Solved

Cisco Anyconnect client - Automate Windows 7 Connection to a site

Posted on 2014-03-17
3
3,644 Views
Last Modified: 2014-06-04
I have enabled the Cisco AnyConnect client to connect to a site, and I have the ability to connect to the site interactively before login (basically at the CTRL-ALT-DELETE screen)....but I want to automate the process so that the users are automatically VPN'd to the site as soon as the workstation / laptop powers on and gets to the CTRL-ALT-DELETE screen.  The reason is ... almost EVERY user is not understanding that they need to initiate the VPN BEFORE logging into the workstation in order for a lot of pre-login / at login processes to work correctly.  

I realize that I COULD just disable cached-credentials, but that is going to prevent the user from using the laptop AT ALL if they are not able to connect or are in an area where network connectivity is not possible.

Can connectivity be made using a certificate?  Maybe an auto-enrollment with an enterprise CA, and use the certificate to force the AnyConnect client to connect with the certificate as an authentication method?

Any help is appreciated!
0
Comment
Question by:jkeegan123
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 12

Expert Comment

by:Henk van Achterberg
ID: 39935251
http://community.spiceworks.com/topic/253116-anyconnect-connect-on-start-up-before-login

Certificates will help to make it easier, you can use the built in CA on the ASA. Auto connect at the login screen is, as far as I know, not possible.
0
 
LVL 5

Accepted Solution

by:
jkeegan123 earned 0 total points
ID: 39981420
Officially, it does seem that this is not possible.  However, we have had success using this solution:

https://supportforums.cisco.com/discussion/11091211/anyconnect-30-automatic-sbl-tnd
0
 
LVL 5

Author Closing Comment

by:jkeegan123
ID: 40110945
This solution worked successfully.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Telepresence on backup 3 55
ASA RADIUS Authetication for Management Access 13 46
logon script 9 74
Clientless VPN Access 23 39
This article will cover setting up redundant ISPs for outbound connectivity on an ASA 5510 (although the same should work on the 5520s and up as well).  It’s important to note that this covers outbound connectivity only.  The ASA does not have built…
Let’s list some of the technologies that enable smooth teleworking. 
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question