Cisco ASA 5505 Configuration Manual page 1501

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 67
Clientless SSL VPN
Choose Configuration > Remote Access VPN > Clientless SSL VPN Access > Portal > Smart
Step 1
Tunnels.
Double-click the smart tunnel list to which you want to add an application; or click Add to create a list
Step 2
of applications, enter a name for this list in the List Name field, and click Add.
For example, click Add in the Smart Tunnels pane, enter Lotus in the List Name field, and click Add.
Click Add in the Add or Edit Smart Tunnel List dialog box.
Step 3
Enter a string in the Application ID field to serve as a unique index to the entry within the smart tunnel
Step 4
list.
Enter the filename and extension of the application into the Process Name dialog box.
Step 5
Table 67-2
Table 67-2
Application ID Example
lotusnotes
lotusnlnotes
lotusntaskldr
lotusnfileret
Select Windows next to OS.
Step 6
Click OK.
Step 7
Repeat Steps
Step 8
Click OK in the Add or Edit Smart Tunnel List dialog box.
Step 9
Assign the list to the group policies and local user policies to which you want to provide smart tunnel
Step 10
access to the associated applications, as follows:
Simplifying Configuration of Which Applications to Tunnel
A smart tunnel application list is essentially a filter of what applications are granted access to the tunnel.
The default is to allow access for all processes started by the browser. With Smart Tunnel enabled
bookmark, the clientless session grants access only to processes initiated by the web browser. For
non-browser applications, an administrator can choose to tunnel all applications and thus remove the
need to know which applications an end user may invoke.
processes are granted access.
OL-20339-01
shows example Application ID strings and the associated paths required to support Lotus.
Smart Tunnel Example: Lotus 6.0 Thick Client with Domino Server 6.5.5
3–7
for each application to add to the list.
To assign the list to a group policy, choose Configuration > Remote Access VPN> Clientless SSL
VPN Access > Group Policies > Add or Edit > Portal and choose the smart tunnel name from the
drop-down list next to the Smart Tunnel List attribute.
To assign the list to a local user policy, choose Configuration > Remote Access VPN> AAA Setup
> Local Users > Add or Edit > VPN Policy > Clientless SSL VPN and choose the smart tunnel
name from the drop-down list next to the Smart Tunnel List attribute.
Minimum Required Process Name
notes.exe
nlnotes.exe
ntaskldr.exe
nfileret.exe
Table 67-3
Cisco ASA 5500 Series Configuration Guide using ASDM
Configuring Smart Tunnel Access
shows in which situations
67-37

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents