72-146
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter72 Configuring Clientless SSL VPN
Configuring Bookmarks
To set a home page value, you would configure the variable substitution as
https://CSCO_WEBVPN_MACRO1, which would translate to https://wwwin-portal.example.com.
The best way to do this is to configure the Homepage URL parameter in ASDM.
Go to the Add/Edit Group Policy pane, from either the Network Client SSL VPN or Clientless SSL VPN
Access section of ASDM. The paths are as follows:
Configuration > Remote Access VPN > Network (Client) Access > Group Policies > Add/Edit
Group Policy > Advanced > SSL VPN Client > Customization > Homepage URL attribute.
Configuration > Remote Access VPN > Clientless SSL VPN Access > Group Policies > Add/Edit
Group Policy > More Options > Customization > Homepage URL attribute.
Configuration Example for Setting a Bookmark or URL Entry
You can use an HTTP Post to log in to an OWA resource using an RSA one-time password (OTP) for
SSL VPN authentication, and then the static, internal password for OWA e-mail access. The best way to
do this is to add or edit a bookmark entry in ASDM.
There are several paths to the Add Bookmark Entry pane, including the following:
Configuration > Remote Access VPN > Clientless SSL VPN Access > Portal > Bookmarks >
Add/Edit Bookmark Lists > Add/Edit Bookmark Entry > Advanced Options area > Add/Edit Post
Parameters (available after you click Post in the URL Method attribute).
or
(Available after you click Post in the URL Method attribute):
Network (Client) Access > Dynamic Access Policies > Add/Edit Dynamic Access Policy > URL
Lists tab > Manage button > Configured GUI Customization Objects > Add/Edit button > Add/Edit
Bookmark List > Add/Edit Bookmark Entry > Advanced Options area > Add/Edit Post Parameters.
Configuration Example for Configuring File Share (CIFS) URL Substitutions
You can allow a more flexible bookmark configuration by using variable substitution for CIFS URLs.
If you configure the URL cifs://server/CSCO_WEBVPN_USERNAME, the ASA automatically maps it
to the user’s file share home directory. This method also allows for password and internal password
substitution. The following are example URL substitutions:
cifs://CSCO_WEBVPN_USERNAME:CSCO_WEBVPN_PASSWORD@server
cifs://CSCO_WEBVPN_USERNAME:CSCO_WEBVPN_INTERNAL_PASSWORD@server
cifs://domain;CSCO_WEBVPN_USERNAME:CSCO_WEBVPN_PASSWORD@server
cifs://domain;CSCO_WEBVPN_USERNAME:CSCO_WEBVPN_INTERNAL_PASSWORD@server
cifs://domain;CSCO_WEBVPN_USERNAME:CSCO_WEBVPN_PASSWORD@server/CSCO_WEB
VPN_USERNAME
cifs://domain;CSCO_WEBVPN_USERNAME:CSCO_WEBVPN_INTERNAL_PASSWORD@server/
CSCO_WEBVPN_USERNAME