10-20-2016 02:09 PM - edited 03-11-2019 12:10 AM
Greetings,
I have a customer with multiple ASAs in a VPN cluster. Customer occasionally requires to remove an active VPN connection and is looking for a way to accomplish this without logging into multiple ASA firewalls to locate the user connections. We are considering to propose ISE as the RADIUS AAA server as an alternative to the on-box ASDM management console… Key question is if we can send a manual CoA (disconnect or re-auth) to the ASA from ISE.
Regards,
Solved! Go to Solution.
10-21-2016 03:38 AM
Hi,
Yes there is an option in ISE under Operations > Live sessions.
there is a button to trigger a manual CoA, labeled "session reauthentication".
Regards
Gagan
PS: rate if it helps!!!!
10-21-2016 07:59 AM
Thanks for confirming Gagsing3
10-21-2016 03:38 AM
Hi,
Yes there is an option in ISE under Operations > Live sessions.
there is a button to trigger a manual CoA, labeled "session reauthentication".
Regards
Gagan
PS: rate if it helps!!!!
10-21-2016 07:59 AM
Thanks for confirming Gagsing3
10-21-2016 11:58 AM
Your welcome:).
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide