Cisco Systems 2.5 Network Router User Manual


  Open as PDF
of 1002
 
21-11
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter 21 Cisco IOS SSL VPN
Creating an SSL VPN Connection
Customize SSL VPN Portal
The settings that you make in this screen determine the appearance of the portal
to the user. You can select among the predefined themes listed, and obtain a
preview of the portal as it would appear if that theme were used.
Theme
Select the name of a predefined theme.
Preview
This area shows what the portal looks like with the selected theme.You may want
to preview several themes to determine which one you want to use.
SSL VPN Passthrough Configuration
In order for users to be able to connect to the intranet, access control entries
(ACE) must be added to firewall and Network Access Control (NAC)
configurations to permit SSL traffic to reach the intranet. Cisco SDM can
configure these ACE for you, or you can configure them yourself by going to
Firewall and ACL > Edit Firewall Policy/ACL and making the necessary edits.
If you are working in the Cisco IOS SSL VPN wizard, click Allow SSL VPN to
work with NAC and Firewall if you want Cisco SDM to configure these ACEs.
Click View Details to view the ACEs that Cisco SDM would create. An entry that
Cisco SDM adds might look like this example:
permit tcp any host 172.16.5.5 eq 443
If you are editing a Cisco IOS SSL VPN context, Cisco SDM displays the affected
interface and ACL that is applied to it. Click Modify to allow Cisco SDM to add
entries to the ACL to allow SSL traffic to pass through the firewall. Click Details
to view the entry that Cisco SDM adds. The entry will be one similar to the one
already shown.