21-49
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter21 Cisco IOS SSL VPN
Additional Help Topics
Note The Destination Network list in the Split Tunneling area may already contain
network addresses. The traffic settings you make in the Split Tunneling area
override any settings previously made for the listed networks.
How do I verify that my Cisco IOS SSL VPN is working?
The best way to determine that a Cisco IOS SSL VPN context will provide the
access that you configured for users is to configure yourself as a user, then attempt
to access all the websites and services that the context is configured to provide for
them. Use the following procedure as a guide in setting up this test.
Step1 Ensure that credentials you can use are included in all appropriate policies on the
AAA server.
Step2 If you can do so, open a Cisco SDM session to the router so that you can monitor
the Cisco IOS SSLVPN traffic that you will create. This must be done on a
separate PC if the PC you use to test the Cisco IOS SSLVPN context is not in a
network from which you can access Cisco SDM. Go to Monitor > VPN Status >
SSL VPN.
Step3 Enter the URL to each of the web portals that are configured for this CiscoIOS
SSLVPN context. Determine that each page has the appearance that you
configured for it, and that all links specified in the URL lists for the policy appear
on the page.
Step4 Test all links and services that should be available to users included in this policy.
If any of the policies that you are testing provide for downloading Cisco Secure
Desktop or the Full Tunnel client software, enter the URLs to the web portals for
those policies and click the links that will require the download of this software.
Determine that the software downloads properly and that you are able to access
the services that a user should be able to access from these links.
Step5 If you were able to establish a Cisco SDM session before you began testing, click
the branch for the context that you are testing and observe the CiscoIOS
SSLVPN traffic statistics in the Cisco IOS SSL VPN window.
Step6 Based on the results of your tests, go back to Cisco SDM if necessary and fix any
configuration problems you discovered.