Configuring a New Remote Access VPN Connection

This section provides instructions to configure a new remote access VPN policy with Firepower Threat Defense devices as VPN gateways and Cisco AnyConnect as the VPN client.

Do This

More Info

Step 1

Review the guidelines and prerequisites.

Guidelines and Limitations for Remote Access VPNs

Prerequisites for Configuring Remote Access VPN

Step 2

Create a new remote access VPN policy using the wizard.

Create a New Remote Access VPN Policy

Step 3

Update the access control policy deployed on the device.

Update the Access Control Policy on the Firepower Threat Defense Device

Step 4

(Optional) Configure a NAT exemption rule if NAT is configured on the device.

(Optional) Configure NAT Exemption

Step 5

Configure DNS.

Configure DNS

Step 6

Add an AnyConnect Client Profile.

Add an AnyConnect Client Profile XML File

Step 7

Deploy the remote access VPN policy.

Deploy Configuration Changes

Step 8

(Optional) Verify the remote access VPN policy configuration.

Verify the Configuration