72-125
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter72 Configuring Clientless SSL VPN
Communicating Security Tips
Communicating Security Tips
Advise users to always click the logout icon on the toolbar to close the clientless SSL VPN session.
(Closing the browser window does not close the session.)
Clientless SSL VPN ensures the security of data transmission between the remote PC or workstation and
the ASA on the corporate network. Advise users that using clientless SSL VPN does not ensure that
communication with every site is secure. If a user then accesses a non-HTTPS web resource (located on
the Internet or on the internal network), the communication from the corporate ASA to the destination
web server is not private because it is not encrypted.
"Observing Clientless SSL VPN Security Precautions" on page 5 addresses an additional tip to
communicate with users, depending on the steps you follow within that section.
Configuring Remote Systems to Use Clientless SSL VPN Features
This section describes how to set up remote systems to use clientless SSL VPN and includes the
following topics:
Starting Clientless SSL VPN, page72-126
Using the Clientless SSL VPN Floating Toolbar, page72-126
Browsing the Web, page72-127
Browsing the Network (File Management), page72-127
Using Port Forwarding, page 72-128
Using E-mail Via Port Forwarding, page 72-129
Using E-mail Via Web Access, page72-129
Using E-mail Via E-mail Proxy, page72-130
Table72-14 Usernames and Passwords to Give to Users of Clientless SSL VPN Sessions
Login Username/
Password Type Purpose Entered When
Computer Access the computer Starting the computer
Internet Service Provider Access the Internet Connecting to an Internet service
provider
Clientless SSL VPN Access remote network Starting clientless SSL VPN
File Server Access remote file server Using the clientless SSL VPN file
browsing feature to access a
remote file server
Corporate Application Login Access firewall-protected internal
server
Using the clientless SSL VPN web
browsing feature to access an
internal protected website
Mail Server Access remote mail server via
clientless SSL VPN
Sending or receiving e-mail
messages