Contents
lii
Cisco ASA 5500 Series Configuration Guide using ASDM
Adding Crypto Maps 68-12
Creating an IPsec Rule/Tunnel Policy (Crypto Map) - Basic Tab 68-14
Creating IPsec Rule/Tunnel Policy (Crypto Map) - Advanced Tab 68-15
Creating IPsec Rule/Traffic Selection Tab 68-16
Pre-Fragmentation 68-18
Edit IPsec Pre-Fragmentation Policy 68-19
IPsec Transform Sets 68-20
Add/Edit IPsec Proposal (Transform Set) 68-21
Add/Edit IPsec Proposal 68-22
Configuring Load Balancing 68-23
Eligible Clients 68-23
Enabling Load Balancing 68-23
Creating Virtual Clusters 68-24
Geographical Load Balancing 68-25
Mixed Cluster Scenarios 68-25
Comparing Load Balancing to Failover 68-26
Load Balancing Prerequisites 68-27
Setting Global NAC Parameters 68-29
Configuring Network Admission Control Policies 68-30
Add/Edit Posture Validation Exception 68-33
CHAPTER
69 General VPN Setup 69-1
Client Software 69-1
Edit Client Update Entry 69-3
Default Tunnel Gateway 69-4
Group Policies 69-5
Add/Edit External Group Policy 69-6
Adding or Editing a Remote Access Internal Group Policy, General Attributes 69-6
AnyConnect Client Group Policy Attbributes 69-9
Configuring the Portal for a Group Policy 69-11
Configuring Customization for a Group Policy 69-13
Adding or Editing a Site-to-Site Internal Group Policy 69-13
Add AAA Server Group 69-14
Browse Time Range 69-15
Add/Edit Time Range 69-15
Add/Edit Recurring Time Range 69-16
ACL Manager 69-17
Standard ACL 69-17
Extended ACL 69-18