the_b1ackfox
asked on
Cisco ASA SSL VPN security
Is there a way to lock down the certificate issued from the ASA to a specific host? I love the ease of a VPN client, but an worried that the certificate can be copied and put on other systems.
Fox
Fox
ASKER
Your blog validates the concern. So whats the next step to bringing this to a secure offering?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
>> So whats the next step to bringing this to a secure offering?
Use 2 Factor Authentication ?
Using certs (something you have) and a password (something you know)
</p>
Use 2 Factor Authentication ?
Using certs (something you have) and a password (something you know)
</p>
If its the former I wrote this a while ago;
Why Securing Your VPN Solution With Computer Certificates ‘Only’ Is A BAD Idea