72-26
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter72 Configuring Clientless SSL VPN
Configuring Browser Access to Plug-ins
Detailed Steps
The Content Rewrite section displays the following:
Rule Number—Displays an integer that indicates the position of the rule in the list.
Rule Name—Provides the name of the application for which the rule applies.
Rewrite Enabled—Displays content rewrite as enabled or disabled.
Resource Mask—Displays the resource mask.
Follow these steps to add a rewrite entry or edit a selected rewrite entry.
Step1 Click to enable content rewrite for this rewrite rule.
Step2 (Optional) Enter a number for this rule. This number specifies the priority of the rule, relative to the
others in the list. Rules without a number are at the end of the list. The range is 1 to 65534.
Step3 (Optional) Provide an alphanumeric string that describes the rule, maximum 128 characters.
Step4 Enter a string to match the application or resource to apply the rule to. The string can be up to 300
characters. You can use one of the following wildcards, but you must specify at least one alphanumeric
character.
* — Matches everything. ASDM does not accept a mask that consists of a * or *.*
? —Matches any single character.
[!seq] — Matches any character not in sequence.
[seq] — Matches any character in sequence.

Configuration Example for Content Rewrite Rules

Configuring Browser Access to Plug-ins
The following sections describe the integration of browser plug-ins for clientless SSL VPN browser
access:
Preparing the Security Appliance for a Plug-in, page72-28
Installing Plug-ins Redistributed By Cisco, page72-29
Providing Access to Third-Party Plug-ins, page72-31
Providing Access to a Citrix Java Presentation Server, page72-33
Table72-1 Content Rewrite Rules
Function
Enable
content
rewrite
Rule
Number Rule Name Resource Mask
Force all HTTP URLs to be
delivered outside of ASA
(split-tunneling)
Check 1 split-tunnel-all-http http://*
Force all HTTPS URLs to be
delivered outside of ASA
Check 2 split-tunnel-all-https https://*