doesn't seem to support SAML authentication:

  >> error: The requested authentication type is not supported in AnyConnect CLI.  >> The requested authentication type is not supported in AnyConnect CLI.


We have no other way to integrate with AnyConnect within RDM as far as I'm aware, so if the CLI doesn't work I don't see another way at the moment.

Regards,

Hubert Mireault