Cisco 5505 Administration Guide - Page 57

Configuring the Dynamic Access Policies Feature of the Security Appliance - user guide

Page 57 highlights

Chapter 5 Configuring AnyConnect Features Using ASDM Configuring, Enabling, and Using Other AnyConnect Features Figure 5-12 Enabling or Disabling Dead Peer Detection In this dialog box, you can set the following attributes: • Gateway Side Detection-Deselect the Disable check box to specify that dead-peer detection is performed by the security appliance (gateway). Enter the interval, from 30 to 3600 seconds, with which the security appliance performs dead-peer detection. • Client Side Detection-Deselect the Disable check box to specify that dead-peer detection is performed by the client. Enter the interval, from 30 to 3600 seconds, with which the client performs dead-peer detection. Configuring the Dynamic Access Policies Feature of the Security Appliance On the security appliance, you can configure authorization that addresses the variables of multiple group membership and endpoint security for VPN connections. There is no specific configuration of AnyConnect required to use dynamic access policies. For detailed information about configuring dynamic access policies, see Cisco ASDM User Guide, Cisco Security Appliance Command Line Configuration Guide, or Cisco Security Appliance Command Reference. Cisco Secure Desktop Support Cisco Secure Desktop validates the security of client computers requesting access to your SSL VPN, helps ensure they remain secure while they are connected, and attempts to remove traces of the session after they disconnect. The Cisco AnyConnect VPN Client supports the Secure Desktop functions of OL-12950-012 Cisco AnyConnect VPN Client Administrator Guide 5-15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118

5-15
Cisco AnyConnect VPN Client Administrator Guide
OL-12950-012
Chapter 5
Configuring AnyConnect Features Using ASDM
Configuring, Enabling, and Using Other AnyConnect Features
Figure 5-12
Enabling or Disabling Dead Peer Detection
In this dialog box, you can set the following attributes:
Gateway Side Detection—Deselect the Disable check box to specify that dead-peer detection is
performed by the
security appliance
(gateway). Enter the interval, from 30 to 3600 seconds, with
which the security appliance performs dead-peer detection.
Client Side Detection—Deselect the Disable check box to specify that dead-peer detection is
performed by the
client
. Enter the interval, from 30 to 3600 seconds, with which the client performs
dead-peer detection.
Configuring the Dynamic Access Policies Feature of the Security Appliance
On the security appliance, you can configure authorization that addresses the variables of multiple group
membership and endpoint security for VPN connections. There is no specific configuration of
AnyConnect required to use dynamic access policies. For detailed information about configuring
dynamic access policies, see
Cisco ASDM User Guide, Cisco Security Appliance Command Line
Configuration Guide,
or
Cisco Security Appliance Command Reference.
Cisco Secure Desktop Support
Cisco Secure Desktop validates the security of client computers requesting access to your SSL VPN,
helps ensure they remain secure while they are connected, and attempts to remove traces of the session
after they disconnect. The Cisco AnyConnect VPN Client supports the Secure Desktop functions of