Cisco Systems ASA 5585-X Network Router User Manual


  Open as PDF
of 2086
 
Contents
lvi
Cisco ASA 5500 Series Configuration Guide using ASDM
Other Important Documentation Addressing Host Scan 69-130
CHAPTER
70 Configuring Dynamic Access Policies 70-1
Information About Dynamic Access Policies 70-1
DAP and Endpoint Security 70-2
DAP Support for Remote Access Connection Types 70-2
Remote Access Connection Sequence with DAPs 70-2
Licensing Requirements for Dynamic Access Policies 70-3
Advanced Endpoint Assessment license 70-3
SSL VPN license (client) 70-4
AnyConnect Mobile License 70-8
Dynamic Access Policies Interface 70-8
Configuring Dynamic Access Policies 70-10
Testing Dynamic Access Policies 70-13
DAP and Authentication, Authorization, and Accounting Services 70-14
Configuring AAA Attributes in a DAP 70-14
Retrieving Active Directory Groups 70-16
Configuring Endpoint Attributes Used in DAPs 70-18
Adding an Anti-Spyware or Anti-Virus Endpoint Attribute to a DAP 70-19
Adding an Application Attribute to a DAP 70-20
Adding Mobile Posture Attributes to a DAP 70-21
Adding a File Endpoint Attribute to a DAP 70-22
Adding a Device Endpoint Attribute to a DAP 70-23
Adding a NAC Endpoint Attribute to a DAP 70-24
Adding an Operating System Endpoint Attribute to a DAP 70-25
Adding a Personal Firewall Endpoint Attribute to a DAP 70-26
Adding a Policy Endpoint Attribute to a DAP 70-26
Adding a Process Endpoint Attribute to a DAP 70-27
Adding a Registry Endpoint Attribute to a DAP 70-28
DAP and AntiVirus, AntiSpyware, and Personal Firewall Programs 70-29
Endpoint Attribute Definitions 70-29
Configuring DAP Access and Authorization Policy Attributes 70-32
Performing a DAP Trace 70-36
Guide to Creating DAP Logical Expressions using LUA 70-36
Syntax for Creating Lua EVAL Expressions 70-37
The DAP CheckAndMsg Function 70-38
Additional Lua Functions 70-40
CheckAndMsg with Custom Function Example 70-43