Cisco 5505 Administration Guide - Page 37

Advanced > SSL VPN Client, Keep Installer on Client System, Compression, Datagram TLS

Page 37 highlights

Chapter 3 Installing the AnyConnect Client and Configuring the Security Appliance with ASDM Step 9 Configure SSL VPN attributes for a user or group. To display SSL VPN features for groups, In the navigation pane of the Internal Group Policy dialog, choose Advanced > SSL VPN Client. The SSL VPN Client features display Figure 3-9. Figure 3-9 SSL VPN Client Features Configure the following features on the SSL VPN Client tab: • Keep Installer on Client System-Enable to allow permanent client installation on the remote computer. Enabling disables the automatic uninstalling feature of the client. The client remains installed on the remote computer for subsequent connections, reducing the connection time for the remote user. • Compression-Compression increases the communications performance on low-bandwidth links between the security appliance and the client by reducing the size of the packets being transferred. On broadband connections, compression might degrade performance. • Datagram TLS-Datagram Transport Layer Security (DTLS) allows the AnyConnect Client establishing an SSL VPN connection to use two simultaneous tunnels-an SSL tunnel and a DTLS tunnel. Using DTLS avoids latency and bandwidth problems associated with SSL connections and improves the performance of real-time applications that are sensitive to packet delays. Note Compression and DTLS are mutually exclusive. If you enable both, DTLS is inactive for the client connection. OL-12950-012 Cisco AnyConnect VPN Client Administrator Guide 3-9

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118

3-9
Cisco AnyConnect VPN Client Administrator Guide
OL-12950-012
Chapter 3
Installing the AnyConnect Client and Configuring the Security Appliance with ASDM
Step 9
Configure SSL VPN attributes for a user or group. To display SSL VPN features for groups, In the
navigation pane of the Internal Group Policy dialog, choose
Advanced > SSL VPN Client
. The SSL
VPN Client features display
Figure 3-9
.
Figure 3-9
SSL VPN Client Features
Configure the following features on the SSL VPN Client tab:
Keep Installer on Client System
—Enable to allow permanent client installation on the remote
computer. Enabling disables the automatic uninstalling feature of the client. The client remains
installed on the remote computer for subsequent connections, reducing the connection time for the
remote user.
Compression
—Compression increases the communications performance on low-bandwidth links
between the security appliance and the client by reducing the size of the packets being transferred.
On broadband connections, compression might degrade performance.
Datagram TLS
—Datagram Transport Layer Security (DTLS) allows the AnyConnect Client
establishing an SSL VPN connection to use two simultaneous tunnels—an SSL tunnel and a DTLS
tunnel. Using DTLS avoids latency and bandwidth problems associated with SSL connections and
improves the performance of real-time applications that are sensitive to packet delays.
Note
Compression and DTLS are mutually exclusive. If you enable both, DTLS is inactive for the
client connection.