37-22
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Chapter 37 Configuring Clientless SSL VPN
Configuring Group Policy and User Attributes for Clientless SSL VPN
Configuring Group Policy and User Attributes for Clientless SSL
VPN
Table 37-2
provides a list of group policy and user attributes for clientless SSL VPN. For step-by-step
instructions on configuring group policy and user attributes, see
“Configuring Group Policies”
and
“Configuring Attributes for Specific Users”
in
Chapter 30, “Configuring Connection Profiles, Group
Policies, and Users.”
.
Table 37-1
Connection Profile Attributes for Clientless SSL VPN
Command
Function
authentication
Sets the authentication method.
customization
Identifies the name of a previously defined customization to apply.
nbns-server
Identifies the name of the NetBIOS Name Service server (nbns-server) to use
for CIFS name resolution.
group-alias
Specifies the alternate names by which the server can refer to a connection
profile
group-url
Identifies one or more group URLs. If you configure this attribute, users
coming in on a specified URL need not select a group at login
dns-group
Identifies the DNS server group that specifies the DNS server name, domain
name, name server, number of retries, and timeout values
hic-fail-group-policy
Specifies a VPN feature policy if you use the Cisco Secure Desktop Manager
to set the Group-Based Policy attribute to “Use Failure Group-Policy” or “Use
Success Group-Policy, if criteria match.”
override-svc-downlo
ad
Overrides downloading the group-policy or username attributes configured for
downloading the AnyConnect VPN client to the remote user.
radius-reject-messag
e
Enables the display of the RADIUS reject message on the login screen when
authentication is rejected.
Table 37-2
Group Policy and User Attributes for Clientless SSL VPN
Command
Function
activex-relay
Lets a user who has established a clientless SSL VPN session use the browser
to launch Microsoft Office applications. The applications use the session to
download and upload Microsoft Office documents. The ActiveX relay remains
in force until the clientless SSL VPN session closes.
auto-signon
Sets values for auto signon, which requires only that the user enter username
and password credentials only once for a clientless SSL VPN connection.
customization
Assigns a customization object to a group-policy or user.
deny-message
Specifies the message delivered to a remote user who logs into clientless SSL
VPN successfully, but has no VPN privileges.
file-browsing
Enables CIFS file browsing for file servers and shares. Browsing requires
NBNS (Master Browser or WINS)
file-entry
Allows users to enter file server names to access.
Summary of Contents for 500 Series
Page 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Page 45: ...P A R T 1 Getting Started and General Information ...
Page 46: ......
Page 277: ...P A R T 2 Configuring the Firewall ...
Page 278: ......
Page 561: ...P A R T 3 Configuring VPN ...
Page 562: ......
Page 891: ...P A R T 4 System Administration ...
Page 892: ......
Page 975: ...P A R T 5 Reference ...
Page 976: ......