37-72
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Chapter 37 Configuring Clientless SSL VPN
Clientless SSL VPN End User Setup
Using Application
Access
Note
On Macintosh OS X, only the Safari browser supports this feature.
Note
Because this feature requires installing Sun Microsystems Java™ Runtime Environment
and configuring the local clients, and because doing so requires administrator permissions
on the local system, it is unlikely that users will be able to use applications when they
connect from public remote systems.
Caution
Users should always close the Application Access window when they finish using
applications by clicking the
Close
icon. Failure to quit the window properly can cause
Application Access or the applications themselves to be disabled. See
Recovering from
hosts File Errors When Using Application Access
for details.
Client applications installed
—
Cookies enabled on browser
—
Administrator privileges
User must have administrator access on the PC if
you use DNS names to specify servers because
modifying the hosts file requires it.
Sun Microsystems Java Runtime
Environment (JRE) version 1.4.x and 1.5.x
installed.
Javascript must be enabled on the browser.
By default, it is enabled.
If JRE is not installed, a pop-up window displays,
directing users to a site where it is available.
On rare occasions, the port forwarding applet fails
with JAVA exception errors. If this happens, do
the following:
1.
Clear the browser cache and close the browser.
2.
Verify that no JAVA icons are in the computer
task bar. Close all instances of JAVA.
3.
Establish a clientless SSL VPN session and
launch the port forwarding JAVA applet.
Client applications configured, if necessary.
Note
The Microsoft Outlook client does
not require this configuration step.
All non-Windows client applications require
configuration.
To see if configuration is necessary for a
Windows application, check the value of the
Remote Server.
•
If the Remote Server contains the server
hostname, you do not need to configure
the client application.
•
If the Remote Server field contains an IP
address, you must configure the client
application.
To configure the client application, use the server’s
locally mapped IP address and port number. To
find this information:
1.
Start a clientless SSL VPN session and click
the Application Access link on the Home
page. The Application Access window
appears.
2.
In the Name column, find the name of the
server you want to use, then identify its
corresponding client IP address and port
number (in the Local column).
3.
Use this IP address and port number to
configure the client application. Configuration
steps vary for each client application.
Note
Clicking a URL (such as one in an -e-mail message) in an application running over a
clientless SSL VPN session does not open the site over that session. To open a site over
the session, paste the URL into the Enter Clientless SSL VPN (URL) Address field.
Table 37-10
Remote System Configuration and End User Requirements for Clientless SSL VPN (continued)
Task
Remote System or End User Requirements
Specifications or Use Suggestions
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......