Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
35-41
Cisco ASDM User Guide
OL-16647-01
Chapter 35 General
Configuring SSL VPN Client Connections
Dead Peer Detection
Dead Peer Detection (DPD) ensures that the security appliance (gateway) or the client can quickly detect
a condition where the peer is not responding, and the connection has failed.
Fields
Gateway Side Detection—Uncheck the Disable check box to specify that DPD is performed by the
security appliance (gateway). Enter the interval, from 30 to 3600 seconds, with which the security
appliance performs DPD.
Client Side Detection—Uncheck the Disable check box to specify that DPD is performed by the
client. Enter the interval, from 30 to 3600 seconds, with which the client performs DPD.
Modes
The following table shows the modes in which this feature is available:
Customization
Fields
Portal Customization—Selects the customization to apply to the AnyConnect Client/SSL VPN
portal page. The default is DfltCustomization.
Manage—Opens the Configure GUI Customization objects dialog box, on which you can specify
that you want to add, edit, delete, import, or export a customization object.
Access Deny Message—Specifies a message to display to the end user when the connection is
denied. Select Inherit to accept the message in the default group policy. The default message, if you
deselect Inherit, is: “Login was successful, but because certain criteria have not been met or due to
some specific group policy, you do not have permission to use any of the VPN features. Contact your
IT administrator for more information.”
Modes
The following table shows the modes in which this feature is available:
ACLs
This window lets you configure ACLs for Clientless SSL VPN.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——