Cisco 5505 Administration Guide - Page 14

Certificate Status, Does Security, Alert Appear?, Client Connection Status - switch

Page 14 highlights

Remote User Interface Chapter 1 Introduction Table 1-1 Certificate, Security Alert, and Connection Status Certificate Status Does Security Alert Appear? Client Connection Status Server certificate sent to the client from No the security appliance is independently verifiable and the certificate has no serious errors. Success Server certificate sent to the client from No the security appliance is not independently verifiable and the certificate contains serious errors. Failure Server certificate sent to the client from Yes the security appliance is not independently verifiable and the certificate does not contain serious errors. Because the client cannot verify the certificate, it is still a security concern. The client asks the user whether to continue with the connection attempt. The Security Alert dialog box appears only on the first connection attempt to a given security appliance. After the connection is successfully established, the "thumbprint" of the server certificate is saved in the preferences file, so the user is not prompted on subsequent connections to the same security appliance. If the user switches to a different security appliance and back, the Security Alert dialog box appears again. For detailed information and examples of instances in which the remote user does or does not see the Security Alert dialog box, see Adding a Security Certificate in Response to Browser Security Alert Windows, page 2-4. Cisco AnyConnect VPN Client Administrator Guide 1-4 OL-12950-012

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118

1-4
Cisco AnyConnect VPN Client Administrator Guide
OL-12950-012
Chapter 1
Introduction
Remote User Interface
The Security Alert dialog box appears only on the first connection attempt to a given security appliance.
After the connection is successfully established, the “thumbprint” of the server certificate is saved in the
preferences file, so the user is not prompted on subsequent connections to the same security appliance.
If the user switches to a different security appliance and back, the Security Alert dialog box appears
again.
For detailed information and examples of instances in which the remote user does or does not see the
Security Alert dialog box, see
Adding a Security Certificate in Response to Browser Security Alert
Windows, page 2-4
.
Table 1-1
Certificate, Security Alert, and Connection Status
Certificate Status
Does Security
Alert Appear?
Client Connection Status
Server certificate sent to the client from
the security appliance is independently
verifiable
and
the certificate has no
serious errors.
No
Success
Server certificate sent to the client from
the security appliance is
not
independently verifiable
and
the
certificate contains serious errors.
No
Failure
Server certificate sent to the client from
the security appliance is
not
independently verifiable
and
the
certificate does
not
contain serious errors.
Yes
Because the client cannot verify the
certificate, it is still a security concern.
The client asks the user whether to
continue with the connection attempt.