4 To add an Intranet Website to be displayed in the SSL VPN portal page, click Add, and use the
Intranet Websites Add URL window.
Advanced Options
There are three SSL VPN modes.
• Default - The default mode is the clientless mode allowing secure access to private web content.
• Thin Client - Enabling the Thin Client extends the default capability by allowing remote access
to TCP-based application static ports.
• Full Tunnel - Full tunnel mode provides a lightweight SSL VPN tunneling client for network
layer access to virtually any application.
It is recommended that the SSL VPN Client be added to the router so that clients can download it.
Finally, enabling the Cisco Secure Desktop is recommended for optimal security. Enabling this allows
CSD to write session data in an encrypted format to a special vault area of the client's disk. This is
removed at the end of the VPN session. Only a machine with Cisco Secure Desktop installed can
establish an SSL VPN connection when this box is checked.
Cisco Unified Communications Technical Training
LAB 7A: Security on UC500 and SR520
Page 102 of 171