Cisco ASA 5505 Configuration Manual page 1423

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 64
General VPN Setup
Upload Package
In this pane, you can specify the path of a file on the local computer or in flash memory of the security
appliance that you want to identify as an SSL VPN client profile. You can also browse the local computer
or the flash memory of the security appliance for a file to identify.
Fields
Modes
The following table shows the modes in which this feature is available:
Firewall Mode
Routed
Bypass Interface Access List
You can require an access rule to apply to the local IP addresses by unchecking this check box. The
access rule applies to the local IP address, and not to the original client IP address used before the VPN
packet was decrypted.
OL-20339-01
Local File Path—Identifies the filename of the file in on the local computer that you want to identify
as an SSL VPN client profile.
Browse Local Files—Displays the Select File Path dialog box where you can view all the files on
local computer and where you can select a file to identify as a client profile.
Flash File System Path—Identifies the filename of the file in the flash memory of the security
appliance that you want to identify as an client profile.
Browse Flash—Displays the Browse Flash dialog box where you can view all the files on flash
memory of the security appliance and where you can choose a file to identify as a client profile.
Upload File—Initiates the file upload.
Security Context
Transparent Single
Enable inbound IPSec sessions to bypass interface access-lists. Group policy and per-user
authorization access lists still apply to the traffic—By default, the adaptive security appliance allows
VPN traffic to terminate on a adaptive security appliance interface; you do not need to allow IKE or
ESP (or other types of VPN packets) in an access rule. When this check box is checked, you also do
not need an access rule for local IP addresses of decrypted VPN packets. Because the VPN tunnel
was terminated successfully using VPN security mechanisms, this feature simplifies configuration
and maximizes the adaptive security appliance performance without any security risks. (Group
policy and per-user authorization access lists still apply to the traffic.)
Multiple
Context
System
Cisco ASA 5500 Series Configuration Guide using ASDM
Bypass Interface Access List
64-113

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents