Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
38-14
Cisco ASDM User Guide
OL-16647-01
Chapter 38 Clientless SSL VPN
Java Code Signer
Add/Edit Content Rewrite Rule
Enable content rewrite—Click to enable content rewrite for this rewrite rule.
Rule Number—(Optional) Enter a number for this rule. This number specifies the priority of the
rule, relative to the others in the list. Rules without a number are at the end of the list. The range is
1 to 65534.
Rule Name—(Optional) Provide an alphanumeric string that describes the rule, maximum 128
characters.
Resource Mask—Enter a string to match the application or resource to apply the rule to. The string
can be up to 300 characters. You can use one of the following wildcards, but you must specify at
least one alphanumeric character.
* — Matches everything. ASDM does not accept a mask that consists of a * or *.*
? —Matches any single character.
[!seq] — Matches any character not in sequence.
[seq] — Matches any character in sequence.
Example Content Rewrite Rules
Modes
The following table shows the modes in which this feature is available:
Java Code Signer
Java objects which have been transformed by Clientless SSL VPN can subsequently be signed using a
PKCS12 digital certificate associated with a trustpoint. In the Java Trustpoint pane, you can configure
the Clientless SSL VPN Java object signing facility to use a PKCS12 certificate and keying material
from a specified trustpoint location. To import a trustpoint, see Configuration > Properties > Certificate
> Trustpoint > Import.
Function
Enable
content
rewrite
Rule
Number Rule Name Resource Mask
Force all HTTP URLs to be
delivered outside of ASA
(split-tunneling)
Check 1 split-tunnel-all-http http://*
Force all HTTPS URLs to be
delivered outside of ASA
Check 2 split-tunnel-all-https https://*
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——