Cisco Anyconnect client - Automate Windows 7 Connection to a site

I have enabled the Cisco AnyConnect client to connect to a site, and I have the ability to connect to the site interactively before login (basically at the CTRL-ALT-DELETE screen)....but I want to automate the process so that the users are automatically VPN'd to the site as soon as the workstation / laptop powers on and gets to the CTRL-ALT-DELETE screen.  The reason is ... almost EVERY user is not understanding that they need to initiate the VPN BEFORE logging into the workstation in order for a lot of pre-login / at login processes to work correctly.  

I realize that I COULD just disable cached-credentials, but that is going to prevent the user from using the laptop AT ALL if they are not able to connect or are in an area where network connectivity is not possible.

Can connectivity be made using a certificate?  Maybe an auto-enrollment with an enterprise CA, and use the certificate to force the AnyConnect client to connect with the certificate as an authentication method?

Any help is appreciated!
LVL 5
jkeegan123Asked:
Who is Participating?
 
jkeegan123Author Commented:
Officially, it does seem that this is not possible.  However, we have had success using this solution:

https://supportforums.cisco.com/discussion/11091211/anyconnect-30-automatic-sbl-tnd
0
 
Henk van AchterbergSr. Technical ConsultantCommented:
http://community.spiceworks.com/topic/253116-anyconnect-connect-on-start-up-before-login

Certificates will help to make it easier, you can use the built in CA on the ASA. Auto connect at the login screen is, as far as I know, not possible.
0
 
jkeegan123Author Commented:
This solution worked successfully.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.