Cisco Systems CL-28826-01 Security Camera User Manual


  Open as PDF
of 2616
 
33-16
User Guide for Cisco Security Manager 4.4
OL-28826-01
Chapter 33 Configuring Policy Objects for Remote Access VPNs
ASA Group Policies Dialog Box
AnyConnect Module The modules that the AnyConnect client needs to enable optional
features. Click Select to select the applicable modules from the Add
AnyConnect Module dialog box.
AnyConnect DART—Select this module to enable the
AnyConnect Diagnostics and Reporting Tool (DART), which
bundles specified log files and diagnostic information that can be
used for analyzing and debugging the client connection.
AnyConnect Network Access Manager—Select this module to
enable the Network Access Manager, which enforces
administratively defined end user and authentication policies and
makes the pre-configured network profiles available to end users.
AnyConnect SBL—Select this module to enable Start Before
Logon (SBL), which forces the user to connect to the enterprise
infrastructure over a VPN connection before logging on to
Windows by starting AnyConnect before the Windows login dialog
box appears. After authenticating to the ASA, the Windows login
dialog appears, and the user logs in as usual. SBL is only available
for Windows and lets you control the use of login scripts, password
caching, mapping network drives to local drives, and more.
AnyConnect Web Security Module—Select this module to
enable the AnyConnect Web Security module, which is an endpoint
component that routes HTTP traffic to a ScanSafe scanning proxy
where the ScanSafe web scanning service evaluates it.
AnyConnect Telemetry Module—Select this module to enable
the AnyConnect telemetry module for AnyConnect Secure
Mobility Client, which sends information about the origin of
malicious content to the web filtering infrastructure of the Cisco
IronPort Web Security Appliance (WSA). The web filtering
infrastructure uses this data to strengthen its web security scanning
algorithms, improve the accuracy of the URL categories and web
reputation database, and ultimately provide better URL filtering
rules.
AnyConnect Posture Module—Select this module to enable the
AnyConnect Posture Module, which provides the AnyConnect
Secure Mobility Client the ability to identify the operating system,
antivirus, antispyware, and firewall software installed on the host.
The Host Scan application, which is among the components
delivered by the posture module, is the application that gathers this
information.
Note If other options are listed, see the release notes for the Cisco
AnyConnect VPN Client for an explanation of the feature.
AnyConnect MTU The maximum transmission unit (MTU) size for SSL VPN connections
established by the Cisco AnyConnect VPN Client.
AnyConnect Profile Name The name of the AnyConnect profile to use for the group. You must
configure this name and relate it to a profile in the Remote Access VPN
> SSL VPN > Other Settings policy.
Table 33-9 ASA Group Policies SSL VPN Full Client Settings (Continued)
Element Description