1-111
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Clientless SSL VPN
Configuring Remote Systems to Use Clientless SSL VPN Features
•
You must have Cookies enabled on the browser.
•
You must have administrator access on the PC if you use DNS names to specify servers, because
modifying the hosts file requires it.
•
You must have Oracle Java Runtime Environment (JRE) version 1.4.x and 1.5.x installed.
If JRE is not installed, a pop-up window displays, directing users to a site where it is available. On
rare occasions, the port forwarding applet fails with Java exception errors. If this happens, do the
following:
a.
Clear the browser cache and close the browser.
b.
Verify that no Java icons are in the computer task bar.
c.
Close all instances of Java.
d.
Establish a clientless SSL VPN session and launch the port forwarding Java applet.
•
You must have JavaScript enabled on the browser. By default, it is enabled.
•
If necessary, you must configure client applications.
Note
The Microsoft Outlook client does not require this configuration step. All non-Windows
client applications require configuration. To determine if configuration is necessary for a
Windows application, check the value of the Remote Server field. If the Remote Server field
contains the server hostname, you do not need to configure the client application. If the
Remote Server field contains an IP address, you must configure the client application.
Restrictions
Because this feature requires installing Oracle Java Runtime Environment (JRE) and configuring the
local clients, and because doing so requires administrator permissions on the local system or full control
of C:\windows\System32\drivers\etc, it is unlikely that users will be able to use applications when they
connect from public remote systems.
Detailed Steps
To configure the client application, use the server’s locally mapped IP address and port number. To find
this information:
1.
Start a clientless SSL VPN session and click the
Application Access
link on the Home page. The
Application Access window appears.
2.
In the Name column, find the name of the server you want to use, then identify its corresponding
client IP address and port number (in the Local column).
3.
Use this IP address and port number to configure the client application. Configuration steps vary for
each client application.
Note
Clicking a URL (such as one in an -e-mail message) in an application running over a clientless
SSL VPN session does not open the site over that session. To open a site over the session, paste
the URL into the Enter Clientless SSL VPN (URL) Address field.
Using E-mail Via Port Forwarding
To use e-mail, start Application Access from the clientless SSL VPN home page. The mail client is then
available for use.
Summary of Contents for 5505 - ASA Firewall Edition Bundle
Page 28: ...Glossary GL 24 Cisco ASA Series CLI Configuration Guide ...
Page 61: ...P A R T 1 Getting Started with the ASA ...
Page 62: ......
Page 219: ...P A R T 2 Configuring High Availability and Scalability ...
Page 220: ......
Page 403: ...P A R T 2 Configuring Interfaces ...
Page 404: ......
Page 499: ...P A R T 2 Configuring Basic Settings ...
Page 500: ......
Page 533: ...P A R T 2 Configuring Objects and Access Lists ...
Page 534: ......
Page 601: ...P A R T 2 Configuring IP Routing ...
Page 602: ......
Page 745: ...P A R T 2 Configuring Network Address Translation ...
Page 746: ......
Page 845: ...P A R T 2 Configuring AAA Servers and the Local Database ...
Page 846: ......
Page 981: ...P A R T 2 Configuring Access Control ...
Page 982: ......
Page 1061: ...P A R T 2 Configuring Service Policies Using the Modular Policy Framework ...
Page 1062: ......
Page 1093: ...P A R T 2 Configuring Application Inspection ...
Page 1094: ......
Page 1191: ...P A R T 2 Configuring Unified Communications ...
Page 1192: ......
Page 1333: ...P A R T 2 Configuring Connection Settings and QoS ...
Page 1334: ......
Page 1379: ...P A R T 2 Configuring Advanced Network Protection ...
Page 1380: ......
Page 1475: ...P A R T 2 Configuring Modules ...
Page 1476: ......
Page 1549: ...P A R T 2 Configuring VPN ...
Page 1550: ......
Page 1965: ...P A R T 2 Configuring Logging SNMP and Smart Call Home ...
Page 1966: ......
Page 2059: ...P A R T 2 System Administration ...
Page 2060: ......
Page 2098: ...1 8 Cisco ASA Series CLI Configuration Guide Chapter 1 Troubleshooting Viewing the Coredump ...
Page 2099: ...P A R T 2 Reference ...
Page 2100: ......