Chapter21 Cisco IOS SSLVPN
Additional Help Topics
21-44
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
User chooses Locally on this router.
User adds one user account to the existing
list.
Cisco SDM creates the authentication list
“sdm_vpn_xauth_ml_1.” This list will be displayed in the
Cisco IOS SSLVPN Contexts window when the user
completes the wizard.
Those users listed in the User Authentication window are
the members of this authentication list, and will be
governed by policy_1.
Configure Intranet Websites Window
User configures the URL list Ulist_1. The
heading is “Taiwan.”
The URL list with the heading Taiwan will be visible in the
portal that users in “sdm_vpn_xauth_ml_1” see when they
log in.
The URL list will be available for configuration in other
group policies configured under the context “Asia.”
Enable Full Tunnel Window
User clicks Enable Full Tunnel, and
selects a predefined address pool. No
advanced options are configured.
Client PCs will download Full Tunnel client software when
they log in for the first time, and a full tunnel is established
between the PC and the router when the user logs in to the
portal.
Customize SSL VPN Portal Window
User chooses Ocean Breeze. Cisco SDM configures the HTTP display settings with this
color scheme. The portal displayed when policy_1 users
log in uses these settings. These portal settings also apply
to all policies configured under the context “Asia.” The
user can customize the HTTP display settings in the Edit
SSL VPN windows after completing the wizard.
SSL VPN Passthrough Configuration Window
User checks Allow SSL VPN to work
with NAC and Firewall
Cisco SDM adds an ACL with the following entry.
permit tcp any host 172.16.5.5 eq 443
Table21-5 Creating a New SSLVPN (continued)
CiscoIOS SSL VPN Wizard Window Configuration