This chapter analyzes the advanced features of virtual private network (VPN) solutions, such as VPN authorization and accounting, Cisco Secure Desktop (CSD), dynamic access policies (DAP), and high availability.
The terms access control and authorization are often used interchangeably. VPN implementation on ASA supports the following authorization methods:
• Local authorization through access control lists (ACL) or webtype ACLs. Control can be applied at a user or group level.
• RADIUS or Lightweight Directory Access Protocol (LDAP) authorization.
In contrast, VPN accounting is supported only with external AAA servers (TACACS+ and ...